Risk

10/6/2010
08:24 PM
Connect Directly
Twitter
RSS
E-Mail
50%
50%

Inside DHS' Classified Cyber Coordination Headquarters

The Department of Homeland Security recently brought its classified National Cybersecurity and Communications Integration Center down to an unclassified level for one day only, and InformationWeek Government was there to take photos. The facility looks and functions like a state-of-the-art network operations center and much more. The NCCIC, as it's called, is the locus of DHS-led inter-agency cybersecurity work in the federal government. That includes providing an integrated response to cyber th
Previous
1 of 11
Next


Typically, the National Cybersecurity and Communications Integration Center, the agency's hub for coordinated responses to cyber attacks, is a classified facility, residing several floors above a chain restaurant in a non-descript Arlington, Va., office building. Visitors to the Department of Homeland Security facility are required to go through several layers of security before they can actually enter the office space, including locking up their cell phones in tiny lockers. But for one day only, the DHS brought the NCCIC offices down to an unclassified level and InformationWeek Government was there to take photos.

The occasion for DHS briefly opening the doors of NCCIC to reporters was a preview of Cyber Storm III, an international, coordinated cybersecurity simulation that entailed mock attacks on the Internet's domain name system. The exercise tested both the draft National Cyber Incident Response Plan, an effort to provide a coordinated response to major cybersecurity incidents NCCIC. The large-scale exercise included representatives from seven cabinet-level federal departments, intelligence agencies, 11 states, 12 international partners and 60 private sector companies in multiple critical infrastructure sectors like banking, defense, energy and transportation. Though the facility may have been brought down to an unclassified level for the event, we were still warned against taking pictures of cyber-analysts' faces, photos of physical security sensors on the walls and ceilings, and wandering off into areas of the facility where classified work might still be going on.

SEE ALSO:

DHS Launches Cyber Attack Exercise

Next Generation Defense Technologies

NSA Official Says Cybersecurity Starts At The Top

Previous
1 of 11
Next
Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
More Than Half of Users Reuse Passwords
Curtis Franklin Jr., Senior Editor at Dark Reading,  5/24/2018
Is Threat Intelligence Garbage?
Chris McDaniels, Chief Information Security Officer of Mosaic451,  5/23/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: This comment is waiting for review by our moderators.
Current Issue
Flash Poll
[Strategic Security Report] Navigating the Threat Intelligence Maze
[Strategic Security Report] Navigating the Threat Intelligence Maze
Most enterprises are using threat intel services, but many are still figuring out how to use the data they're collecting. In this Dark Reading survey we give you a look at what they're doing today - and where they hope to go.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-11505
PUBLISHED: 2018-05-26
The Werewolf Online application 0.8.8 for Android allows attackers to discover the Firebase token by reading logcat output.
CVE-2018-6409
PUBLISHED: 2018-05-26
An issue was discovered in Appnitro MachForm before 4.2.3. The module in charge of serving stored files gets the path from the database. Modifying the name of the file to serve on the corresponding ap_form table leads to a path traversal vulnerability via the download.php q parameter.
CVE-2018-6410
PUBLISHED: 2018-05-26
An issue was discovered in Appnitro MachForm before 4.2.3. There is a download.php SQL injection via the q parameter.
CVE-2018-6411
PUBLISHED: 2018-05-26
An issue was discovered in Appnitro MachForm before 4.2.3. When the form is set to filter a blacklist, it automatically adds dangerous extensions to the filters. If the filter is set to a whitelist, the dangerous extensions can be bypassed through ap_form_elements SQL Injection.
CVE-2018-11500
PUBLISHED: 2018-05-26
An issue was discovered in PublicCMS V4.0.20180210. There is a CSRF vulnerability in "admin/sysUser/save.do?callbackType=closeCurrent&navTabId=sysUser/list" that can add an admin account.