💸 Dept. of Commerce audit: NIST had no strategic plan for the NVD backlog, set an unrealistic deadline, delayed CISA data use, and eroded trust with poor communication.
Auditors also found 21,000+ duplicate enrichment activities and ~$200K wasted.
socket.dev/blog/federal...
Federal audit finds NIST lacked a plan to clear the NVD backlog, wasted funds on duplicate work, and delayed use of CISA data.