← All stories
● Covered by 1 source · 1 reportMedium impact1 neutral

Senator Wyden Urges Federal Agencies to Replace Outdated VPNs with Zero-Trust Architecture

🔄 Updated 1d ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • Senator Wyden urged CISA, OMB, and NIST to lead the effort.
  • Legacy VPNs from Cisco, Fortinet, Ivanti, and Check Point have been targeted.
  • Wyden proposed a two-year deadline for civilian agencies to adopt zero-trust.
  • NIST is pressed to create implementation standards for zero-trust architectures.

Call to Action for Federal Cybersecurity

Senator Ron Wyden (D-OR) has issued a directive to the Cybersecurity and Infrastructure Security Agency (CISA), the Office of Management and Budget (OMB), and the National Institute of Standards and Technology (NIST). Wyden urged these agencies to spearhead an initiative to eliminate public internet-facing and insecure virtual private networks (VPNs) from government systems.

Addressing Legacy VPN Vulnerabilities

Wyden highlighted that federal agencies and contractors have experienced cyberattacks due to their reliance on legacy, insecure VPN servers for remote access. He cited recent hacking campaigns that targeted VPNs and remote-access systems from vendors including Cisco, Fortinet, Ivanti, and Check Point. These vulnerable VPNs are considered high-risk due to their lack of modern safeguards, allowing foreign adversaries to gain administrative access and steal sensitive data.

Transition to Zero-Trust Architecture

To mitigate these risks, Wyden, a member of the Senate Intelligence Committee, proposed a transition to zero-trust architectures. He recommended that CISA set a two-year deadline for civilian agencies to replace public-facing remote access systems with zero-trust solutions. The National Security Agency (NSA) is also urged to mandate a similar purge for all legacy remote access gateways across military, intelligence, and national security networks.

Standardization and Investment

Wyden also pressed NIST to develop implementation standards for agencies migrating to zero-trust architectures, which involve continuous user verification and assume potential network breaches. Additionally, he directed OMB to draft a memo instructing federal agencies to invest in zero-trust infrastructure to enhance their cybersecurity posture.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~7 min · 6 stories · Aug 15

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

Reporting from

Senator Ron Wyden has called on federal agencies to remove insecure, public internet-facing VPNs and adopt zero-trust architectures within two years. This push comes amid concerns that foreign adversaries are exploiting vulnerabilities in legacy VPNs to access government networks and steal sensitive data.