NSA News & Highlights

Sept. 21, 2023

GEN Nakasone Offers Insight into Future of Cybersecurity and SIGINT

GEN Paul M. Nakasone, Commander of U.S. Cyber Command (USCYBERCOM), Director of NSA, and Chief of the Central Security Service (CSS), offered insight into what the future of cybersecurity and signals intelligence may look like during a conference in Washington earlier this month.

Sept. 12, 2023

NSA, U.S. Federal Agencies Advise on Deepfake Threats

The National Security Agency (NSA) and U.S. federal agency partners have issued new advice on a synthetic media threat known as deepfakes. This emerging threat could present a cybersecurity challenge for National Security Systems (NSS), the Department of Defense (DoD), and DIB organizations.

Aug. 31, 2023

Government Agencies Report New Russian Malware Targets Ukrainian Military

U.S. federal agencies and international partners published a report warning of a new malware campaign from Russian military cyber actors known publicly as Sandworm.

Aug. 30, 2023

The National Security Agency Announces Ms. Wendy Noble as 20th Deputy Director

Today, the National Security Agency (NSA) announced that the Secretary of Defense has designated and President Joseph R. Biden, Jr., has approved Ms. Wendy Noble to serve as NSA's 20th Deputy Director and senior civilian leader, becoming the third woman in the 70-plus history of NSA to hold this position.

Aug. 21, 2023

Post-Quantum Cryptography: CISA, NIST, and NSA Recommend How to Prepare Now

The National Security Agency (NSA), Cybersecurity and Infrastructure Security Agency (CISA), and National Institute of Standards and Technology (NIST) warned that cyber actors could target our nation’s most sensitive information now and leverage future quantum computing technology to break traditional non-quantum-resistant cryptographic algorithms. This could be particularly devastating to sensitive information with long-term secrecy requirements.

Aug. 3, 2023

CISA, NSA, FBI and International Partners Issue Advisory on the Top Routinely Exploited Vulnerabilities in 2022

The “2022 Top Routinely Exploited Vulnerabilities” CSA provides details on the top Common Vulnerabilities and Exposures (CVEs) routinely exploited by malicious cyber actors who continue targeting unpatched systems and applications – all known vulnerabilities from 2017 to 2022 that have not been mitigated.

Aug. 2, 2023

NSA Releases Guide to Harden Cisco Next Generation Firewalls

The National Security Agency (NSA) has released a new Cybersecurity Technical Report (CTR) “Cisco Firepower Hardening Guide,” to assist network and system administrators with configuring these next generation firewalls (NGFWs).

July 27, 2023

New Cybersecurity Advisory Warns About Web Application Vulnerabilities

The National Security Agency (NSA) has partnered with U.S. and international cyber agencies to release the Cybersecurity Advisory (CSA), “Preventing Web Application Access Control Abuse,” warning that vulnerabilities in web applications, including application programming interfaces (APIs), can allow malicious actors to manipulate and access sensitive data.

July 24, 2023

National Security Agency Director Appoints Nisha Morris as Chief, Strategic Communications

General Paul M. Nakasone, Director of the National Security Agency, announced today that Nisha Morris has been appointed as the NSA's Chief, Strategic Communications and Senior Executive Advisor to the Board of Directors. Morris will establish the overall communication vision and strategy for the Agency, and will be responsible for leading a global workforce of communications professionals focused on building public trust and confidence in NSA.

July 17, 2023

ESF Members NSA and CISA Publish Second Industry Paper on 5G Network Slicing

Today, Enduring Security Framework (ESF) partners the National Security Agency (NSA) and Cybersecurity and Infrastructure Security Agency (CISA) published an assessment of 5G network slicing. ESF, a public-private cross-sector working group led by NSA and CISA, identifies three keys for keeping this emerging technology secure: Security Consideration for Design, Deployment, and Maintenance.