German Law Could Protect Researchers Reporting Vulns

November 6, 2024 at 04:36PM Germany’s draft legislation aims to protect security researchers from criminal liability when reporting cyber vulnerabilities. It amends existing laws to define criteria for legitimate security research and proposes penalties for malicious acts, with the intent to encourage reporting flaws rather than punishing those who identify them. ### Meeting Takeaways: 1. … Read more

Building an Effective Strategy to Manage AI Risks

August 8, 2024 at 10:06AM AI technology is increasingly vital for businesses but presents challenges in data privacy and bias. Collaborative efforts from security, governance, and privacy teams are crucial in implementing safeguards. Security teams should focus on infrastructure hardening, alerting, monitoring and employee training. Governance teams should evaluate ethical implications and educate employees. Privacy … Read more

NYSE parent gets $10M wrist tap for failing to report 2021 systems break-in

May 22, 2024 at 03:38PM The New York Stock Exchange’s parent company, Intercontinental Exchange (ICE), was fined $10 million by the SEC for failing to immediately report a cyber intrusion in 2021. The SEC alleges ICE and its subsidiaries violated Regulation Systems Compliance and Integrity (Regulation SCI) reporting rules. The settlement includes no admission of … Read more