#circia
Felt a lil peckish, figured I may as well practice some absorption vore with that piggified Penny from a while back~
September 29, 2026 at 2:42 AM
CISA's CIRCIA final rule is still unpublished, past its Sept 2026 target. When effective: 72h incident + 24h ransomware-payment reporting, 16 sectors, ~300k entities. https://www.cybereyeq.com/?utm_source=bluesky&utm_medium=social&utm_campaign=circia_final_rule
September 21, 2026 at 11:58 AM
“CISA's September 2026 target .. CIRCIA regulations, covered entities across 16 critical infrastructure sectors could face 72-hour cyber incident reporting obligations as soon as late 2026, requiring immediate preparation of incident response capabilities” www.law.com/corpcounsel/...
CIRCIA’s Looming Deadline Puts Corporate Counsel on the Clock | Law.com
With CISA's September 2026 target for finalizing CIRCIA regulations, covered entities across 16 critical infrastructure sectors could face 72-hour cyber incident reporting obligations as soon as late ...
www.law.com
September 16, 2026 at 9:35 PM
Beyond the town halls: Getting ready for CIRCIA before the clock starts ticking
Beyond the town halls: Getting ready for CIRCIA before the clock starts ticking
Too many organizations have treated CIRCIA as something to keep an eye on rather than something to actually build a program around.
federalnewsnetwork.com
September 16, 2026 at 9:32 PM
America’s cyber defense hinges on connections among agencies, private firms, infrastructure, law enforcement, intel, and tech providers. Implemented well, CIRCIA can be more than a reporting rule—it surfaces threats sooner, speeds response, and strengthens future defenses. #CIRCIA
One report, many missions: A better way to coordinate America's cyber defense
How CIRCIA creates an information-sharing framework for private companies and the federal government.
www.scworld.com
September 16, 2026 at 6:39 PM
New federal cyber incident reporting requirements under CIRCIA are drawing closer. Organizations across critical infrastructure sectors should prepare now for potential new reporting, governance, and compliance obligations.

Read more: https://bit.ly/4yE46BJ

#CIRCIA
Looming Incident Reporting Mandates: Who Needs to Care
bit.ly
September 15, 2026 at 7:55 PM
CISA is preparing to welcome roughly 250 new employees as part of the agency's first hiring surge since the Trump admin downsized it.

On Wednesday, CISA's acting chief talked about that, CIRCIA, ANCHOR-CI, and more.

My story: www.cybersecuritydive.com/news/cisa-hi...
September 10, 2026 at 3:14 PM
One report, many missions: A better way to coordinate America’s cyber defense

www.scworld.com/perspective/...

#Defense #MilitaryTech #Security
One report, many missions: A better way to coordinate America's cyber defense
How CIRCIA creates an information-sharing framework for private companies and the federal government.
www.scworld.com
September 9, 2026 at 11:01 AM
August 2026 security briefing: ChainDrop poisoned 400+ npm packages in under 4 hours, Ghostjacking targeted AI coding agents, and Claude Code appeared in ransomware intrusions. #ChainDrop #ClaudeCode #PTCWindchill
Security Briefing: August 2026
August’s security briefing covers ChainDrop’s rapid npm supply chain poisoning, Ghostjacking attacks against AI coding agents, and incidents where Claude Code was used in ransomware intrusions. It also highlights Sysdig’s finding that most AI-enabled attacks relied on ordinary command execution, along with Cl0p’s exploitation of PTC Windchill and broader governance updates from OWASP, CIRCIA, and NIST. #ShaiHulud #ChainDrop #ClaudeCode #PTCWindchill #Cl0p #NIST #CIRCIA
www.hendryadrian.com
September 2, 2026 at 12:00 AM
What MSPs Need to Know about CIRCIA Final Rule

huntaegis.com
August 28, 2026 at 10:54 PM
Tank ya circia! ^^
August 21, 2026 at 8:43 PM
"One way to piss off all 100 senators on the same thing is to say the thing they did 12 hours prior makes America less safe," said former Senate staffer Jeff Rothblum, who wrote CIRCIA.
August 7, 2026 at 6:30 PM
AnMed Ransomware: 72-Hour Criminal Deadline Collides With 72-Hour CIRCIA Mandate
AnMed Ransomware: 72-Hour Criminal Deadline Collides With 72-Hour CIRCIA Mandate
AnMed Health suffered a ransomware attack starting July 26, 2026, with a patient reporting a 72-hour ransom demand. The health system shut down select clinical services while the criminal deadline overlaps with the CIRCIA 72-hour reporting requirement to CISA.
deafnews.it
August 2, 2026 at 8:07 PM
August 2026: AI-driven cyber threats rise, industrial security strengthens, and key regulations like CIRCIA approach finalization. #Cybersecurity #AIThreats thedailytechfeed.com/august-2026-...
August 2, 2026 at 1:10 PM
𝗁̶𝗈̶𝗇̶𝖾̶𝗌̶𝗍̶𝗅̶𝗒̶ 𝗐̶𝗈̶𝗎̶𝗅̶𝖽̶𝗇̶’̶𝗍̶ 𝗆̶𝗂̶𝗇̶𝖽̶ 𝖻̶𝖾̶𝗂̶𝗇̶𝗀̶ 𝖺̶ 𝗌̶𝗇̶𝖺̶𝖼̶𝗄̶
“cough” …ovo”

