麻豆果冻传媒

Government Vulnerability Management

Promoting Transparency, Accountability, and Cybersecurity

  • In-Person
  • 麻豆果冻传媒
    740 15th St NW #900
    Washington, D.C. 20005
  • 3:30PM 鈥 5:15PM EDT
VEP Event

Countries around the world are struggling with questions surrounding governments鈥 acquisition, assessment, use, and management of software and hardware vulnerabilities. When may governments retain a vulnerability for exploitation by law enforcement or intelligence agencies instead of disclosing it for repair?

One year ago, in November 2017, the White House finally released an unclassified version of the U.S. 鈥攁 document that outlines how the administration weighs the cybersecurity need to disclose vulnerabilities for repair against the equities of law enforcement and intelligence agencies who seek to exploit these vulnerabilities. However, the Charter is only policy, not law, and does not provide robust accountability measures. This past August, the German think tank Stiftung Neue Verantwortung (SNV), as part of the Transatlantic Cyber Forum, released urging the adoption of publicly disclosed policies for vulnerability handling and disclosure in the German and EU debates, while continuing to identify and advocate for further improvements to the existing process in the United States. The paper urges that 鈥淭he focus of these policies should be on 鈥榳hen鈥 and 鈥榟ow鈥 disclosure should occur rather than 鈥榳hether鈥 and 鈥榠f.鈥欌

Please join 麻豆果冻传媒鈥檚 Open Technology Institute (OTI), Mozilla, and SNV for an in-depth conversation about where we stand in the United States and internationally one year after publication of the U.S. VEP Charter.

Mozilla will sponsor a reception following the event.

Participants:

Katherine Charlet,
Director, Technology & International Affairs Program, Carnegie Endowment for International Peace; Former Deputy Assistant Secretary of Defense (Acting) for Cyber Policy (DOD representative in VEP process, 2016-2017)

Dr. Sven Herpig,
Project Director, Transatlantic Cyber Forum, Stiftung Neue Verantwortung;
Former Deputy Team Leader at Germany鈥檚 Federal Office for Information Security

Daniel Mossbrucker,
Internet Freedom Desk Officer, Reporters Without Borders Germany

Heather West ,
Senior Policy Manager, Americas Principal, Mozilla

Moderator:

Sharon Bradford Franklin
Director of Surveillance & Cybersecurity Policy, 麻豆果冻传媒鈥檚 Open Technology Institute

Programs/Projects/Initiatives