A (global) solution for cybercrime

Beyond SolarWinds: Securing Cyberspace

The recent ransomware cyberattack on the Colonial Pipeline in the US has exposed how vulnerable critical infrastructure is to hackers, whether they are motivated by money or politics. What can we do about this?

Part of the way forward is acknowledging that there is no longer a distinction between cyber and physical security. The world runs on tech, so people are right to worry about it, Microsoft President Brad Smith said during a livestream discussion on cybersecurity hosted by GZERO Media and Microsoft. The conversation, "Beyond SolarWinds: Securing Cyberspace," held in collaboration with the Munich Security Conference as part of their "Road to Munich" series, was moderated by former US Homeland Security senior official Juliette Kayyem.

The latest attack is different in scale, but not new. And one of the reasons these hacks are likely to become more frequent, he added, is that our defenses are not keeping up with the threats.

Ian Bremmer, president of Eurasia Group and GZERO Media, agreed. Cybersecurity, he explained, is a top risk because there is new tech and no architecture to stop cybercriminals. Moreover, the US relations with the two other countries with similar cyber-offensive capabilities — China and Russia — are at their worst point in decades, with no chance of a reset anytime soon.

Two months before the Colonial Pipeline hack, the cybersecurity buzz was all about SolarWinds, another major cyberattack on thousands of firms, including US government agencies, blamed on Russia. Smith said that SolarWinds showed how sophisticated hackers have become, and Wilson Center President Emerita Jane Harman added that the US bungled its response because a private firm found out before anyone else.

The silver lining from both attacks, Harman noted, is that they pushed the Biden administration to issue an executive order that mandates private corporations to immediately inform the government of such cyberattacks.

Meanwhile, the US needs to rethink its military procurement. For Ian Bremmer, the Pentagon spends a lot on tech to upgrade legacy hardware, but nowhere near enough on cyber — the opposite of what China's doing. That's right, Harman noted, but the DOD and Congress will likely push back.

The wider problem, however, is that we now live in the world where governments are not solely responsible for defending our critical infrastructure, Smith said. How the private sector responds is equally important.

Biden's executive order, he added, is no panacea but it is the most significant step forward in decades because it mandates companies that do business with the federal government to take this issue a lot more seriously. And that'll influence how software is developed across America because the federal government contracts out so much of its IT work.

More broadly, the chances of a more sustainable solution to the problem lie in more international cooperation, said Wolfgang Ischinger, chairman of the Munich Security Conference.

Although governments no longer have the monopoly on power to do harm to each other, the US should still reach out to its allies to fight cybercrime together. This may sound like a dream right now, he admitted, but then again so did nuclear disarmament at the height of the Cold War.

For Smith, who has long called for a Cyber Geneva Convention to set global norms, the reasons now are the same as in the aftermath of World War II: we have a moral and legal responsibility to protect civilians, who are ultimately the most vulnerable to the consequences of cyberattacks.

"Beyond SolarWinds: Securing Cyberspace," a Global Stage live conversation on cyber challenges facing governments, companies, and citizens, was recorded on May 18, 2021, and was held in collaboration with the Munich Security Conference as part of their "Road to Munich" series. Sign up for alerts about more upcoming GZERO events.

More from GZERO Media

From left, FBI Director Kash Patel, Tulsi Gabbard, director of National Intelligence, and CIA Director John Ratcliffe, testify during the House Select Intelligence Committee hearing titled “Worldwide Threats Assessment,” in Longworth building on Wednesday, March 26, 2025. The witnesses fielded questions on the Signal chat, about attacks against Houthis in Yemen, that accidentally included a reporter.
Tom Williams/CQ Roll Call/Sipa USA

The Signal-gate repercussions continue, after The Atlantic published screenshots of senior White House officials discussing war plans over the messaging app.

Former Brazilian President Jair Bolsonaro walks after the Supreme Court voted that he should stand trial for allegedly attempting a coup after his 2022 electoral defeat, in Brasilia, Brazil, on March 26, 2025.
REUTERS/Adriano Machado

The Supreme Court ordered the former president to stand trial for his alleged efforts to overturn the last election, raising the prospect of the 70-year-old ending up behind bars and imperiling his hopes of running for office in 2026.

Sudan's army chief Abdel Fattah al-Burhan gestures to soldiers inside the presidential palace after the Sudanese army said it had taken control of the building in the capital Khartoum, Sudan, on March 26, 2025.
Sudan Transitional Sovereignty Council/Handout via REUTERS

The Sudanese Army says it has captured full control of Khartoum from the Rapid Support Forces, a paramilitary group it has been battling in a brutal civil war for over two years. The army has seized key locations, including the presidential palace and the airport.

NPR's Katherine Maher and PBS's Paula Kerger are sworn in at a hearing of the House Committee on Oversight and Government Reform Subcommittee on Delivering on Government Efficiency in Washington, DC, on March 26, 2025.
Michael Brochstein/ZUMA Press Wire via Reuters

House Republicans openly questioned whether public news outlets should receive $535 million in federal funds.

- YouTube

The Signal chat leak about bombing the Houthis is serious, but what it reveals is even more troubling, according to Ian Bremmer. Trump’s advisers are debating major decisions behind closed doors… but the president might never hear them. In this Quick Take, Ian explains why that’s a global risk.

Protesters take part in a demonstration march ending in front of the US consulate, under the slogan, “Greenland belongs to the Greenlandic people,” in Nuuk, Greenland, on March 15, 2025.
Christian Klindt Soelbeck/Ritzau Scanpix/via REUTERS

US Second Lady Usha Vance canceled plans to attend Greenland’s biggest dog-sledding race and visit historical sites after officials in Nuuk and Copenhagen balked at an uninvited trip from an official delegation. Vice President JD Vance will now join his wife on the trip.

Palestinians protest to demand an end to war, chanting anti-Hamas slogans, in Beit Lahiya in the northern Gaza Strip, on March 26, 2025.
REUTERS/Stringer

Hundreds of Palestinian protesters took part in the largest anti-Hamas demonstrations in Gaza since the attacks of Oct. 7, 2023.