EU Network and Information Security (NIS) Directive: Parliament adopts new law to strengthen EU-wide resilience


Rules requiring EU countries to meet stricter supervisory and enforcement measures and harmonise their sanctions were approved by MEPs on Thursday. The legislation, already agreed between MEPs and the Council in May, will set tighter cybersecurity obligations for risk management, reporting obligations and information sharing.

The requirements cover incident response, supply chain security, encryption and vulnerability disclosure, among other provisions. More entities and sectors will have to take measures to protect themselves. “Essential sectors” such as the energy, transport, banking, health, digital infrastructure, public administration and space sectors will be covered by the new security provisions.

Read more…
Source: European Parliament


Sign up for our Newsletter


Related:

  • New “Prestige” ransomware impacts organizations in Ukraine and Poland

    October 14, 2022

    The Microsoft Threat Intelligence Center (MSTIC) has identified evidence of a novel ransomware campaign targeting organizations in the transportation and related logistics industries in Ukraine and Poland utilizing a previously unidentified ransomware payload. MSTIC researchers observed this new ransomware, which labels itself in its ransom note as “Prestige ranusomeware”, being deployed on October 11 in ...

  • Lazarus hackers abuse Dell driver bug using new FudModule rootkit

    October 1, 2022

    The notorious North Korean hacking group ‘Lazarus’ was seen installing a Windows rootkit that abuses a Dell hardware driver in a Bring Your Own Vulnerable Driver attack. The spear-phishing campaign unfolded in the autumn of 2021, and the confirmed targets include an aerospace expert in the Netherlands and a political journalist in Belgium. According to ESET, which ...

  • Greece wiretap and spyware claims circle around PM Mitsotakis

    September 8, 2022

    It has been dubbed the Greek Watergate. What began as a surveillance of a little-known journalist in Greece has evolved into an array of revelations circling around the Greek government. The story emerged last spring, when Thanasis Koukakis found out his phone had been infected with spyware that can extract data from a device. He also ...

  • Want to join ENISA’s Advisory Group? Call for Experts in now Open!

    September 1, 2022

    With the current Advisory Group closing its membership term at the end of the year, ENISA invites nationals of the Member States of the European Union as well as nationals from European Free Trade Association (EFTA) countries to apply for the next membership mandate. The call will remain open until 30th September 2022. Selected candidates will ...

  • Russian hackers claim responsibility for cyberattack on Lithuania

    June 27, 2022

    Russian hacker group Killnet has claimed responsibility for a denial-of-service (DDOS) cyberattack on Lithuania, saying it was in response to the decision by Vilnius to block the transit of some sanctioned goods to the Russian exclave of Kaliningrad. Lithuanian state and private institutions were hit by the denial-of-service cyberattack on Monday, the Baltic country’s National Cyber ...

  • Cyber Europe 2022: Testing the Resilience of the European Healthcare Sector

    June 9, 2022

    To ensure citizens’ trust in the medical services and infrastructure available to them, health services should function at all times. If health services and infrastructures in Europe were the object of a major cyber attack, how would we respond and coordinate at both national and EU level to mitigate the incidents and prevent an escalation? This ...