• Cybersecurity Docket
  • Posts
  • White House Launches 'Gold Eagle' AI-Powered Clearinghouse for Cyber Vulnerabilities

White House Launches 'Gold Eagle' AI-Powered Clearinghouse for Cyber Vulnerabilities

Plus, TruStage is investigating a cybersecurity incident.

Good morning! Here’s what’s up.

People

Michael Gruden has joined Steptoe as partner the firm's Washington, DC office, where he will lead the firm's cybersecurity practice. Before entering private practice, Gruden served in senior procurement roles at the U.S. Department of Defense and the U.S. Department of Homeland Security.

Michael LaMarca has joined Cooley as partner in its global cyber/data/privacy group, where he will be based in New York. La Marca joins Cooley from Hunton Andrews Kurth where he was a partner in its data, cyber and privacy group.

Jermaine Stanley has joined DigiFlight as director of cybersecurity compliance. Stanley is the immediate past president of the Information Systems Audit and Control Association (ISACA) Greater Washington, DC Chapter, and previously served on the ISACA Foundation Board.

Clips ✂️

White House Launches AI-Driven 'Gold Eagle' Vulnerability Coordination Initiative

The White House announced on Tuesday the launch of Gold Eagle, a new coordination mechanism intended to speed up the detection, prioritization, and patching of vulnerabilities in critical infrastructure.

The initiative pairs open source software maintainers with critical infrastructure operators in a shared reporting and remediation pipeline, built using existing federal authorities and resources.

Gold Eagle involves CISA, the Treasury Department, and the Department of War, working alongside private-sector partners.

The goals are to cut down on duplicate vulnerability scanning across agencies and companies, and to route prioritized and actionable remediation guidance to defenders in both government and industry.

The program stems from Executive Order 14409, ‘Promoting Advanced Artificial Intelligence Innovation and Security’, which President Trump signed on June 2.

EO 14409 called for an AI-enabled clearinghouse to identify and fix software vulnerabilities, and Gold Eagle is now presented as the operational vehicle for that mandate.

by SecurityWeek

TruStage Investigating Cybersecurity Incident After Proactively Shutting Down Network

TruStage, headquartered in Madison, Wis., has confirmed it is responding to a cybersecurity incident that prompted the company to proactively shut down portions of its network while it investigates the scope and potential impact of the event.

In an email sent to stakeholders Tuesday, the company said it identified a cybersecurity incident affecting its environment and immediately activated its incident response and recovery procedures.

"Upon discovery, we immediately commenced our incident response and recovery efforts including proactively shutting down our network, and engaged external cybersecurity experts to assist with investigating, containing and remediating the incident," a TruStage spokesperson said in a statement provided to CU Times.

The spokesperson added that the investigation remains ongoing.

"We take the security of our systems and the information entrusted to us seriously and are working diligently to restore systems and our network and will provide additional information as appropriate," the spokesperson said.

by Credit Union Times

US Charges Russian Individuals and Firms for Running Cybercrime Services

The US Justice Department on Tuesday unsealed an indictment charging three Russian nationals and two companies for allegedly running cybercrime services.

The individuals are Aleksandr Alexandrovich Volosovik, Kirill Andreevich Zatolokin, and Yulia Pankova, and the targeted companies are ML.Cloud and Media Land, whose infrastructure spanned countries such as China, the Netherlands, Finland, and even the United States.

The three suspects are accused of running ML.Cloud and Media Land, which allegedly provided bulletproof hosting services to a wide range of threat actors, including profit-driven gangs and state-sponsored groups.

ML.Cloud and Media Land infrastructure was used for phishing, DDoS attacks, brute-force attacks, ransomware, and hosting cybercrime marketplaces and forums, according to the DOJ.

Authorities said threat actors leveraged the two services to target at least 42 entities across 21 US states, overall causing tens of millions of dollars in losses.

by SecurityWeek

Synopsys Finds No Evidence of Data Breach Amid Bosch Hack Claims

Silicon-to-systems design firm Synopsys says it has found no evidence of a data breach after a cybercrime group claimed to have hacked its systems and gained access to valuable data belonging to one of its major customers, Bosch.

A new ransomware group named D1R in recent days listed Synopsys and Bosch on its Tor-based leak website. The cybercriminals claimed to have exploited a vulnerability in Synopsys’ website to access a corporate client database containing 40,000 entries, and they are threatening to leak the stolen data unless a ransom is paid.

Separately, D1R claimed to have hacked German engineering and technology giant Bosch using data obtained from Synopsys.

However, Synopsys told SecurityWeek that it has found no evidence to support the hackers’ claims.

“The security of data and systems is a priority for Synopsys,” the company said. “We are continuously monitoring our network and have found no evidence of Synopsys or customer technical data being subject to unauthorized access. We have not been contacted by this threat actor and, based on our investigation, claims of unauthorized access to customer confidential data are unfounded.”

by SecurityWeek

UK government to warn the public to prepare for a cyberattack

The UK government will urge the public to stock up on food and water in case of a cyberattack, as the country conducts large-scale home defense drills.

The public resilience campaign is part of the Operation Albiston Shadow, the largest home defense exercise in decades.

The drill is aimed at preparing the public “should the worst happen,” including emergencies such as a cyberattack from Russia or severe weather, according to the Independent.

Darren Jones, chief secretary to the prime minister, said the campaign will help the public take “small but important steps” to be ready for emergencies and disruptions that could affect access to power, water, or phone signals.

The public resilience campaign comes amid rising geopolitical tensions, as Russia’s war against Ukraine entered its fifth year in February.

UK spy chief Anne Keast-Butler recently warned Moscow is “relentlessly targeting Britain’s infrastructure and democracy.”

by Cybernews

The Cybersecurity Act: set to come into force next month

On Tuesday 7 July 2026, the bill for the Cyber Security Act (“Cbw”) was passed by the Senate, together with the Critical Entities Resilience Act (“Wwke”). Earlier, on 15 April, the House of Representatives had already approved the bill. The Act will come into force on 15 August 2026. The Cbw implements the European NIS2 Directive and will replace the current Network and Information Systems Security Act (“Wbni”).

What does this mean for you?

From 15 August 2026, the obligations under the Cbw will apply to more than 8,000 organisations that provide essential or important services. From that date, organisations falling within the scope of the Wwke will be designated as critical organisations.

Organisations will need to check for themselves whether they fall within the scope of the Cbw. They can do this, for example, using this self-assessment tool provided by the central government. The Act applies to 18 sectors, such as banking, energy, digital service providers and digital infrastructure.

by Bureau Brandeis

X