{"id":2379,"date":"2024-01-17T21:25:17","date_gmt":"2024-01-17T21:25:17","guid":{"rendered":"https:\/\/cyberscoop.com\/?p=78798"},"modified":"2024-01-17T21:25:17","modified_gmt":"2024-01-17T21:25:17","slug":"cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say","status":"publish","type":"post","link":"https:\/\/ddi.mohflo.net\/index.php\/2024\/01\/17\/cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say\/","title":{"rendered":"Cyber Safety Review Board needs stronger authorities, more independence, experts say"},"content":{"rendered":"<p><head> <meta charset=\"UTF-8\"> <meta name=\"viewport\" content=\"width=device-width, initial-scale=1\"> <meta name=\"robots\" content=\"index, follow, max-image-preview:large, max-snippet:-1, max-video-preview:-1\"> <!-- This site is optimized with the Yoast SEO Premium plugin v21.7 (Yoast SEO v21.7) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ --> <title>Cyber Safety Review Board needs stronger authorities, more independence, experts say | CyberScoop<\/title> <meta name=\"description\" content=\"The CSRB needs to become more transparent regarding its membership and the cases it takes on, experts told Congress.\"> <link rel=\"canonical\" href=\"https:\/\/cyberscoop.com\/csrb-hearing-authority-transparency\/\"> <meta property=\"og:locale\" content=\"en_US\"> <meta property=\"og:type\" content=\"article\"> <meta property=\"og:title\" content=\"Cyber Safety Review Board needs stronger authorities, more independence, experts say\"> <meta property=\"og:description\" content=\"The CSRB needs to become more transparent regarding its membership and the cases it takes on, experts told Congress.\"> <meta property=\"og:url\" content=\"https:\/\/cyberscoop.com\/csrb-hearing-authority-transparency\/\"> <meta property=\"og:site_name\" content=\"CyberScoop\"> <meta property=\"article:published_time\" content=\"2024-01-17T21:25:17+00:00\"> <meta property=\"article:modified_time\" content=\"2024-01-17T21:25:18+00:00\"> <meta property=\"og:image\" content=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/01\/cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say-2.jpg\"> <meta property=\"og:image:width\" content=\"1920\"> <meta property=\"og:image:height\" content=\"1280\"> <meta property=\"og:image:type\" content=\"image\/jpeg\"> <meta name=\"author\" content=\"eliasgroll\"> <meta name=\"twitter:card\" content=\"summary_large_image\"> <!-- \/ Yoast SEO Premium plugin. --> <link rel=\"dns-prefetch\" href=\"\/\/securepubads.g.doubleclick.net\">\n<link rel=\"dns-prefetch\" href=\"\/\/use.typekit.net\">\n<link rel=\"alternate\" type=\"application\/rss+xml\" title=\"CyberScoop \u00bb Feed\" href=\"https:\/\/cyberscoop.com\/feed\/\">\n<link rel=\"alternate\" type=\"application\/rss+xml\" title=\"CyberScoop \u00bb Comments Feed\" href=\"https:\/\/cyberscoop.com\/comments\/feed\/\"> <link rel=\"stylesheet\" id=\"all-css-2\" href=\"https:\/\/cyberscoop.com\/wp-includes\/css\/dist\/block-library\/style.min.css?m=1701905043g\" type=\"text\/css\" media=\"all\"> <link rel=\"stylesheet\" id=\"all-css-6\" href=\"https:\/\/cyberscoop.com\/wp-content\/mu-plugins\/search\/elasticpress-next\/dist\/css\/related-posts-block-styles.min.css?m=1705523072g\" type=\"text\/css\" media=\"all\"> <link rel=\"stylesheet\" id=\"all-css-8\" href=\"https:\/\/cyberscoop.com\/wp-content\/themes\/scoopnewsgroup\/dist\/css\/frontend.css?m=1704975497g\" type=\"text\/css\" media=\"all\">\n<link rel=\"stylesheet\" id=\"typekit-css\" href=\"https:\/\/use.typekit.net\/itk2qbh.css?ver=7dab012cdc88b5676610\" media=\"all\"> <link rel=\"https:\/\/api.w.org\/\" href=\"https:\/\/cyberscoop.com\/wp-json\/\"><link rel=\"alternate\" type=\"application\/json\" href=\"https:\/\/cyberscoop.com\/wp-json\/wp\/v2\/posts\/78798\"><link rel=\"EditURI\" type=\"application\/rsd+xml\" title=\"RSD\" href=\"https:\/\/cyberscoop.com\/xmlrpc.php?rsd\">\n<meta name=\"generator\" content=\"WordPress 6.4.2\">\n<link rel=\"shortlink\" href=\"https:\/\/cyberscoop.com\/?p=78798\">\n<link rel=\"alternate\" type=\"application\/json+oembed\" href=\"https:\/\/cyberscoop.com\/wp-json\/oembed\/1.0\/embed?url=https%3A%2F%2Fcyberscoop.com%2Fcsrb-hearing-authority-transparency%2F\">\n<link rel=\"alternate\" type=\"text\/xml+oembed\" href=\"https:\/\/cyberscoop.com\/wp-json\/oembed\/1.0\/embed?url=https%3A%2F%2Fcyberscoop.com%2Fcsrb-hearing-authority-transparency%2F&amp;format=xml\"> <!-- Google Tag Manager --> <!