Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Cybersecurity

Energy Department Fixes Identity Verification Flaw in Critical Minerals Portal

by Miles Jamison
February 24, 2026
in Cybersecurity, News
Socure's Jordan Burris. The Energy Department has fixed an identity verification vulnerability in a critical minenral portal.

The Department of Energy has remediated an identity verification vulnerability in a portal supporting its critical minerals programs.

The Department of Energy has remediated an identity verification vulnerability in a portal supporting its critical minerals programs after a security researcher disclosed the flaw, Nextgov/FCW reported Monday.

Table of Contents

    • You might also like
    • Army Secretary Signs Allied Counter-Drone Agreement at Eurosatory 2026
    • Navy Appoints Richard Breckenridge as Senior Adviser for Shipbuilding
    • DARPA Seeks Ideas to Rapidly Rebuild Lost Space Assets
  • What Was the ID Verification Vulnerability?
  • How Was It Discovered?
  • Why Does Identity Verification Matter?
  • Broader Cybersecurity Challenges at DOE

You might also like

Army Secretary Signs Allied Counter-Drone Agreement at Eurosatory 2026

Navy Appoints Richard Breckenridge as Senior Adviser for Shipbuilding

DARPA Seeks Ideas to Rapidly Rebuild Lost Space Assets

Energy Department Fixes Identity Verification Flaw in Critical Minerals Portal

The DOE’s effort to fix identity verification vulnerabilities underscores the evolving cyberthreat landscape. Gain deeper insight into federal cybersecurity priorities at Potomac Officers Club’s 2026 Cyber Summit on May 21. Book your seat today!

What Was the ID Verification Vulnerability?

Researcher Ronald Lovelace found the system, particularly the portal connected to the Office of Critical Minerals and Energy Innovation, allowed external users to register accounts using email addresses that appeared to belong to the Energy Department without verifying ownership. 

How Was It Discovered?

Lovelace said he used subdomain enumeration, a reconnaissance technique that maps digital footprint and accessible web infrastructure, to identify the portal and the vulnerability in the verification process. He demonstrated the issue by creating a test account with an email formatted as an Energy address and notified department IT staff. There is no evidence that the flaw was exploited.

Why Does Identity Verification Matter?

The weakness may have enabled cyber attackers to impersonate department officials on the platform. By exploiting the vulnerability, threat actors might have deceived researchers, contractors or other senior officials who rely on it for official program communications, potentially gaining access to sensitive internal documents or inserting themselves into program discussions. The risk is especially significant because DOE’s critical minerals programs underpin domestic supply chains that support energy technologies and advanced manufacturing.

“This should be a wake up call for every government agency. When adversaries can enumerate federal domains, map critical digital infrastructure and impersonate senior officials without ever breaching a network, the attack surface has fundamentally shifted,” said Jordan Burris, head of public sector at Socure.

Broader Cybersecurity Challenges at DOE

The remediation follows continued oversight of DOE’s cybersecurity posture. In a 2025 report, the department’s Office of Inspector General warned that dozens of previously identified cybersecurity weaknesses remain unresolved. The watchdog cautioned that gaps in vulnerability management and security controls could leave departmental systems and data exposed to malicious cyber actors.

Stay connected via Google News
Follow us for the latest travel updates and guides.
Add as preferred source on Google
Share5Tweet19

Recommended For You

Army Secretary Signs Allied Counter-Drone Agreement at Eurosatory 2026

by Kristen Smith
June 17, 2026
Dan Driscoll. At Eurosatory 2026, the Army secretary signed a counter-drone agreement with NATO allies.

Army Secretary Dan Driscoll, a 2026 Wash100 Award recipient, has signed a statement of intent with NATO allies and partners to expand access to the service's UAS Marketplace.The...

Read moreDetails

Navy Appoints Richard Breckenridge as Senior Adviser for Shipbuilding

by Jane Edwards
June 17, 2026
Richard Breckenridge. The retired Navy vice admiral has been named the service's senior adviser for shipbuilding.

The Navy has appointed retired Vice Adm. Richard Breckenridge as senior adviser for shipbuildingBreckenridge will support efforts to strengthen the maritime industrial baseThe 2026 Navy Summit will explore...

Read moreDetails

DARPA Seeks Ideas to Rapidly Rebuild Lost Space Assets

by Kristen Smith
June 17, 2026
DARPA logo. DARPA issued an RFI seeking industry insights to quickly restore satellite services.

DARPA is asking industry for ideas on rapidly restoring satellite servicesThe agency is looking for ways to bring degraded communications, navigation and surveillance back to minimum levels on...

Read moreDetails

FBI Deputy Assistant Director Karl Robert Schumann Promoted to CIO

by Jamie Bennet
June 17, 2026
Karl Robert Schumann. The FBI deputy assistant director was appointed CIO of the bureau to replace Katie Wood.

The FBI chose its deputy assistant director, Karl Robert Schumann, to serve as its chief information officerKatie Wood was acting FBI CIO prior to Schumann's appointmentSchumann joined the...

Read moreDetails

Michael Cadenazzi: Trump Invokes Defense Production Act for Munitions Industrial Base

by Jane Edwards
June 17, 2026
Michael Cadenazzi. The DOW assistant secretary for industrial base policy discussed Trump’s move to invoke DPA.

President Trump has invoked the Defense Production Act to address munitions production bottlenecksMichael Cadenazzi said the authority will support industry coordination through voluntary agreementsThe Potomac Officers Club's 2026...

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • Civilian
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • Defense Security Cooperation
  • DHS
  • Digital Modernization
  • DoD
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • Foreign Military Sales
  • General News
  • GovCon Expert
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence
  • Legislation
  • M&A Activity
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved.

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved.

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!