Tech

Senate Finds Major Cybersecurity Weaknesses At Federal Agencies, Warns Of Attacks

Photo by Andrew Caballero-Reynolds-Pool/Getty Images

Daily Caller News Foundation logo
Ailan Evans Deputy Editor
Font Size:
  • A top Senate committee issued a report finding several federal agencies had major cybersecurity weaknesses and were “failing to protect the sensitive data they stored and maintained.”
  • Inspectors were able to access hundreds of secure files, including credit card numbers, from the Department of Education without the agency noticing, while the State Department could not provide documentation on 60% of employees who had access to its classified network.
  • “This report shows a sustained failure to address cybersecurity vulnerabilities at our federal agencies, a failure that leaves national security and sensitive personal information open to theft and damage by increasingly sophisticated hackers,” Ohio Sen. Rob Portman, who co-authored the report, said in a statement announcing the findings.

A top Senate committee released a bipartisan report Tuesday finding numerous key shortcomings in federal agencies’ cyber defenses.

The Senate Homeland Security and Governmental Affairs Committee’s report, authored by Ohio Republican Sen. Rob Portman and Michigan Democratic Sen. Gary Peters, revisited eight federal agencies found to be “failing to protect the sensitive data they stored and maintained” in a 2019 analysis of inspector general audit reports from 2008 to 2019. The report found only one agency, the Department of Homeland Security (DHS), had adequately improved its cybersecurity program.

“Two years later, seven agencies still fail at effectively securing data,” the report read. “While several of the agencies made minimal improvements in one or more areas, inspectors generally found essentially the same failures as the prior 10 years.”

The report highlighted a number of key flaws, including the fact that seven agencies operated outdated technology, and the State Department could not provide documentation on 60% of employees who had access to its classified network.

The Department of Transportation had no record of 14,935 “IT assets,” including 4,824 servers, which it owned, and the Department of Agriculture had a “significant number” of vulnerabilities in public facing websites, according to the report.

Inspectors were able to access hundreds of secure files, including credit card numbers, from the Department of Education without the agency noticing, according to the report.

The report also found that DHS’ “flagship cybersecurity program,” known as EINSTEIN, did not adequately detect and prevent cyber intrusions. EINSTEIN is a threat-detection system designed to provide agencies with information to address cyber intrusions. (RELATED: Hackers Demand $70 Million Ransom Payment After Attacking Hundreds Of Businesses)

“This report shows a sustained failure to address cybersecurity vulnerabilities at our federal agencies, a failure that leaves national security and sensitive personal information open to theft and damage by increasingly sophisticated hackers,” Portman said in a statement announcing the findings.

Portman pointed to the December SolarWinds breach, as well as the string of ransomware attacks in recent months such as the May Colonial Pipeline hack, as examples of cybersecurity threats.

“I am concerned that many of these vulnerabilities have been outstanding for the better part of a decade – the American people deserve better,” he added. (RELATED: World’s Largest Meat Packer Pays Out Millions In Ransom To Hackers)

The report issued a number of recommendations, including more cybersecurity funding, a centralized approach to cyber threats, the updating and improving of EINSTEIN, and a more expansive role of the Cybersecurity and Infrastructure Security Agency (CISA) in assisting agencies with cyber defense. CISA is a federal agency founded in 2018 dedicated to supporting other agencies in addressing cyber threats and managing risk.

The report also recommended Congress update the Federal Information Security Modernization Act of 2014 to “formalize CISA’s role as the operational lead” of federal cybersecurity.

Peters met with officials Tuesday to discuss how to improve the nation’s cybersecurity defenses.

“We agreed that it will take a comprehensive, all of government approach to deter these continued assaults and hold foreign adversaries and criminal organizations accountable for targeting American networks,” Peters said in a press release following the meeting.

President Joe Biden has made cybersecurity a priority of his administration, issuing an executive order in May aimed at improving communication between federal agencies during cyber attacks and centralizing a security response.

“It is the policy of my Administration that the prevention, detection, assessment, and remediation of cyber incidents is a top priority and essential to national and economic security,” Biden said in the order.