-- End Google Tag Manager --> <link rel=\"icon\" href=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=32\" sizes=\"32x32\">\n<link rel=\"icon\" href=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=192\" sizes=\"192x192\">\n<link rel=\"apple-touch-icon\" href=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=180\">\n<meta name=\"msapplication-TileImage\" content=\"https:\/\/cyberscoop.com\/wp-content\/uploads\/sites\/3\/2023\/01\/cropped-cs_favicon-2.png?w=270\"> <\/head><body class=\"post-template-default single single-post postid-78798 single-format-standard\" id=\"readabilityBody\"> <a href=\"https:\/\/cyberscoop.com\/csrb-hearing-authority-transparency\/#main\" class=\"skip-to-content-link visually-hidden-focusable\">Skip to main content<\/a> <\/p>\n<div class=\"ad ad--top ad--top-desktop\">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p> <main id=\"main\" role=\"main\" tabindex=\"-1\"> <\/p>\n<div class=\"ad ad--top ad--top-mobile\">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<section id=\"stickybar\" class=\"stickybar stickybar--newsletter js-stickybar\" readability=\"0.82\"> <button class=\"stickybar__close js-stickybar-close\" aria-controls=\"stickybar\"> <svg class=\"icon icon--close\" width=\"21\" height=\"22\" viewBox=\"0 0 21 22\" fill=\"none\"><path d=\"m.822.518-.805.805L9.695 11 .017 20.678l.805.805 9.678-9.678 9.677 9.678.806-.805L11.305 11l9.678-9.677-.806-.805-9.677 9.677L.822.518Z\" fill=\"currentColor\" \/><\/svg> <span class=\"visually-hidden\">Close<\/span> <\/button> <\/section>\n<article class=\"single-article content\">\n<div class=\"single-article__container js-single-article-content\">\n<header class=\"single-article__header \" readability=\"25.278260869565\">\n<div class=\"single-article__header-content\" readability=\"30.94693877551\">\n<p> The CSRB needs to become more transparent regarding its membership and the cases it takes on, experts told Congress. <\/p>\n<\/p><\/div>\n<div class=\"single-article__cover-wrap\">\n<figure class=\"single-article__cover\"> <img data-recalc-dims=\"1\" fetchpriority=\"high\" width=\"640\" height=\"426\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/01\/cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say.jpg?resize=640%2C426&#038;ssl=1\" class=\"single-article__cover-image wp-post-image\" alt decoding=\"async\" fetchpriority=\"high\" srcset=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/01\/cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say-2.jpg 1920w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/01\/cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say-2.jpg?resize=300,200 300w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/01\/cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say-2.jpg?resize=768,512 768w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/01\/cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say-2.jpg?resize=1024,683 1024w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/01\/cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say-2.jpg?resize=1536,1024 1536w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/01\/cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say-2.jpg?resize=600,400 600w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/01\/cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say-2.jpg?resize=252,168 252w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/01\/cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say-2.jpg?resize=506,337 506w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/01\/cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say-2.jpg?resize=1013,675 1013w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/01\/cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say-2.jpg?resize=1265,843 1265w\" sizes=\"(max-width: 1013px) 100vw, 1013px\"><figcaption> The U.S. Capitol is seen in Washington, DC, on November 14, 2023. (Photo by Stefani Reynolds \/ AFP) <\/figcaption><\/figure>\n<\/p><\/div>\n<\/header>\n<div class=\"single-article__content\">\n<div class=\"single-article__content-inner has-drop-cap\"> <html readability=\"79.948640288697\"><body readability=\"162.95967741935\"><\/p>\n<p>The Cyber Safety Review Board continues to lack the authorities and independence from the private sector that it needs in order to effectively investigate major cybersecurity incidents, a panel of experts told Congress on Wednesday.&nbsp;<\/p>\n<p>Conceived<strong> <\/strong>as<a href=\"https:\/\/cyberscoop.com\/cyber-safety-review-board-dhs-federal-register\/\"> an analogue<\/a> to the National Transportation Safety Board \u2014 the independent body charged with investigating accidents in airplanes, trains and other forms of public transportation \u2014 the CSRB was created<strong> <\/strong><a href=\"https:\/\/www.whitehouse.gov\/briefing-room\/presidential-actions\/2021\/05\/12\/executive-order-on-improving-the-nations-cybersecurity\/\">via executive order in 2021<\/a><strong> <\/strong>and is <a href=\"https:\/\/www.cisa.gov\/resources-tools\/groups\/cyber-safety-review-board-csrb\">charged with reviewing major incidents<\/a> in cyberspace.