Cybersecurity, Privacy, & AI

Trending Now
Doxim Data Breach Settlement Underscores Third-Party Data Security Risk • SASC Proposes Reorganization of Pentagon’s IT, Cyber Leadership • Anthropic Suspends Top AI Models After U.S. Export Control Order • Senate Bill Seeks to Restore Funding for Cyber Information-Sharing Program • CISA Directive Orders Agencies to Prioritize Vulnerability Patching in a New Way

Klobuchar to Voting Vendors: Don’t Turn Your Back on Good Hackers when Setting Up a CVD Program

I'm friday | Shutterstock

The country’s biggest voting equipment vendors recently asked the cybersecurity community for ideas on how to set up a process through which researchers could flag software flaws for vendors to fix. Coordinated Vulnerability Disclosure specialists Bugcrowd and Synack responded, and so did senator and presidential candidate Amy Klobuchar (D-MN).

She wrote a letter advising the voting-gear vendors to ditch their reservations about working with unvetted researchers, pay close attention to their supply chains, and set a timeline for getting software bugs fixed. Klobuchar contested their assumption that programs should focus on systems that are isolated from the internet, pointing out that vulnerabilities in public-facing systems can have security implications for disconnected systems.

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–SaturdaySubscribe here.