Portugal updates cybercrime law to exempt security researchers
ID: 31a2ce7a-ba4f-5d16-81f7-54a2e657b4d6
STIX ID: report--31a2ce7a-ba4f-5d16-81f7-54a2e657b4d6
Feed Name: Bleeping Computer
Portugal introduced Article 8.º-A to its cybercrime law, establishing a legal safe harbor for good-faith security research when strict conditions are met, including purpose-limited vulnerability identification, immediate reporting to system owners and the CNCS, no service disruption or unlawful personal data processing, prohibitions on techniques like DoS, social engineering, and malware, and confidentiality with timely data deletion; similar protections are noted in Germany’s 2024 draft law and the U.S. DOJ’s 2022 CFAA policy update.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
