Sign in

David DiMolfetta

@ddimolfetta.bsky.social
2.8K followers 396 following 912 posts

Nextgov/FCW cybersecurity + intelligence reporter. Tips: ddimolfetta@govexec.com Signal: @ djd.99 X/Twitter: @ddimolfetta

PostsRepliesMedia
David DiMolfetta @ddimolfetta.bsky.social · 1h
Election officials said Wednesday that renewed federal cybersecurity assistance comes too late for some of their midterm preparations, following cuts they say disrupted support from CISA, though they are not closing the door on federal help.  www.nextgov.com/cybersecurit...
nextgov.com
Renewed CISA support comes too late for midterm prep, some election officials say
Arizona still plans to accept federal help on Election Day, while officials warn that staffing cuts have weakened relationships and left smaller jurisdictions with fewer resources.
011
Reposted by David DiMolfetta
The New York Times @nytimes.com · 10h
A passenger jet flying from Dubai to Tel Aviv signaled it was in distress on Wednesday and abruptly reversed course near the Saudi-Jordanian border. Officials of three Israeli government agencies said it appeared that the pilot and co-pilot of the FlyDubai flight had gotten into a scuffle.
nyti.ms
FlyDubai Flight to Tel Aviv Issues Distress Signal Before Landing in Saudi Arabia
The plane was traveling from Dubai to Israel when the pilot and co-pilot appear to have gotten into a fight, Israeli officials said.
2411440
David DiMolfetta @ddimolfetta.bsky.social · 29/09/2026
Six federal agencies failed to provide records needed to determine whether DOGE personnel appropriately accessed and protected government systems, leaving Congress and the public without assurances that sensitive information was secured, GAO said Tuesday. www.nextgov.com/policy/2026/...
nextgov.com
Agencies withheld records needed to verify DOGE data safeguards, GAO says
A review of six agencies could not establish the full extent of DOGE’s system access or whether security rules were followed. Two agencies challenged the watchdog’s authority to investigate.
022
David DiMolfetta @ddimolfetta.bsky.social · 29/09/2026
The FBI’s top cyber official urged remaining ShinyHunters members to come forward while still possible, hinting at possible progress against the hacking group accused of stealing troves of sensitive bureau personnel records: www.nextgov.com/cybersecurit...
nextgov.com
FBI warns ShinyHunters members to come forward after alleged leader’s arrest
“You know how to find us, and we know how to find you,” said Brett Leatherman, assistant director of the FBI’s Cyber Division. “I suggest you reach out first while the choice is still yours.”
001
David DiMolfetta @ddimolfetta.bsky.social · 28/09/2026
In a lengthy email sent to me, ShinyHunters now claims it never intended to publish the FBI data it says it stole, calling the episode a “marketing campaign.” The group previously gave the FBI one week to change or remove an advisory about it. I’ve asked FBI for comment.
163
David DiMolfetta @ddimolfetta.bsky.social · 28/09/2026
New: The House Intelligence Committee’s top Democrat warned that intelligence contractors may face scrutiny over donations to Trump’s White House ballroom project, including whether contributions were connected to contracts or access to senior officials. www.nextgov.com/acquisition/...
nextgov.com
Lawmaker warns intelligence contractors' Trump ballroom donations may be scrutinized
Rep. Jim Himes, the ranking member of the House Intelligence Committee, wants to examine whether contributions were tied to federal contracts or access to administration officials.
021
David DiMolfetta @ddimolfetta.bsky.social · 28/09/2026
"GPT-6 Astra often asked for permission to perform unsanctioned actions on out-of-scope targets." From UK's AI Security Institute report out today: www.aisi.gov.uk/blog/gpt-6-a...
033
David DiMolfetta @ddimolfetta.bsky.social · 25/09/2026
OpenAI says its advanced models may have gone after government websites www.nextgov.com/cybersecurit...
nextgov.com
OpenAI says its advanced models may have gone after government websites
The disclosure follows warnings from former officials in August that government systems could face unintended intrusions by autonomous AI agents.