&nbsp;<\/p>\n<p>But in a hearing<strong> <\/strong>before the Senate Homeland Security and Governmental Affairs Committee, experts told Congress that the board lacks the authorities that<strong> <\/strong>have made the NTSB so effective at reducing major transportation accidents and that it is too dependent on the participation of corporations that it is supposed to investigate. &nbsp;&nbsp;<\/p>\n<p>\u201cIf the NTSB worked like the CSRB does now, investigations would be conducted by the FAA Administrator, the chief pilot of Boeing and the chief revenue officer of Delta Airlines,\u201d Tarah Wheeler, a cybersecurity expert and the CEO of Red Queen Dynamics, told lawmakers.&nbsp;<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>Today<strong>, <\/strong>the CSRB is made up of representatives from both federal agencies as well as major tech and cybersecurity companies like Google, CrowdStrike, Verizon and Palo Alto Networks. That means in some cases, board members may be expected to investigate failures or breakdowns within their own technologies or those of competitors.&nbsp;<\/p>\n<p>\u201cMany individuals on the CSRB are beloved and respected, but they do have full-time jobs and they do not have the time, freedom or authority to conduct independent, thorough investigations,\u201d Wheeler said.&nbsp;<\/p>\n<p>Heather Adkins, co-chair of the CSRB and vice president of security at Google, has already <a href=\"https:\/\/twitter.com\/argvee\/status\/1690015584740687872\">announced<\/a> that she will recuse herself from an <a href=\"https:\/\/cyberscoop.com\/cyber-safety-review-board-microsoft-cisa-dhs\/\">upcoming review<\/a> of Microsoft Exchange intrusions last year that resulted in the compromise of multiple U.S. government email accounts.<\/p>\n<p>Wheeler and other witnesses argued that the board is uniquely positioned to help the federal government and businesses learn from past cybersecurity incidents with widespread consequences \u2014 such as the 2021 Log4J vulnerability \u2014 but that the body must first be reformed to be more independent and transparent about its actions.&nbsp;<\/p>\n<p>While the board\u2019s work is critical to identifying weak points in the cybersecurity ecosystem, it lacks a full-time staff who can investigate major cyber attacks untethered from broader industry or political influences, Wheeler said. And unlike the NTSB, the CSRB does not have the power to subpoena the companies it is investigating.&nbsp;<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>Maintaining independence when investigating computer breaches is essential to an investigation\u2019s integrity. Drawing on her experience in carrying out incident response, Wheeler said that she has experienced cases in which she attempted to conduct an earnest investigation into an incident only to be told to<strong> <\/strong>\u201cshut up\u201d by a legal department concerned with how the findings may blow back onto the company.<\/p>\n<p>Trey Herr, the<strong> <\/strong>director of the Cyber Statecraft Initiative at the Atlantic Council, a think tank based in Washington D.C., echoed many of Wheeler\u2019s criticisms and called for more transparency around how the board selects its members and which incidents or topics will be subject for review.<\/p>\n<p>What makes the CSRB unique, Herr said, is its ability to conduct root cause analysis of larger cybersecurity failures \u201cwithout addressing fault,\u201d its notional independence and its focus on unspooling long-term, complex cybersecurity breakdowns that cut across different products, industries and use cases.<\/p>\n<p>\u201cNo entity in the private sector is positioned or incentivized to do this work justice \u2014 incident response firms must consider their status with current and former clients, compromised companies must manage reputation and legal exposure to shareholders and regulators while all lack the luxury of the wide lens required to repeatedly and rigorously investigate the risks born from the connections between the systems they build, operate, or secure,\u201d Herr said in written testimony submitted to Congress.<\/p>\n<p>Cybersecurity researchers have broadly welcomed the creation of the CSRB, but the body\u2019s completed investigations have raised questions about the quality of its work.