Risk
7/6/2010
01:36 PM
Connect Directly
Twitter
RSS
E-Mail
50%
50%

Senate Seeks White House Help On Cybersecurity Bill

In a letter to Obama, key senators have asked for administration support in crafting comprehensive cybersecurity legislation.

The Senate is continuing to push forward with plans to develop comprehensive cybersecurity legislation, with seven key senators last week writing a letter to President Obama seeking White House support in crafting a bill.

The Senate has recently begun ramping up efforts to combine its disparate cybersecurity legislative efforts into a single, comprehensive bill in an effort led by Senate majority leader Harry Reid, D-Nev., while the public profile of Senate efforts has also increased, sparked by concerns about privacy and the extent of Presidential power over the Internet.

"Executive branch leadership is key to the nation's cybersecurity and we are eager to hear your views on the optimal organizational structure, necessary updates and reforms to legislation and regulations governing communications networks and information systems, and additional authorities needed to facilitate effective government leadership and response to cyber threats and vulnerabilities," the letter said.

The letter's signatories themselves may indicate a bit about Sen. Reid's strategy for getting legislation passed, as the six other senators signing the letter are all chairmen of committees likely to have an interest in any cybersecurity legislation: Armed Services Committee chairman Carl Levin, D-Mich; Commerce, Science and Transportation Committee chairman Jay Rockefeller, D-W.Va.; Select Committee on Intelligence chairwoman Dianne Feinstein, D-Calif.; Judiciary Committee chairman Patrick Leahy, D-Vt.; Foreign Relations Chairman John Kerry, D-Mass.; and Homeland Security and Government Affairs chairman Joseph Lieberman, I-Conn.

The letter itself give any sense of timing for a comprehensive bill. However, Lieberman and Senate staffers have said that Reid wants a bill passed sometime this year.

While Reid has taken command of the issue in the Senate, the comprehensive strategy in the House of Representatives is less clear. The House has actually passed cybersecurity legislation this session, including some language in a military appropriations bill and a cybersecurity research and development bill, though senior lawmakers on the House Homeland Security Committee have expressed support for a Senate bill recently offered by Lieberman, Susan Collins, R-Maine, and Thomas Carper, D-Del.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2010-5110
Published: 2014-08-29
DCTStream.cc in Poppler before 0.13.3 allows remote attackers to cause a denial of service (crash) via a crafted PDF file.

CVE-2012-1503
Published: 2014-08-29
Cross-site scripting (XSS) vulnerability in Six Apart (formerly Six Apart KK) Movable Type (MT) Pro 5.13 allows remote attackers to inject arbitrary web script or HTML via the comment section.

CVE-2013-5467
Published: 2014-08-29
Monitoring Agent for UNIX Logs 6.2.0 through FP03, 6.2.1 through FP04, 6.2.2 through FP09, and 6.2.3 through FP04 and Monitoring Server (ms) and Shared Libraries (ax) 6.2.0 through FP03, 6.2.1 through FP04, 6.2.2 through FP08, 6.2.3 through FP01, and 6.3.0 through FP01 in IBM Tivoli Monitoring (ITM)...

CVE-2014-0600
Published: 2014-08-29
FileUploadServlet in the Administration service in Novell GroupWise 2014 before SP1 allows remote attackers to read or write to arbitrary files via the poLibMaintenanceFileSave parameter, aka ZDI-CAN-2287.

CVE-2014-0888
Published: 2014-08-29
IBM Worklight Foundation 5.x and 6.x before 6.2.0.0, as used in Worklight and Mobile Foundation, allows remote authenticated users to bypass the application-authenticity feature via unspecified vectors.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
This episode of Dark Reading Radio looks at infosec security from the big enterprise POV with interviews featuring Ron Plesco, Cyber Investigations, Intelligence & Analytics at KPMG; and Chris Inglis & Chris Bell of Securonix.