Sign in

David DiMolfetta

@ddimolfetta.bsky.social
2.8K followers 398 following 919 posts

Nextgov/FCW cybersecurity + intelligence reporter. Tips: ddimolfetta@govexec.com Signal: @ djd.99 X/Twitter: @ddimolfetta

PostsRepliesMedia
David DiMolfetta @ddimolfetta.bsky.social · 18h
The DMDC breach that exposed sensitive personnel information for months raises questions yet again about how federal agencies are able to successfully detect unauthorized access to the records they hold on millions of individuals: www.nextgov.com/cybersecurit...
nextgov.com
Pentagon personnel breach — undetected for months — renews cyber standard scrutiny
Unauthorized users accessed sensitive records for roughly nine months before discovery, exposing another government personnel data fiasco as the FBI confronts its own breach incident.
021
Reposted by David DiMolfetta
Tim Starks @timstarks.bsky.social · 01/10/2026
ENDORSE.
061
David DiMolfetta @ddimolfetta.bsky.social · 01/10/2026
Finally something in DC where I can contribute meaningfully to the conversation
042
David DiMolfetta @ddimolfetta.bsky.social · 01/10/2026
Nice little WaPo reunion with @timstarks.bsky.social and our old cyber editor @aaronschaffer.com
060
David DiMolfetta @ddimolfetta.bsky.social · 01/10/2026
At Washington Post’s AI Edge Summit, National Cyber Director Sean Cairncross refers to AI as “Super Intelligence.”
010
David DiMolfetta @ddimolfetta.bsky.social · 01/10/2026
The intelligence threat highlights the high stakes of the global AI race, and the findings come just days after top executives like Anthropic’s Dario Amodei meet with Donald Trump to discuss voluntary AI safety commitments.
000
David DiMolfetta @ddimolfetta.bsky.social · 01/10/2026
Among those impersonated was Lynne Parker, who served in White House’s OSTP. She confirmed she learned of the impersonation in July. “It is personally troubling to see the trust and relationships I’ve built over my career exploited to deceive others,” she told me.
100
David DiMolfetta @ddimolfetta.bsky.social · 01/10/2026
NEW: Chinese hackers impersonated former White House + State Department officials and a senior Anthropic employee in attempts to break into the cloud accounts of AI policy experts, cybersecurity company Proofpoint said today. www.nextgov.com/cybersecurit...
nextgov.com
China-linked hackers posed as former US officials, Anthropic employee to target AI experts
Proofpoint identified phishing campaigns that borrowed prominent figures’ identities to approach U.S. policy researchers before attempting to steal access to their cloud accounts.
164
David DiMolfetta @ddimolfetta.bsky.social · 30/09/2026
Election officials said Wednesday that renewed federal cybersecurity assistance comes too late for some of their midterm preparations, following cuts they say disrupted support from CISA, though they are not closing the door on federal help.  www.nextgov.com/cybersecurit...
nextgov.com
Renewed CISA support comes too late for midterm prep, some election officials say
Arizona still plans to accept federal help on Election Day, while officials warn that staffing cuts have weakened relationships and left smaller jurisdictions with fewer resources.
011
Reposted by David DiMolfetta
The New York Times @nytimes.com · 30/09/2026
A passenger jet flying from Dubai to Tel Aviv signaled it was in distress on Wednesday and abruptly reversed course near the Saudi-Jordanian border. Officials of three Israeli government agencies said it appeared that the pilot and co-pilot of the FlyDubai flight had gotten into a scuffle.
nyti.ms
FlyDubai Flight to Tel Aviv Issues Distress Signal Before Landing in Saudi Arabia
The plane was traveling from Dubai to Israel when the pilot and co-pilot appear to have gotten into a fight, Israeli officials said.
2511539
David DiMolfetta @ddimolfetta.bsky.social · 29/09/2026
Six federal agencies failed to provide records needed to determine whether DOGE personnel appropriately accessed and protected government systems, leaving Congress and the public without assurances that sensitive information was secured, GAO said Tuesday. www.nextgov.com/policy/2026/...
nextgov.com
Agencies withheld records needed to verify DOGE data safeguards, GAO says
A review of six agencies could not establish the full extent of DOGE’s system access or whether security rules were followed. Two agencies challenged the watchdog’s authority to investigate.
