US lawmakers moved on multiple fronts affecting cybersecurity and data governance. Senators Dick Durbin and Mike Lee planned to reintroduce the SAFE Act to reform FISA Section 702, which authorizes warrantless targeting of foreigners’ communications but can incidentally collect Americans’ data; the proposal would add a warrant requirement for queries of U.S.-person data and would narrow/clarify which communications service providers can be compelled to assist with collection as Section 702 approaches another expiration deadline.
Separately, the Cybersecurity Information Sharing Act of 2015 (CISA 2015)—which provides a legal framework and liability/FOIA protections for sharing cyber threat indicators and defensive measures with the US government and private entities—was extended via a February 3, 2026 funding bill, pushing its sunset from late January 2026 to September 30, 2026. A third, unrelated policy development saw 40 state attorneys general criticize a House version of the Kids Online Safety Act (KOSA) as insufficient to protect minors online, citing gaps versus the Senate bill (including a weaker or absent duty of care and fewer enumerated harms) and raising concerns about federal preemption of stronger state laws.

See the reporting duties and controls this puts on the clock.
9 events from the most recent confirmed update back to the earliest known activity.
As of February 2026, Section 702 was scheduled to expire after April 19 unless Congress extends it again, intensifying debate over surveillance reform and renewal.
Senators Dick Durbin and Mike Lee said they would revive the SAFE Act to reform Section 702 by adding a warrant requirement for U.S. person queries and narrowing which providers can be compelled to assist.
A U.S. funding bill enacted on February 3, 2026 reauthorized the Cybersecurity Information Sharing Act of 2015 through September 30, 2026, extending its information-sharing authorities and protections.
The cybersecurity information-sharing provisions in the Cybersecurity Information Sharing Act of 2015 were set to expire on January 30, 2026 absent congressional action.
Lawmakers renewed Section 702 in April 2024 for two years and expanded the definition of service providers that can be compelled to assist with collection, a change widely believed to include data centers.
The FBI later acknowledged improper queries of U.S.-linked data under Section 702, including searches tied to the January 6 Capitol riot and 2020 racial justice protests after George Floyd's killing.
The Cybersecurity Information Sharing Act of 2015 became law, creating a framework for sharing cyber threat indicators and defensive measures with the U.S. government and private entities, along with liability and disclosure protections for participants.
Edward Snowden's 2013 disclosures heightened public and global scrutiny of U.S. surveillance authorities, including Section 702 of FISA, shaping later reform debates.
Section 702 of the Foreign Intelligence Surveillance Act was created in 2008, authorizing warrantless targeting of foreigners abroad while also enabling incidental collection of Americans' communications.
See what this changes for your reporting obligations and which controls it puts on the clock.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.