Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Cybersecurity

CISA, NIST Release Draft Report on Identity Token Cyberthreats for Public Comment

by Elodie Collins
December 23, 2025
in Cybersecurity, News
CISA logo. CISA and NIST published a draft of a new interagency report on cyberthreats targeting identity tokens.

The Cybersecurity and Infrastructure Security Agency and the National Institute of Standards and Technology have published an initial draft of Protecting Tokens and Assertions from Forgery, Theft and Misuse interagency report.

The Cybersecurity and Infrastructure Security Agency and the National Institute of Standards and Technology have published an initial draft of an interagency report that aims to address cyberthreats targeting identity tokens and assertions.

Table of Contents

    • You might also like
    • Ashley Devoto Named Air Force CIO
    • Space Force Promotes Shannon Pallone to Senior Executive Service Role
    • Rocio Bauer: Army Completes Digital Engineering Ecosystem Phase I
  • Why Are Cybercriminals Targeting Identity Tokens?

You might also like

Ashley Devoto Named Air Force CIO

Space Force Promotes Shannon Pallone to Senior Executive Service Role

Rocio Bauer: Army Completes Digital Engineering Ecosystem Phase I

CISA said Monday that the draft report, titled “Protecting Tokens and Assertions from Forgery, Theft and Misuse,” is open for public comments through Jan. 30.

The report adheres to the cybersecurity directive issued by the White House in June. This EO—focused on sustaining national cyber defenses—updates and amends previous guidelines found in Executive Orders 13694 and 14144.

CISA, NIST Release Draft Report on Identity Token Cyberthreats for Public Comment

Understand the threats American systems are facing amid increasing global tensions at the Potomac Officers Club’s 2026 Cyber Summit on May 21. The summit is open to businesses that want to learn from industry leaders or connect with key decision-makers across the public and private sectors. Click here to secure your tickets.

Why Are Cybercriminals Targeting Identity Tokens?

CISA warns that cybercriminals are compromising identity tokens and assertions—through theft, modification or forgery—to infiltrate protected resources.  The agency added that recent cyber incidents impacting cloud service providers involved some form of identity tokens and assertions misuse.

For instance, during the SolarWinds compromise in 2020, malicious actors forged Security Assertion Markup Language to bypass multi-factor authentication and access protected resources.

In another attack, foreign actors forged tokens and assertions to hack into email systems that multiple federal agencies used.

The report provides the cloud service providers and agencies with architectural considerations and recommended enhancements to safeguard identity tokens and assertions.

Share5Tweet19

Recommended For You

Ashley Devoto Named Air Force CIO

by Jane Edwards
June 5, 2026
Ashley Devoto. The tech/cyber leader will head enterprise IT, data and AI, and cybersecurity efforts as the new Air Force CIO

The Department of the Air Force has appointed Ashley Devoto as CIODevoto will oversee enterprise IT, data and AI, and cybersecurity portfoliosThe 2026 Air and Space Summit will...

Read moreDetails

Space Force Promotes Shannon Pallone to Senior Executive Service Role

by Miles Jamison
June 5, 2026
Shannon Pallone. The PAO BMC3I has been promoted to the Defense Intelligence Senior Executive Service.

Shannon Pallone was promoted to the Defense Intelligence Senior Executive ServiceShe oversees an $8.5 billion Space Force portfolio focused on BMC3I capabilitiesHer role supports the Space Force's new...

Read moreDetails

Rocio Bauer: Army Completes Digital Engineering Ecosystem Phase I

by Jane Edwards
June 5, 2026
Rocio Bauer. The assistant deputy within the Army ASA(ALT) discussed the Digital Engineering Ecosystem  Phase I completion.

The Army has wrapped up Phase I of its Digital Engineering Ecosystem initiativePhase I established engineering data foundations across Army modernization programsRocio Bauer will join a panel discussion...

Read moreDetails

VA Seeks Industry Feedback on Enterprise Cloud Brokerage Service

by Kristen Smith
June 5, 2026
VA logo. VA released an RFI seeking industry feedback on a cloud brokerage service.

VA is seeking industry input on enterprise cloud brokerage servicesThe RFI focuses on improving cloud procurement, governance and financial managementThe potential contract could support future expansion beyond AWS...

Read moreDetails

National Spectrum Consortium Opens ISAC Prototype Competition for FutureG Program

by Kristen Smith
June 5, 2026
6G. NSC posted solicitations for technologies that could advance 6G sensing and communications.

NSC has launched prototype opportunities to advance 6G sensing and communications technologiesThe solicitations are focused on integrated sensing and communications capabilities using open network architecturesThe efforts aim to...

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • Civilian
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • Defense Security Cooperation
  • DHS
  • Digital Modernization
  • DoD
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • General News
  • GovCon Expert
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence
  • Legislation
  • M&A Activity
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved.

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved.

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!