Get the latest tech news

Summary of the USA federal government's zero-trust memo


An overview of the U.S. Government’s mandate towards zero trust cybersecurity principles and the impact it will have on the private sector.

The memo is a reaction to 2020’s SolarWinds incident and 2021’s Colonial Pipeline rasomware attack, and advises the Federal Government on what steps each agency must take to improve its cybersecurity. “discontinue support for protocols that register phone numbers for SMS or voice calls, supply one-time codes, or receive push notifications''. But the memo also dismisses the popular one-time code approaches like the TOTP protocol (the Google Authenticator on your phone), which is basically the state of the art for SaaS business everywhere.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of summary

summary

Photo of USA

USA

Photo of Federal government

Federal government

Related news:

News photo

Heavy metal analysis of dark chocolate and cocoa products in the USA

News photo

I mapped almost every USA traffic death in the 21st century

News photo

A search engine by and for the federal government