Chris Inglis’ new White House office has a startup feel to it. There are desks, a few chairs, a coffee maker and a poster hanging on the wall.  But as the head of the newly established Office of the National Cyber Director, Inglis has to make due with what he has while still advising President Joe Biden on the smartest ways for the US to prevent and respond to cyberattacks.

Inglis has already had numerous conversations with the president, who has made clear that the government has a role to play in the defense of the private sector and in assisting the private sector in defending critical infrastructure.  And the president knows, says Inglis, that means the government needs to get its own cyber house in order. 

But like any real startup, Inglis’ resources are scarce.  More than three months after being confirmed by the Senate, he still doesn’t have the full staff he needs to take on his timely and critical mission.  That’s because the funding for his office – some $21 million, part of the $1 trillion infrastructure bill making its way through Congress – is still stuck in the political spin cycle.  Why does it matter?

“The threat is greater than I can ever remember,” Inglis told me during last month’s AFCEA and INSA Intelligence & National Security Summit in National Harbor, Maryland. “The audacity, the brazenness, the thresholds that have been crossed at every turn; we’re in a difficult place.”

While he’s waiting for Congress to act, he says he’s spending about fifty percent of his time defining his role, being careful not to duplicate the work already being done by other agencies and departments, while spending another fifty percent building relationships that will be important later.  Eventually, he’s expected to have a staff of some 75 people who will be expected to work hand in glove with CISA, the National Security Council’s cyber staff, the OMB and others.  The remaining fifty percent of his time, Inglis jokes, is spent figuring out how to attract the country’s best talent.   

“People are starting to flow into the organization. I’m confident that we’re coming up to a breakout moment, not for the National Cyber Director, but the contribution that we can and should make. I’m sobered by the nature of the challenge, I’m optimistic we can make a difference.”

Optimistic he is.  And he’s not even complaining about being given a critical task for US national security and then having to wait for politics to play out before being able to act on it.

“It has been a semi-silver lining in that we would not have had time to think about how we want to apply the resources coming our way.”

While Inglis has been waiting, he and his small team have had time to think about the four things they’d like to focus on right away. 

First, is streamlining the roles and responsibilities in government of who handles what when it comes to protecting the public and private sectors from cyberattacks.  He also spoke during his confirmation hearing about the importance of allocation of resources and while the Office of the National Cyber Director doesn’t have the authority to move money, it does have what Inglis calls the responsibility to account for cyber money.

“One of the most critical gaps in cyber is that the physical digital infrastructure is not built to a common standard. The executive order related to this requires that within a certain amount of time we have to install basic procedures like multifactor authentication and encryption of stored material. That is a challenge and a potential vulnerability for us. We need to make sure that we make these investments necessary to buy down the lack of investment for years.

The second gap is in talent related to number of people required to occupy these jobs. It’s not simply the folks with IT or cyber in their name, but general cyber awareness. There is some expenditure of resources of time, attention, and money to get awareness right on the part of the truly accountable parties like agency and department heads. We have to make sure they don’t see cyber as a cost center, but an enabler on the part of all the users as they understand what their roles are and what the accountability is.

He admits there is still a level of education needed within government to get there.

That is usually the case in both the government and the private sector,” he said.  “We need to think this way about cyber and invest in cyber so that we can enable the mission, not hold it back. I think that education is the most important and effective way to handle this. Then, it is to make sure that the accountability is aligned and harmonized. We tend to take risk in one place and expect someone in another place to be the mitigator of a risk they don’t understand was taken in the first place. We need to operate in a collaborative fashion and get away from divisions of effort which are an agreement not to collaborate and allow adversaries to pick us off one at a time.”

Inglis says that unity of effort must start at home.  “The executive order issued in May has begun to lay out common expectations about the hardware, software, and practices that we need to begin in those spaces,” he said.  “Externally, if we have sector risk management agencies who engage the private sector for the purposes of supporting and engaging the critical components of that infrastructure, we need to make sure you don’t need a Ph.D. in government to know who to deal with and what you’re going to get from them.”

He is arguing for the government to also put ‘valuable material’ on the table.  “That could be our convening power,” said Inglis. “We could perhaps address and reduce liability or give companies a clue as to what might be around the corner because the government has access to exquisite intelligence. If that setup is possible, we also need a venue where collaboration takes place. Information doesn’t collaborate, people do.”

