Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

News & Updates

Showing 51 matching records.
July 18, 2025

The second public draft  of NIST Cybersecurity White Paper (CSWP) 39, Considerations for Achieving Crypto Agility: Strategies and Practices is available for comment. The public comment period for this second draft is open through August 15, 2025.

July 15, 2025

The NCCoE seeks public comments on the initial public draft of SP 1334, "Reducing the Cybersecurity Risks of Portable Storage Media in OT Environments." Comments are due August 14, 2025.

July 1, 2025

After two rounds of public comment, NIST has decided to withdraw Special Publication 800-102, Recommendation for Digital Signature Timeliness.

July 1, 2025

NIST's Crypto Publication Review Board invites comments on parts 2 and 3 of Special Publication (SP) 800-57, "Recommendation for Key Management."

June 30, 2025

This document, Analyzing Collusion Threats in the Semiconductor Supply Chain | NIST Cybersecurity White Paper 46; has been approved as final.

June 27, 2025

NIST has published Special Publication (SP) 800-228, Guidelines for API Protection for Cloud-Native Systems.

June 23, 2025
Federal Register Number: 2025-11497

NIST's proposal to withdraw Federal Information Processing Standard (FIPS) 198-1, HMAC, has been announced in the Federal Register. Comments are due July 23, 2025.

June 17, 2025

NCCoE released the sixth white paper in the series, 5G Network Security Design Principles, which provides the network infrastructure security design principles that commercial and private 5G network operators are encouraged to use.

June 17, 2025

The National Institute of Standards and Technology (NIST) announces the phased conclusion of the Security Content Automation Protocol (SCAP) Validation Program.

June 10, 2025

NIST Special Publication 1800-35, "Implementing a Zero Trust Architecture," provides results and best practices from NCCoE's work with 24 vendors to demonstrate end-to-end zero trust architecture.

June 6, 2025

NIST proposes to develop three general-purpose cryptographic accordions that are variants of the HCTR2 technique. These will be specified in future SP 800-197x publications. Submit comments on this proposal through August 6, 2025.

June 5, 2025

Metrics and Methodology for Hardware Security Constructs utilizes a comprehensive methodology and two key metrics to analyze different hardware weaknesses and the specific attack patterns that can exploit them.

June 4, 2025

NIST has released the initial public draft (ipd) of Special Publication (SP) 800-18r2. The comment period is open through July 30, 2025.

May 23, 2025

NIST has released Internal Report (IR) 8557 for the Virtual Workshop on Usable Cybersecurity and Privacy for Immersive Technologies

May 19, 2025

NIST Cybersecurity White Paper (CSWP) 41, "Likely Exploited Vulnerabilities: A Proposed Metric for Vulnerability Exploitation Probability", helps organizations identify actively exploited vulnerabilities and measure prioritization after patching.

May 13, 2025

In addition to publishing a report on the "Workshop on Foundational Cybersecurity Activities for IoT Device Manufacturers" (IR 8572), an initial public draft of IR 8259r1, "Foundational Cybersecurity Activities for IoT Product Manufacturers," is available for comment through July 14, 2025.

May 1, 2025

The initial public draft (IPD) of NIST Special Publication (SP) 800-234, "High-Performance Computing (HPC) Security Overlay," is now available for public comment. The due date has been extended to August 4, 2025.

May 1, 2025

NIST has released the initial public draft of NIST Internal Report (IR) 7621r2, Small Business Cybersecurity: Non-Employer Firms

April 28, 2025

NIST published Special Publication 800-236, FY 2024 Annual Report for NIST Cybersecurity and Privacy Program.

April 16, 2025

NIST Publishes NIST IR 8562, the Summary Report for "Workshop on Updating Manufacturer Guidance for Securable Connected Product Development"

April 14, 2025

NIST CSWP 42, Towards Automating IoT Security: Implementing Trusted Network -Layer Onboarding, is available for public comment. The comment period is open through May 29, 2025.

April 14, 2025

The initial public draft of the NIST Privacy Framework 1.1 is available for public comment through June 13, 2025.

April 11, 2025

NIST announces the release of NIST Interagency Report (IR) 8552 Requirements for Cryptographic Accordions.

April 10, 2025

NIST's Crypto Publication Review Board is proposing to withdraw Special Publications 800-102, "Recommendation for Digital Signature Timeliness." Submit public comments through Monday, May 12, 2025.

April 10, 2025

After two public comment periods, NIST has decided to revise CMAC and CCM block cipher modes of operation specified in NIST Special Publications 800-38B and 800-38C.

April 10, 2025

NIST Special Publication (SP) 800-81r3 (Revision 3), Secure Domain Name System (DNS) Deployment Guide, describes the different roles of DNS and gives recommendations for protecting the integrity, availability, and confidentiality of DNS services. The public comment period is open through May 26, 2025.

April 3, 2025

NIST has finalized Special Publication (SP) 800-61r3 (Revision 3), Incident Response Recommendations and Considerations for Cybersecurity Risk Management: A CSF 2.0 Community Profile.

