The U.S. Environmental Protection Agency's Office of Inspector General has identified a critical vulnerability concerning software installations on EPA-furnished computers. While information security oversight is the responsibility of the EPA Office of Mission Support, the OIG has identified several instances of unknown third-party threat actors accessing EPA-furnished computers.
This report resulted from an investigation, rather than an audit or evaluation project.