&nbsp;<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>The board\u2019s two reviews thus far \u2014 focused on the<a href=\"https:\/\/www.cisa.gov\/sites\/default\/files\/publications\/CSRB-Report-on-Log4-July-11-2022_508.pdf\"> Log4J vulnerability<\/a> and the<a href=\"https:\/\/www.cisa.gov\/sites\/default\/files\/2023-08\/Review%20Of%20The%20Attacks%20Associated%20with%20Lapsus%24%20And%20Related%20Threat%20Groups%20Executive%20Summary_508c.pdf\"> Lapsus$ cybercriminal group<\/a> \u2014 have resulted in what Wheeler described as \u201cvery simple, consensus-based resolutions\u201d rather than the kind of detailed, in-depth investigations carried out in the wake of an airplane crash or train derailment.<\/p>\n<p>Wheeler analogized the substance of the CSRB\u2019s findings to an investigation into an airplane accident that determined \u201cthe cause of the crash was that the pilot flew into the ground, and in the future [they] should not fly into the ground again.\u201d<\/p>\n<p>\u201cWe all agree, but that\u2019s not necessarily useful information. The goal of CSRB investigations should be to help us learn from the process of the incident how to not repeat our mistakes,\u201d said Wheeler, who has<a href=\"https:\/\/www.cfr.org\/blog\/cyber-safety-review-board-should-investigate-major-historical-incidents\"> written extensively<\/a> in the past about shortfalls in the CSRB\u2019s approach.<\/p>\n<p>Despite being created in the aftermath of the<strong> <\/strong>2020 Sunburst supply chain attack \u2014 which compromised at least nine federal agencies and more than 100 companies by exploiting vulnerabilities in SolarWinds software and other products \u2014 CSRB still has not investigated what is considered to be one of the most consequential cybersecurity incidents in U.S. history, Herr pointed out.&nbsp;<\/p>\n<p>Despite calls for the board to investigate the Sunburst incident, federal officials have provided little clarity as to why the CSRB hasn\u2019t taken up the incident.<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>At the 2022 Black Hat cybersecurity conference in Las Vegas, Rob Silvers, undersecretary for policy at the Department of Homeland Security and chair of the CSRB, <a href=\"https:\/\/www.scmagazine.com\/analysis\/dhs-official-says-log4j-proved-concept-behind-cyber-review-board-but-mum-on-plans-for-solarwinds\">told this reporter<\/a> only that the decision to forgo a review of the incident was made in consultation with the White House.<\/p>\n<p>\u201cWe felt together with the White House that the best use of the board when we launched \u2026 was to review Log4J,\u201d Silvers said when asked about the status of a SolarWinds review.<\/p>\n<p>The Senate Homeland Security Committee is working on legislation that would legally codify the CSRB, and<strong> <\/strong>the Biden administration has requested that the board be given power to subpoena businesses as part of its investigations.&nbsp;<\/p>\n<p>Subpoena power has been<strong> <\/strong>described as central to the success of bodies like the NTSB, giving them the ability to compel testimony, but Wednesday\u2019s<strong> <\/strong>witnesses said that the CSRB should not be given similar powers without first making the board more transparent, particularly regarding how members and incidents are selected to avoid real or perceived conflicts of interest among the board\u2019s private sector members.<\/p>\n<p>Following the hearing, Sen. Gary Peters, D-Mich., chair of the committee, told CyberScoop that the committee heard \u201csome very strong testimony\u201d but stopped short of endorsing any of the recommended changes put forth by witnesses in the hearing, saying he was still researching the issue.<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>\u201cWe are considering codifying the board and we\u2019re looking at legislation to do that. As to what that\u2019s going to involve and what it will constitute is still a part of the discussion,\u201d Peters said, adding that he plans on doing<strong> <\/strong>\u201ca deeper dive into this issue before we move forward with any specific piece of legislation.