Skip to main content
HR 285 118th Congress House

Cybersecurity Vulnerability Remediation Act

Official title: To amend the Homeland Security Act of 2002 to provide for the remediation of cybersecurity vulnerabilities, and for other purposes.

Introduced: January 11, 2023 See on congress.gov
Science, Technology, Communications Computer security and identity theftComputers and information technologyCongressional oversightGovernment information and archives
More subjectsShow fewer subjects
Public-private cooperationRight of privacy
This bill died when the 118th Congress ended
It never became law before the 118th Congress (2023–2024) adjourned, and bills don't carry over to the next Congress. It would have to be reintroduced. You can still save it for reference, but it won't receive updates.
 Everywhere this bill has been 3 steps
Introduced
In committee
Reported out
Passed House
Passed Senate
To President
Became law
Feb 8, 2023
Referred to the Subcommittee on Cybersecurity and Infrastructure Protection.
Jan 11, 2023
Referred to the House Committee on Homeland Security.
Jan 11, 2023
Introduced in House
 Ask about this bill AI · grounded in the bill text

Have a question about what this bill does? Ask in plain English; the answer is drawn from the bill's actual text and official record, and it'll tell you when something isn't in the text rather than guess.

AI answers can be imperfect; always confirm against the full bill text.

 Latest action February 8, 2023

Referred to the Subcommittee on Cybersecurity and Infrastructure Protection.

 Plain-English summary Congressional Research Service

Cybersecurity Vulnerability Remediation Act

This bill authorizes the Department of Homeland Security to take certain actions with the goal of countering cybersecurity vulnerabilities.

The Cybersecurity and Infrastructure Security Agency must report on its activities to coordinate disclosures of cybersecurity vulnerabilities. The report must address, among other topics, relevant policies and procedures; the degree to which disclosed information is acted upon by industry and other stakeholders; and the preservation of privacy and civil liberties when collecting, using, and sharing vulnerability disclosures.

The National Cybersecurity and Communications Integration Center may disseminate protocols to counter cybersecurity vulnerabilities to information systems and industrial control systems, including in circumstances in which such vulnerabilities exist because software or hardware is no longer supported by a vendor.

The Science and Technology Directorate may establish a competition to develop remedies for cybersecurity vulnerabilities.

 Bill text 1 version

Source documents hosted by congress.gov.

 Committees of jurisdiction 2
Cite this page click to expand
APA
U.S. Congress. (2026). H.R. 285: Cybersecurity Vulnerability Remediation Act. 118th Congress. Open America. https://openamerica.io/bill/118-HR-285/
MLA
"H.R. 285: Cybersecurity Vulnerability Remediation Act." 118th Congress, 2026, Open America, https://openamerica.io/bill/118-HR-285/.
Bluebook (legal)
H.R. 285, 118th Cong. (2026), https://openamerica.io/bill/118-HR-285/.
Markdown link
[H.R. 285: Cybersecurity Vulnerability Remediation Act](https://openamerica.io/bill/118-HR-285/)
Report a problem