EU introduces strict new security rules for VPNs with the help of industry giants



  • The European Telecommunications Standards Institute (ETSI) has released security requirements for VPNs under the Cyber Resilience Act
  • NordVPN and Surfshark are among the industry players collaborating to help shape these security baselines
  • The new rules ensure that all VPNs sold in Europe adhere to auditable standards for encryption, authentication, and vulnerability management

The European Union is fundamentally changing how privacy tools are regulated, introducing an official security standard for VPN services on the market. Crafted under the sweeping Cyber Resilience Act (CRA), the new framework sets strict, auditable cybersecurity requirements for any virtual private network sold in Europe.

Until now, users looking to protect their digital footprint have largely had to rely on a provider’s own marketing claims or third-party audits to verify encryption strength or no-logs VPN policies. Now, the European Telecommunications Standards Institute (ETSI) has stepped in to establish a unified legal baseline known as EN 304 620.

https://cdn.mos.cms.futurecdn.net/72vjQXmi4arSDj4JeoWXse-2121-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

Leave a reply

Please enter your comment!
Please enter your name here

spot_imgspot_img