Inglis likes to point to the example of CISA and the Joint Cyber Collaborative.  “They put people from the private sector and the public sector side by side to co-discover threats that hold us at common risk. That project sets up the possibility of implicit collaboration in what we then do with that common operational picture. The government could take ideas that private sector companies turn into proprietary systems and enrich and classify them to deal with it in their system.”

Using what he calls “all the tools in the toolkit,” Inglis also notes the importance of international relationships, which fits nicely into the White House’s International Summit on Ransomware last week in Washington, which zeroed in on tighter cryptocurrency standards, among other things. “Beyond the Five Eyes, what do other like-minded nations think about what is expected behavior in this? What are governmental actions that are appropriate,” he asked.  

Inglis has been an active participant in the president’s recent actions in cyber.  He took part in a White House meeting with tech leaders in August that was hosted by President Biden, who Inglis says, spent the first hour sharing his vision about how the country should focus on collaborative integration.  “The companies represented weren’t only companies like Microsoft and Apple, but people who operate in the critical infrastructure space,” said Inglis.  “The people component, educators, were represented reflecting the president’s view that cyberspace is not just technology, it is also the people component. They are a major link in the chain, and we need to get the roles and responsibilities right.”

While he’s waiting for the funding he needs to get his office fully staffed, Inglis said he’s also putting thought into reconciling resources with aspirations.  Managing expectations is going to be important.  Frustration has been growing for years over what some see as a lack of government response to some of the largest hacks in history.  The phrase ‘time and place of our choosing’ as a definition of response has grown old and some Americans are weary of a government that isn’t responding in a more public way to the beating it sees the US taking in cyberspace.

So, I asked Inglis whether there should be red lines in cyber.

“Red lines are both good and bad,” he answered.  “They are clear and crisp, and everybody knows what they are. The downside is that because of that, an adversary knows exactly how far they can go. It means that you set up a somewhat permissive environment. Red lines also don’t have context; sometimes there is a reason that a defender would make the ransomware payment. As a matter of policy, the U.S. government does not pay ransomware, but I imagine there will be a situation at some point where a hospital is against the Russian state and actual life and safety is at risk. If there is no other way to get the material back, in order to get back in the business of saving lives, they would want to rethink if a red line is a red line in that particular situation. I think the right thing to do here is not to establish hard thresholds of things with scripted responses, but outline what we are prepared to defend and what principles we will exercise in defense of those things. We commit to defending the private sector when it is held at risk by a nation state in cyberspace as much as in the kinetic space and make that clear to adversaries. I think that would be more helpful in changing decision calculus and creating a useful ambiguity about when and where we will come in.”

Inglis said he’s also thinking a lot about present and future resilience.  It’s a worthwhile focus, given that the White House estimates that nearly half a million public and private sector cybersecurity jobs are currently unfilled. 

“That is a massive problem,” said Inglis. “However, the more insidious problem is that the 320 million people in the United States who use the internet who have no idea how to properly take their place on the front lines of this issue. There is an awareness issue that requires us not to make Python programmers out of them but to make sure they understand the nature of this space.”

Everyone has heard the old saying that time is money, but in Inglis’ case, time is security so I asked him point blank whether he thought government was moving has quickly as it should on the cyber problem.

“Government is moving at speed; the question is if it is at the necessary speed. I don’t think anyone is moving at the necessary speed. Some are moving at light speed, but at the end of the day, we need an integrated, collaborative approach. While we won’t have unity of command, I think there needs to be a universally felt sense of urgency so that we will all get our heads in the game.”

Congress, are you listening?  Oh, and by the way, that poster in Inglis’ office? It reads, ‘Hours Since the Last Surprise.”

As a startup with maybe too few resources at the start and who often didn’t understand how all the wickets are run, we have our occasional surprise,” said Inglis.  “When we encounter those surprises and go to someone with the deep and sharp expertise to help us navigate that, we get what we need. However, we are not a full functioning, full featured, fully capable organization yet. We’re trying to build somebody else’s airplane while we’re free falling from our own. We have a parachute, and we can land safely, but it is a bit of a challenge at times.”

