Advertisement · 728 × 90

Posts by Daniel Ehrenberg

For April Fools, I told the ETSI CYBER EUSR rapporteur group on web browsers that the European Commission was giving us until April 15th to submit our final draft. Got them good! Well, some requests for clarification but actually no laughs… (Real timeline: edit through May, then more review stages)

1 week ago 0 0 0 0
CRA Standards Unlocked - EU Tour in Barcelona | Cyberstand

Come to this free event this Thursday in CTTC in Castelldefels (Barcelona) to hear me talk about the Cyber Resilience Act and web browsers.

Registra't aqui: cyberstand.eu/events/cra-s...

(Background music: Jennifer by Els Catarres)

2 weeks ago 0 0 0 0
CRA Standards Unlocked - EU Tour in Barcelona | Cyberstand

Ve a aquest esdeveniment gratis aquest dijous a CTTC a Castelldefels per a sentir-me xerrar del Cyber Resilience Act i els navegadors web.

Ven a este evento gratis este jueves en CTTC en Castefa para escucharme charlar del Cyber Resilience Act y los navegadores web.

2 weeks ago 0 0 1 0
Preview
Temporal - JavaScript | MDN The Temporal object enables date and time management in various scenarios, including built-in time zone and calendar representation, wall-clock time conversions, arithmetics, formatting, and more. It is designed as a full replacement for the Date object.

JavaScript's date object has been tricky for years, but that is changing.

The NEW Temporal API brings,
🌍 Easily handle time zones
📆 Precise date math
🕒 Parse ISO strings without errors
⌛ Durations, date ranges, and more.

Start experimenting 👇
developer.mozilla.org/en-US/docs/...

1 month ago 100 26 3 0
Preview
STAN4CRA / EN 304 617 Browser · GitLab Welcome to ETSI Labs

This standard is still in development, at labs.etsi.org/rep/stan4cra... , with weekly meetings freely accessible to open source developers, as well as ETSI members. Please get in touch with me if you want to be involved.

2 months ago 1 0 0 0

I spoke at FOSDEM about the new European web browser security standard, under development in ETSI, as part of the Cyber Resilience Act. Video here: mirror.as35701.net/video.fosdem...

2 months ago 3 0 1 0

In addition to development in GitLab, we have regular calls. The next one is tomorrow, Feb 3rd at 3 PM (CET). If you want to join this or a future call, please DM me and we can discuss how that works.

2 months ago 1 0 0 0
Advertisement
Preview
Sign in · GitLab Welcome to ETSI Labs

Be the first to file an issue! No one from outside ETSI administration has done so yet, so this is a prize you can claim. labs.etsi.org/rep/stan4cra...

2 months ago 1 0 1 0

At ETSI, we're developing a new European standard about web browser security to support the Cyber Resilience Act. Come read the draft at labs.etsi.org/rep/stan4cra...

2 months ago 3 1 1 0
Preview
Public enquiry concerning the new draft standard prEN 40000-1-3 ‘Vulnerability Handling’, in support of the Cyber Resilience Act The public enquiry concerning the prEN 40000-1-3 standard entitled ‘Cybersecurity requirements for products with digital elements – Vulnerability Handling’ has been published on the NBN website. This ...

The draft standard now entering a public review phase, so *we need your opinions, thoughts and analysis to improve it*. This article explains where things are, and how to get involved.
www.agoria.be/en/services/...

2 months ago 1 1 0 0

For this reason, there's an ongoing standardization effort translate these principles into more clear requirements to meet, to make it easier to demonstrate compliance.

2 months ago 1 0 1 0

The Cyber Resilience Act mandates that commercial software handle vulnerabilities well. What does that mean exactly? The CRA names sound principles in Annex I Part II, but applying them in practice is another thing.

2 months ago 3 0 1 0
Preview
FOSDEM 2026 - The Cyber Resilience Act and web browsers

My FOSDEM talk:

The Cyber Resilience Act and web browsers

The Cyber Resilience Act defines web browsers as an important product requiring special attention to cybersecurity requirements. What does this mean? How can you participate in defining in what it means for a web browser to be secure?

