US won’t prosecute ‘good faith’ security researchers under CFAA

1 month ago

20. May 2022

Well, that clears things up? Maybe not.

The US Justice Department has directed prosecutors not to charge “good-faith security researchers” with violating the Computer Fraud and Abuse Act (CFAA) if their reasons for hacking are ethical — things like bug hunting, responsible vulnerability disclosure, or above-board penetration testing.…