Find out more about why experts like former NSA Director General Keith Alexander (Ret.), Mandiant CEO Kevin Mandia and others have joined The Cyber Initiatives Group, powered by The Cipher Brief

Read more expert national security insights, perspective and analysis in The Cipher Brief

The post Chris Inglis and the Gathering Cyber Storm appeared first on The Cipher Brief.

find more fun & mates at SoShow now !

Controversial psychologist and author Jordan Peterson claimed Western countries had no “moral right” to force developing nations to reduce pollution output, noting instead that improving their economies was key.

During an appearance on the BBC’s ‘Question Time’ show on Thursday, the Canadian professor noted that the focus of climate change policies should be on incentivizing the development of cheap energy in poorer polluter countries.

“The best long term solution is to try to make developing countries as rich as possible, and the best way to do that is not control their pollution output, but to help them develop the cheapest energy they can possibly manage as fast as they possibly can,” Peterson said.

The debate saw UK undersecretary for employment Mims Davies suggest that measures taken to tackle climate change should not come at the “expense of developing countries.” But Peterson countered that it “absolutely, 100% will be [at their expense].”

I don’t think we have any moral right in the West at all to do that.

Read more

FILE PHOTO: Jordan Peterson speaking with attendees at the 2018 Student Action Summit hosted by Turning Point USA in West Palm Beach, Florida, December 20, 2018 © Flickr / Gage Skidmore
Jordan Peterson hammers ‘totalitarian’ Covid rules

He also criticized the recent COP26 climate change conference for failing to explore ideas on how best to improve national economies in the developing world, noting that he saw “very little of that sort of idea” coming out of the UN summit.

In the final hours of the two-week conference, China and India had intervened to soften the wording around the use of coal in the Glasgow Pact. The two countries demanded a change in the final text of the agreement that called for coal to be phased out, revising this to “phasing down unabated coal.”

The move prompted COP26 president and UK minister Alok Sharma to declare that China and India would have to “justify” their actions to countries that were more vulnerable to global warming effects. However, officials in both Beijing and New Delhi have countered that the criticism was unfair.

If you like this story, share it with a friend!

find more fun & mates at SoShow now !

Scientists have used an AI tool to identify which animals are most likely to contract and spread mutated versions of Covid-19. The model highlighted both pets and wild animals as likely reservoirs for the virus.

Using information about their habitats and various biological traits, researchers at the Cary Institute of Ecosystem Studies in New York developed the machine learning tool to figure out which animals had the particular ACE2 protein that the coronavirus was most likely to latch onto. 

Out of 5,400 tested, the scientists narrowed it down to 540 mammalian species.

Some of its predictions have been previously documented as transmission risks, for instance, dogs, cats and bats, while farm animals like pigs and exotic zoo animals were surprise additions.

Read more

FILE PHOTO: People cross the tarmac of the airport in front of the Rock of Gibraltar in the British Overseas territory of Gibraltar, June 24, 2021 © Reuters / Jon Nazca
‘Most vaccinated’ place on earth cancels Christmas

Other expected additions are minks, Sunda pangolins, and 35 species of bats – which are together ranked among the top 10% of animals most likely to spread the virus, in line with lab results. 

The study, published in the Proceedings of the Royal Society journal, also ranked water buffalo, a number of primates, including gorillas and 76 rodent species as being more susceptible to infection.

The researchers taught the AI to identify patterns between rates of transmission and some 60 ecological and biological traits collected by earlier studies, including the overlap between the animal and human habitats as well as their respective lifespans, diets, and sizes.

Previously, the specific amino acid sequences had only been mapped out in around 300 species, including about 143 mammals — and figuring out which ones are more prone to infection is key to predicting the spread of the virus, researchers said.

Arinjay Banerjee at the University of Saskatchewan in Canada told the New Scientist that the results will help researchers “track viral infections and the possible emergence of animal-adapted coronavirus variants” around the world. Barbara Han, who led the study, said predictions needed to be followed up with systematic surveillance and lab studies.

Think your friends would be interested? Share this story!

find more fun & mates at SoShow now !

