U.S. flag   An unofficial archive of your favorite United States government website
Dot gov

Official websites do not use .rip
We are an unofficial archive, replace .rip by .gov in the URL to access the official website. Access our document index here.

Https

We are building a provable archive!
A lock (Dot gov) or https:// don't prove our archive is authentic, only that you securely accessed it. Note that we are working to fix that :)

Search CSRC

Use this form to search content on CSRC pages.

For a phrase search, use " "


Limit results to content tagged with of the following topics:
Showing 976 through 1000 of 13602 matching records.
Publications NISTIR 8235 July 20, 2022
https://csrc.nist.rip/publications/detail/nistir/8235/final

Abstract: Public safety officials utilizing public safety broadband networks will have access to devices, such as mobile devices, tablets, and wearables. These devices offer new ways for first responders to complete their missions but may also introduce new security vulnerabilities to their work environment....

Publications White Paper NIST CSWP 27 ipd (Draft) July 12, 2022
https://csrc.nist.rip/publications/detail/white-paper/2022/07/12/cybersecurity-profile-for-hsn-draft-annotated-outline/draft

Abstract: The objective of this Cybersecurity Profile is to identify an approach to assess the cybersecurity posture of Hybrid Satellite Networks (HSN) systems that provide services such as satellite-based systems for communications, position, navigation, and timing (PNT), remote sensing, weather monitoring,...

Publications NISTIR 8413 July 5, 2022
https://csrc.nist.rip/publications/detail/nistir/8413/final

Abstract: The National Institute of Standards and Technology is in the process of selecting publickey cryptographic algorithms through a public, competition-like process. The new publickey cryptography standards will specify additional digital signature, public-key encryption, and key-establishment algorithms...

Publications NISTIR 8323 Rev. 1 (Draft) June 29, 2022
https://csrc.nist.rip/publications/detail/nistir/8323/rev-1/draft

Abstract: The national and economic security of the United States (US) is dependent upon the reliable functioning of the nation’s critical infrastructure. Positioning, Navigation, and Timing (PNT) services are widely deployed throughout this infrastructure. In a government wide effort to mitigate the potentia...

Publications SP 800-219 June 24, 2022
https://csrc.nist.rip/publications/detail/sp/800-219/final

Abstract: The macOS Security Compliance Project (mSCP) provides resources that system administrators, security professionals, security policy authors, information security officers, and auditors can leverage to secure and assess macOS desktop and laptop system security in an automated way. This publication in...

Publications SP 1800-34 (Draft) June 23, 2022
https://csrc.nist.rip/publications/detail/sp/1800-34/draft

Abstract: Organizations are increasingly at risk of cyber supply chain compromise, whether intentional or unintentional. Cyber supply chain risks include counterfeiting, unauthorized production, tampering, theft, and insertion of unexpected software and hardware. Managing these risks requires ensuring the int...

Publications NISTIR 8425 (Draft) June 17, 2022
https://csrc.nist.rip/publications/detail/nistir/8425/draft

Abstract: This publication documents the consumer profile of NIST’s IoT core baseline and identifies cybersecurity capabilities commonly needed for the consumer IoT sector (i.e., IoT products for home or personal use). It can also be a starting point for small businesses to consider in the purchase of IoT pro...

Publications White Paper NIST CSWP 26 June 13, 2022
https://csrc.nist.rip/publications/detail/white-paper/2022/06/13/ordered-t-way-combinations-for-testing-state-based-systems/final

Abstract: Fault detection often depends on the specific order of inputs that establish states which eventually lead to a failure. However, beyond basic structural coverage metrics, it is often difficult to determine if code has been exercised sufficiently to ensure confidence in its functions. Measures are ne...

Publications NISTIR 8286D (Draft) June 9, 2022
https://csrc.nist.rip/publications/detail/nistir/8286d/draft

Abstract: While business impact analysis (BIA) has historically been used to determine availability requirements for business continuity, the process can be extended to provide broad understanding of the potential impacts to the enterprise mission from any type of loss. The management of enterprise risk requi...

Publications NISTIR 8409 (Draft) June 8, 2022
https://csrc.nist.rip/publications/detail/nistir/8409/draft

Abstract: This work evaluates the validity of the Common Vulnerability Scoring System (CVSS) Version 3 ``base score'' equation in capturing the expert opinion of its maintainers. CVSS is a widely used industry standard for rating the severity of information technology vulnerabilities; it is based on human exp...

Publications SP 800-160 Vol. 1 Rev. 1 (Draft) June 7, 2022
https://csrc.nist.rip/publications/detail/sp/800-160/vol-1-rev-1/draft

Abstract: This publication provides a basis for establishing a discipline for systems security engineering (SSE) as part of systems engineering and does so in terms of its principles, concepts, activities, and tasks. The publication also demonstrates how those SSE principles, concepts, activities, and tasks c...

