Real Security Elusive, Microsoft Layoffs to Coincide With Certificate Apocalypse
Brace for July 1

"What has (can) the EU Cyber Resilience Act done (do) for you?" Peter N. M. Hansteen has asked. "The European Union Cyber Resilience Act (CRA) and its various international analogs are entering fully into force during 2026 and 2027, with new legal requirements that some have found to be perilous or challenging to software developers and possibly for open source developers in particular."
The European Union has historically been used as somewhat of a political vehicle of the US, based on outdated political assumptions (same for NATO), and to a lesser extend as an instrument of American corporations because they increasingly control their government at every meaningful level, ranging from economic to foreign policy. The CRA is an extension of this agenda, which is why CRA adopted many of the false or misguided security assumptions.
Boudica Security, which is associated with the Cyber Show, has written a lot about this type of issues and also submitted feedback to the EU regarding its proposals.
Some time very soon we predict a major disaster for security, partly due to pushers of Microsoft-controlled boot with Microsoft-owned certificates. That right there is a massive security liability, not a security solution. This will coincide with a massive wave of Microsoft layoffs (we've heard from whistleblowers today that many units there are already being shut down, merged etc. and as a result morale is worse than it has ever been... with words like "trauma", "panic" and "bloodbath" being common). █
