EINSTEIN is Probably the Wrong Name for the Government’s Very Flawed Cybersecurity System

The Government Accountability Office rips the $6-billion-dollar system.

<a href="http://www.istockphoto.com/photo/tired-in-the-office-gm175211748-21872440?st=ba54c3f">ByeByeTokyo</a>/iStockPhoto

Fight disinformation: Sign up for the free Mother Jones Daily newsletter and follow the news that matters.


The government relies on a system called EINSTEIN, or the National Cybersecurity Protection System, to detect and stop the rising numbers of cyberattacks on its computers. But a new report from the Government Accountability Office says EINSTEIN is falling far short of expectations.

The latest version of the $6-billion-dollar system, which rolled out in 2013, was designed to both detect suspicious cyber activity and prevent anything harmful from entering or leaving government computer networks. But the GAO says the system gives its users only “a limited ability to detect potentially malicious activity entering and exiting computer networks at federal agencies.” And when the GAO tested EINSTEIN, the system could only identify six percent of the common vulnerabilities in programs typically used on federal computers, including Microsoft Office and Internet Explorer.

The system is also falling short on helping agencies share information about cyber threats. The GAO found that only 5 of 23 federal agencies are actually using the “intrusion prevention” parts of the EINSTEIN system, which actively try to block malicious content. The information gained from those agencies helps recognize patterns that the system can use to improve and identify other similar attacks. The smaller the pool of data, the less effective the system can be. The information-sharing process itself also appears to be a mess. “DHS has yet to develop most of the planned functionality for NCPS’s information-sharing capability,” the report said. “Moreover, agencies and DHS did not always agree about whether notifications of potentially malicious activity had been sent or received, and agencies had mixed views about the usefulness of these notifications.”

A classified version of the report was released in November, but a declassified version was released on Thursday by the GAO. It came just days after the government announced the formation of a new agency to handle background checks after two massive hacks struck the Office of Personnel Management. The hacks, believed to be the work of the Chinese government, stole the highly sensitive background investigation forms of more than 20 million federal employees. After the attacks became public knowledge last year, the government’s cybersecurity defenses came under withering scrutiny from congressional overnight committees. This week’s report isn’t likely to help.

AN IMPORTANT UPDATE

We’re falling behind our online fundraising goals and we can’t sustain coming up short on donations month after month. Perhaps you’ve heard? It is impossibly hard in the news business right now, with layoffs intensifying and fancy new startups and funding going kaput.

The crisis facing journalism and democracy isn’t going away anytime soon. And neither is Mother Jones, our readers, or our unique way of doing in-depth reporting that exists to bring about change.

Which is exactly why, despite the challenges we face, we just took a big gulp and joined forces with the Center for Investigative Reporting, a team of ace journalists who create the amazing podcast and public radio show Reveal.

If you can part with even just a few bucks, please help us pick up the pace of donations. We simply can’t afford to keep falling behind on our fundraising targets month after month.

Editor-in-Chief Clara Jeffery said it well to our team recently, and that team 100 percent includes readers like you who make it all possible: “This is a year to prove that we can pull off this merger, grow our audiences and impact, attract more funding and keep growing. More broadly, it’s a year when the very future of both journalism and democracy is on the line. We have to go for every important story, every reader/listener/viewer, and leave it all on the field. I’m very proud of all the hard work that’s gotten us to this moment, and confident that we can meet it.”

Let’s do this. If you can right now, please support Mother Jones and investigative journalism with an urgently needed donation today.

payment methods

AN IMPORTANT UPDATE

We’re falling behind our online fundraising goals and we can’t sustain coming up short on donations month after month. Perhaps you’ve heard? It is impossibly hard in the news business right now, with layoffs intensifying and fancy new startups and funding going kaput.

The crisis facing journalism and democracy isn’t going away anytime soon. And neither is Mother Jones, our readers, or our unique way of doing in-depth reporting that exists to bring about change.

Which is exactly why, despite the challenges we face, we just took a big gulp and joined forces with the Center for Investigative Reporting, a team of ace journalists who create the amazing podcast and public radio show Reveal.

If you can part with even just a few bucks, please help us pick up the pace of donations. We simply can’t afford to keep falling behind on our fundraising targets month after month.

Editor-in-Chief Clara Jeffery said it well to our team recently, and that team 100 percent includes readers like you who make it all possible: “This is a year to prove that we can pull off this merger, grow our audiences and impact, attract more funding and keep growing. More broadly, it’s a year when the very future of both journalism and democracy is on the line. We have to go for every important story, every reader/listener/viewer, and leave it all on the field. I’m very proud of all the hard work that’s gotten us to this moment, and confident that we can meet it.”

Let’s do this. If you can right now, please support Mother Jones and investigative journalism with an urgently needed donation today.

payment methods

We Recommend

Latest

Sign up for our free newsletter

Subscribe to the Mother Jones Daily to have our top stories delivered directly to your inbox.

Get our award-winning magazine

Save big on a full year of investigations, ideas, and insights.

Subscribe

Support our journalism

Help Mother Jones' reporters dig deep with a tax-deductible donation.

Donate