Legislation Protecting White Hat Hackers.

The flaw in cybersecurity law: Not modernizing the law to address white hat hackers

The  goals of the legislative fixes: 

  • legislation more friendly to legitimate research
  • by improving relationship improves between white-hat hackers & the owners of the products they investigate

The legislative fixes:

  • The research by white hat hackers has to be for security purposes only.
  • The exemption covers consumer devices, voting machines, medical devices, but not things like critical infrastructure, airplanes and major hospital equipment.
  • The product being investigated by white hat hackers has to have been lawfully acquired.
  • The white hat hacker research has to be done in a safe environment so techniques used to hack or otherwise compromise a product are not released in the wild.
  • The white hats cannot violate other laws.

CSO Online | Protection of white-hat hackers slow in coming