BTC $79,195.28 +2.53%
ETH $2,545.94 +1.55%
BNB $726.44 +0.75%
XRP $1.47 +8.34%
SOL $103.55 +2.53%
TRX $0.3403 -0.25%
DOGE $0.0849 +0.78%
ADA $0.2130 +2.12%
BCH $226.78 +1.26%
LINK $11.72 +2.39%
HYPE $81.55 +4.34%
AAVE $130.05 +2.77%
SUI $0.7383 +2.53%
XLM $0.1943 +8.32%
ZEC $1,192.54 +8.58%
AAPL $334.31 +1.05%
AMZN $253.59 -0.24%
GOOGL $348.63 +3.32%
MSFT $507.01 +3.14%
META $665.53 +3.63%
NVDA $212.29 -1.44%
TSLA $360.40 -0.49%
SNDK $1,558.61 -0.26%
INTC $98.02 -0.99%
SPCX $149.32 +0.07%
MU $927.41 -1.19%
AMD $496.15 -0.99%
BTC $79,195.28 +2.53%
ETH $2,545.94 +1.55%
BNB $726.44 +0.75%
XRP $1.47 +8.34%
SOL $103.55 +2.53%
TRX $0.3403 -0.25%
DOGE $0.0849 +0.78%
ADA $0.2130 +2.12%
BCH $226.78 +1.26%
LINK $11.72 +2.39%
HYPE $81.55 +4.34%
AAVE $130.05 +2.77%
SUI $0.7383 +2.53%
XLM $0.1943 +8.32%
ZEC $1,192.54 +8.58%
AAPL $334.31 +1.05%
AMZN $253.59 -0.24%
GOOGL $348.63 +3.32%
MSFT $507.01 +3.14%
META $665.53 +3.63%
NVDA $212.29 -1.44%
TSLA $360.40 -0.49%
SNDK $1,558.61 -0.26%
INTC $98.02 -0.99%
SPCX $149.32 +0.07%
MU $927.41 -1.19%
AMD $496.15 -0.99%
first_img

The EU Cyber Resilience Act comes into effect, requiring cryptocurrency wallet providers to report vulnerabilities within 24 hours

2026-09-14 19:51:35

According to Cointelegraph, the European Union's Cyber Resilience Act (CRA) officially came into effect on September 11, requiring cryptocurrency hardware and software wallet providers to submit early warning reports within 24 hours upon discovering actively exploited vulnerabilities or serious security flaws, and to submit complete notifications within 72 hours. Manufacturers must also submit final reports within 14 days after taking corrective or mitigating measures, while serious incidents must be reported within one month.

The European Commission stated that the new reporting requirements aim to better protect consumers and businesses from cyber threats, applicable to all "products with digital elements" sold in the EU market, and are built upon the EU's broader cybersecurity strategy. According to the penalty provisions of the final draft, companies that fail to comply with Articles 13 and 14 may face administrative fines of up to €15 million (approximately $17.3 million) or 2.5% of their global annual turnover, whichever is higher; providing incorrect, incomplete, or misleading information may also incur fines of up to €5 million.

Before the implementation of this measure, several hardware wallet manufacturers recently disclosed incidents of user data breaches. On September 4, Trezor revealed that a data breach involving its logistics provider ShipMonk affected approximately 67,000 U.S. customers, exceeding the initial estimate of 14,000; this week, Trezor and BitBox also warned users to be cautious of phishing emails disguised as urgent security notifications. In June, the Layer-1 blockchain network Zilliqa warned of vulnerabilities in its Ledger application, where attackers could exploit publicly available on-chain data to recover user private keys.

app_icon
ChainCatcher Building the Web3 world with innovations.