101
David DiMolfetta @ddimolfetta.bsky.social · 24/09/2026
New: AI security testing tools developed by Google-owned Wiz uncovered weaknesses that exposed a public rail operator’s administrative systems and gave outsiders a way to control a public hospital’s mobile alert channel, the company said Thursday. www.nextgov.com/cybersecurit...
nextgov.com
AI scanning tools found security gaps at rail operator and hospitals, Wiz says
Researchers discovered access to rail administration systems, a hospital alert channel and sensitive records in a new effort aimed at organizations with limited cyber resources.
110
David DiMolfetta @ddimolfetta.bsky.social · 24/09/2026
Data stolen in hacking group’s alleged intrusion into FBI is believed to contain personal info on hundreds of intel analysts and others involved in clandestine activities, according to two people familiar with the matter. Matching Reuters + 404 Media -> www.nextgov.com/cybersecurit...
nextgov.com
Stolen FBI data reveals employees’ roles in intelligence and surveillance
Exposed analysts work on areas including China, Russia and electronic surveillance. ShinyHunters claimed responsibility for the breach this week. The FBI said it’s investigating.
110
David DiMolfetta @ddimolfetta.bsky.social · 22/09/2026
Update: ShinyHunters sent us a text file appearing to contain sensitive personal info on ~5k FBI employees, including names, addresses, phone numbers, and other info. We queried some of the listed peoples’ names online and found that they are employed with the FBI.
100
David DiMolfetta @ddimolfetta.bsky.social · 22/09/2026
The language ShinyHunters wants removed appears in a May 15 FBI public service announcement issued after an attack disrupted an online learning management system used by educational institutions. www.nextgov.com/cybersecurit...
nextgov.com
ShinyHunters claims FBI data theft, demands bureau retract cyber warning
The hacking group says it obtained sensitive employee and applicant records. The full scope of the claimed breach remains unclear.
000
Reposted by David DiMolfetta
Institute for Security and Technology @istorg.bsky.social · 15/09/2026
In IST’s first-of-its-kind survey of current and former national security officials, respondents said the likelihood of an AI catastrophe has already reached or exceeded acceptable risk levels. For NextGov, @ddimolfetta.bsky.social unpacks key takeaways from the survey. 🛡️ Read more:
nextgov.com
Dozens of current, former officials see at least a 10% chance humans lose control of AI
Nearly half of respondents in the survey released Wednesday serve or have served in the Defense Department, an agency locked in fierce discourse over military use of AI systems.
001
David DiMolfetta @ddimolfetta.bsky.social · 11/09/2026
Newly declassified CIA records detail how analysts viewed emerging technology threats before 9/11, from fears that terrorists could exploit Y2K computer glitches to assessments that extremist websites were helping recruit fighters. Our coverage here: www.nextgov.com/cybersecurit...
nextgov.com
CIA feared terrorists could exploit Y2K glitches, declassified briefs show
Records released for the 25th anniversary of 9/11 also describe intelligence assessments of extremist websites helping recruit fighters and spread chemical and biological weapons information.
012
David DiMolfetta @ddimolfetta.bsky.social · 11/09/2026
25 years after 9/11, spy agencies face old lessons and new threats  www.nextgov.com/cybersecurit...
nextgov.com
25 years after 9/11, spy agencies face old lessons and new threats
Former intelligence officials describe a nation better equipped to disrupt terrorist plots, but still wrestling with the costs of its response and how to prevent the next crisis under escalating techn...
000
David DiMolfetta @ddimolfetta.bsky.social · 09/09/2026
~250 prospective CISA employees have received tentative job offers and are awaiting clearance to start work, the latest update on the agency’s efforts to up staffing after its workforce was reduced over the last year. www.nextgov.com/people/2026/...
nextgov.com
CISA has roughly 250 prospective hires awaiting clearance, agency chief says
Acting Director Nick Andersen says the agency is prioritizing operational teams and regional staff as it works to rebuild its workforce after reductions last year.
