Cybersecurity, Privacy, & AI

Trending Now
CMMC Compliance as a Service: A New Model for DOW Contractors • GSA Announces a Fresh Cohort of Presidential Innovation Fellows • Supreme Court Justices Skeptically Question Both Sides in Geofence Surveillance Case • Pentagon Workers Vibe-Code 100,000 AI ‘Agents’ to Use on Unclassified Networks • CISA, UK NCSC Warn of China-Linked Covert Cyber Networks in New Advisory

Klobuchar to Voting Vendors: Don’t Turn Your Back on Good Hackers when Setting Up a CVD Program

I'm friday | Shutterstock

The country’s biggest voting equipment vendors recently asked the cybersecurity community for ideas on how to set up a process through which researchers could flag software flaws for vendors to fix. Coordinated Vulnerability Disclosure specialists Bugcrowd and Synack responded, and so did senator and presidential candidate Amy Klobuchar (D-MN).

She wrote a letter advising the voting-gear vendors to ditch their reservations about working with unvetted researchers, pay close attention to their supply chains, and set a timeline for getting software bugs fixed. Klobuchar contested their assumption that programs should focus on systems that are isolated from the internet, pointing out that vulnerabilities in public-facing systems can have security implications for disconnected systems.

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–SaturdaySubscribe here.