022
David DiMolfetta @ddimolfetta.bsky.social · 29/09/2026
The FBI’s top cyber official urged remaining ShinyHunters members to come forward while still possible, hinting at possible progress against the hacking group accused of stealing troves of sensitive bureau personnel records: www.nextgov.com/cybersecurit...
nextgov.com
FBI warns ShinyHunters members to come forward after alleged leader’s arrest
“You know how to find us, and we know how to find you,” said Brett Leatherman, assistant director of the FBI’s Cyber Division. “I suggest you reach out first while the choice is still yours.”
001
David DiMolfetta @ddimolfetta.bsky.social · 28/09/2026
In a lengthy email sent to me, ShinyHunters now claims it never intended to publish the FBI data it says it stole, calling the episode a “marketing campaign.” The group previously gave the FBI one week to change or remove an advisory about it. I’ve asked FBI for comment.
163
David DiMolfetta @ddimolfetta.bsky.social · 28/09/2026
New: The House Intelligence Committee’s top Democrat warned that intelligence contractors may face scrutiny over donations to Trump’s White House ballroom project, including whether contributions were connected to contracts or access to senior officials. www.nextgov.com/acquisition/...
nextgov.com
Lawmaker warns intelligence contractors' Trump ballroom donations may be scrutinized
Rep. Jim Himes, the ranking member of the House Intelligence Committee, wants to examine whether contributions were tied to federal contracts or access to administration officials.
021
David DiMolfetta @ddimolfetta.bsky.social · 28/09/2026
"GPT-6 Astra often asked for permission to perform unsanctioned actions on out-of-scope targets." From UK's AI Security Institute report out today: www.aisi.gov.uk/blog/gpt-6-a...
033
David DiMolfetta @ddimolfetta.bsky.social · 25/09/2026
Former officials warned about this possibility last month: www.nextgov.com/cybersecurit...
nextgov.com
Federal systems increasingly likely to face accidental AI breach after Hugging Face, experts say
Former officials and security experts say aged systems, contractors and agency AI adoption could open similar paths into government networks.
012
David DiMolfetta @ddimolfetta.bsky.social · 25/09/2026
OpenAI says its advanced models may have gone after government websites www.nextgov.com/cybersecurit...
nextgov.com
OpenAI says its advanced models may have gone after government websites
The disclosure follows warnings from former officials in August that government systems could face unintended intrusions by autonomous AI agents.
101
David DiMolfetta @ddimolfetta.bsky.social · 24/09/2026
Other discoveries involved sensitive government records, where a municipal data service exposed personal information from about ~5k elderly residents. In another case, an exposed admin key also permitted reading, 8.8 million files in a MidEast country’s national archive.
000
David DiMolfetta @ddimolfetta.bsky.social · 24/09/2026
The findings are among the early results of the firm’s new initiative aimed at entities with low cyberdefense resources. The cases continue to show how AI tools can help rapidly identify entry points for hackers if they’re not caught in time.
100
David DiMolfetta @ddimolfetta.bsky.social · 24/09/2026
New: AI security testing tools developed by Google-owned Wiz uncovered weaknesses that exposed a public rail operator’s administrative systems and gave outsiders a way to control a public hospital’s mobile alert channel, the company said Thursday. www.nextgov.com/cybersecurit...
nextgov.com
AI scanning tools found security gaps at rail operator and hospitals, Wiz says
Researchers discovered access to rail administration systems, a hospital alert channel and sensitive records in a new effort aimed at organizations with limited cyber resources.
110
David DiMolfetta @ddimolfetta.bsky.social · 24/09/2026
The analysts focus on myriad subject areas like Russia, China, Hezbollah and cartels. Multiple also work on HUMINT and telecom interception. Some are in the bureau’s Remote Operations Unit. One works in the FISA Management Unit, which handles the processing of FISA applications.
