Congressional Sledgehammer Drops On DHS Cyber Insecurity
Client Alert | 1 min read | 09.27.07
Following a series of tough investigations and oversight hearings on cybersecurity in April and June with more to come, the House Homeland Security Committee dropped the hammer on DHS and its contractors in a letter on September 21, 2007, finding that cyber attacks on federal and contractor IT systems "have resulted in the loss of massive amounts of critical information," characterizing DHS and contractor responses as "misleading" and subject to potential criminal penalties under 18 U.S.C. 1001, and demanding a DHS IG investigation -- and referral for "criminal investigation" if appropriate. With contractors operating over 1,100 federal IT systems subject to the Federal Information Security Management Act (FISMA), future security breaches virtually assure Congressional investigations, as the Homeland Security Committee promised: "The Committee will continue to investigate security breaches, particularly those occurring among commercial contractors."
Insights
Client Alert | 6 min read | 09.11.26
It’s LIVE: The Cyber Resilience Act Reporting Is Mandatory as of Today - 11 September 2026
The wait is over. As of today, manufacturers of connected products (both hardware and software) must comply with the Cyber Resilience Act’s (“CRA”) vulnerability and incident reporting obligations. The CRA’s Single Reporting Platform (“SRP”), operated by the European Union Agency for Cybersecurity (“ENISA”), is now the EU-wide gateway through which those notifications must flow.
Client Alert | 10 min read | 09.11.26
Mining, Indigenous Consultation Rights, and Investment Treaty Protection
Client Alert | 2 min read | 09.11.26
New ISOO Guidance Directs Federal Agencies to Provide More CUI Guidance to Contractors
Client Alert | 4 min read | 09.10.26
European Commission Publishes Landmark Guidelines on Exclusionary Abuses by Dominant Companies
