"They can request SBOMs til they're blue in the face, but there’s no framework in place for enforcement."
- @webjedi in my writeup of #SBOM-a-rama:
https://www.techtarget.com/searchitoperations/news/366542018/CISA-SBOM-standards-efforts-stymied-by-confusion-inertia
#softwaresupplychain #cybersecurity @CISAgov
#CISA #NTIA #NIST #FDA #softwaresupplychainsecurity #supplychainsecurity #softwarebillofmaterials #cloud #cloudsecurity #security #infrastructure #cloudnative #cloudnativesecurity #sbomarama
#SBOM #softwaresupplychain #cybersecurity #cisa #ntia #nist #fda #softwaresupplychainsecurity #supplychainsecurity #softwarebillofmaterials #cloud #cloudsecurity #security #infrastructure #cloudnative #CloudNativeSecurity #sbomarama
S 1526 Introduced – NTIA Cybersecurity – Would establish the NTIA Office of Policy and Cybersecurity Coordination – Very nearly identical to HR 1345 –https://tinyurl.com/4unpr447 #Legislation #NTIA
Somehow I missed this. The US National Telecommunications and Information Administration has issued a Request For Comments about audits w/r/t so-called Artificial Intelligence. Comments deadline is 2023-06-12; RFC link:
https://www.federalregister.gov/documents/2023/04/13/2023-07776/ai-accountability-policy-request-for-comment
Press releases:
NTIA Seeks Public Input to Boost AI Accountability
https://www.ntia.gov/press-release/2023/ntia-seeks-public-input-boost-ai-accountability
AI Accountability Policy Request for Comment
https://ntia.gov/issues/artificial-intelligence/request-for-comments
@eff Comments to #NTIA on #Privacy and #CivilRights https://www.eff.org/deeplinks/2023/03/eff-comments-ntia-privacy-and-civil-rights
US gov calls for competition in mobile app markets.
Biggest points at the end:
"""
5. Operators should lift restrictions on [ways to] install apps.
While preserving appropriate privacy and security safeguards, legislative measures should prohibit restrictions on sideloading, alternative app stores and web apps.
6. Address limits on in-app purchasing […] by banning requirements to use the operators’ payment system.
"""
https://www.ntia.doc.gov/press-release/2023/ntia-calls-changes-boost-competition-mobile-app-markets
#appstore #PWA #NTIA via https://toot.cafe/@slightlyoff/109790857465417039
NTIA calls for boosting competition around mobile apps
Biggest points at the end:
"""
5. Operators should lift restrictions on ways [to] install apps.
While preserving appropriate privacy and security, legislative measures should prohibit restrictions on sideloading, alternative app stores, and web apps.
6. Address limits on in-app purchasing [..] by banning requirements [to] use the [operators]’ payment system.
"""
https://www.ntia.doc.gov/press-release/2023/ntia-calls-changes-boost-competition-mobile-app-markets
#appstore #NTIA #PWA via https://toot.cafe/@slightlyoff/109790857465417039
My year in 24 Minutes
This 24 Minutes podcast episode with Michael Kill dissects universal shortages in the post-pandemic nighttime workforce.
https://24hournation.com/nighttime-workforce/post-pandemic-employee-solutions/
#ntia #michaelkill #Podcast #24minutes #24hournation
🚨#NTIA has awarded more than $5.4 million in planning funds to D.C. for high-speed Internet & #DigitalEquity projects. I’m looking forward to working with the team in D.C. to get Washingtonians connected! #InternetForAll
📰: https://internet4all.gov/news-media/biden-harris-administration-awards-more-54-million-washington-dc-internet-all-planning
#ntia #digitalequity #internetforall
Yesterday, #NTIA announced Puerto Rico has been awarded over $5.7 million in funds to begin planning affordable, reliable high-speed Internet and digital equity projects. #InternetForAll #broadband #telecom
📰: https://www.internetforall.gov/news-media/biden-harris-administration-awards-more-57-million-puerto-rico-internet-all-planning
#ntia #internetforall #broadband #telecom
The letter to #NTIA notes that #ICANN reports that "number of domains responsible for #phishing, #malware, spam and botnets has declined"
We also found that domains responsible for hosting malware decreased in recent quarters; however, most reported malware is hosted or distributed from IP addresses.
Spoiler alert: in our forthcoming Phishing activity for August-October 2022, we saw an increase in unique phishing domains reported, from 163,157 to 207,889 - and 44,732 is a rather big number.
Counting domains is a less accurate measure of cybercrime activity than counting attacks. If you're represented by one of the signatories of this letter please help lend clarity to the issue.
#ntia #icann #phishing #malware