Story perspectives
China's Cybersecurity Overhaul Targets AI Risks by 2026
11/6/2025
1 of 1
Story summary
- China will overhaul its cybersecurity laws to address AI risks and critical infrastructure vulnerabilities.
- Starting January 1, 2026, key-sector companies must report a broad set of network incidents, including AI failures, within one hour.
- The amendments also impose penalties for delayed reporting of significant malfunctions.
- The EU’s NIS2 and Digital Operational Resilience Act (DORA) redefine the Chief Information Security Officer’s role toward risk-based, board-level accountability.
