Space Development Agency’s satellite contractors team up to deal with supply shortages

May 17, 2022
SpaceNews

Facing a tight schedule to launch 28 satellites between September 2022 and March 2023, the Space Development Agency and its contractors have had to scramble to deal with parts shortages and other supply chain problems that have affected the entire space industry.

Some satellite programs have been impacted by delays in the deliveries of microprocessors and focal planes arrays but SDA mostly has had to contend with a shortage of lower-end items, the agency’s director Derek Tournear said May 17.

Tournear credited SDA’s satellite manufacturers for having “a pretty good handle from the beginning. They knew from day one that the supply chain would be a risk factor for those space qualified parts.”

Additionally, SDA has reached out to other government agencies to borrow components, he said. “And that’s how we’re able to continue towards this Tranche 0  timeline.”

Source: Space Development Agency’s satellite contractors team up to deal with supply shortages – SpaceNews

How to Keep Your Enterprise Safe From Digital Supply Chain Attacks

Source: Dark Reading
Published: May 31, 2022
 
The digital supply chain is under attack like never before. Listed among the top seven security concerns for 2022 by Gartner, digital supply chain security is now top of mind for cybersecurity teams, CISOs, and the entire C-suite. For the first time, digital supply chain attacks are threatening business continuity for large-scale enterprises. Digital supply chains are connected to almost every mission-critical service in an organization. All Internet-facing services are built on a tiered ecosystem of third-party services and infrastructures. In turn, every third party has its own third parties, which have their own third parties, and so on down the line. This means that the vulnerabilities of your vendors and your vendors’ vendors (and so on) often become your vulnerabilities.

View here: How to Keep Your Enterprise Safe From Digital Supply Chain Attacks

NRMC: Vulnerability Awareness, Partnership Essential to ICT Supply Chain Security

The Cybersecurity and Infrastructure Security Agency (CISA) is taking a multi-faceted approach to supply chain security, and chief among them is putting in place strong public-private partnerships to maintain supply chain resilience and maintaining high awareness about the sources of supply chain threats.

That was the word from Mara Winn, Associate Director of CISA’s National Risk Management Center (NRMC), who provided updates on the NRMC’s work at FCW’s NASA SEWP SCRM Hybrid Forum 2022 on May 24.

Having a common language on security then allows organizations to have an “apples-to-apples conversation with your vendors” that are especially useful because different groups have different tolerance for risk, she said.

Winn also emphasized the importance of agencies constantly looking for where threats are coming from, and understand the trustworthiness of their own supply chain. She highlighted that everyday risks to the supply chain are “more than just ships having trouble in ports.”

Source: NRMC: Vulnerability Awareness, Partnerships Essential to ICT Supply Chain Security – MeriTalk

FDA Urges Drug Manufacturers to Develop Risk Management Plans to Promote a Stronger, Resilient Drug Supply Chain

For Immediate Release: May 19, 2022
Statement From: Patrizia Cavazzoni, M.D., Director – Center for Drug Evaluation and Research

Drug shortages pose a significant public health threat as they can delay, and in some cases, even deny critically needed care for patients. Over the past decade, the FDA’s efforts have contributed to fewer new drug shortages and reduced the time to resolve existing drug shortages. This is due, in part, to authorities the agency now has, including those added by the Food and Drug Administration Safety and Innovation Act

To further assist manufacturers with these requirements, we are issuing a draft guidance, Risk Management Plans to Mitigate the Potential for Drug Shortages, intended to help with the development, maintenance and implementation of risk management plans.

The draft guidance describes a framework for stakeholders to consider when developing risk management plans that aligns with principles stated in the International Council for Harmonisation guidance for industry, Q9 Quality Risk Management, and identifies risk factors to consider when developing the content of risk management plans. The steps needed to reduce risks of a disruption in drug supply may vary among the different manufacturers in the supply chain for a given drug. 

Source: FDA Urges Drug Manufacturers to Develop Risk Management Plans to Promote a Stronger, Resilient Drug Supply Chain | FDA

Using Tech to Build Supply Chain Resilience in a Changing World

Source: Using Tech to Build Supply Chain Resilience in a Changing World (entrepreneur.com)

Proper supply chain management is critical to smooth business operation, agility and profitability. Beyond coordination, resilience is a key quality required for supply chain management.

Covid-19 related supply chain disruptions have affected most industries. Vast numbers of companies across the globe experienced troubles during Covid-19, impacting shipment timing, costs, efficiency and revenues. These impacts highlight the importance of building a supply chain that can weather a storm and be capable of quick recovery.

Economy Could Dampen Growth of Space Industry

Economy could dampen growth of space industry
Source: Space News
Published: May 26, 2022
 
Broader economic issues as well as the performance of some space companies could slow the growth of the industry in the next few years, executives warn. During a panel discussion at the Space Tech Expo May 25, Lars Hoffman, senior vice president of global launch services at Rocket Lab, warned that the industry is not immune from broader economic issues like supply chain disruptions, inflation and growing concerns about a recession. “We’re seeing right now a bit of a chilling going on within the industry,” he said. “This heating up of the market that we saw in the last couple of years when times were a little bit better, COVID excepted, is starting to level off a little bit.”

