An official website of the United States government
Here’s how you know
Official websites use .gov
A .gov website belongs to an official government organization in the United States.
Secure .gov websites use HTTPS
A lock (
) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.
After your organization forms a general plan for tackling its cybersecurity and privacy risk management issues, it needs particular state-of-the-art tools to...
There is an urgent need to strengthen the trustworthiness and resilience of the information systems, component products, and services that we depend on in every...
NIST requests comments on Draft NISTIR 8272, Impact Analysis Tool for Interdependent Cyber Supply Chain Risks, which describes a prototype tool developed to...
NIST requests your comments on Draft SP 800-133 Revision 2, Recommendation for Cryptographic Key Generation , which discusses the generation of the keys to be...
NIST Special Publication 800-171, Revision 2, Protecting Controlled Unclassified Information (CUI) in Nonfederal Systems and Organizations, has been approved as...
The number of Common Vulnerabilities and Exposures identifiers (CVE IDs) created year over year has rapidly increased, and this trend is expected to continue...
Reducing the cybersecurity risk to one of the most vulnerable aspects of commerce — global supply chains — is the goal of a new publication by the National...
Since NIST Special Publication (SP) 800-161, Supply Chain Risk Management Practices for Federal Information Systems and Organizations, was published in 2015...
NIST requests feedback on Draft NISTIR 8276, Key Practices in Cyber Supply Chain Risk Management: Observations from industry. This publication is based on an...
As microservices-based applications are increasingly adopted within large enterprises and cloud-based environments, there is a need for a dedicated, scalable...
Traditional identity management has typically involved the storing of user credentials (e.g., passwords) by organizations and third parties, which often results...
Federal agencies, under the Federal Information Security Modernization Act of 2014 (FISMA) and Office of Management and Budget (OMB) circulars and memoranda...
NIST invites comments on Draft NIST Special Publication (SP) 800-208, Recommendation for Stateful Hash-Based Signature Schemes. All of the digital signature...
The United States continues to have complete dependence on information technology deployed in critical systems and applications in both the public and private...
When known software vulnerabilities are unmanaged, uncorrected, or undetected, attack vectors are left open to exploit the software. As a result, vulnerable...
NIST invites comments on Draft NISTIR 8214A , Towards NIST Standards for Threshold Schemes for Cryptographic Primitives: A Preliminary Roadmap, which presents a...
Summary A Federal Register Notice (FRN) announces a Request for Comments on Draft FIPS 186-5 and Draft NIST Special Publication (SP) 800-186. NIST seeks...
NIST's National Cybersecurity Center of Excellence (NCCoE) has released Draft NISTIR 8269, A Taxonomy and Terminology of Adversarial Machine Learning, for...
In recent years, numerous routing control plane anomalies such as Border Gateway Protocol (BGP), prefix hijacking, and route leaks have resulted in denial of...
NIST announces an update of Special Publication (SP) 800-128 , Guide for Security-Focused Configuration Management of Information Systems, which provides...
Summary
NIST has released the following Draft NIST Special Publications (the SP 800-140x “subseries”) for public comment. They directly support Federal...
NIST invites comments on Draft Special Publication (SP) 800-57 Part 1 Revision 5, Recommendation for Key Management: Part 1 – General.
This document provides...
NIST announces the publication of NIST Internal Report (IR) 8268, Status Report on the First Round of the NIST Lightweight Cryptography Standardization Process...
Consumer IoT products are rapidly growing in popularity because these devices can make basic tasks, like adjusting the thermostat or turning on exterior home...
An Implementation Guide for the Cybersecurity Framework (CSF) Manufacturing Profile Low Impact Level has been developed for manufacturers managing cybersecurity...