Really awesome work Circia! ^v^”
July 31, 2026 at 11:33 PM
A light snack (or two) to get through the day <3
July 31, 2026 at 11:19 PM
@timstarks.bsky.social joins @gregotto.bsky.social to discuss industry feedback on CISA’s pending CIRCIA rule, including calls to cover fewer organizations, require reports on fewer incidents and collect less information. www.youtube.com/watch?v=m6-O... | cyberscoop.com/cisa-circia-...
July 30, 2026 at 6:37 PM
Industry's message on CIRCIA: Please ask us fewer questions about cyberattacks cyberscoop.com/cisa-circia-...
Industry's message on CIRCIA: Please ask us fewer questions about cyberattacks
Critical infrastructure groups are pressing CISA to narrow its long-delayed CIRCIA cyber reporting rule, demanding fewer covered entities and reduced reporting burdens.
cyberscoop.com
July 28, 2026 at 8:42 PM
Industry walked into CISA town halls and basically said: count fewer of us, tell us to report less, give you less detail when we do. The most significant cyber law Congress ever passed is being negotiated down to som...

https://cyberscoop.com/cisa-circia-cyber-incident-reporting-rule-feedback/
July 28, 2026 at 7:00 PM
“CISA last week published transcripts from the town halls, where the agency sought feedback on the delayed rule for the 2022 Cyber Incident Reporting for Critical Infrastructure Act — perhaps the most significant cyber legislation Congress has ever passed.” cyberscoop.com/cisa-circia-...
Industry's message on CIRCIA: Please ask us fewer questions about cyberattacks
Critical infrastructure groups are pressing CISA to narrow its long-delayed CIRCIA cyber reporting rule, demanding fewer covered entities and reduced reporting burdens.
cyberscoop.com
July 28, 2026 at 1:50 AM
Private companies — are you ready for this? — don't want to be strictly regulated.
Industry's message on CIRCIA: Please ask us fewer questions about cyberattacks
Critical infrastructure groups are pressing CISA to narrow its long-delayed CIRCIA cyber reporting rule, demanding fewer covered entities and reduced reporting burdens.
cyberscoop.com
July 27, 2026 at 4:00 PM
GAO報告書、重要インフラに対するサイバー報告義務の重複可能性を指摘

米サイバーセキュリティ・インフラセキュリティ庁(CISA)は、2022年重要インフラサイバーインシデント報告法(CIRCIA)を実施するための最終規則を近く発表する見通しです。この最終規則は当初2026年5月に発表される予定でしたが、2026年9月まで延期されています。規則が発効すれば、16の重
GAO報告書、重要インフラに対するサイバー報告義務の重複可能性を指摘
米サイバーセキュリティ・インフラセキュリティ庁(CISA)は、2022年重要インフラサイバーインシデント報告法(CIRCIA)を実施するための最終規則を近く発表する見通しです。この最終規則は当初2026年5月に発表される予定でしたが、2026年9月まで延期されています。規則が発効すれば、16の重
blackhatnews.tokyo
July 27, 2026 at 2:58 PM
" .. Government Accountability Office .. July 22 .. comprehensive assessment of federal cybersecurity requirements .. overlapping requirements are widespread, reporting obligations are duplicative & harmonization efforts have not worked." www.wileyconnect.com/gao-confirms... @wileyrein.bsky.social
GAO Confirms Cyber Reporting Burdens as CIRCIA Rules Loom
www.wileyconnect.com
July 26, 2026 at 10:05 PM
CIRCIA Rule Faces September Deadline As Industry Seeks Narrower Filings

CISA is working toward a September target for the delayed CIRCIA rule as industry groups seek fewer covered entities, narrower incident triggers and leaner reporting

#Cybersecurity #Fintech #Policy

Link card below.
CIRCIA Rule Faces September Deadline As Industry Seeks Narrower Filings
CISA is working toward a September target for the delayed CIRCIA rule as industry groups seek fewer covered entities, narrower incident triggers and leaner reporting requirements. The law sets 72-hour incident and
stechtimes.com
July 26, 2026 at 9:47 AM