Eric Geller @ericgeller
The new rail rules don't require companies to patch any vulnerabilities they discover. A sr DHS official said this was b/c, unlike w/ pipelines, TSA didn't already publish cyber guidance for rail operators. Initial directives thus focused on “baseline requirements." — PolitiTweet.org