Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Stop talking to AI, let them talk to each other: The A2A protocol

    Swedish pet insurtech Lassie raises $75M Series C after hitting $100M ARR

    Understanding the valuation of intangible assets in tech deals

    Facebook X (Twitter) Instagram
    • Artificial Intelligence
    • Business Technology
    • Cryptocurrency
    • Gadgets
    • Gaming
    • Health
    • Software and Apps
    • Technology
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Tech AI Verse
    • Home
    • Artificial Intelligence

      Read the extended transcript: President Donald Trump interviewed by ‘NBC Nightly News’ anchor Tom Llamas

      February 6, 2026

      Stocks and bitcoin sink as investors dump software company shares

      February 4, 2026

      AI, crypto and Trump super PACs stash millions to spend on the midterms

      February 2, 2026

      To avoid accusations of AI cheating, college students are turning to AI

      January 29, 2026

      ChatGPT can embrace authoritarian ideas after just one prompt, researchers say

      January 24, 2026
    • Business

      The HDD brand that brought you the 1.8-inch, 2.5-inch, and 3.5-inch hard drives is now back with a $19 pocket-sized personal cloud for your smartphones

      February 12, 2026

      New VoidLink malware framework targets Linux cloud servers

      January 14, 2026

      Nvidia Rubin’s rack-scale encryption signals a turning point for enterprise AI security

      January 13, 2026

      How KPMG is redefining the future of SAP consulting on a global scale

      January 10, 2026

      Top 10 cloud computing stories of 2025

      December 22, 2025
    • Crypto

      Berachain Jumps 150% as Strategic Pivot Lifts BERA

      February 12, 2026

      Tom Lee’s BitMine (BMNR) Stock Faces Cost-Basis Risk — Price Breakdown at 10%?

      February 12, 2026

      Why the US Jobs Data Makes a Worrying Case for Bitcoin

      February 12, 2026

      MYX Falls Below $5 as Short Sellers Take Control — 42% Decline Risk Emerges

      February 12, 2026

      Solana Pins Its $75 Support on Short-Term Buyers — Can Price Survive This Risky Setup?

      February 12, 2026
    • Technology

      Stop talking to AI, let them talk to each other: The A2A protocol

      February 13, 2026

      Swedish pet insurtech Lassie raises $75M Series C after hitting $100M ARR

      February 13, 2026

      Understanding the valuation of intangible assets in tech deals

      February 13, 2026

      The Asus Zenbook S 16 Is $500 Off and Has Never Been This Cheap

      February 13, 2026

      ‘Uncanny Valley’: ICE’s Secret Expansion Plans, Palantir Workers’ Ethical Concerns, and AI Assistants

      February 13, 2026
    • Others
      • Gadgets
      • Gaming
      • Health
      • Software and Apps
    Check BMI
    Tech AI Verse
    You are at:Home»Technology»Cybersecurity takes a big hit in new Trump executive order
    Technology

    Cybersecurity takes a big hit in new Trump executive order

    TechAiVerseBy TechAiVerseJune 17, 2025No Comments6 Mins Read2 Views
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
    Cybersecurity takes a big hit in new Trump executive order
    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp Email

    Cybersecurity takes a big hit in new Trump executive order


    Skip to content

    Provisions on secure software, quantum–resistant crypto, and more are scrapped.

    Cybersecurity practitioners are voicing concerns over a recent executive order issued by the White House that guts requirements for: securing software the government uses, punishing people who compromise sensitive networks, preparing new encryption schemes that will withstand attacks from quantum computers, and other existing controls.

    The executive order (EO), issued on June 6, reverses several key cybersecurity orders put in place by President Joe Biden, some as recently as a few days before his term ended in January. A statement that accompanied Donald Trump’s EO said the Biden directives “attempted to sneak problematic and distracting issues into cybersecurity policy” and amounted to “political football.”

    Pro-business, anti-regulation

    Specific orders Trump dropped or relaxed included ones mandating (1) federal agencies and contractors adopt products with quantum-safe encryption as they become available in the marketplace, (2) a stringent Secure Software Development Framework (SSDF) for software and services used by federal agencies and contractors, (3) the adoption of phishing-resistant regimens such as the WebAuthn standard for logging into networks used by contractors and agencies, (4) the implementation new tools for securing Internet routing through the Border Gateway Protocol, and (5) the encouragement of digital forms of identity.

    In many respects, executive orders are at least as much performative displays as they are a vehicle for creating sound policy. Biden’s cybersecurity directives were mostly in this second camp.

    The provisions regarding the secure software development framework, for instance, was born out of the devastating consequences of the SolarWinds supply chain attack of 2020. During the event, hackers linked to the Russian government breached the network of a widely used cloud service, SolarWinds. The hackers went on to push a malicious update that distributed a backdoor to more than 18,000 customers, many of whom were contractors and agencies of the federal government.

    The departments of Commerce, Treasury, Homeland Security and the National Institutes of Health were all compromised. A large roster of private companies—among them Microsoft, Intel, Cisco, Deloitte, FireEye, and CrowdStrike—were also breached.

    In response, a Biden EO required the Cybersecurity and Infrastructure Security Agency to establish a “common form” for self-attestation that organizations selling critical software to the federal government were complying with the provisions in the SSDF. The attestation had come from a company officer.

    Trump’s EO removes that requirement and instead directs National Institute for Standards and Technology (NIST) to create a reference security implementation for the SSDF with no further attestation requirement. The new implementation will supplant SP 800-218, the government’s existing SSDF reference implementation, although the Trump EO calls for the new guidelines to be informed by it.

    Critics said the change will allow government contractors to skirt directives that would require them to proactively fix the types of security vulnerabilities that enabled the SolarWinds compromise.

