Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Cybersecurity

US, Allied Cyber Agencies Issue Advisory on Routinely Exploited Weak Security Controls; Rob Joyce Quoted

by Jane Edwards
May 18, 2022
in Cybersecurity, News, Wash100
US, Allied Cyber Agencies Issue Advisory on Routinely Exploited Weak Security Controls; Rob Joyce Quoted

The National Security Agency, Cybersecurity and Infrastructure Security Agency, the FBI and international partners have released a joint advisory on weak security controls and poor cyber hygiene practices and security configurations that threat actors use to secure initial access to a victim’s computer system.

You might also like

GP Sandhoo Named SDA Director, PAE for Missile Warning & Tracking

CIA, Industry Officials Warn Advanced AI Models Reshaping Federal Cybersecurity

Drone Dominance: 8 Key Initiatives Advancing the Army’s UAS & Counter-UAS Capabilities

Some of the techniques that malicious cyber actors use to gain access to a victim’s network are phishing, external remote services, trusted relationship and exploitation of public-facing applications, NSA said Tuesday.

The advisory outlined several common weaknesses that hackers exploit, including incorrectly applied privileges and errors within access control lists; unpatched software; failure to enforce multifactor authentication; unprotected cloud services; and use of vendor-supplied default configurations.

“As long as these security holes exist, malicious cyber actors will continue to exploit them,” said Rob Joyce, cybersecurity director at NSA as well as a 2022 Wash100 Award winner. 

“We encourage everyone to mitigate these weaknesses by implementing the recommended best practices,” added Joyce.

U.S. federal agencies and cybersecurity partners from Canada, New Zealand, the Netherlands and the U.K. recommended several actions organizations should take to mitigate risks and build up network defenses against weak security practices and controls.

Best practices to safeguard systems include controlling access, establishing centralized log management, employing detection tools and keeping software updated.

Share5Tweet19

Recommended For You

GP Sandhoo Named SDA Director, PAE for Missile Warning & Tracking

by Jane Edwards
May 20, 2026
GP Sandhoo. The acting director of the Space Development Agency has been named SDA director.

SDA announces the appointment of GP Sandhoo as director and Space Force PAEMichael Eppolito assumes the SDA deputy director roleSandhoo is a confirmed speaker at the 2026 Air...

Read moreDetails

CIA, Industry Officials Warn Advanced AI Models Reshaping Federal Cybersecurity

by Miles Jamison
May 20, 2026
AI. Federal and industry leaders have discussed the opportunities and potential risks with advanced AI models.

Federal cyber officials warn advanced AI tools could aid both defenders and hackersCIA official says Anthropic's Mythos model marks a major cybersecurity inflection pointPublic-private cooperation seen as essential...

Read moreDetails

Drone Dominance: 8 Key Initiatives Advancing the Army’s UAS & Counter-UAS Capabilities

by Elodie Collins
May 20, 2026
Unmanned aerial system. The Army is developing drones and counter-drone capabilities.

The Army is accelerating the development and acquisition of drones through multiple effortsThe service is also building capabilities to detect and defeat UAS threats across domainsJoin defense leaders...

Read moreDetails

DCSA Revises Continuous Vetting Requirements for Defense Contractors

by Kristen Smith
May 20, 2026
DCSA logo. DCSA has updated the continuous vetting guidance for National Industrial Security Program contractors.

DCSA has updated continuous vetting rules for defense contractorsThe new policy replaces periodic reinvestigations with questionnaire updates every five yearsThe changes support broader Trusted Workforce 2.0 modernization effortsThe...

Read moreDetails

NIST Releases Draft Blockchain Framework for Federal Software Asset Management

by Miles Jamison
May 20, 2026
Blockchain. NIST has released an initial public draft for a blockchain-based software asset management framework.

NIST unveils a blockchain-driven approach for federal software asset managementThe BloSS@M framework aims to boost software supply chain security, reuse and cybersecurity of government softwareNIST seeks public and...

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • Civilian
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • Defense Security Cooperation
  • DHS
  • Digital Modernization
  • DoD
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • General News
  • GovCon Expert
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence
  • Legislation
  • M&A Activity
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved.

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved.

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!