How failing to meet CMMC requirements can explose your supply chain vulnerabilities

CMMC is not the holy grail of supply chain risk management, but it is one of the most effective tools for validating that information security vulnerabilities are being addressed, writes CMMC expert Aron Freitag. Last year, attacks on the software supply chain occurred at a rate of at least one every two days. That’s not just […]
Small business joint venture wins Coast Guard cyber contract

Five-year, $160 million contract covers information assurance services from headquarters to ships at sea. The Coast Guard has awarded a five-year, $160 million contract to a small business joint venture to provide cybersecurity and information assurance services. OneMega LLC is comprised of two 8(a) small business companies – Alpha Omega and OneZero Solutions. OneZero is also […]
Is artificial intelligence a friend, foe or frenemy? NIST wants to find out

The standards agency will be hosting a working session to discuss how AI-empowered attacks can be used to sometimes get around traditional defenses. Artificial intelligence is fast becoming cybersecurity’s ultimate double agent. The same tools that help defenders spot anomalies, detect intrusions and speed up response times are also making it easier for adversaries to scale […]
Advocacy groups ask OMB to axe Grok AI procurement

Citing vulnerabilities and biased outputs in the program, multiple advocacy organizations and nonprofits signed a letter to the Office of Management and Budget asking it to bar Elon Musk’s Grok from federal workflows. Over 30 consumer advocacy non-profit organizations are protesting the potential federal acquisition of large language model Grok, developed by Elon Musk’s company xAI. […]