Nations Aim to Secure Supply Chains by Turning Offshoring Into ‘Friend-Shoring’

U.S. officials and allies around the world are looking to establish friendly supply routes for key goods amid a war and global pandemic

Source: Wall Street Journal
Nations Aim to Secure Supply Chains by Turning Offshoring Into ‘Friend-Shoring’ – WSJ

As war and the pandemic expose the fragility of supply chains, the U.S. and its allies are pursuing a new kind of global trade, one that confines commerce to a circle of trusted nations. Fans call the shift “friend-shoring.”

The new strategy is a departure from economic globalization of recent decades, when businesses bought and made products where costs were low and free-trade policies made moving goods around the world cheaper and faster.

Now, U.S. officials and their allies in Europe, Asia and the Pacific are promoting and funding new production and trading channels for essential goods that run though friendly nations. Companies including Samsung Electronics Co. and Gap Inc. are tapping into this trend. It comes after a series of disruptions, including the Covid-19 pandemic, Russia’s invasion of Ukraine, and a trade war between the U.S. and China.

Promoters of friend-shoring see it as a chance to revamp global supply chains to reduce their reliance on countries with autocratic governments and nonmarket economies, namely China and Russia. They say it is a compromise between full-fledged globalization and isolationism, and between offshoring and domestic production.

Efforts are already under way in industries including semiconductors and rare-earth metals, a crucial input for electric vehicles and missiles. Private companies are joining the fray as well, moving to increase production in countries they see as carrying relatively low political and logistical risk.

Google Created ‘Open-Source Maintenance Crew’ to Help Secure Critical Projects


Source: The Hacker News
Published: May 13, 2022
 
Google has announced the creation of a new “Open Source Maintenance Crew” to focus on bolstering the security of critical open source projects. Additionally, the tech giant pointed out Open Source Insights as a tool for analyzing packages and their dependency graphs, using it to determine “whether a vulnerability in a dependency might affect your code.” “With this information, developers can understand how their software is put together and the consequences to changes in their dependencies,” the company said. The development comes as security and trust in the open source software ecosystem has been increasingly thrown into question in the aftermath of a string of supply chain attacks designed to compromise developer workflows.

Source: Google Created ‘Open-Source Maintenance Crew’ to Help Secure Critical Projects

NASA’s Future Lunar Base Will Be Equipped with a Novel Microgrid

NASA’s future lunar base will be equipped with a novel microgrid
Source: Interesting Engineering
Published: May 12, 2022

NASA and Sandia National Laboratories are joining forces to build a microgrid for a future lunar base, according to a statement by the latter published on Wednesday. Called the Artemis lunar base, it will include a habitation unit (for up to four astronauts) and separate mining and fuel processing facilities. These facilities would be built far away from the base camp and would serve to produce rocket fuel, water, oxygen, and other materials needed for extended exploration of the lunar surface while decreasing supply needs from Earth.

Attribution of Russia’s Malicious Cyber Activity Against Ukraine

PRESS STATEMENT
https://www.state.gov/attribution-of-russias-malicious-cyber-activity-against-ukraine/

ANTONY J. BLINKEN, SECRETARY OF STATE

MAY 10, 2022

The United States is joining with allies and partners to condemn Russia’s destructive cyber activities against Ukraine.  In the months leading up to and after Russia’s illegal further invasion began, Ukraine experienced a series of disruptive cyber operations, including website defacements, distributed denial-of-service (DDoS) attacks, and cyber attacks to delete data from computers belonging to government and private entities – all part of the Russian playbook.  For example, the United States has assessed that Russian military cyber operators have deployed multiple families of destructive wiper malware, including WhisperGate, on Ukrainian Government and private sector networks.  These disruptive cyber operations began in January 2022, prior to Russia’s illegal further invasion of Ukraine and have continued throughout the war.

Today, in support of the European Union and other partners, the United States is sharing publicly its assessment that Russia launched cyber attacks in late February against commercial satellite communications networks to disrupt Ukrainian command and control during the invasion, and those actions had spillover impacts into other European countries.  The activity disabled very small aperture terminals in Ukraine and across Europe.  This includes tens of thousands of terminals outside of Ukraine that, among other things, support wind turbines and provide Internet services to private citizens.

As nations committed to upholding the rules-based international order in cyberspace, the United States and its allies and partners are taking steps to defend against Russia’s irresponsible actions. The U.S. Government has developed new mechanisms to help Ukraine identify cyber threats and recover from cyber incidents. We have also enhanced our support for Ukraine’s digital connectivity, including by providing satellite phones and data terminals to Ukrainian government officials, essential service providers, and critical infrastructure operators. We praise Ukraine’s efforts—both in and outside of government—to defend against and recover from such activity, even as its country is under physical attack.

More information on the U.S. government’s efforts to support cybersecurity and connectivity in Ukraine is available here.