{
  "id": 12315963,
  "title": "Cyber Resilience Act: what your devices should be able to tell you",
  "url": "https://urgent.news/2026/10/06/cyber-resilience-act-what-your-devices-should-be-able-to-tell-you",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-10-06T06:13:27.000Z",
  "source": {
    "name": "Dev.to",
    "slug": "dev-to",
    "url": "https://dev.to/newlinebreak-studio/cyber-resilience-act-what-your-devices-should-be-able-to-tell-you-8dn"
  },
  "original_language": "en",
  "account": "The Cyber Resilience Act, effective since 11 September 2026, mandates manufacturers to report early warnings about connected products under attack within 24 hours. This notification, followed by a fuller one within 72 hours and a final report within 14 days once a fix or mitigation is available, requires devices to be capable of providing key information. Four crucial pieces of data needed within three days include the specific units affected, their location, the availability of a fix, and what users can do in the interim. These requirements, outlined in Article 14 of the EU's Cyber Resilience Act, emphasize the importance of the device being pre-equipped with the necessary data to comply with these regulations.",
  "summary": "Since 11 September 2026, a manufacturer that learns one of its connected products is being attacked through a flaw has at most 24 hours to send an early warning. That warning is short. The notification due two days later is not, and most of it can only be answered if the device and the system behind it can tell you. What changed on 11 September Article 14 of the EU's Cyber Resilience Act, the…",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}