Behind the Headlines brings you expert perspectives on today’s headlines by telling you more than what happened, but also what it means.  You can also listen to The Cipher Brief’s Daily Open-Source Collection Podcast wherever you listen to podcasts.

Jack Devine, Former Acting Director, National Clandestine Service, CIA

Cipher Brief Expert Jack Devine, a 32-year CIA veteran. Devine served as both Acting Director and Associate Director of CIA’s operations from 1993-1995.  He is a founding partner and President of The Arkin Group, which specializes in international crisis management, strategic intelligence and investigative research. Devine is the author of Spymaster’s Prism: The Fight Against Russian Aggression.

Russia’s multi-pronged support of Myanmar is a microcosm of its strategy in Southeast Asia.

In the months since Myanmar’s February military coup, Russia and China have been the junta’s most powerful allies, but Russia has exploited regional instability to position itself as a third path between China and the West. While China was closer with the former Myanmar government than the military, it was also concerned about the government’s ties with the West and potential interference in its development efforts, particularly its Belt and Road Initiative. Russia, on the other hand, doesn’t depend on stability in Southeast Asia to the same degree as China and can instead take advantage of warring factions. Last month, on his first trip outside of the immediate region since February, Myanmar’s junta leader Min Aung Hlaing went to Moscow to meet with high-level Russian defense officials instead of heading to Beijing. Hlaing has reportedly visited Russia seven times within the past decade and previously stated that over 6,000 Myanmar officers have studied at Russian military academies. According to data from the Stockholm International Peace Research Institute (SIPRI), Russia was responsible for almost 40% of arms sales to Myanmar from 1999-2018, second only to China. SIPRI data further indicates that Russia has been Southeast Asia’s largest arms supplier over the past two decades, counting Vietnam and Laos as top customers. But Russia is offering the region more than arms and has promised Myanmar two million Covid-19 vaccines and assistance in the nation’s own vaccine production efforts. Russia has also been trying to expand free trade agreements between its Eurasian Economic Union (EAEU) and Southeast Asian countries, most recently getting Indonesia to sign on to the deal. Stepping even further into soft power efforts, last week Russia’s foreign minister met with his Bangladeshi counterpart and agreed to encourage Myanmar to engage in dialogue with Bangladesh on the Rohingya crisis.


Get your free daily Open-Source Collection report in The Cipher Brief newsletter or take it on the go as a podcast.  Listen here or wherever you listen to podcasts.


Leftist, former schoolteacher Pedro Castillo is declared President of a divided Peru, projected economic growth could play in his favor. 

Peru, like many of its neighbors, has been battling the triple and interwoven threat of Covid-19, social unrest, and severe economic downturn. But for the past several years Peru has also been challenged by sharp divisions between its executive and legislative powers. Last November, Peru’s unicameral legislature voted to impeach then-President Martín Vizcarra, citing mismanagement of the pandemic and corruption, in a move that outraged thousands. The June presidential elections were likewise fraught. Castillo’s right-wing rival Keiko Fujimori, who is also under investigation for corruption, alleged electoral fraud and the Peruvians initiated a six-week long investigation, eventually finding Castillo the rightful victor. The EU, U.S. and 14 electoral missions deemed the elections legitimate, and the U.S. called the election a “model of democracy” for the region. Castillo, who previously worked as an elementary school teacher and has never held public office, will be greeted by a political establishment that is almost entirely against him. Peruvian citizens are also deeply divided, and many urban elites reportedly moved their money overseas out of fear for Castillo’s economic policies. But Castillo’s Peru Libre party holds fewer than 40 of 130 seats in the legislature and Castillo has already recruited several moderate advisors. Further, he has backed away from talk of nationalizing Peru’s lucrative multinational mining, oil, gas, and hydrocarbon companies, instead pledging to raise taxes on mining firms. Prices of copper and gold, two of Peru’s most critical exports, remain high and Covid-related trade obstacles are expected to ease over the coming months. While it is uncertain how effective Castillo will be, or where he will ultimately fall on his policies, positive projections for Peru’s export-based economy will likely play in his favor.


The Cipher Brief hosts private briefings with the world’s most experienced national and global security experts.  Become a member today.


Enjin becomes first blockchain platform to gain acceptance into the United Nations Global Compact, signaling widespread range of corporate sustainability efforts.

