Author : Dan Hoffman

Foreign Aircraft, Domestic Risks

🔒✈️ Foreign Aircraft, Domestic Risks — An Exercise in IT/OT Cybersecurity I’m proud to share my new article published in CSO Online:“Foreign Aircraft, Domestic Risks” This piece isn’t just about aviation — it’s a real-world exercise in cybersecurity at the intersection of IT and OT. Using the example of a foreign-donated aircraft retrofitted for U.S. […]

Proposed Changes to HIPAA. Are you ready?

​The U.S. Department of Health and Human Services (HHS) has proposed significant updates to the HIPAA Security Rule to enhance the protection of electronic protected health information (ePHI) against modern cybersecurity threats. These changes, announced in January 2025, represent the most substantial overhaul of the Security Rule in over a decade .​National Law Review+1Reuters+1Axios+1Axios+1 🔐 […]

Trump Administration Shifts Cybersecurity Responsibilities to States

​In March 2025, President Donald Trump signed an executive order titled “Achieving Efficiency Through State and Local Preparedness,” which significantly shifts cybersecurity responsibilities from the federal government to state and local authorities. This policy change has sparked widespread concern among cybersecurity experts and state officials.​Yahoo+6Inside Government Contracts+6The White House+6 Key Elements of the Executive Order […]

Apple Zero-Day Alert

🔐 Overview of the Apple Zero-Day Vulnerabilities In April 2025, Apple addressed two critical zero-day vulnerabilities actively exploited in targeted attacks:​GBHackers+2BleepingComputer+2Help Net Security+2 Apple released emergency patches for these vulnerabilities in iOS 18.4.1, iPadOS 18.4.1, macOS Sequoia 15.4.1, tvOS 18.4.1, and visionOS 2.4.1. ​Help Net Security+6BleepingComputer+6Cyber Security News+6 🛡️ Recommendations

CVE Program gets new life

Why the CVE Program Matters — and Why CISA Saving It Is Critical The CVE Program — Common Vulnerabilities and Exposures — is the backbone of vulnerability tracking. It gives cybersecurity professionals a universal system to identify, communicate, and fix security flaws quickly. Without CVEs, patching would be slower, coordination chaotic, and defenses weaker. Earlier […]

Scroll to top