US government set to launch its Cyber Trust Mark cybersecurity labeling program for internet-connected devices in 2025

Date:

Share post:


The U.S. government announced Tuesday that its long-awaited cybersecurity labeling program for consumer internet-connected devices will launch in 2025.

The Biden administration first introduced the U.S. Cyber Trust Mark in June 2023, saying the voluntary labeling program would “raise the bar” for internet-connected devices by enabling Americans to make informed decisions about the security of the devices they buy. While the initiative was initially slated to launch in late 2024, the White House confirmed that the program will now be “open for business” this year. 

No exact launch date was given, but the announcement states that companies will “soon” be able to submit their products to one of 11 companies approved for testing to earn the label, with plans for certified products to hit store shelves in 2025.

The voluntary Cyber Trust Mark program has been likened to the “Energy Star” initiative, a voluntary labeling program designed to identify and promote energy-efficient products. Similarly, the Cyber Trust Mark is aimed at improving the security of consumer-grade internet-connected devices, including routers, home security cameras, smart speakers, and baby monitors, which often ship with easy-to-guess default passwords and no promise of continued security updates.

The White House said that retailers, including Best Buy and Amazon, will highlight products that carry the U.S. Cyber Trust Mark, which will take the form of a QR code that consumers can scan for details about the cybersecurity of the product, such as the support period for the product and whether security updates are installed automatically. 

On a call with reporters on Tuesday, which TechCrunch joined, U.S. deputy national security adviser for cyber and emerging technology Anne Neuberger said the Biden administration was also finalizing an executive order that would require the U.S. government to only buy products certified with the Cyber Trust Mark starting in 2027.

Products that receive the Cyber Trust Mark label must comply with a set of cybersecurity standards developed by the National Institute of Standards and Technology (NIST), including what the White House described in 2023 as “unique and strong default passwords, data protection, software updates, and incident detection capabilities.” 

The full set of standards has not yet been published, but NIST has started work on establishing recommendations for “high-risk” consumer-grade routers, which are frequently targeted by hackers.

Neuberger said the second phase of the Cyber Trust Mark will see the program aim to improve the security of routers used and marketed for small offices and home offices. In recent years, these so-called SOHO routers have become an attractive target for botnet creators, which use the device’s hijacked internet bandwidth to launch denial-of-service attacks. Neuberger did not say when the second phase of the initiative would begin. 

Zack Whittaker contributed reporting.



Source link

Lisa Holden
Lisa Holden
Lisa Holden is a news writer for LinkDaddy News. She writes health, sport, tech, and more. Some of her favorite topics include the latest trends in fitness and wellness, the best ways to use technology to improve your life, and the latest developments in medical research.

Recent posts

Related articles

Anthropic CEO says DeepSeek was ‘the worst’ on a critical bioweapons data safety test

Anthropic’s CEO Dario Amodei is worried about competitor DeepSeek, the Chinese AI company that took Silicon Valley...

OpenAI plans to open an office in Germany

OpenAI is expanding its footprint to Germany. According to a press release issued Friday, the ChatGPT maker...

Anduril in talks to raise up to $2.5B at $28B valuation

Just six months after defense tech Anduril raised a massive $1.5 billion round that valued the company...

Trump admin freezes EV charging program that gave Tesla millions

The Department of Transportation has paused funding for a $5 billion EV charging infrastructure program that Tesla...

One of Elon Musk’s young DOGE engineers explains how he won the $700K Vesuvius Challenge

This week, Silicon Valley came barrelling into Washington, D.C., in the form of fresh-faced engineers supposedly running...

Andrew Ng is ‘very glad’ Google dropped its AI weapons pledge

Andrew Ng, the founder and former leader of Google Brain, supports Google’s recent decision to drop its...

Coalition ‘concerned’ over UK appointing ex-Amazon exec as antitrust regulator chair

A coalition of organizations and individuals have signed an open letter expressing concern at the U.K. government’s...

Bluesky will soon let you limit replies to ‘followers only’

Social network Bluesky will soon give its users more control over who can reply to their posts....