NSA Proposes Backdoor Detection CenterAccording to a story in The Register today, the National Security Agency’s cybersecurity chief Daniel Wolf is calling on the U.S. Congress to fund a new National Software Assurance Center dedicated to developing advanced techniques for detecting backdoors and logic bombs in large software applications. Wolf, declaring hidden malware to be “a growing threat,” bemoaned an absence of tools capable of scouring program source code and executables for evidence of tampering. In prepared testimony Wolf proposed a federally funded think-tank that would include representatives from academia, industry, government, national laboratories and the national security community, all working together and sharing techniques.Floridas MATRIX Raises Privacy ConcernsGainesville Sun, law enforcement officials say MATRIX will speed up criminal investigations by allowing police to perform quicker searches of information that is already publicly available. But critics say the system would allow police to assemble electronic dossiers on every Floridian, even those not suspected of crimes. The project is funded by a $4 million grant from the U.S. Department of Justice, and organizers expect another $8 million from the Department of Homeland Security. Twelve other states have signed up to add their records to the MATRIX database. The Sun says Florida officials counter criticism that the program is like the once proposed but now dropped Total Information Awareness program in that it doesnt include data mining.The Florida Department of Law Enforcement is putting together a computer network called Multistate Anti-Terrorist Information Exchange, or MATRIX that would allow police to analyze government and commercial records on every Florida resident, and the agency is planning to share that information with police in at least a dozen other states. According to the U.S. Scrambles for a System to Check ForeignersDenver Post, a system to track foreign visitors as they enter and leave the country, which Congress has ordered to be up and running by year’s end, is far from ready. Transportation Secretary Asa Hutchinson says the system will be ready, but critics accuse the government of rushing to implement new controls, warning that a poorly designed system could clog airports, costing millions and even hurting security. The plan is for government agents to photograph and fingerprint the estimated 28 million foreign visitors who enter the country each year. Agents would cross-check their identities against terrorist watch lists. Even more notably, government inspectors would for the first time check out visitors when they leave. According to a story in todays Lawyers Pressed to Give Ground on Client SecretsNew York Times says that government regulators and prosecutors, impelled by a wave of corporate scandals, tax evasion and concerns over terrorism, have taken steps that seek to limit what some lawyers say is a core principle of their profession: the ability to protect their clients’ confidences. But even the American Bar Association seems prepared to cede some ground on the issue, and will consider changes to its model code of conduct. The SEC, IRS, Federal Trade Commission and Justice Department have all adopted separate rules for greater lawyer disclosure, but without working in concert. As the Times reports, each agency is reacting to a different crisis but the overall result is worrying to many lawyers and law professors. A story in todays Related content news analysis Companies are already feeling the pressure from upcoming US SEC cyber rules New Securities and Exchange Commission cyber incident reporting rules don't kick in until December, but experts say they highlight the need for greater collaboration between CISOs and the C-suite By Cynthia Brumfield Sep 28, 2023 6 mins Regulation Data Breach Financial Services Industry news UK data regulator warns that data breaches put abuse victims’ lives at risk The UK Information Commissioner’s Office has reprimanded seven organizations in the past 14 months for data breaches affecting victims of domestic abuse. By Michael Hill Sep 28, 2023 3 mins Electronic Health Records Data Breach Government news EchoMark releases watermarking solution to secure private communications, detect insider threats Enterprise-grade software embeds AI-driven, forensic watermarking in emails and documents to pinpoint potential insider risks By Michael Hill Sep 28, 2023 4 mins Communications Security Threat and Vulnerability Management Security Software news SpecterOps to use in-house approximation to test for global attack variations The new offering uses atomic tests and in-house approximation in purple team assessment to test all known techniques of an attack. By Shweta Sharma Sep 28, 2023 3 mins Penetration Testing Podcasts Videos Resources Events SUBSCRIBE TO OUR NEWSLETTER From our editors straight to your inbox Get started by entering your email address below. Please enter a valid email address Subscribe