LIVE · cybersecurity feed
Live wire
ai

House intel bill includes provisions on state and local threat intelligence, election security, AI

The House Intelligence Committee advanced its fiscal 2027 authorization legislation Monday. The post House intel bill includes provisions on state and local threat intelligence, election security, AI appeared first on CyberScoop.

zeroday.news · 11d ago

The House Intelligence Committee has advanced its fiscal 2027 authorization legislation, which includes provisions for a cyberthreat intelligence sharing pilot program for state and local governments, enhanced election security measures, and increased utilization of artificial intelligence within the intelligence community. The bill was approved on Monday.

The proposed legislation mandates the Office of the Director of National Intelligence (ODNI) to select one state for a year-long pilot program. This state would receive monthly, unclassified briefings on timely, specific, and actionable cyberthreat intelligence from the ODNI, Department of Homeland Security, and FBI, among other agencies. Following the pilot, the ODNI would report on the feasibility of expanding such a briefing program to a wider array of state and local governments.

Amidst reported frustrations with federal cyber aid cutbacks and a shift of responsibility to local levels, the bill also requires the ODNI to develop a strategy for information sharing with state and local entities. Additionally, the Government Accountability Office (GAO) is tasked with assessing the current state of such sharing, including efforts by relevant agencies, deconfliction processes, and obstacles posed by security clearances.

Regarding election security, the committee adopted three amendments from Democratic members. One amendment requires the intelligence community to publish an unclassified assessment of foreign intelligence threats to the 2026 midterm elections. Another would partially withhold funding for the ODNI until overdue reports on the 2024 and 2026 elections are submitted to Congress. A third amendment aims to protect intelligence analysts from retribution by intelligence community leadership for their work on intelligence products related to foreign influence in U.S. elections.

The legislation also focuses on artificial intelligence, proposing a significant increase in funding for expanded access and use of advanced AI models for intelligence and cyber missions. It seeks to codify and expand the role of the Artificial Intelligence Security Center at the National Security Agency and strengthen information sharing on AI threats.

House Intelligence Chairman Rick Crawford stated that the bill balances transparency and accountability with equipping the intelligence community to combat evolving threats, with a particular emphasis on the global AI competition.

Furthermore, the bill orders an assessment from the Office of Intelligence and Counterintelligence of the Department of Energy concerning foreign cyberthreats to critical energy infrastructure, including their intent and associated risks. Historically, annual intelligence authorization bills, or parts of them, are often incorporated into the National Defense Authorization Act, which typically reaches the president's desk by the end of the calendar year.

ai
ShareXLinkedInWhatsAppFacebook

More News

view all →
ai

7 States’ Water Systems Hit by Cyberattacks Likely Tied to Iran

Plus: The FBI eyes AI-powered tech to detect future crimes, Russia charges Telegram’s founder, xAI sues to stop a state’s “nudification” ban, and the Democrats learn a lesson about getting scammed.

vulnerability

Coldcard Hardware Wallet Flaw Linked to $70 Million Bitcoin Theft in 41 Minutes

An attacker drained 1,196 Bitcoin addresses in 41 minutes on July 30, taking 1,082.65 BTC worth about $70.2 million at the time. Galaxy Research mapped the sweep and tied it to a firmware flaw in Coldcard, the Bitcoin-only hardware wallet made by Canadian firm Coinkite. A March 2021 firmware integration error routed seed generation to a deterministic software pseudorandom number generator (PRNG

vulnerabilitycritical

Rails patches critical Active Storage flaw with RCE potential

A critical vulnerability in the Active Storage framework can allow an unauthenticated attacker to read arbitrary files from a Rails application, and potentially escalate to remote code execution (RCE). [...]

malware

Russian Hackers Hijack Hotel Wi-Fi to Steal Microsoft 365 Tokens

Microsoft says Russian hackers hijacked hotel Wi-Fi portals to spread malware and steal Microsoft 365 tokens from travelers. Microsoft Threat Intelligence disclosed CaptiveCrunch, a campaign it attributes to Storm-2945, an operational sub-cluster of Midnight Blizzard, the Russian SVR-linked group also known as APT29 and Cozy Bear. Since early May 2026, Storm-2945 has been manipulating DNS […]

CVE-2026-48449critical

Adobe fixed a maximum-severity vulnerability flaw in Campaign Classic

Adobe fixed a maximum severity vulnerability in Campaign Classic that could let attackers run code remotely without user interaction. Adobe has addressed a critical vulnerability, tracked as CVE-2026-48449 (CVSS score of 10.0), in Adobe Campaign Classic, the company’s enterprise marketing automation platform. The flaw is caused by incorrect authorization and could allow attackers to execute […]

security

Balance Theory Raises $19 Million to Help Enterprises Manage Cybersecurity Investments

The funding round was led by SYN Ventures, with participation from existing investors DataTribe and TEDCO. The post Balance Theory Raises $19 Million to Help Enterprises Manage Cybersecurity Investments appeared first on SecurityWeek.