EU Cyber Resilience Act: Socio-Technical and Research Challenges (Dagstuhl Seminar 24112)

Authors Mila Dalla Preda, Serge Egelman, Anna Maria Mandalari, Volker Stocker, Juan Tapiador, Narseo Vallina-Rodriguez and all authors of the abstracts in this report



PDF
Thumbnail PDF

File

DagRep.14.3.52.pdf
  • Filesize: 2.31 MB
  • 23 pages

Document Identifiers

Author Details

Mila Dalla Preda
  • University of Verona, IT
Serge Egelman
  • ICSI - Berkeley, US
Anna Maria Mandalari
  • University College London, GB
Volker Stocker
  • TU-Berlin, DE
Juan Tapiador
  • UC3M - Madrid, ES
Narseo Vallina-Rodriguez
  • IMDEA Networks Institute - Madrid, ES
and all authors of the abstracts in this report

Cite AsGet BibTex

Mila Dalla Preda, Serge Egelman, Anna Maria Mandalari, Volker Stocker, Juan Tapiador, and Narseo Vallina-Rodriguez. EU Cyber Resilience Act: Socio-Technical and Research Challenges (Dagstuhl Seminar 24112). In Dagstuhl Reports, Volume 14, Issue 3, pp. 52-74, Schloss Dagstuhl – Leibniz-Zentrum für Informatik (2024)
https://doi.org/10.4230/DagRep.14.3.52

Abstract

This report documents the program and the outcomes of Dagstuhl Seminar "EU Cyber Resilience Act: Socio-Technical and Research Challenges" (24112). This timely seminar brought together experts in computer science, tech policy, and economics, as well as industry stakeholders, national agencies, and regulators to identify new research challenges posed by the EU Cyber Resilience Act (CRA), a new EU regulation that aims to set essential cybersecurity requirements for digital products to be permissible in the EU market. The seminar focused on analyzing the proposed text and standards for identifying obstacles in standardization, developer practices, user awareness, and software analysis methods for easing adoption, certification, and enforcement. Seminar participants noted the complexity of designing meaningful cybersecurity regulations and of aligning regulatory requirements with technological advancements, market trends, and vendor incentives, referencing past challenges with GDPR and COPPA adoption and compliance. The seminar also emphasized the importance of regulators, marketplaces, and both mobile and IoT platforms in eliminating malicious and deceptive actors from the market, and promoting transparent security practices from vendors and their software supply chain. The seminar showed the need for multi-disciplinary and collaborative efforts to support the CRA’s successful implementation and enhance cybersecurity across the EU.

Subject Classification

ACM Subject Classification
  • Security and privacy → Human and societal aspects of security and privacy
Keywords
  • Cyber Resilience Act
  • Software Testing
  • Software Analysis
  • IoT
  • Security Regulations
  • Security Economics

Metrics

  • Access Statistics
  • Total Accesses (updated on a weekly basis)
    0
    PDF Downloads
Questions / Remarks / Feedback
X

Feedback for Dagstuhl Publishing


Thanks for your feedback!

Feedback submitted

Could not send message

Please try again later or send an E-mail