#cybersecurity policy
9 stories taggedcybersecurity policy.

The EU's New Cyber Security Law Gives Manufacturers 24 Hours to Report Flaws. Almost No One Is Ready.
The Cyber Resilience Act, which took effect in September, requires companies to report actively exploited vulnerabilities within one day. Security experts say the clock will break every manual process most vendors currently rely on.

Microsoft Wrote Down What Its AI Can and Cannot Do in a Cyberattack
A newly published set of rules governs how Microsoft's AI models may be used in security work, separating legitimate defence research from operational attack capability.

Defence Contractors Say They Feel Ready for the Pentagon's New Security Rules, But Can't Actually Prove It
Two new surveys find that American defence suppliers are more confident than ever about meeting the Pentagon's cybersecurity standard, while their ability to demonstrate that confidence on paper is getting worse, not better.

OpenAI's President Tells Companies to Use AI to Fight AI Hackers. Critics Say He Skipped the Hard Part.
Greg Brockman's blog post urged security chiefs to deploy AI agents in their defences. Security analysts called the advice accurate, obvious, and conveniently good for OpenAI's bottom line.

OpenAI Skips the New Industry Alliance Trying to Fix the Problem Its Own AI Helped Create
After OpenAI's unrestricted AI models were used to attack Hugging Face, a coalition of more than 30 tech companies formed to build open, freely available cybersecurity AI. OpenAI is not among them.

AI Is Moving Faster Than the Rules Meant to Control It
The newest AI security tools can act on a network without human approval. The governance frameworks meant to keep that in check weren't written for this.

Pentagon Hits Pause on Contractor Cybersecurity Checks, Citing Too Few Auditors and Too Much Red Tape
The Defense Department is suspending the second phase of its main cybersecurity certification programme for a 60-day review, leaving smaller defence suppliers in a holding pattern.

AI Is Making Rich Organisations Even Safer. What Happens to Everyone Else?
A growing body of security leaders says artificial intelligence is deepening a divide that has existed for years between well-resourced organisations and those just trying to keep the lights on.

UK Government Unveils AI Security Plan and Calls on Industry to Commit
Two announcements on 7 July 2026 signal that Britain is treating artificial intelligence safety as a national priority, not an afterthought.