On Tuesday, Enjin, an innovative blockchain technology company focused on non-fungible tokens (NFTs), became the first such company to join the United Nations Global Compact. Upon admission, Enjin stated that it hopes to use NFTs to promote sustainability and equality in line with the UN pact that encourages businesses and firms worldwide to adopt more environmentally friendly and socially responsible practices. NFTs have surged in popularity in the past two years, and during the first quarter of 2021 NFT sales reportedly exceeded US $2 billion. In essence, an NFT is a way to prove ownership of a unique virtual item. It’s a unit of data that’s stored on a blockchain, or digital ledger, that certifies exclusive ownership of digital files ranging from photos to sports trading cards. Enjin, which is headquartered in Singapore, has focused its NFT efforts on games and apps and is reportedly able to operate with a lower carbon footprint than Bitcoin due to a slimmed-down verification model that requires less energy. This week, the UN Global Compact not only included Enjin as a member, but gave the company its highest membership rank, sending a signal that it’s interested in promoting such an environmental effort by crypto and blockchain entrepreneurs. For its part, Enjin has stated that it wants to employ the technology in carbon capture companies, fighting climate change in the process. The Head of the UN AI and Robotics Center remarked that during the global struggle to recover from the pandemic we should take advantage of new technologies like AI and blockchain to better equip ourselves for the future.

Read more expert-driven national security insights, perspective and analysis in The Cipher Brief

 

The post Behind the Headlines: Russia in Myanmar, Peru’s New President and what Enjin means for the United Nations Global Compact appeared first on The Cipher Brief.

find more fun & mates at SoShow now !

Hard-line cleric Ebrahim Raisi won Iran’s presidential election on Saturday in a move that is expected to bolster the conservative legacy of the country’s supreme leader, Ayatollah Ali Khamenei.

The decision is not expected to derail ongoing negotiations aimed at restoring the Joint Comprehensive Plan of Action (JCPOA) nuclear deal, even though Mr. Raisi himself is under US sanctions over accusations of human rights abuses.  Many voters stayed away from the polls as the outcome had been predicted for months with many progressive candidates barred from running.

The Islamic Republic has entered a post-revolutionary dynamic in which a fading revolutionary generation seeks to ensure that the rising political leadership sustains their revolutionary ideals,” says Norman T. Roule, former National Intelligence Manager for Iran at ODNI and Cipher Brief Expert. “The regime’s decision to bar so many candidates and the low turnout make this election a historic embarrassment for the regime and its supporters.”

The Cipher Brief talked with Roule about what the election means and what it doesn’t mean when it comes to relations with the west, the progressive movement within Iran and the election’s impact on the oil markets.


“The Cipher Brief has become the most popular outlet for former intelligence officers; no media outlet is even a close second to The Cipher Brief in terms of the number of articles published by formers.” – Sept. 2018, Studies in Intelligence, Vol. 62 No.

Access all of The Cipher Brief’s national-security focused expert insight by becoming a  Cipher Brief Level I Member .  

 

 

The post What Iran’s Election Tells Us About Where It’s Headed appeared first on The Cipher Brief.

find more fun & mates at SoShow now !

Nadya Zafira, an international relations student at Indonesia’s Gadjah Mada University, won a writing competition for her letter to UN chief António Guterres, in which she addressed the inequalities laid bare by the COVID-19 pandemic, and how indigenous communities and youth are marginalized in global conversations on climate crisis.

Read the full story, “First Person: ‘Bridge the gap between indigenous youth and the world’”, on globalissues.org

find more fun & mates at SoShow now !

France shouldn’t remain silent on Julian Assange, leftist leader Jean-Luc Melenchon has said, after the imprisoned WikiLeaks co-founder’s father suggested that Paris could offer asylum to his son.

The life of Assange – who is being held in solitary confinement at London’s Belmarsh maximum security prison while a British court considers an extradition request by the US – is under threat, Melenchon wrote on Twitter on Tuesday.

“For years, we’ve been calling for France to accept him,” the head of the leftist La France Insoumise (France Unbowed) party said, insisting that “France shouldn’t remain silent.”