000
David DiMolfetta @ddimolfetta.bsky.social · 24/09/2026
Data stolen in hacking group’s alleged intrusion into FBI is believed to contain personal info on hundreds of intel analysts and others involved in clandestine activities, according to two people familiar with the matter. Matching Reuters + 404 Media -> www.nextgov.com/cybersecurit...
nextgov.com
Stolen FBI data reveals employees’ roles in intelligence and surveillance
Exposed analysts work on areas including China, Russia and electronic surveillance. ShinyHunters claimed responsibility for the breach this week. The FBI said it’s investigating.
110
David DiMolfetta @ddimolfetta.bsky.social · 22/09/2026
The job postings in the data included employees designated as intelligence analysts, attorneys, student trainees and special agents, among other roles. The entire data set was not verified.
000
David DiMolfetta @ddimolfetta.bsky.social · 22/09/2026
Update: ShinyHunters sent us a text file appearing to contain sensitive personal info on ~5k FBI employees, including names, addresses, phone numbers, and other info. We queried some of the listed peoples’ names online and found that they are employed with the FBI.
100
David DiMolfetta @ddimolfetta.bsky.social · 22/09/2026
The language ShinyHunters wants removed appears in a May 15 FBI public service announcement issued after an attack disrupted an online learning management system used by educational institutions. www.nextgov.com/cybersecurit...
nextgov.com
ShinyHunters claims FBI data theft, demands bureau retract cyber warning
The hacking group says it obtained sensitive employee and applicant records. The full scope of the claimed breach remains unclear.
000
Reposted by David DiMolfetta
Institute for Security and Technology @istorg.bsky.social · 15/09/2026
In IST’s first-of-its-kind survey of current and former national security officials, respondents said the likelihood of an AI catastrophe has already reached or exceeded acceptable risk levels. For NextGov, @ddimolfetta.bsky.social unpacks key takeaways from the survey. 🛡️ Read more:
nextgov.com
Dozens of current, former officials see at least a 10% chance humans lose control of AI
Nearly half of respondents in the survey released Wednesday serve or have served in the Defense Department, an agency locked in fierce discourse over military use of AI systems.
001
David DiMolfetta @ddimolfetta.bsky.social · 11/09/2026
Newly declassified CIA records detail how analysts viewed emerging technology threats before 9/11, from fears that terrorists could exploit Y2K computer glitches to assessments that extremist websites were helping recruit fighters. Our coverage here: www.nextgov.com/cybersecurit...
nextgov.com
CIA feared terrorists could exploit Y2K glitches, declassified briefs show
Records released for the 25th anniversary of 9/11 also describe intelligence assessments of extremist websites helping recruit fighters and spread chemical and biological weapons information.
012
David DiMolfetta @ddimolfetta.bsky.social · 11/09/2026
25 years after 9/11, spy agencies face old lessons and new threats  www.nextgov.com/cybersecurit...
nextgov.com
25 years after 9/11, spy agencies face old lessons and new threats
Former intelligence officials describe a nation better equipped to disrupt terrorist plots, but still wrestling with the costs of its response and how to prevent the next crisis under escalating techn...
000
David DiMolfetta @ddimolfetta.bsky.social · 09/09/2026
~250 prospective CISA employees have received tentative job offers and are awaiting clearance to start work, the latest update on the agency’s efforts to up staffing after its workforce was reduced over the last year. www.nextgov.com/people/2026/...
nextgov.com
CISA has roughly 250 prospective hires awaiting clearance, agency chief says
Acting Director Nick Andersen says the agency is prioritizing operational teams and regional staff as it works to rebuild its workforce after reductions last year.
042
David DiMolfetta @ddimolfetta.bsky.social · 09/09/2026
The FBI is seeking more frequent operations against hackers and a larger role for private companies under a new cyber strategy released today, with the bureau’s cyber chief saying teams are aiming to act more quickly to disrupt attacks and warn victims. www.nextgov.com/cybersecurit...
nextgov.com
New FBI cyber strategy seeks faster action against hackers, larger industry role
The bureau wants more frequent disruption operations and quicker warnings to victims as the Justice Department works through rules for expanded private sector participation in hacking cybercrime group...