All content created by the Daily Caller News Foundation, an independent and nonpartisan newswire service, is available without charge to any legitimate news publisher that can provide a large audience. All republished articles must include our logo, our reporter’s byline and their DCNF affiliation. For any questions about our guidelines or partnering with us, please contact licensing@dailycallernewsfoundation.org.

PREMIUM ARTICLE: Subscribe To Keep Reading

Sign up

By subscribing you agree to our Terms of Use

You're signed up!

Sign up

By subscribing you agree to our Terms of Use

You're signed up!
Sign up

By subscribing you agree to our Terms of Use

You're signed up!

Sign up

By subscribing you agree to our Terms of Use

You're signed up!
Sign up

By subscribing you agree to our Terms of Use

You're signed up!

Sign Up

By subscribing you agree to our Terms of Use

You're signed up!
Sign up

By subscribing you agree to our Terms of Use

You're signed up!
Sign up

By subscribing you agree to our Terms of Use

You're signed up!
BENEFITS READERS PASS PATRIOTS FOUNDERS
Daily and Breaking Newsletters
Daily Caller Shows
Ad Free Experience
Exclusive Articles
Custom Newsletters
Editor Daily Rundown
Behind The Scenes Coverage
Award Winning Documentaries
Patriot War Room
Patriot Live Chat
Exclusive Events
Gold Membership Card
Tucker Mug

What does Founders Club include?

Tucker Mug and Membership Card
Founders

Readers,

Instead of sucking up to the political and corporate powers that dominate America, The Daily Caller is fighting for you — our readers. We humbly ask you to consider joining us in this fight.

Now that millions of readers are rejecting the increasingly biased and even corrupt corporate media and joining us daily, there are powerful forces lined up to stop us: the old guard of the news media hopes to marginalize us; the big corporate ad agencies want to deprive us of revenue and put us out of business; senators threaten to have our reporters arrested for asking simple questions; the big tech platforms want to limit our ability to communicate with you; and the political party establishments feel threatened by our independence.

We don't complain -- we can't stand complainers -- but we do call it how we see it. We have a fight on our hands, and it's intense. We need your help to smash through the big tech, big media and big government blockade.

We're the insurgent outsiders for a reason: our deep-dive investigations hold the powerful to account. Our original videos undermine their narratives on a daily basis. Even our insistence on having fun infuriates them -- because we won’t bend the knee to political correctness.

One reason we stand apart is because we are not afraid to say we love America. We love her with every fiber of our being, and we think she's worth saving from today’s craziness.

Help us save her.

A second reason we stand out is the sheer number of honest responsible reporters we have helped train. We have trained so many solid reporters that they now hold prominent positions at publications across the political spectrum. Hear a rare reasonable voice at a place like CNN? There’s a good chance they were trained at Daily Caller. Same goes for the numerous Daily Caller alumni dominating the news coverage at outlets such as Fox News, Newsmax, Daily Wire and many others.

Simply put, America needs solid reporters fighting to tell the truth or we will never have honest elections or a fair system. We are working tirelessly to make that happen and we are making a difference.

Since 2010, The Daily Caller has grown immensely. We're in the halls of Congress. We're in the Oval Office. And we're in up to 20 million homes every single month. That's 20 million Americans like you who are impossible to ignore.

We can overcome the forces lined up against all of us. This is an important mission but we can’t do it unless you — the everyday Americans forgotten by the establishment — have our back.

Please consider becoming a Daily Caller Patriot today, and help us keep doing work that holds politicians, corporations and other leaders accountable. Help us thumb our noses at political correctness. Help us train a new generation of news reporters who will actually tell the truth. And help us remind Americans everywhere that there are millions of us who remain clear-eyed about our country's greatness.

In return for membership, Daily Caller Patriots will be able to read The Daily Caller without any of the ads that we have long used to support our mission. We know the ads drive you crazy. They drive us crazy too. But we need revenue to keep the fight going. If you join us, we will cut out the ads for you and put every Lincoln-headed cent we earn into amplifying our voice, training even more solid reporters, and giving you the ad-free experience and lightning fast website you deserve.

Patriots will also be eligible for Patriots Only content, newsletters, chats and live events with our reporters and editors. It's simple: welcome us into your lives, and we'll welcome you into ours.

We can save America together.

Become a Daily Caller Patriot today.

Signature

Neil Patel