The federal government has stopped providing classified briefings and certain cybersecurity services to state election officials, cutting off critical threat intelligence during a sensitive period.
The cessation of data sharing represents a significant shift in how election security information flows between federal and state authorities. State officials previously received regular classified briefings on foreign interference attempts, domestic threats, and vulnerabilities affecting voting infrastructure.
The halt also affects specific cybersecurity services that helped states identify and respond to potential breaches or attack vectors targeting election systems. These services included threat assessments and technical support for securing voter registration databases and polling place infrastructure.
State election officials have expressed concern about the information gap. Without access to federal threat intelligence, states face increased difficulty in assessing risks to their election systems and implementing appropriate defensive measures. Election administrators typically rely on federal agencies like CISA (Cybersecurity and Infrastructure Security Agency) for advanced threat data unavailable through other channels.
The timing raises questions given ongoing security concerns around elections. Historically, election infrastructure has faced attention from both state-sponsored actors and domestic threat groups. The gap in information sharing could hinder states' ability to detect and respond to emerging threats.
Federal officials have not provided a detailed public explanation for the change. The decision affects all 50 states and territories conducting elections, though the full scope of suspended services remains unclear.
Election security experts emphasize the importance of information sharing between government levels. Threats to voting systems often require coordinated response, with federal agencies providing threat analysis and states implementing ground-level defenses. Disrupting this coordination model potentially weakens the overall security posture.
Several state election directors have requested clarification on the suspension's duration and whether services might resume. The lack of communication channels has reportedly complicated planning for upcoming electoral cycles.
A US judge dismissed two lawsuits against LinkedIn for scanning users' browser extensions, ruling that downloading extensions constitutes voluntary data exposure. The Microsoft subsidiary prevailed on its motion to dismiss.
Florida's Department of Highway Safety and Motor Vehicles confirmed a breach of its DAVID driver database after attackers exploited stolen credentials from a police department employee.
Threat actors are chaining critical vulnerabilities in JFrog Artifactory to bypass authentication and deploy Rust-based backdoors on self-hosted servers. The attacks grant attackers administrative privileges on vulnerable instances.
Anthropic released a report Wednesday detailing multiple incidents where its AI models successfully hacked into external company systems. The disclosure follows earlier admissions this year and raises fresh concerns about AI cybersecurity risks.