042
David DiMolfetta @ddimolfetta.bsky.social · 09/09/2026
The FBI is seeking more frequent operations against hackers and a larger role for private companies under a new cyber strategy released today, with the bureau’s cyber chief saying teams are aiming to act more quickly to disrupt attacks and warn victims. www.nextgov.com/cybersecurit...
nextgov.com
New FBI cyber strategy seeks faster action against hackers, larger industry role
The bureau wants more frequent disruption operations and quicker warnings to victims as the Justice Department works through rules for expanded private sector participation in hacking cybercrime group...
010
David DiMolfetta @ddimolfetta.bsky.social · 08/09/2026
CIA cyber operatives provided intelligence that helped U.S. forces locate and capture Maduro within minutes of landing on the ground in January this year, agency Deputy Director Michael Ellis said Tuesday. www.nextgov.com/cybersecurit...
nextgov.com
CIA cyber intelligence helped US forces capture Maduro, deputy director says
Michael Ellis credited the agency’s cyber intelligence officers with helping U.S. troops locate and apprehend the Venezuelan leader within minutes of landing.
000
David DiMolfetta @ddimolfetta.bsky.social · 02/09/2026
DOJ says “hundreds of thousands” of X users were targeted in password recovery emails and is investigating the “sophisticated” criminal hackers believed to have pulled it off. x.com/i/trending/2...
010
David DiMolfetta @ddimolfetta.bsky.social · 02/09/2026
NEW: Pentagon cyber strategy expected as soon as next week, three people familiar with the plans say -> www.nextgov.com/cybersecurit...
nextgov.com
Pentagon cyber strategy expected as soon as next week, sources say
Officials have previewed a blueprint emphasizing offensive operations, AI adoption and closer industry ties as the military reorganizes its cyber forces.
010
Reposted by David DiMolfetta
Eric Geller @ericjgeller.com · 02/09/2026
Scoop: CISA is ending six free cybersecurity assessments for critical infrastructure operators, significantly reducing the hands-on guidance it offers to those organizations even as it tries to rebuild and reassert its value: www.cybersecuritydive.com/news/cisa-cy...
816876
David DiMolfetta @ddimolfetta.bsky.social · 02/09/2026
Current + former officials see at least a 10% chance humans lose control of AI in the next decade, per a survey released today. Many people in the study serve or have served in DOD, White House, intelligence community and other government agencies: www.nextgov.com/artificial-i...
020
David DiMolfetta @ddimolfetta.bsky.social · 01/09/2026
Stopgap funding bill temporarily extends key cyber info-sharing law www.nextgov.com/policy/2026/...
nextgov.com
Stopgap funding bill temporarily extends key cyber info-sharing law
The short-term package pushes the sunset date for the bedrock cyber legislation to Dec. 11, in addition to setting extensions for the Technology Modernization Fund and National Cybersecurity Protectio...
000
David DiMolfetta @ddimolfetta.bsky.social · 01/09/2026
Enjoyed chatting with David Brown for @texasstandard.bsky.social today about the White House Watershed 250 initiative and what it could mean for often under-resourced water infrastructure operators around the country. Our segment begins at the 25:30 mark -> kutkutx.studio/texas-standa...
kutkutx.studio
Marfa’s Palace Theater could soon see new life
Tropical Storm Edouard heads toward the Texas coast. What to expect as it makes landfall. An update on recovery efforts in Nepal, where Texans are among the missing. How Texas is helping mount a…
000
David DiMolfetta @ddimolfetta.bsky.social · 31/08/2026
The Trump admin is launching its new water sector cybersecurity program today in San Antonio that will bring together the Office of the National Cyber Director, Texas Cyber Command, the office of Texas Gov. Greg Abbott and industry partners: www.nextgov.com/cybersecurit...
nextgov.com
White House launches water cybersecurity pilot in Texas
Project Watershed 250 will stress-test utilities over six months and could serve as a model for protecting water providers nationwide.
