Security News > 2021 > August > China orders annual security reviews for all critical information infrastructure operators

China's government has introduced rules for protection of critical information infrastructure.
An announcement by the Cyberspace Administration of China said that cyber attacks are currently frequent in the Middle Kingdom, and the security challenges facing critical information infrastructure are severe.
The CAC referred to critical infrastructure as "The nerve center of economic and social operations and the top priority of network security".
China's definition of critical information infrastructure can be found in Article 2 of the State Council's "Regulations on the Security Protection of Critical Information Infrastructure" and boils down to any system that could suffer significant damage from a cyber attack, and/or have such an attack damage society at large or even national security.
"The regulations clarify that important network facilities and information systems in key industries and fields belong to critical information infrastructure," wrote the CAC in its announcement, adding that the state was adopting measures to monitor, defend and handle network risks and intrusions, originating domestically and globally.
The regulations themselves are lengthy and detailed, but the theme is that all Chinese enterprises whose operations depend on networks must conduct an annual security reviews, report breaches to government, and establish teams to monitor security constantly.
News URL
Related news
- US charges Chinese hackers linked to critical infrastructure breaches (source)
- CISA: Medusa ransomware hit over 300 critical infrastructure orgs (source)
- FCC stands up Council on National Security to fight China in ways that CISA used to (source)
- Stealthy Apache Tomcat Critical Exploit Bypasses Security Filters: Are You at Risk? (source)
- UAT-5918 Targets Taiwan's Critical Infrastructure Using Web Shells and Open-Source Tools (source)
- How AI agents could undermine computing infrastructure security (source)
- Still Using an Older Version of iOS or iPadOS? Update Now to Patch These Critical Security Vulnerabilities (source)
- China reportedly admitted directing cyberattacks on US infrastructure (source)