010
David DiMolfetta @ddimolfetta.bsky.social · 09/09/2026
😂😂😂😂
000
David DiMolfetta @ddimolfetta.bsky.social · 08/09/2026
CIA cyber operatives provided intelligence that helped U.S. forces locate and capture Maduro within minutes of landing on the ground in January this year, agency Deputy Director Michael Ellis said Tuesday. www.nextgov.com/cybersecurit...
nextgov.com
CIA cyber intelligence helped US forces capture Maduro, deputy director says
Michael Ellis credited the agency’s cyber intelligence officers with helping U.S. troops locate and apprehend the Venezuelan leader within minutes of landing.
000
David DiMolfetta @ddimolfetta.bsky.social · 02/09/2026
DOJ says “hundreds of thousands” of X users were targeted in password recovery emails and is investigating the “sophisticated” criminal hackers believed to have pulled it off. x.com/i/trending/2...
010
David DiMolfetta @ddimolfetta.bsky.social · 02/09/2026
NEW: Pentagon cyber strategy expected as soon as next week, three people familiar with the plans say -> www.nextgov.com/cybersecurit...
nextgov.com
Pentagon cyber strategy expected as soon as next week, sources say
Officials have previewed a blueprint emphasizing offensive operations, AI adoption and closer industry ties as the military reorganizes its cyber forces.
010
Reposted by David DiMolfetta
Eric Geller @ericjgeller.com · 02/09/2026
Scoop: CISA is ending six free cybersecurity assessments for critical infrastructure operators, significantly reducing the hands-on guidance it offers to those organizations even as it tries to rebuild and reassert its value: www.cybersecuritydive.com/news/cisa-cy...
816875
David DiMolfetta @ddimolfetta.bsky.social · 02/09/2026
Current + former officials see at least a 10% chance humans lose control of AI in the next decade, per a survey released today. Many people in the study serve or have served in DOD, White House, intelligence community and other government agencies: www.nextgov.com/artificial-i...
020
David DiMolfetta @ddimolfetta.bsky.social · 01/09/2026
Stopgap funding bill temporarily extends key cyber info-sharing law www.nextgov.com/policy/2026/...
nextgov.com
Stopgap funding bill temporarily extends key cyber info-sharing law
The short-term package pushes the sunset date for the bedrock cyber legislation to Dec. 11, in addition to setting extensions for the Technology Modernization Fund and National Cybersecurity Protectio...
000
David DiMolfetta @ddimolfetta.bsky.social · 01/09/2026
Enjoyed chatting with David Brown for @texasstandard.bsky.social today about the White House Watershed 250 initiative and what it could mean for often under-resourced water infrastructure operators around the country. Our segment begins at the 25:30 mark -> kutkutx.studio/texas-standa...
kutkutx.studio
Marfa’s Palace Theater could soon see new life
Tropical Storm Edouard heads toward the Texas coast. What to expect as it makes landfall. An update on recovery efforts in Nepal, where Texans are among the missing. How Texas is helping mount a…
000
David DiMolfetta @ddimolfetta.bsky.social · 31/08/2026
The Trump admin is launching its new water sector cybersecurity program today in San Antonio that will bring together the Office of the National Cyber Director, Texas Cyber Command, the office of Texas Gov. Greg Abbott and industry partners: www.nextgov.com/cybersecurit...
nextgov.com
White House launches water cybersecurity pilot in Texas
Project Watershed 250 will stress-test utilities over six months and could serve as a model for protecting water providers nationwide.
021
David DiMolfetta @ddimolfetta.bsky.social · 27/08/2026
Nathan Vilas Laatsch, a former IT specialist for the Defense Intelligence Agency, pleaded guilty to trying to share classified information with a foreign government on Wednesday: www.nextgov.com/people/2026/...
nextgov.com
Intelligence agency employee pleads guilty to trying to share classified info with foreign government
Nathan Vilas Laatsch was allegedly disgruntled by the Trump administration and willing to share sensitive data with the foreign country. The FBI set up a dead drop operation to intercept the classifie...
000
David DiMolfetta @ddimolfetta.bsky.social · 27/08/2026
The NSA wants access to AI models across the commercial market and is holding extensive discussions with leading developers as it moves to carry out new White House directives on the technology, the agency’s deputy director said Thursday --> www.nextgov.com/artificial-i...
nextgov.com
NSA wants access to ‘all’ AI models, top official says
The spy agency is taking a key role in the government’s new voluntary model-testing program, though its deputy director did not say which companies are participating.