021
David DiMolfetta @ddimolfetta.bsky.social · 27/08/2026
Nathan Vilas Laatsch, a former IT specialist for the Defense Intelligence Agency, pleaded guilty to trying to share classified information with a foreign government on Wednesday: www.nextgov.com/people/2026/...
nextgov.com
Intelligence agency employee pleads guilty to trying to share classified info with foreign government
Nathan Vilas Laatsch was allegedly disgruntled by the Trump administration and willing to share sensitive data with the foreign country. The FBI set up a dead drop operation to intercept the classifie...
000
David DiMolfetta @ddimolfetta.bsky.social · 27/08/2026
The NSA wants access to AI models across the commercial market and is holding extensive discussions with leading developers as it moves to carry out new White House directives on the technology, the agency’s deputy director said Thursday --> www.nextgov.com/artificial-i...
nextgov.com
NSA wants access to ‘all’ AI models, top official says
The spy agency is taking a key role in the government’s new voluntary model-testing program, though its deputy director did not say which companies are participating.
011
David DiMolfetta @ddimolfetta.bsky.social · 26/08/2026
White House will soon unveil a program designed to help protect water providers from cyberattacks, which comes as multiple states face hacking attempts on their water systems that some officials suspect may be tied to Iran. Confirming Politico: www.nextgov.com/cybersecurit...
nextgov.com
White House to soon launch water provider cyber protection program
The plans come as several states face water system intrusions from what some official suspect could be linked to Iran.
8303
David DiMolfetta @ddimolfetta.bsky.social · 21/08/2026
Exclusive: Five House Democrats are asking GAO to examine how staffing cuts at CISA have affected the government’s ability to defend federal networks and critical infrastructure, per letter first seen by us. www.nextgov.com/people/2026/...
nextgov.com
House Democrats ask GAO to review CISA workforce cuts
Lawmakers want Congress’ watchdog to assess what capabilities were lost after the cyber agency shed roughly one-third of its staff.
000
David DiMolfetta @ddimolfetta.bsky.social · 18/08/2026
NEW -> Trump’s new plan to enlist private companies to disrupt cybercriminals abroad may face a fundamental problem when it comes to Russia: distinguishing criminal hackers and state-backed operatives, former officials + experts tell me. www.nextgov.com/cybersecurit...
nextgov.com
The Russian hurdle in Trump’s new offensive cyber program
The White House wants private companies to help take down cybercriminals overseas. But in Russia, the line between criminal hackers and the government is difficult to draw.
142
David DiMolfetta @ddimolfetta.bsky.social · 10/08/2026
NEW —> Federal systems increasingly likely to face accidental AI breach after Hugging Face, experts say “If the same chain of events began again … there is little reason to assume a federal agency would be spared.” www.nextgov.com/cybersecurit...
nextgov.com
Federal systems increasingly likely to face accidental AI breach after Hugging Face, experts say
Former officials and security experts say aged systems, contractors and agency AI adoption could open similar paths into government networks.
021
David DiMolfetta @ddimolfetta.bsky.social · 09/08/2026
NEW from DEF CON -> Mojave Research execs said plans to expand their federal election security work abruptly ended after learning Trump adviser Kurt Olsen pushed back when their Puerto Rico findings failed to substantiate election manipulation claims: www.nextgov.com/cybersecurit...
nextgov.com
Voting machine researchers say federal work abruptly ended after Trump ally pushed back on their findings
Mojave Research executives said at DEF CON that the government had been preparing to expand the company’s election security work, and linked Trump adviser Kurt Olsen to pressure they faced after findi...
182
Reposted by David DiMolfetta
The Record @therecordmedia.bsky.social · 06/08/2026
President Donald Trump “has raised transnational criminal organizations with President Xi,” Assistant Secretary of State Michael DeSombre told senators therecord.media/trump-xi-sou...
therecord.media
State Department says Trump raised cyber scam compound issue with Xi
President Donald Trump has talked with Chinese President Xi Jinping about Southeast Asian scam compounds, a State Department official told senators at a hearing on the transnational issue.
