this post was submitted on 30 May 2025
13 points (100.0% liked)

Cybersecurity

8182 readers
118 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub

Notable mention to !cybersecuritymemes@lemmy.world

founded 2 years ago
MODERATORS
top 2 comments
sorted by: hot top controversial new old
[โ€“] wizardbeard@lemmy.dbzer0.com 3 points 3 months ago (1 children)

Holy shit, formal disclosure of potentially ongoing incidents within four days? With unclear and complicated specific disclosure requirements spread across multiple legalese government documents?

My knee-jerk was "duh, of course they don't want to disclose", but there's some legitimate reason for pushback here.

[โ€“] stringere@sh.itjust.works 8 points 3 months ago

My empathy for corporations having to meet burdensome regulations is null. If they'd behaved ethically in the past we wouldn't have needed to create legislation to address their malfeasance.

I worked in IT when Sarbanes Oxley requirements were being put in place and they were a pain in the ass. Only reason those requirements came about was because of the debacle that was Enron's implosion.