011
David DiMolfetta @ddimolfetta.bsky.social · 26/08/2026
White House will soon unveil a program designed to help protect water providers from cyberattacks, which comes as multiple states face hacking attempts on their water systems that some officials suspect may be tied to Iran. Confirming Politico: www.nextgov.com/cybersecurit...
nextgov.com
White House to soon launch water provider cyber protection program
The plans come as several states face water system intrusions from what some official suspect could be linked to Iran.
8303
David DiMolfetta @ddimolfetta.bsky.social · 21/08/2026
Exclusive: Five House Democrats are asking GAO to examine how staffing cuts at CISA have affected the government’s ability to defend federal networks and critical infrastructure, per letter first seen by us. www.nextgov.com/people/2026/...
nextgov.com
House Democrats ask GAO to review CISA workforce cuts
Lawmakers want Congress’ watchdog to assess what capabilities were lost after the cyber agency shed roughly one-third of its staff.
000
David DiMolfetta @ddimolfetta.bsky.social · 18/08/2026
NEW -> Trump’s new plan to enlist private companies to disrupt cybercriminals abroad may face a fundamental problem when it comes to Russia: distinguishing criminal hackers and state-backed operatives, former officials + experts tell me. www.nextgov.com/cybersecurit...
nextgov.com
The Russian hurdle in Trump’s new offensive cyber program
The White House wants private companies to help take down cybercriminals overseas. But in Russia, the line between criminal hackers and the government is difficult to draw.
142
David DiMolfetta @ddimolfetta.bsky.social · 10/08/2026
NEW —> Federal systems increasingly likely to face accidental AI breach after Hugging Face, experts say “If the same chain of events began again … there is little reason to assume a federal agency would be spared.” www.nextgov.com/cybersecurit...
nextgov.com
Federal systems increasingly likely to face accidental AI breach after Hugging Face, experts say
Former officials and security experts say aged systems, contractors and agency AI adoption could open similar paths into government networks.
021
David DiMolfetta @ddimolfetta.bsky.social · 09/08/2026
Their remarks build on terrific earlier reporting from Reuters (linked below) and adds some new details on how their effort was set to expand—and the pressure Mojave says followed when its findings didn’t support what the White House was looking for. www.reuters.com/world/us/tru...
reuters.com
Trump, aides chase vote-rigging claims even after latest probe finds nothing
A prominent election-denier, attorney and former Navy SEAL, Kurt Olsen aimed to prove the discredited conspiracy theory that Dominion Voting Systems machines had been infected with malicious code cont...
021
David DiMolfetta @ddimolfetta.bsky.social · 09/08/2026
The ODNI-backed work examined a Dominion voting system. In a presentation at the DEF CON Voting Village on Friday, Mojave said it found vulnerabilities, but no evidence they were exploited or votes were altered. They had been preparing to expand on their work ahead of midterms.
111
David DiMolfetta @ddimolfetta.bsky.social · 09/08/2026
NEW from DEF CON -> Mojave Research execs said plans to expand their federal election security work abruptly ended after learning Trump adviser Kurt Olsen pushed back when their Puerto Rico findings failed to substantiate election manipulation claims: www.nextgov.com/cybersecurit...
nextgov.com
Voting machine researchers say federal work abruptly ended after Trump ally pushed back on their findings
Mojave Research executives said at DEF CON that the government had been preparing to expand the company’s election security work, and linked Trump adviser Kurt Olsen to pressure they faced after findi...
182
Reposted by David DiMolfetta
The Record @therecordmedia.bsky.social · 06/08/2026
President Donald Trump “has raised transnational criminal organizations with President Xi,” Assistant Secretary of State Michael DeSombre told senators therecord.media/trump-xi-sou...
therecord.media
State Department says Trump raised cyber scam compound issue with Xi
President Donald Trump has talked with Chinese President Xi Jinping about Southeast Asian scam compounds, a State Department official told senators at a hearing on the transnational issue.
011
David DiMolfetta @ddimolfetta.bsky.social · 06/08/2026
Excellent reporting here from Patrick
110