    “That will allow folks to checkbox their way through ‘we copied the implementation’ without actually following the spirit of the security controls in SP 800-218,” Jake Williams, a former hacker for the National Security Agency who is now VP of research and development for cybersecurity firm Hunter Strategy, said in an interview. “Very few organizations actually comply with the provisions in SP 800-218 because they put some onerous security requirements on development environments, which are usually [like the] Wild West.”

    The Trump EO also rolls back requirements that federal agencies adopt products that use encryption schemes that aren’t vulnerable to quantum computer attacks. Biden put these requirements in place in an attempt to jump-start the implementation of new quantum-resistant algorithms under development by NIST.

    “What we basically ended up with is less firm direction and less guidance where we already didn’t have much,” said Alex Sharpe, who has 30 years of experience in cybersecurity governance. He and other industry experts caution that the transition to quantum-resistant algorithms will be among the biggest technological challenges the government and private industry have ever undertaken. That, in turn, creates friction and resistance to the job of overhauling entire software stacks, databases, and other existing infrastructure that will be necessary.

    “Now that the enforcement mechanism was taken off, there are going to be a lot of organizations that are less likely to deal with that,” he said.

    Trump also scrapped instructions for the departments of State and Commerce to encourage key foreign allies and overseas industries to adopt NIST’s PQC algorithms.

    Other changes mandated by the EO include:

    • Barring the Treasury Department from sanctioning people in the US who are involved in cyberattacks on US infrastructure. The accompanying White House statement said the change would prevent “misuse against domestic political opponents.”
    • Lifting language that declared Border Gateway Protocol, the primary means for routing traffic on the Internet, is “vulnerable to attack.” Also dropped are existing requirements that the Commerce Department, working with NIST, publish guidance on implementing “operationally viable BGP security methods” such as Resource Public Key Infrastructure and creating Route Origin Authorizations for government networks and contracted service providers. These defenses are designed to prevent the types of BGP attacks and mishaps that have hijacked IP addresses belonging to banks and other critical infrastructure.
    • Abandoning the Biden administration’s plans to encourage the use of digital identity documents. The White House statement said implementing digital IDs “risked widespread abuse by enabling illegal immigrants to improperly access public benefits.”

    “I think it’s very pro-business, anti-regulation,” Williams said of the overall thrust of the new EO. Besides weakening SSDF requirements, he said: “Striking the BPG security messaging is a gift to ISPs, who know this is a problem but also know it will be expensive for them to fix.”

    Sharpe said that most of the deleted requirements “made a lot of sense.” Referring to Trump, he added: “He talks about the burden of compliance. What about the burden of noncompliance?”

    Dan Goodin is Senior Security Editor at Ars Technica, where he oversees coverage of malware, computer espionage, botnets, hardware hacking, encryption, and passwords. In his spare time, he enjoys gardening, cooking, and following the independent music scene. Dan is based in San Francisco. Follow him at here on Mastodon and here on Bluesky. Contact him on Signal at DanArs.82.



    34 Comments

    Share. Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Telegram Email
    Previous ArticleX sues to block copycat NY content moderation law after California win
    Next Article All 17 fired vaccine advisors unite to blast RFK Jr.’s “destabilizing decisions”
    TechAiVerse
    • Website

    Jonathan is a tech enthusiast and the mind behind Tech AI Verse. With a passion for artificial intelligence, consumer tech, and emerging innovations, he deliver clear, insightful content to keep readers informed. From cutting-edge gadgets to AI advancements and cryptocurrency trends, Jonathan breaks down complex topics to make technology accessible to all.

    Related Posts

    Stop talking to AI, let them talk to each other: The A2A protocol

    February 13, 2026

    Swedish pet insurtech Lassie raises $75M Series C after hitting $100M ARR

    February 13, 2026

    Understanding the valuation of intangible assets in tech deals

    February 13, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Ping, You’ve Got Whale: AI detection system alerts ships of whales in their path

    April 22, 2025668 Views

    Lumo vs. Duck AI: Which AI is Better for Your Privacy?

    July 31, 2025256 Views

    6.7 Cummins Lifter Failure: What Years Are Affected (And Possible Fixes)

    April 14, 2025153 Views

    6 Best MagSafe Phone Grips (2025), Tested and Reviewed

    April 6, 2025111 Views
    Don't Miss
    Technology February 13, 2026

    Stop talking to AI, let them talk to each other: The A2A protocol

    Stop talking to AI, let them talk to each other: The A2A protocol Have you…

    Swedish pet insurtech Lassie raises $75M Series C after hitting $100M ARR

    Understanding the valuation of intangible assets in tech deals

    The Asus Zenbook S 16 Is $500 Off and Has Never Been This Cheap

    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    About Us
    About Us

    Welcome to Tech AI Verse, your go-to destination for everything technology! We bring you the latest news, trends, and insights from the ever-evolving world of tech. Our coverage spans across global technology industry updates, artificial intelligence advancements, machine learning ethics, and automation innovations. Stay connected with us as we explore the limitless possibilities of technology!

    Facebook X (Twitter) Pinterest YouTube WhatsApp
    Our Picks

    Stop talking to AI, let them talk to each other: The A2A protocol

    February 13, 20262 Views

    Swedish pet insurtech Lassie raises $75M Series C after hitting $100M ARR

    February 13, 20262 Views

    Understanding the valuation of intangible assets in tech deals

    February 13, 20262 Views
    Most Popular

    7 Best Kids Bikes (2025): Mountain, Balance, Pedal, Coaster

    March 13, 20250 Views

    VTOMAN FlashSpeed 1500: Plenty Of Power For All Your Gear

    March 13, 20250 Views

    This new Roomba finally solves the big problem I have with robot vacuums

    March 13, 20250 Views
    © 2026 TechAiVerse. Designed by Divya Tech.
    • Home
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.