Review - Fall 2023 Unified Agenda – FAA and Drones – Two FAA rulemakings on UAS operations listed in UA – 1 UAS rulemaking on the Long-Term Actions list – https://tinyurl.com/3bj7h6bk #FAA #UAS
Fall 2023 Unified Agenda – FAA and Drones – Two FAA rulemakings on UAS operations listed in UA – 1 UAS rulemaking on the Long-Term Actions list - https://tinyurl.com/3u6b3w48 #FAA #UAS
Review - Fall 2023 Unified Agenda – DHS – 8 rulemakings of interest on latest version of the UA – CFATS update rule still listed – Short version – https://tinyurl.com/22892kyu #DHS #UnifiedAgenda
Fall 2023 Unified Agenda – DHS – 8 rulemakings of interest on latest version of the UA – CFATS update rule still listed - https://tinyurl.com/2s4dsrsj #DHS #UnifiedAgenda
DOD Sends DIB Cybersecurity Final Rule to OMB – https://tinyurl.com/2z2jjpvb #Regulations #DOD #CyberSecurity
CFSN Detailed Analysis - Substack Daily Update – 12-7-23 – Free Content – https://tinyurl.com/32bzm5m4
Short Takes – 12-7-23 – Space refueling test – Moon landing delays – Republican majority narrows – Agencies missed cyber logging deadline – https://tinyurl.com/2zajedxa
Review - 5 Advisories Published – 12-7-23 – NCCIC-ICS control system security advisories for from Sierra Wireless, ControlByWeb, Johnson Controls, SEL, and Mitsubishi – Short version – https://tinyurl.com/5dmm9xe8 #icsSecurity
5 Advisories Published – 12-7-23 – NCCIC-ICS control system security advisories for from Sierra Wireless, ControlByWeb, Johnson Controls, SEL, and Mitsubishi – a DRTH look at potential additional SW vulnerabilities – https://tinyurl.com/bdt2an29 Subscription requiured #icsSecurity
Review - Conference Report for HR 2670 Published – 2024 NDAA – Lots of cybersecurity provisions include – Some from earlier versions excluded – Vote in House next week – Short versions – https://tinyurl.com/7ye63uh3 #Legislation #NDAA
Conference Report for HR 2670 Published – 2024 NDAA – Lots of cybersecurity provisions include – Some from earlier versions excluded – Vote in House next week - https://tinyurl.com/ye2fvdhh Subscription required #NDAA #Legislation
Review - CSB Publishes Didion Milling Investigation Report – Yet another combustible dust incident – 5 dead and 14 injured - $15 million in damages – Short version – https://tinyurl.com/mrysbt78 #CSB #ChemicalIncident
CSB Publishes Didion Milling Investigation Report – Yet another combustible dust incident – 5 dead and 14 injured - $15 million in damages - https://tinyurl.com/yk8m5mrf #CSB #ChemicalIncident
CFSN Detailed Analysis - Substack Daily Update – 12-6-23 – Free Content – https://tinyurl.com/3k69efew
Review – HR 6496 Introduced – Valve Standards Expansion – Would require PHMSA to reinstate RMV requirements for new Type A gas gathering lines – Short version – https://tinyurl.com/y7wvm47j #Legislation #PHMSA #PipelineSafety
Yo, I don’t know who needs to hear this but @dangoodin had some outstanding coverage on what’s been going on with attacks on water utilities in the US, and a lot of the other big outlet coverage has been pretty wonky and drawing false conclusions. I’ve been too heads down with everything to comment much.
But like, this is stuff we in ICS cybersecurity have been warning about for a long time. Not because of uber 1337 APTs, but because municipalities are super duper underfunded and under appreciated, and because commonalities in tooling and devices and lowering the bar to entry in ICS attacks all the time. It’s like when metasploit, or cracked cobalt strike, or the big Windows RCE 0days hit. Those change things, because they make attacks easier for less techy people, and they make a lot of juicy targets more visible.
Like I say, water has been keeping us awake for a long time. This is awful but no surprise. We have all been trying to fix it.
HR 6496 Introduced – Valve Standards Expansion – Would require PHMSA to reinstate RMV requirements for new Type A gas gathering lines - https://tinyurl.com/ekcyzy7b Subscription required #Legislation #PHMSA #PipelineSafety