Zero Day Docket
  • Home
  • Breach Autopsy
  • Exhibit A(I)
  • Explain This
  • Policy Roast
  • The Docket
Sign in Subscribe

incident-reporting

Policy Roast: SEC's 'Material Impact' Standard Is a License to Hide Breaches

Policy Roast: SEC's 'Material Impact' Standard Is a License to Hide Breaches

The SEC's cybersecurity disclosure rules let companies decide what's material—leaving investors in the dark until it's too late.
Karla Ortiz-Flores 29 Mar 2026
Policy Roast: CIRCIA's 72-Hour Reporting Window Is Already Obsolete

Policy Roast: CIRCIA's 72-Hour Reporting Window Is Already Obsolete

CISA's 72-hour incident reporting rule assumes breaches are discovered instantly. Reality: most take 200+ days to detect.
Karla Ortiz-Flores 19 Mar 2026
The Docket: Eight-Month Notification Delays Are Not Anomalies Anymore

The Docket: Eight-Month Notification Delays Are Not Anomalies Anymore

Three healthcare breaches announced the same week with similar delays. The notification timeline is the second vulnerability.
Karla Ortiz-Flores 18 Mar 2026
Explain This: The CIRCIA Reporting Rule

Explain This: The CIRCIA Reporting Rule

Explain This: CIRCIA reporting, in plain English If you are a critical infrastructure operator, CIRCIA is the reporting rule that will turn "we handled it" into "prove it." The cost is not the report. The cost is being unable to show your work. What it is
Karla Ortiz-Flores 04 Mar 2026
Explain This: What a shutdown delay does (and does not do) to CIRCIA reporting

Explain This: What a shutdown delay does (and does not do) to CIRCIA reporting

CIRCIA is still coming. A shutdown only buys you time to get evidence-ready before the reporting clock starts.
Karla Ortiz-Flores 04 Mar 2026

Subscribe to Zero Day Docket

Don't miss out on the latest news. Sign up now to get access to the library of members-only articles.
  • Get briefed
  • LinkedIn
  • Medium
Zero Day Docket © 2026. Powered by Ghost