011
David DiMolfetta @ddimolfetta.bsky.social · 06/08/2026
Excellent reporting here from Patrick
110
David DiMolfetta @ddimolfetta.bsky.social · 06/08/2026
NEW: Amid state water hacks, CISA is still finding water system controls exposed to the internet with no password or only default credentials, acting director Nick Andersen told me on sidelines of Black Hat conference today. www.nextgov.com/cybersecurit...
nextgov.com
CISA still finds water system controls exposed online amid multistate hacks
The agency is working with the FBI to help victims but is not attributing the cyber intrusions to any group, acting director Nick Andersen told Nextgov/FCW.
2109
David DiMolfetta @ddimolfetta.bsky.social · 06/08/2026
LAS VEGAS — The rise of autonomous AI systems capable of finding and exploiting software flaws is putting serious pressure on governments to treat cyberattacks as inevitable events rather than rare emergencies, Western officials said Wednesday. www.nextgov.com/cybersecurit...
nextgov.com
AI advances are pushing governments to treat cyberattacks as routine, Western officials say
The remarks underscore a grim outlook for cyberdefenders showing that AI systems are able to exploit vulnerabilities faster than governments can patch them.
011
David DiMolfetta @ddimolfetta.bsky.social · 06/08/2026
ICYMI: www.nextgov.com/artificial-i...
nextgov.com
OpenAI agents rebuilt internal message board in lead-up to Hugging Face breach
Models in separate experiments used the channel to exchange exploits as they repeatedly compromised OpenAI systems.
000
Reposted by David DiMolfetta
Matt Burgess (WIRED) @mattburgess1.bsky.social · 05/08/2026
NEW: Over the last few months, Meta has run dozens of paid ads that included AI-generated CSAM. The ads, some of which were linking out to “nudify” apps, targeted men in the US, UK, and a dozen European countries. Some were running in the last few days
wired.com
Meta Ran Ads That Contained AI-Generated Child Sexual Abuse Imagery
More than 50 offending image and video ads were published across Facebook, Instagram, Messenger, or Threads, according to Meta’s ad library data. Some ran as recently as this week.
22627322
David DiMolfetta @ddimolfetta.bsky.social · 05/08/2026
Former NSA cyber director Rob Joyce says OpenAI-Hugging Face incident may be the "most consequential" hack since the Morris Worm from the 1980s. Latest dispatch from Black Hat in Vegas --> www.nextgov.com/cybersecurit...
nextgov.com
Hugging Face AI breach is ‘most consequential hack’ since Morris Worm, former NSA cyber chief says
AI may let hackers exploit newly disclosed software flaws so quickly that organizations should weigh whether to immediately patch internet-connected devices, even at the risk of causing outages, Rob J...
010
David DiMolfetta @ddimolfetta.bsky.social · 05/08/2026
LAS VEGAS — The Trump admin wants US-built open-source AI to become a top technology of choice around the world, National Cyber Director Sean Cairncross said Tuesday at the Black Hat cyber conference. www.nextgov.com/artificial-i...
nextgov.com
Top cyber official wants US open-source AI adopted worldwide
National Cyber Director Sean Cairncross’s remarks come as the White House has excluded open-weight models from voluntary security testing and as new hacking incidents underscored risks posed by autono...
110
David DiMolfetta @ddimolfetta.bsky.social · 04/08/2026
EXCLUSIVE: Years after regulators moved to push Chinese telecom carriers out of the US market, they never fully left. A bipartisan House investigation first seen by Nextgov/FCW found three major providers retained various ties in the US: www.nextgov.com/cybersecurit...
nextgov.com
Chinese telecom firms kept footholds in US networks despite federal crackdowns, House probe finds
China Mobile, China Telecom and China Unicom retained equipment, data center space and network ties after FCC restrictions, including a China Mobile-linked network that appeared in routes to Salt Typh...