2 months ago 2 0 0 0

OK thanks I'll rename it brb

2 months ago 1 0 1 0
Advertisement
Preview
CRA Standards Unlocked: Deep Dive Session on Browsers | Stan4cr As work on the Vertical Standards for the EU’s Cyber Resilience Act (CRA) moves forward, ETSI warmly invites you to join an exclusive deep dive into the ongoing development of the European harmonized ...

RESCHEDULED: Please join Daniel Thompson-Yvetot and me on Tuesday the 27th, at 1 PM Central European Time for an interactive deep dive into the draft standard for BROWSERS under the Cyber Resilience Act (CRA). www.stan4cra.eu/event-detail...

2 months ago 0 0 0 0

Rescheduled for Tuesday, the 27th at 1 PM. Hope to see you there!

2 months ago 0 0 1 0

This event is postponed. I'll post here again when it is rescheduled.

2 months ago 1 0 0 0

Our work in this area is funded by the European Commission and EFTA.

2 months ago 0 0 0 0
Directory Listing /CYBER/CYBER/Open/

Find the current draft in docbox.etsi.org/CYBER/CYBER/...
File any issues in labs.etsi.org/rep/stan4cra...

2 months ago 0 0 1 0
Preview
CRA Standards Unlocked: Deep Dive Session on Browsers | Stan4cr As work on the Vertical Standards for the EU’s Cyber Resilience Act (CRA) moves forward, ETSI warmly invites you to join an exclusive deep dive into the ongoing development of the European harmonized ...

Please join @denjell.bsky.social and me on Thursday, 3:30 PM Central European Time for a deep dive into the draft standard for BROWSERS under the Cyber Resilience Act (CRA). www.stan4cra.eu/event-detail...

2 months ago 4 2 1 2

Thank you for everyone’s support while I focused on my health over the past few months.

3 months ago 6 0 0 0
Advertisement
Preview
littledan - Overview (((🏳️‍🌈)). littledan has 98 repositories available. Follow their code on GitHub.

If you want to get involved, or have ideas for how to spread the word and get others involved, I’d love to be in touch. Please DM me here, or see other contact methods at littledan.dev

This work is co-funded by the EC and EFTA.

3 months ago 1 0 1 0

Another path to involvement is to become a paid (!) contributor to these standards via a CYBERSTAND.eu grant. Find more information at cyberstand.eu/10th-specific-service-procedure-sme-perspective . Please apply even if you’re not sure if you are qualified!

3 months ago 0 0 1 0
Preview
FOSDEM 2026 - CRA in practice

- In FOSDEM on January 31st in Brussels, in the “CRA in practice” dev room will be open Saturday from 15:00-19:00 in room UA2.114 (Baudoux) fosdem.org/2026/schedul...

3 months ago 0 0 1 0
CRA Standards Unlocked - EU Tour in Zagreb | Cyberstand

- In Zagreb on January 20th, there will be a “CRA Standards Unlocked” event cyberstand.eu/events/cra-s... , one of several events over the coming months around Europe: cyberstand.eu/events

3 months ago 0 0 1 0

If you’re interested in getting involved, there are a number of free-to-join, publicly streamed conferences coming up which discuss CRA and the “vertical” standards for particular high-risk products including web browsers:

3 months ago 1 0 1 0

This effort isn’t about mandating new practices from an ivory tower, but rather collecting best practices deployed today and encouraging their consistent usage more broadly. We need browser engineers and web security experts to be involved to accurately document these security best practices.

3 months ago 2 0 1 0
Preview
Sign in · GitLab Welcome to ETSI Labs

We’re very interested in feedback. The easiest way to provide feedback is in a GitLab issue. File issues in labs.etsi.org/rep/stan4cra... . Anyone can sign up for an account and post issues. Please apply the template carefully to give the committee all it needs to address on your comment.

3 months ago 2 0 1 0
Advertisement
Directory Listing /CYBER/CYBER/Open/

This browser security standard is in active development, with the work in progress published on ETSI’s website. You can find the current draft in docbox.etsi.org/CYBER/CYBER/... . Look for “browser” within that directory.

3 months ago 1 0 1 0

ETSI (a European Standards Organization, like Ecma or W3C but specifically authorized to write standards referenced by EU law) is developing a standard for one way to demonstrate that a browser meets these additional cybersecurity requirements.

3 months ago 2 0 2 0