@NextgovFCW cybersecurity intelligence reporter. Tips: ddimolfetta@govexec.com Signal: @ djd.99 BSKY: @ddimolfetta.bsky.social

Joined June 2013
723 Photos and videos
Pinned Tweet
Two years ago today I joined the @NextgovFCW team at GovExec. I'm proud of the terrific work we've produced for our readers, and I'm excited to keep it going. Thanks for sticking with me. As always, send tips and scoops to ddimolfetta@govexec.com or my Signal @ djd.99
11
4,632
David DiMolfetta retweeted
14h
THE MOMENT THE KNICKS WERE CROWNED NBA CHAMPIONS 🏆 IT'S THEIR FIRST CHAMPIONSHIP IN 53 YEARS!!!
153
1,415
9,528
256,783
David DiMolfetta retweeted
Can confirm. An email to staff went out this morning. Side note: It says something about CISA's situation that one official's departure is triggering so many leadership changes because he was doing three jobs at once.
New: Steve Casapulla, an infrastructure security exec in CISA, is being detailed as the assistant national cyber director for policy in ONCD, prompting other leadership shifts in CISA, I'm told. Comes after Thomas Lind left his post heading ONCD policy nextgov.com/people/2026/06/c…
1
4
19
7,354
New: Steve Casapulla, an infrastructure security exec in CISA, is being detailed as the assistant national cyber director for policy in ONCD, prompting other leadership shifts in CISA, I'm told. Comes after Thomas Lind left his post heading ONCD policy nextgov.com/people/2026/06/c…
1
2
7
8,335
Leadership changes would be in CISA units including its Infrastructure Security Division and National Risk Management Center:
1
572
Honored to be recognized at The Echo Awards yesterday as the 2026 Best Investigative Journalist, alongside my colleague Ross Wilkers, recognized for his great work covering government contracting.
5
5
37
5,078
This would not have been possible without my editors and especially sources who have come forward and worked with me over the last year. I share this achievement with all of them. Warm congrats to the other nominees and winners as well.
6
198
Scoop from my colleague @not_amazn_alexa on CISA’s access to Mythos ->
White House discussions are weighing giving CISA Mythos access buff.ly/u3mygrh
2
7
1,161
As expected, House FISA 702 extension vote fails, increasing likelihood of a statutory lapse for the key surveillance authority.
H.R. 9238 failed by a vote of 198-218.
2
245
David DiMolfetta retweeted
Attention, current and former U.S. government employees! Foreign intelligence services are posing as employers on professional networking sites like LinkedIn to target clearance holders for recruitment. We urge you to visit fbi.gov/investigate/counteri… to learn how to mitigate the threat.
53
577
1,243
79,817
NEW - Senate aide tells me Wyden will offer a UC on two FISA 702 extension bills at 4:45. One adds a warrant measure for queried American communications and extend 702 for 9 months. The other is 5-week extension in exchange for basic transparency requirements, the aide tells me.
1
2
4
429
Waves of federal layoffs in the past year have pushed thousands of government employees and contractors into an uncertain job market, creating renewed collection opportunities for foreign intelligence services, as we’ve previously reported: nextgov.com/people/2026/01/s…
346
David DiMolfetta retweeted
NEW: malware developers added nuclear & biological weapons text to to their spyware. Goal? To trigger LLM safety refusals... so that their spyware wouldn't be analyzed by an AI security scanner. Cleanest practical example I can think of for why over-indexing on first order safety alignment is risky. When closed (and open) models ship with aggressive refusals, they will be sprinkled with second-order blindspots that attackers will discover...and exploit. We are only in the earliest days of attackers leveraging these features, and it wouldn't surprise me if users systems that need to handle complex cybersecurity issues demand that models be less safety-blunted. In the weeds: @SocketSecurity's post also shows why intention matters in how you design a malware analysis pipeline to avoid prompt manipulation. H/T to colleagues that shared this with me socket.dev/blog/mini-shai-hu…
226
2,153
12,636
1,543,264
David DiMolfetta retweeted
"The concerns are significant because they suggest that some of the federal government’s most target-rich agencies may lack clear direction or consistent access to a tool that could help them find and fix security flaws more quickly." nextgov.com/artificial-intel…
4
8
1,406
David DiMolfetta retweeted
Some new information here that posits a pretty interesting question: Shouldn't agency CIOs, who oversee IT enterprises larger than many Fortune 500s, have a (front) seat at the table regarding how government adopts emerging technologies like Mythos? Via @ddimolfetta & @not_amazn_alexa nextgov.com/artificial-intel…
Scoop w/ @not_amazn_alexa -> Several senior federal tech officials responsible for agency cybersecurity and IT systems are frustrated by a lack of White House ONCD guidance on plans to adopt Anthropic’s Mythos model. nextgov.com/artificial-intel…
3
4
587
Many federal CIOs have privately complained that ONCD hasn’t sufficiently briefed officials on plans for accessing, implementing and using the model to scan agency networks for vulnerabilities. There has been "tremendous frustration" with ONCD, one person tells us.
1
1
319
The concerns are significant because they suggest that some of the federal government’s most target-rich agencies may lack clear direction or consistent access to a tool that could help them find and fix security flaws more quickly.
176