Publications NISTIR 8403 May 26, 2022
https://csrc.nist.rip/publications/detail/nistir/8403/final

Abstract: The rapid development and wide application of distributed network systems have made network security – especially access control and data privacy – ever more important. Blockchain technology offers features such as decentralization, high confidence, and tamper-resistance, which are advantages to sol...

Publications SP 800-140C Rev. 1 May 20, 2022
https://csrc.nist.rip/publications/detail/sp/800-140c/rev-1/final

Abstract: The approved security functions listed in this publication replace the ones listed in International Organization for Standardization/International Electrotechnical Commission (ISO/IEC) 19790 Annex C and ISO/IEC 24759 6.15, within the context of the Cryptographic Module Validation Program (CMVP). As...

Publications SP 800-140D Rev. 1 May 20, 2022
https://csrc.nist.rip/publications/detail/sp/800-140d/rev-1/final

Abstract: The approved sensitive security parameter generation and establishment methods listed in this publication replace the ones listed in International Organization for Standardization/International Electrotechnical Commission (ISO/IEC) 19790 Annex D and ISO/IEC 24759 paragraph 6.16, within the context o...

Publications White Paper NIST CSWP 25 May 20, 2022
https://csrc.nist.rip/publications/detail/white-paper/2022/05/20/data-structure-for-integrity-protection-with-erasure-capability/final

Abstract: This document describes a data structure, referred to as a data block matrix, that supports the ongoing addition of hash-linked records while also allowing for the deletion of arbitrary records, thereby preserving hash-based integrity assurance that other blocks are unchanged. The block matrix data...

Publications SP 800-140B Rev. 1 (Draft) May 12, 2022
https://csrc.nist.rip/publications/detail/sp/800-140b/rev-1/draft

Abstract: NIST Special Publication (SP) 800-140Br1 is to be used in conjunction with ISO/IEC 19790 Annex B and ISO/IEC 24759 section 6.14. The special publication modifies only those requirements identified in this document. SP 800-140Br1 also specifies the content of the information required in ISO/IEC 19790...

Publications White Paper NIST CSWP 20 May 6, 2022
https://csrc.nist.rip/publications/detail/white-paper/2022/05/06/planning-for-a-zero-trust-architecture/final

Abstract: NIST Special Publication 800-207 defines zero trust as a set of cybersecurity principles used when planning and implementing an enterprise architecture. These principles apply to endpoints, services, and data flows. Input and cooperation from various stakeholders in an enterprise is needed for a zer...

Publications SP 800-161 Rev. 1 May 5, 2022
https://csrc.nist.rip/publications/detail/sp/800-161/rev-1/final

Abstract: Organizations are concerned about the risks associated with products and services that may potentially contain malicious functionality, are counterfeit, or are vulnerable due to poor manufacturing and development practices within the supply chain. These risks are associated with an enterprise’s decr...

Publications NISTIR 8320 May 4, 2022
https://csrc.nist.rip/publications/detail/nistir/8320/final

Abstract: In today’s cloud data centers and edge computing, attack surfaces have shifted and, in some cases, significantly increased. At the same time, hacking has become industrialized, and most security control implementations are not coherent or consistent. The foundation of any data center or edge computi...

Publications SP 800-82 Rev. 3 (Draft) April 26, 2022
https://csrc.nist.rip/publications/detail/sp/800-82/rev-3/draft

Abstract: This document provides guidance on how to secure operational technology (OT), while addressing their unique performance, reliability, and safety requirements. OT encompasses a broad range of programmable systems and devices that interact with the physical environment (or manage devices that interact...

Publications SP 1800-33 (Draft) April 25, 2022
https://csrc.nist.rip/publications/detail/sp/1800-33/draft

Abstract: Organizations face significant challenges in transitioning from 4G to 5G usage, particularly the need to safeguard new 5G-using technologies at the same time that 5G development, deployment, and usage are evolving. Some aspects of securing 5G components and usage lack standards and guidance, making...

Publications NISTIR 8320C (Draft) April 20, 2022
https://csrc.nist.rip/publications/detail/nistir/8320c/draft

Abstract: Organizations employ a growing volume of machine identities, often numbering in the thousands or millions per organization. Machine identities, such as secret cryptographic keys, can be used to identify which policies need to be enforced for each machine. Centralized management of machine identities...

Publications NISTIR 8320B April 20, 2022
https://csrc.nist.rip/publications/detail/nistir/8320b/final

Abstract: In today’s cloud data centers and edge computing, attack surfaces have significantly increased, cyber attacks are industrialized, and most security control implementations are not coherent or consistent. The foundation of any data center or edge computing security strategy should be securing the pla...

Publications SP 1800-19 April 20, 2022
https://csrc.nist.rip/publications/detail/sp/1800-19/final

Abstract: A cloud workload is an abstraction of the actual instance of a functional application that is virtualized or containerized to include compute, storage, and network resources. Organizations need to be able to monitor, track, apply, and enforce their security and privacy policies on their cloud worklo...

<< first   < previous   28     29     30     31     32     33     34     35     36     37     38     39     40     41     42     43     44     45     46     47     48     49     50     51     52  next >  last >>