Legislation Protecting White Hat Hackers.
The flaw in cybersecurity law: Not modernizing the law to address white hat hackers
The goals of the legislative fixes:
- legislation more friendly to legitimate research
- by improving relationship improves between white-hat hackers & the owners of the products they investigate
The legislative fixes:
- The research by white hat hackers has to be for security purposes only.
- The exemption covers consumer devices, voting machines, medical devices, but not things like critical infrastructure, airplanes and major hospital equipment.
- The product being investigated by white hat hackers has to have been lawfully acquired.
- The white hat hacker research has to be done in a safe environment so techniques used to hack or otherwise compromise a product are not released in the wild.
- The white hats cannot violate other laws.
CSO Online | Protection of white-hat hackers slow in coming