March 27, 2025

NIST requests public comments on NIST IR 8214C 2pd, NIST First Call for Multi-Party Threshold Schemes which will help the NIST Multi-Party Threshold Cryptography and Privacy-Enhancing Cryptography projects collect reference materials on advanced cryptography. Submit comments by May 30, 2025.

March 25, 2025

The initial public draft (ipd) of NIST Special Publication (SP) 800-228, Guidelines for API Protection for Cloud-Native Systems, is now available for public comment.

March 24, 2025

NIST has published NIST AI 100-2e2025, Adversarial Machine Learning: A Taxonomy and Terminology of Attacks and Mitigations.

March 18, 2025

NCCoE is releasing the draft Executive Summary, NIST SP 1800-33 5G Cybersecurity Volume A

March 13, 2025

NCCoE has released NIST IR 8523 ipd for public comment until 11:59 PM ET on Monday, April 14, 2025

March 12, 2025

After two public comment periods, NIST has decided to update the SHA-3 Standard (FIPS 202) and revise the SHA-3 Derived Functions specification (Special Publication 800-185).

March 12, 2025

The latest Quick Start Guide for the NIST Cybersecurity Framework 2.0 is available for public comment through April 25, 2025.

March 11, 2025

HQC Announced as a 4th Round Selection. NIST Internal Report (IR) 8545 details the evaluation criteria, algorithm designs, and reasoning behind the selection.

March 6, 2025

NIST SP 800-226 focuses on differential privacy, a privacy-enhancing technology that quantifies privacy risk to individuals when their information appears in a dataset.

March 5, 2025

NIST Cybersecurity White Paper (CSWP), Considerations for Achieving Crypto Agility, provides an in-depth survey of current approaches and considerations to achieving crypto agility.

February 27, 2025

The NIST National Cybersecurity Center of Excellence (NCCoE) along with the SEMI Semiconductor Manufacturing Cybersecurity Consortium has released Draft NIST Internal Report (IR) 8546, Cybersecurity Framework (CSF) 2.0 Semiconductor Manufacturing Community Profile for public comment until 11:59 PM ET on July 30, 2025.

February 26, 2025

NIST has released revisions or updates to all five publications in its Interagency Report (IR) 8286 series. The public comment period is open through April 14, 2025, for the initial public drafts of IR 8286r1, IR 8286Ar1, and IR 8286Cr1.

February 25, 2025

Web3 is a proposed vision for the future of the internet that is restructured to be more user-centric with an emphasis on decentralized data. NIST IR 8475 provides a high-level technical overview of Web3 and discusses proposed technologies to implement it.

February 20, 2025

The NIST Risk Management Framework (RMF) Team has released the initial public draft (ipd) of NIST Internal Report (IR) 8011r1 (Revision 1), Testable Controls and Security Capabilities for Continuous Monitoring. The public comment period is open through Friday, April 4, 2025.

February 18, 2025

NIST has released Internal Report (IR) 8532, Workshop Report on Enhancing Security of Devices and Components Across the Supply Chain.

February 14, 2025

NIST has published Internal Report (IR) 8356, Security and Trust Considerations for Digital Twin Technology

February 3, 2025

NIST has released a second public draft (2PD) of Special Publication (SP) 800-38Gr1 (Revision 1), Recommendation for Block Cipher Modes of Operation: Methods for Format-Preserving Encryption, for public comment. The public comment period for this draft is open through April 4, 2025.

January 31, 2025

NIST Internal Report (IR) 8539, Security Property Verification by Transition Model, is now available.

January 30, 2025

NIST Initial Public Draft CSWP 36D, No SUPI-Based Paging: Applying 5G Cybersecurity and Privacy Capabilities; is available for public comment. The comment period is open through February 28, 2025.

January 29, 2025

NIST's Crypto Publication Review Board is proposing to update Special Publications 800-38B, "The CMAC Mode for Authentication," and 800-38C, "The CCM Mode for Authentication and Confidentiality." Submit public comments through Friday, February 28, 2025.

January 13, 2025

The NCCoE has posted an intial public draft of NIST Internal Report 8374r1, "Ransomware Risk Management: A Cybersecurity Framework 2.0 Community Profile," for comment. The public comment period is open through March 14, 2025.

January 7, 2025

The initial public draft of NIST Special Publication (SP) 800-227, Recommendations for Key-Encapsulation Mechanisms, is now available for public comment. The public comment period is open through March 7, 2025.

January 6, 2025

NIST requests public comments on whether to pursue one or both approaches  (GCM and GMAC).The public comment period closes on March 14, 2025. 

January 3, 2025

NIST has released the initial public draft (IPD) of Revision 1 of NIST Special Publication (SP) 800-189, Border Gateway Protocol Security and Resilience. The public comment period ends February 25, 2025.

* "Relevance" merely indicates the search engine's score for a document. It is based on the search parameters and information in the document's detailed record.