Section 702 of the Foreign Intelligence Surveillance Act expires tonight, but surveillance operations will proceed under a certification that remains valid until March 2027.
The controversial provision, which allows the NSA to collect communications of non-U.S. persons abroad without individual warrants, technically sunsets today. However, the law's expiration does not halt ongoing surveillance.
A certification issued under Section 702 will keep the program operational for another three years. This means the NSA can continue collecting vast amounts of digital communications without interruption.
Section 702 has faced criticism from privacy advocates, civil liberties groups, and some lawmakers who argue it enables mass surveillance and risks sweeping up Americans' data incidentally. Supporters maintain it is essential for national security.
The certification mechanism effectively extends the program's authority beyond tonight's deadline, allowing surveillance to continue while Congress debates whether to formally reauthorize, modify, or let the provision lapse entirely when the certification expires.
Researchers have identified stolen credentials as a critical vulnerability threatening America's water infrastructure. The exposed passwords create direct pathways for attackers to access essential systems.
Microsoft's Digital Crimes Unit has shut down EvilTokens, a phishing-as-a-service platform that compromised over 12,000 Microsoft accounts across 10,000+ organizations.
A webinar tomorrow examines critical early response decisions in Google Workspace breaches. Real-world incident analysis shows which actions limit damage and which escalate the impact.
D-Link has alerted users of a maximum-severity zero-day vulnerability (CVE-2026-86296) affecting DIR-822A dual-band Wi-Fi routers. The flaw has no available patch and public exploit code is already circulating.