The statement by Melenchon, who won 19.6% of the ballot in the first round of the French presidential election in 2017, follows a visit by Assange’s father, John Shipton, to the Whistleblower Meeting in Paris on Monday.

During the event, Shipton told Sputnik news agency that it would be “an honorable thing” for the French government to grant his son asylum. 

“I feel that France hasn’t attacked Julian over the last 12 years and consequently France is free to act in return for the information that WikiLeaks and Julian brought to France,” he said, referring to the website’s revelations of the US intelligence agencies spying on French presidents and hacking into local banks.

Several dozen French lawmakers have also recently called upon Paris to take Assange in, with the Australian-born publisher’s legal team saying last year that their client was hoping to find asylum on French soil.

Read more

FILE PHOTO: Julian Assange and partner Stella Moris are seen in an undated photo shared by Moris on social media November 11, 2021.
UK caves, allows Assange to get married in jail

Assange could face up to 175 years behind bars if he’s extradited to the US, where he’s wanted on espionage charges over the release by WikiLeaks of classified documents on Iraq, Afghanistan, Guantanamo Bay, and others.

He was placed in Belmarsh in April 2019 over breach of bail, after being holed up in the Ecuadorian Embassy in London for seven years.

The publisher had been fleeing an arrest warrant issued over sexual assault allegations which he has always denied, and which failed to result in any actual charges due to lack of evidence.

Assange’s supporters insist that he has actually been persecuted over his legitimate journalistic activities and revealing the truth to the public.

The UK High Court is expected to rule on the appeal by the US against a lower court decision to bar the WikiLeaks co-founder’s extradition to America due to the 50-year-old’s poor health condition and risk of suicide.

Assange’s team will then be able to challenge the ruling in the Supreme Court if it’s not favorable.

Think your friends would be interested? Share this story!

find more fun & mates at SoShow now !

Talk about a gift that keeps on giving; each month reveals yet another beautiful pooch answering nature’s call. Also important: $1 from each “Pooping Pooches 2022” calendar is donated to the Maui Humane Society to support animals in need. This tasteful calendar is available on Etsy and Amazon, but you can also get 500 piece jigsaw puzzle for those long, dark winter evenings!

Pooping Pooches 2022 calendar.

Pooping Pooches 2022 calendar.

Pooping Pooches 2022 calendar.

Pooping Pooches 2022 calendar.

Pooping Pooches 2022 calendar.

Pooping Pooches 2022 calendar.

Pooping Pooches 2022 calendar.

Pooping Pooches 2022 calendar.

Pooping Pooches 2022 calendar.

Pooping Pooches 2022 calendar.

Pooping Pooches 2022 calendar.

Pooping Pooches 2022 calendar.

Pooping Pooches 2022 calendar.

This year’s latest addition is a 500 piece jigsaw puzzle which can also be purchased on Amazon (not suitable for babies and individuals who have a tendency to put things in their mouth and potentially choke on the pieces).

Pooping Pooches jigsaw puzzle.

Pooping Pooches jigsaw puzzle.

Just like the calendar, every puzzle sale will also contribute to Maui Humane Society to help animals in need (one poop at a time).

Pooping Pooches helps animals in need.

Anyways, if pooping dogs is something you would like to look at for a whole year, you can get this calendar on Etsy or Amazon.

The post 2022 Pooping Dogs Calendar Is Here! (Now With a Puzzle) first appeared on .

find more fun & mates at SoShow now !

A gunman injured two civilians, one of them fatally, and two police officers before being shot dead by security forces near Jerusalem’s Western Wall on Sunday morning, Israeli police said.

The civilian victims were taken to Shaare Zedek Medical Center. One, who was in his 30s, succumbed to his injuries at the hospital. The other, a 46-year-old, is said to have suffered moderate injuries. Two police officers were hurt by shrapnel.

In a video clip shared on social media and purportedly filmed at the scene, multiple gunshots could be heard amid agitated shouting. Security officers could then be seen standing around what appears to be a dead body. Witnesses speculated it was that of a “terrorist.”

The gunman, whose identity was not immediately disclosed, was killed during the incident. Police said he had used a homemade submachine gun.

DETAILS TO FOLLOW

find more fun & mates at SoShow now !