\u201d<\/p>\n<p><\/body> <\/p>\n<footer class=\"single-article__footer\" readability=\"0.24226804123711\">\n<div class=\"author-card\" readability=\"7\">\n<div class=\"author-card__avatar\">\n<figure class=\"author-card__image-wrap\"> <img data-recalc-dims=\"1\" decoding=\"async\" class=\"author-card__image\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/01\/cyber-safety-review-board-needs-stronger-authorities-more-independence-experts-say-1.jpg?w=640&#038;ssl=1\" alt=\"Derek B. Johnson\"> <\/figure>\n<\/p><\/div>\n<p><h4 class=\"author-card__name\">Written by Derek B. Johnson<\/h4>\n<\/p><\/div>\n<div class=\"single-article__tags-container\">\n<h4 class=\"single-article__tags-title\">In This Story<\/h4>\n<\/p><\/div>\n<\/footer>\n<p> <\/html><\/div>\n<\/p><\/div>\n<\/p><\/div>\n<div class=\"single-article__ads js-single-article-sidebar\">\n<div class=\"ad ad--sidebar js-single-article-sidebar-5 ad--rightrail_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div class=\"ad ad--sidebar js-single-article-sidebar-4 ad--rightrail_2 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div class=\"ad ad--sidebar js-single-article-sidebar-3 ad--rightrail_3 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div><\/div>\n<\/article>\n<div class=\"popular-stories popular-stories--single-post\">\n<div class=\"popular-stories__container\">\n<h2 class=\"popular-stories__title\"> More Scoops <\/h2>\n<p> <!-- .popular-stories__stories --> <\/div>\n<p><!-- .popular-stories__inner -->\n<\/div>\n<p><!-- .popular-stories --> <\/p>\n<section class=\"latest-podcasts\">\n<h2 class=\"latest-podcasts__title\"> Latest Podcasts\t<\/h2>\n<\/section>\n<div class=\"top-categories\">\n<div class=\"top-categories__container\">\n<h3 class=\"top-categories__category-title\">Technology<\/h3>\n<\/p><\/div>\n<div class=\"top-categories__container\">\n<h3 class=\"top-categories__category-title\">Government<\/h3>\n<\/p><\/div>\n<\/p><\/div>\n<p> <\/main> <\/p>\n<div class=\"ad ad--bottom \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div id=\"interstitial\" class=\"welcome__container\"> <button id=\"close-modal-1\" class=\"welcome__clickable_area\"><\/button> <\/p>\n<div class=\"welcome__ad_wrapper\">\n<p> <button id=\"close-modal-3\" class=\"welcome__continue-button\">Continue to CyberScoop<\/button> <\/p>\n<\/p><\/div>\n<\/p><\/div>\n<p> <!-- Start of HubSpot Embed Code --> <!-- End of HubSpot Embed Code --> <\/body> <a href=\"https:\/\/cyberscoop.com\/csrb-hearing-authority-transparency\/\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Cyber Safety Review Board needs stronger authorities, more independence, experts<\/p>\n","protected":false},"author":11,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[730,1378,293,1379,1304,439,1380],"tags":[734,1381,299,1382,1306,443,1383],"class_list":["post-2379","post","type-post","status-publish","format-standard","hentry","category-black-hat","category-cybersecurity-review-board","category-department-of-homeland-security-dhs","category-gary-peters","category-log4j","category-policy","category-senate-homeland-security-and-governmental-affairs-committee","tag-black-hat","tag-cybersecurity-review-board","tag-department-of-homeland-security-dhs","tag-gary-peters","tag-log4j","tag-policy","tag-senate-homeland-security-and-governmental-affairs-committee"],"featured_image_urls":{"full":"","thumbnail":"","medium":"","medium_large":"","large":"","1536x1536":"","2048x2048":"","chromenews-featured":"","chromenews-large":"","chromenews-medium":""},"author_info":{"display_name":"Cyber Scoop","author_link":"https:\/\/ddi.mohflo.net\/index.php\/author\/cyberscoop\/"},"category_info":"<a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/black-hat\/\" rel=\"category tag\">Black Hat<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/cybersecurity-review-board\/\" rel=\"category tag\">Cybersecurity Review Board<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/department-of-homeland-security-dhs\/\" rel=\"category tag\">Department of Homeland Security (DHS)<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/gary-peters\/\" rel=\"category tag\">Gary Peters<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/log4j\/\" rel=\"category tag\">log4j<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/policy\/\" rel=\"category tag\">Policy<\/a> <a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/senate-homeland-security-and-governmental-affairs-committee\/\" rel=\"category tag\">Senate Homeland Security and Governmental Affairs Committee<\/a>","tag_info":"Senate Homeland Security and Governmental Affairs Committee","comment_count":"0","jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/2379","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/users\/11"}],"replies":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/comments?post=2379"}],"version-history":[{"count":0,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/2379\/revisions"}],"wp:attachment":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media?parent=2379"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/categories?post=2379"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/tags?post=2379"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}