The US Administration continues to prepare its response to Holiday Bear\u2019s romp through the SolarWinds supply chain. Congress is asking for details on what was compromised in the incident, and why the Department of Homeland Security failed to detect the intrusion. The UN offers some recommendations on norms of conduct in cyberspace. Ben Yelin on a New Jersey Supreme Court ruling that phone passcodes are not protected by 5th amendment. Our guest is Frank Kettenstock from FoxIT on the security of PDF files. Developments in ransomware, including Exchange Server exploitation, credible extortion, and attempts to enlist customers against victims.\xa0\nFor links to all of today's stories check out our CyberWire daily news brief:\nhttps://www.thecyberwire.com/newsletters/daily-briefing/10/60\nLearn more about your ad choices. Visit megaphone.fm/adchoices