Deleted tweet detection is currently running at reduced
capacity due to changes to the Twitter API. Some tweets that have been
deleted by the tweet author may not be labeled as deleted in the PolitiTweet
interface.
Showing page 371 of 2161.
Eric Geller @ericgeller
@RachAClark do you want me to start calling you breanna stewart — PolitiTweet.org
Eric Geller @ericgeller
when people show you who they are, believe them — PolitiTweet.org
Eric Geller @ericgeller
@RachAClark omg — PolitiTweet.org
Eric Geller @ericgeller
IANAL but wow https://t.co/qUoOXtJJL3 — PolitiTweet.org
southpaw @nycsouthpaw
This is a great thread on the availability of remedies that somehow eluded last night’s majority. https://t.co/oAGrP5x4L9
Eric Geller @ericgeller
This guy looks like a @LeverageRedempt villain whose company secretly uses toxic food coloring chemicals. https://t.co/stqbpg6rtG https://t.co/6diiwdVb3v — PolitiTweet.org
Eric Geller @ericgeller
As usual, at this point, the NDAA is the most likely vehicle for whichever bill wins out. The reconciliation bill would be another option. But there are some tight timelines here, which means Peters, Warner, etc. will need to huddle and make some decisions soon. — PolitiTweet.org
Eric Geller @ericgeller
If the homeland security panels team up, House Homeland would still need to change its bill, which doesn't include the ransomware stuff in the Senate Homeland bill. But other than that, it would be relatively easy for them to push ahead with their industry-friendly approach. — PolitiTweet.org
Eric Geller @ericgeller
When I got this draft, I was talking to industry sources about whether Warner et al. would change their bill after seeing industry feedback at yesterday's House hearing. Now that may not even matter. Peters could just sweep the SSCI bill aside and focus on his legislation. — PolitiTweet.org
Eric Geller @ericgeller
Warner's office says they've had productive meetings with stakeholders and are digesting feedback. But HSGAC has jurisdiction over their bill. So even though Warner, Rubio, and esp. Collins have lots of sway in the Senate, Peters still controls their bill's fate. — PolitiTweet.org
Eric Geller @ericgeller
But what does this mean for the Senate Intelligence bill? As I said, industry doesn't like it — it allows for a 24-hour reporting deadline, as well as financial penalties for noncompliant companies. (CHS and HSGAC bills only allow for subpoenas.) Its status is unclear. — PolitiTweet.org
Eric Geller @ericgeller
It's unclear when Senate Homeland leaders will introduce their bill, but an industry source told me that the committee has asked for industry feedback by 9/14. House Homeland leaders could also introduce their bill in the coming weeks. — PolitiTweet.org
Eric Geller @ericgeller
The new Senate bill would also create a Cybersecurity Incident Reporting Council — CISA, OMB and the Office of the National Cyber Director — to “deconflict” and “harmonize” incident reporting rules, so there's no redundancy in what companies are being asked to do. — PolitiTweet.org
Eric Geller @ericgeller
Provisions added to language from House bill: * CISA has to compare incident reports w/ companies SEC filings * CISA's pre-reg outreach must include security response firms and cyber insurers * Pentesting and other VDP-compliant activity excluded from def'n of incident — PolitiTweet.org
Eric Geller @ericgeller
Some of the changes: * CISA can't set the cyber incident reporting deadline beyond 7 days after an incident (the floor is 72 hrs) * Companies don't have to report incidents to CISA if they already report to other agencies & those agencies share with CISA w/in 6 hours — PolitiTweet.org
Eric Geller @ericgeller
As I mentioned, the main portion of the bill is the broader cyber incident reporting mandate, which is almost identical to the latest version of the House Homeland bill (https://t.co/UUFndPINLT), but there are a few additions and changes, which I'll note here... — PolitiTweet.org
Eric Geller @ericgeller
Also, any company that pays a ransom, except for a small business, would also have to submit a report to CISA about the underlying attack, the ransom amount & currency type, & other details. CISA chooses reporting timeframe, but would have to be b/w 24 & 72 hours after payment. — PolitiTweet.org
Eric Geller @ericgeller
As I mentioned, the main portion of the bill is the broader cyber incident reporting mandate, which is almost identical to the latest version of the House Homeland bill (https://t.co/UUFndPINLT), but there are a few additions and changes, which I'll note here... — PolitiTweet.org
Eric Geller @ericgeller
DHS would also have to brief Congress on the “defensive measures” that companies can legally take in response to ransomware intrusions and identify any laws that “need to be clarified to enable that action.” — PolitiTweet.org
Eric Geller @ericgeller
Ransomware vulnerability warning pilot program: CISA would try to identify the technology most vulnerable to common ransomware techniques & then alert companies using that technology. If it can't identify them, it can use its new administrative subpoena authority to do so. — PolitiTweet.org
Eric Geller @ericgeller
Ransomware task force: DHS and agencies of its choice would get together to coordinate response to ransomware, incl. prioritizing intel collection on ransomware gangs, compiling list of most dangerous groups, and disrupting their infrastructure and finances. — PolitiTweet.org
Eric Geller @ericgeller
Due diligence req: Before paying a ransom, a company would have to determine whether it could recover from the attack “through other means,” including by seeing if experts have published a decryption tool that works for them. It would have to report to CISA on this process. — PolitiTweet.org
Eric Geller @ericgeller
The big stuff in the HSGAC bill: * The House Homeland incident reporting legislation, with some tweaks and additions * "Due diligence requirement" for companies facing ransom demands * Ransomware task force * "Ransomware vulnerability warning pilot program" — PolitiTweet.org
Eric Geller @ericgeller
Scoop: Senate HSGAC is working on a bill that combines the House's industry-friendly cyber incident reporting legislation w/ a bunch of programs to tackle ransomware. Raises Qs about what happens to Warner/Rubio/Collins bill, which industry doesn't like. https://t.co/tBKfhZjVZU — PolitiTweet.org
Eric Geller @ericgeller
@normative woof — PolitiTweet.org
Eric Geller @ericgeller
😶 — PolitiTweet.org
Osita Nwanevu @OsitaNwanevu
Packing the Court might seem like a good idea to the left now, but imagine what would happen if conservatives controlled the Court.
Eric Geller @ericgeller
Q: What are you doing inside the government to prepare for potential incidents this weekend? Neuberger: IC is on alert tracking threats, other agencies including CISA and FBI are "fully postured" to respond to incidents. — PolitiTweet.org
Eric Geller @ericgeller
Q: To what do you attribute the recent decrease in ransomware attacks? Neuberger: “We've noted the decrease in ransomware ... [There] could be a host of reasons for it. So we're noting that trend and we hope that that trend continues.” — PolitiTweet.org
Eric Geller @ericgeller
Q: Given recent Bloomberg story about DOD pressuring Juniper to use backdoored encryption, what is the administration's policy on backdoors? Neuberger: “That’s been an old story that’s been reported, and I think we’ve continuously noted that there isn’t substantiation for it.” — PolitiTweet.org
Eric Geller @ericgeller
@JohnHultquist lol — PolitiTweet.org
Eric Geller @ericgeller
Q: Given recent Bloomberg story about DOD pressuring Juniper to use backdoored encryption, what is the administration's policy on backdoors? Neuberger: “That’s been an old story that’s been reported, and I think we’ve continuously noted that there isn’t substantiation for it.” — PolitiTweet.org