The federal government ought to be funding NIST sufficiently to actually do sufficient analysis. Do we care about funding civil "cyber" defense or not?
(Obviously the answer is not, we only care about funding offensive capabiltiies).
loading story #49158999
The federal government defunded the CVE program last year, I think, because it was woke.