Cyber Statecraft Initiative

@cyberstatecraft.bsky.social

The Cyber Statecraft Initiative works at the nexus of geopolitics and cybersecurity to craft strategies to help shape the conduct of statecraft and to better inform and secure users of technology.

How can cyber capabilities support crisis & contingency operations? Not just through independent operation during a crisis "but through continuous campaigning in day-to-day strategic competition." Read the full Michael Fischerkeller piece here: www.atlanticcouncil.org/in-depth-res...

What do we know about cyber operations during militarized crises?

Policymakers must critically examine assumptions and claims that cyber operations can serve as de-escalatory crisis offramps.

atlanticcouncil.org

Cyberscam operations emanating from Myanmar create symbiotic benefit for criminal and armed groups, the operations themselves are intensely parasitic to the global cyber domain, the broader Southeast Asian region, and the population of Myanmar. www.atlanticcouncil.org/in-depth-res...

This job post will get you kidnapped: A deadly cycle of crime, cyberscams, and civil war in Myanmar

In Myanmar, cybercrime has become an effective vehicle through which nonstate actors can fund and perpetuate conflict.

atlanticcouncil.org

What is an open standard anyway? "Open standards are typically defined as standards developed through open, collaborative processes that can be readily implemented by any member of the public once they are finalized." If you like standards, you'll love: www.atlanticcouncil.org/in-depth-res...

User in the middle: An interoperability and security guide for policymakers

When technologies work together, it benefits users and the digital ecosystem. Policymakers can advance interoperability and security in tandem by understanding how each impacts the other.

atlanticcouncil.org

“...I honed valuable skills—briefing principals, outlining courses of action, and making specific recommendations based on your expertise — that I exercise daily in my career now.” Read Frances Schroeder's experience in #Cyber912 in this 5x5:

The 5×5—Alumni perspectives on Cyber 9/12 Strategy Challenge

Alumni of Cyber 9/12 Strategy Challenge share their experiences, and discuss the impact of such simulated exercises to prepare for real life cyber attacks.

atlanticcouncil.org

Was discovering the XZ backdoor the OSS model working? “Clearly, open source saved the day here. Had XZ Utils been proprietary, the engineer... would never have been able to carry out his investigation,” writes Tobie Langel in this 5x5. Read more here: www.atlanticcouncil.org/content-seri...

The 5x5—The XZ backdoor: Trust and open source software

Open source software security experts share their insights into the XZ backdoor, and what it means for open source software security.

atlanticcouncil.org

Access-as-a-Service companies sell offensive cyber capabilities to states worldwide. Who sets the rules for their operation? Our report analyses this industry to develop actionable policies for the US & allies: www.atlanticcouncil.org/in-depth-res...

Countering cyber proliferation: Zeroing in on Access-as-a-Service

It is imperative that governments reevaluate their approach to countering the proliferation of offensive cyber capabilities.

atlanticcouncil.org

In Russia’s cyber ecosystem, even FSB officers aren’t untouchable. CSI fellow Justin Sherman dives into the sentencing of an officer who took bribes from hackers but failed to deliver protection. It’s about more than corruption—it’s a warning to others.

Take the bribe but watch your back: Why Russia imprisoned a security officer for taking cybercriminal payoffs

Russia imprisoned a security service officer for taking bribes from cybercriminals—showing not a willingness to crack down on cybercrime, but instead just how much the Kremlin wants to maintain its…

atlanticcouncil.org

Sunburst’s move to the cloud took it from a messy supply-chain compromise to a significant intelligence-gathering coup. Read our Broken Trust report to learn more about the cloud’s critical dimension in the campaign. www.atlanticcouncil.org/programs/cyb...

Breaking Trust

The Breaking Trust project seeks to catalog software supply chain intrusions and identify major trends and implications from their execution.

atlanticcouncil.org