71 of 96 agencies have cybersecurity programs that are either at risk or high risk. Just 59 percent of agencies reported having processes in place to communicate cyberrisks across their enterprises. Phishing attacks remain one of the most common attack vectors across both government and industry. A lack of standardization and access to common capabilities means that these agencies cannot apply a single solution to address specific cybersecurity challenges and eventually reduce their overall attack surface. The White House has been sending conflicting messages about its focus on cybersecurity.
Source: https://www.bleepingcomputer.com/news/security/omb-releases-damning-report-on-us-govts-inability-to-counter-cyber-threats/