Senator Ted Cruz blocked the passage of the Protecting Americans from Doxing and Political Violence Act, a legislative proposal aimed at extending data privacy protections to all individuals in the United States. The bill, introduced by Senator Ron Wyden, sought to prevent the sale of personal information by data brokers and to enhance protections against stalking, violence, and other criminal threats. Cruz argued that the measure could hinder law enforcement activities, such as tracking sexual predators, and was the sole senator to object to the proposal. The legislation was motivated in part by recent incidents, including the killing of a Minnesota state lawmaker whose personal information was allegedly obtained from data brokers. In addition to blocking the main bill, Cruz also objected to a follow-up measure, S.2852, which would have extended protections to state-level officials, staff, and survivors of domestic violence and sexual assault. Cruz expressed interest in expanding protections but stated that the appropriate approach had not yet been determined. The debate highlights ongoing concerns about the role of data brokers in facilitating privacy breaches and the potential for misuse of personal information. Meanwhile, a separate report from the Atlantic Council proposed that Congress enact a safe-harbor law to shield tech companies from lawsuits related to spyware that exploits their platforms. The report argues that such a law would incentivize companies to invest in spyware detection, victim notification, and information sharing with researchers and advocacy groups. The proposed safe-harbor would apply to messaging platforms, mobile operating systems, cloud service providers, and security companies, provided they implement robust threat detection and notification programs. The report notes that while companies like Apple, Meta, and Google have effective threat hunting teams, there is currently no legal framework to protect them from potential legal repercussions arising from their anti-spyware efforts. The safe-harbor proposal also suggests that less-resourced platforms, such as Signal, could benefit from increased information sharing if larger companies are protected and encouraged to collaborate. Most existing spyware lawsuits have targeted the manufacturers of surveillance tools rather than the platforms exploited by such tools. The legislative and policy discussions reflect a broader debate over how best to balance privacy, security, and accountability in the digital age. Both the blocked data privacy legislation and the proposed safe-harbor law for tech companies underscore the complexity of protecting individuals from digital threats while ensuring that law enforcement and technology providers can operate effectively. The ongoing legal and policy developments are being closely watched by privacy advocates, technology companies, and lawmakers. The outcome of these debates will have significant implications for data privacy, cybersecurity, and the responsibilities of both data brokers and technology platforms. As the landscape evolves, stakeholders continue to grapple with the challenges of regulating data flows and protecting users from harm. The intersection of legislative action and industry self-regulation remains a critical area of focus for the future of cybersecurity and privacy in the United States.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
Legislation aimed at expanding data privacy protections was blocked, halting progress on the proposed measure. The action represented a separate policy setback for broader privacy-related legal protections.
A report said technology companies should be shielded from lawsuits related to spyware, proposing a legal safe harbor for firms whose products or services are implicated in spyware activity. The recommendation marked a policy development in the debate over liability for commercial spyware harms.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.