Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence Community
    • DHS
    • Federal Civilian
    • Space
  • Cybersecurity
  • Technology
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence Community
    • DHS
    • Federal Civilian
    • Space
  • Cybersecurity
  • Technology
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Government Technology

GSA IG: Non-Compliant Tech Exposed 18F Data to Breach

by Ramona Adams
May 16, 2016
in Government Technology, News
GSA IG: Non-Compliant Tech Exposed 18F Data to Breach


GSAThe General Services Administration‘s inspector general has found that the 18F digital services organization experienced a data breach due to the use of systems that are not approved under GSA’s Information Technology Standards Profile.

GSA IG said in a management alert report issued Thursday that at least 100 GSA Google Drives have been exposed to external users since October 2015 because of OAuth 2.0.

Table of Contents

  • You might also like
  • DHS S&T Opens AI Prize Challenge to Detect Biological Threats
  • GSA, OpenAI Reach OneGov Deal for Discounted ChatGPT Access
  • Department of War Seeks AI Tools to Track Space & Missile Threats

You might also like

DHS S&T Opens AI Prize Challenge to Detect Biological Threats

GSA, OpenAI Reach OneGov Deal for Discounted ChatGPT Access

Department of War Seeks AI Tools to Track Space & Missile Threats

18F employees use the authorization system to share files between Google Drive and the online messaging and collaboration application Slack.

The IG added that the breach potentially compromised personally identifiable information and contractor proprietary data to people outside GSA.

According to the report, an 18F surpervisor discovered the breach on March 4 and reported the vulnerability on Mar. 9 to the GSA senior agency information security officer.

OAuth 2.0 and Slack are not compliant with GSA Order CIO P 2160.1E, which requires the evaluation of IT products and services against the agency’s security, legal and accessibility needs to approve their use under the GSA IT standards profile, the report added.

GSA IG said 18F also failed to comply with the agency’s information breach notification policy, which requires personnel to report all uncovered or suspected breach of PII within an hour of discovery.

The report recommended for GSA to stop the use of Slack and OAuth 2.0 unless they are approved for use in the IT standards profile and to ensure 18F follows GSA Order CIO P 2160.1E.

Stay connected via Google News
Follow us for the latest travel updates and guides.
Add as preferred source on Google
Share5Tweet19
Previous Post

Army Vice Chief Daniel Allyn: Budget Control Act Repeal Needed to Address ‘Readiness, Modernization Shortfalls’

Next Post

SASC Wants to Keep DoD RD-180 Rocket Engine Purchase Limited to 9

Recommended For You

Space Force Seeks Incremental Approach to Funding Large Programs

by Brenda Marie Rivers
July 31, 2020
Space Force Seeks Incremental Approach to Funding Large Programs

The Department of the Air Force has released a report seeking phased funds for major programs such as satellites and large space systems. It was initially sent to Congress...

Read moreDetails

Army Expands Use of Enterprise Contracts to Streamline Procurement

by Jane Edwards
May 18, 2026
Army Expands Use of Enterprise Contracts to Streamline Procurement

The U.S. Army is expanding its use of enterprise contracts to streamline procurement and leverage enterprisewide buying power as part of efforts to modernize acquisition. Leonel Garciga, the...

Read moreDetails

John Sherman: Pentagon Eyes 2021 Release of Zero Trust Strategy

by Jane Edwards
April 26, 2021
John Sherman

John Sherman, acting chief information officer of the Department of Defense (DOD), said DOD plans to issue a strategy for zero trust architecture in 2021 as part of...

Read moreDetails

DARPA to Establish Industry & Govt Consortium for On-Orbit Satellite Servicing Standards

by Ramona Adams
November 30, 2016
DARPA to Establish Industry & Govt Consortium for On-Orbit Satellite Servicing Standards

The Defense Advanced Research Projects Agency plans to establish a consortium of government and industry space experts that will create technical and safety standards for on-orbit servicing operations of commercial satellites....

Read moreDetails

Japanese Maritime Self-Defense Force Demos Ballistic Missile Exercise

by Regina Garcia
November 22, 2022
Japanese Maritime Self-Defense Force Demos Ballistic Missile Exercise

The Japanese Maritime Self-Defense Force tested two sea-based variants of its standard missile 3 interceptors by executing two live-fire exercises in Hawaii known as the Japan Flight Test...

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Australia
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • C5ISR
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • Defense Security Cooperation
  • Department of War
  • DHS
  • Digital Assets
  • Digital Modernization
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • Foreign Military Sales
  • General News
  • GovCon Expert
  • Government Cloud
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence Community
  • Legislation
  • M&A Activity
  • Middle East
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Technology
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence Community
    • DHS
    • Federal Civilian
    • Space
  • Cybersecurity
  • Technology
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!