[Congressional Record Volume 161, Number 125 (Tuesday, August 4, 2015)]
[Senate]
[Page S6315]
From the Congressional Record Online through the Government Publishing Office [www.gpo.gov]
SA 2596. Mr. DURBIN submitted an amendment intended to be proposed by
him to the bill S. 754, to improve cybersecurity in the United States
through enhanced sharing of information about cybersecurity threats,
and for other purposes; which was ordered to lie on the table; as
follows:
On page 11, line 10, strike ``contravention;'' and insert
``contravention, and instructions to remedy or mitigate such
error or contravention, including the destruction of such
cyber threat indicator and the cessation of any defensive
measures based on such indicator;''.
On page 15, between lines 16 and 17, insert the following:
(3) Notification and mitigation of error or
contravention.--
(A) Requirement to notify.--An entity that shares a cyber
threat indicator or defensive measure and subsequently
determines that such cyber threat indicator or defensive
measure was in error or in contravention of the requirements
of this Act or another provision of Federal law or policy
shall notify each entity with which such indicator or measure
was shared of such error or contravention.
(B) Requirements for receiving entity.--An entity that
receives a notice under subparagraph (A)--
(i) shall cease use of such cyber threat indicator or
defensive measure;
(ii) shall not further share such indicator or measure; and
(iii) shall provide a similar notice to each other entity
with which the receiving entity has shared such indicator or
measure.
On page 17, between lines 16 and 17, insert the following:
(II) a notification of error or contravention received from
a Federal entity or sharing entity pursuant to section
3(b)(1)(C) or section 4(c)(3); or
______