News

Federal Cyber Incidents Increased 650 Percent Over Five Years

The Government Accountability Office has released a report showing that  security incidents at 24 federal agencies have increased 650 percent during the last five years. The reason cited is due to a persistent shortcomings in security controls and a larger amount of sophisticated attackers.

GAO said it had previously made hundreds of recommendations on how to improve the agencies’ information protection practices and their compliance with the Federal Information Security Management Act, but although agencies mostly agreed with the need to beef up security, implementation was spotty and hacking and unauthorized access incidents continued to rise. As a result, the agencies had a 650 percent rise in security incidents, from 5,503 in fiscal 2006 to 41,776 in fiscal 2010, GAO said.

"Weaknesses in information security policies and practices at 24 major federal agencies continue to place the confidentiality, integrity, and availability of sensitive information and information systems at risk," GAO concluded.

"Until hundreds of recommendations are implemented and program weaknesses are corrected, agencies will continue to face challenges in securing their information and information systems," the report said.

Sen. Tom Carper (D-Del.) said the report adds urgency to the need to pass legislation he introduced with Sens. Joseph Lieberman (I-Conn.) and Susan Collins (R-Maine) to strengthen cybersecurity.

"These findings are all the more troubling given that GAO has been telling us for some time that these are areas of vulnerability and must be addressed, yet we still haven't made enough progress in shoring up these obvious weaknesses," Carper said. "Federal agencies need to fully implement meaningful security programs that can withstand the serious cyber challenges we face today and will face for the foreseeable future, and they need the proper oversight and guidance to accomplish that goal. The implementation of FISMA was a good start, but it is clear more steps need to be taken to enhance the federal government's information security."

The report recommended that the Office of Management and Budget provide performance targets for metrics included in its annual FISMA reporting instructions. OMB responded that it would be more appropriate for the Homeland Security Department to provide the metrics, and GAO agreed.

 

About the Author

Alice Lipowicz is a staff writer for 1105 Media's Washington Technology.

Featured

  • Windows Admin Center vs. Hyper-V Manager: What's Better for Managing VMs?

    Microsoft's preferred interface for Windows Server is Windows Admin Center, but can it really replace Hyper-V Manager for managing virtual machines? Brien compares the two management tools.

  • Microsoft Offers More Help on Windows Server 2008 Upgrades

    Microsoft this week published additional help resources for organizations stuck on Windows Server 2008, which fell out of support on Jan. 14.

  • Microsoft Ups Its Carbon Reduction Goals

    Microsoft on Thursday announced a corporatewide carbon reduction effort that aims to make the company "carbon negative" by 2030.

  • How To Dynamically Lock Down an Unattended Windows 10 PC

    One of the biggest security risks in any organization happens when a user walks away from their PC without logging out. Microsoft has the solution (and it's not a password-protected screensaver).

comments powered by Disqus

Office 365 Watch

Sign up for our newsletter.

Terms and Privacy Policy consent

I agree to this site's Privacy Policy.