Lawsuit from FTC commissioners. Browser extension issues.
READ IN BROWSER
CyberScoop linkedin facebook X


FRIDAY, MARCH 28, 2025
Many experts believe that states won't be able to handle cybersecurity on their own under Trump's executive order. FTC Commissioners filed a lawsuit. And a look at how simple browser extensions can cause complex problems. This is CyberScoop for Friday, March 28.
feature image

traffic_analyzer, Getty Images

Experts bristle at pushing cyber defense responsibility to states

State and local governments, backed by cybersecurity experts, have criticized a new Trump administration executive order that transfers more cybersecurity responsibilities to them, fearing it places an undue burden on entities not well-equipped to handle such challenges. The order aims to improve defenses against cyberattacks by emphasizing local preparedness, but critics argue it will create gaps in security by reducing crucial federal support and resources. While some believe states might innovate under the new directives, concerns remain about their ability to replicate the comprehensive resources and intelligence usually provided by federal entities like CISA, potentially resulting in a fragmented cybersecurity landscape. Tim Starks and StateScoop's Colin Wood have more.


AITalks | Apr 24, 2025

Gain invaluable insights and connect with industry peers at AITalks. Explore the latest AI trends, best practices, and real-world use cases. Learn how to overcome challenges and maximize the benefits of AI for your organization. Register today!



FTC Commissioners file lawsuit

Democratic FTC commissioners Alvaro Bedoya and Rebecca Slaughter filed a lawsuit against President Trump, alleging that his attempt to fire them violates the FTC Act and Supreme Court precedent, which states that commissioners can only be removed for inefficiency, neglect of duty, or malfeasance. The suit challenges the removal as unlawful, arguing that it undermines the FTC's independence and could allow political influences to dictate enforcement and regulation efforts, thus endangering the integrity of investigations. While Trump’s administration argues the FTC's modern powers justify revisiting past legal interpretations, experts predict the Supreme Court might eventually side with Trump's broader view of presidential authority, though initial rulings may favor the commissioners. Derek B. Johnson has more.


Keep an eye on browser extensions

Browser extensions, often overlooked, can pose significant security risks as they can be easily bought, sold, or repurposed without users' knowledge, leading to potential malicious alterations. John Tuckner, from Secure Annex, demonstrated how a harmless-looking extension could be manipulated post-purchase to alter web traffic without user consent, revealing the challenges in policing such changes. Despite mechanisms in place like Google's approval process for updates, these are often insufficient to manage the risks associated with changes in extension ownership and permissions, as many businesses underestimate the potential threats lurking within seemingly benign extensions. Matt Kapko has more.


AIWeek | Apr 21-25, 2025

AI Week is the nation's only week-long tech festival dedicated to artificial intelligence and its potential to transform the world we live in. During AI Week 2025, thousands of C-suite leaders from the government, tech and education communities across the U.S. will gather online and in person to participate in hundreds of community events, interactive sessions, lightning talks, networking opportunities and more for an exclusive look at the latest in the AI space. Register today!



New Safe Mode

In this episode, Greg Otto talks with Edera co-founder and CTO Alex Zenla, charting her path from beginnings in Minecraft IRC channels to pioneering container isolation technology. Alex discusses her unique expertise in container security, GPU protection, and AI infrastructure, and how Edera is transforming the tech landscape with a commitment to balancing open-source benefits with robust security, setting new standards for cloud security's future. Listen here.