166
David DiMolfetta @ddimolfetta.bsky.social · 03/08/2026
Some big hires for ProPublica - www.propublica.org/atpropublica...
propublica.org
ProPublica Hires Four Reporters to Expand Washington and National Security Coverage
031
David DiMolfetta @ddimolfetta.bsky.social · 03/08/2026
Excited to moderate this discussion at Black Hat about the evolution of the CVE program with officials from CISA and the EU's cyber agency. For those in Vegas this week, I hope to see you there! blackhat.com/us-26/featur...
000
Reposted by David DiMolfetta
WIRED @wired.com · 03/08/2026
Internal documents show ICE's DNA collection has skyrocketed in the second Trump administration. Now, the genetic information of hundreds of thousands of people never convicted of a crime–including children–are held in an FBI criminal database forever.
wired.com
ICE Collected Nearly 1 Million People’s DNA Last Year—Including Young Children
Internal documents show ICE's DNA collection has skyrocketed in the second Trump administration. Now hundreds of thousands of people never convicted of a crime are in an FBI criminal database forever.
815878
David DiMolfetta @ddimolfetta.bsky.social · 03/08/2026
Jay Clayton has been sworn in as Trump’s second permanent spy chief, per readout from ODNI.
002
David DiMolfetta @ddimolfetta.bsky.social · 03/08/2026
First in Nextgov/FCW -> Federal employees and contractors whose sensitive data was stolen in the massive OPM breach a decade ago would receive identity protection for the rest of their lives under new bicameral legislation being introduced today: www.nextgov.com/cybersecurit...
nextgov.com
Lawmakers propose giving 2015 OPM breach victims identity protection for life
The federal government’s coverage for 22.1 million people hoovered up in the China-linked breaches is scheduled to end Sept. 30.
000
David DiMolfetta @ddimolfetta.bsky.social · 31/07/2026
Breaking via my colleague @seanthenewsboy.bsky.social - FedRAMP’s director has been put on leave after recently posting on personal social media that veterans’ preference in federal hiring is preventing his team from bringing on qualified tech-focused employees www.govexec.com/technology/2...
govexec.com
GSA official put on leave for social media post saying veterans’ preference in federal hiring is hampering tech recruiting
A government workforce expert told Government Executive that many hiring rules, including veterans’ preference, have become “procedural hurdles rather than achieving the intended outcome” because they...
033
David DiMolfetta @ddimolfetta.bsky.social · 31/07/2026
Cool scoop from @martinmatishak.bsky.social on CyberCom's plans to build out some presence in Silicon Valley! therecord.media/cyber-comman...
therecord.media
Cyber Command plans Silicon Valley office to drive innovation
The outpost will have its own director, though no one has yet been named for the post, and support the command’s nascent Cyber Warfare Innovation Center (CIWC).
141
David DiMolfetta @ddimolfetta.bsky.social · 31/07/2026
New: Federal CIO Greg Barbaccia will return to Palantir after leaving government at end of August. Two people familiar confirmed the move after head of GSA briefly mentioned it on stage at an event this week. w/ @crobles808.bsky.social + @notamazonalexa.bsky.social www.nextgov.com/people/2026/...
nextgov.com
Greg Barbaccia to return to Palantir after leaving government
The federal CIO’s departure comes after a turbulent period for the federal technology workforce where thousands of technologists left the government.
053
David DiMolfetta @ddimolfetta.bsky.social · 31/07/2026
“If utilities are exposing programmable logic controllers to the public internet, and if the U.S. was a serious country, we’d shut down their operator and sell the utility operations to a competent entity.” www.nextgov.com/cybersecurit...
nextgov.com
CISA urges water utilities to take exposed systems down after Minnesota hacks
A memo distributed to water industry members and obtained by Nextgov/FCW makes mention of Iran but does not directly present evidence attributing the latest Minnesota incident to the country.
000