Cybersecurity Policy Report, House Bill Would Require AI Developers to Report Cyber Incidents, (Jun 26, 2026)
Cyber incidents caused by (AI) artificial intelligence models would have to be reported to the Commerce Department under legislation introduced by Rep. Nathaniel Moran (R., Texas).
The AI Incident Reporting Act (H.R. 9477, 119th Cong. (2026)) would require AI developers to disclose “reportable activity” to the government within seven days, according to its text.
“Reportable incidents include AI models that attempt to evade human oversight or resist shutdown; unauthorized access to or theft of model weights; capabilities that could enable offensive cyberattacks against critical infrastructure; evidence that a model can autonomously accelerate the development of more powerful AI systems; and other risks including chemical, biological, radiological, nuclear, and explosive threats,” Rep. Moran explained in a news release.
“As AI systems grow more autonomous—capable of modifying their own behavior, evading human oversight, and accelerating their own development—the U.S. has had no clear and formal mechanism to learn when something goes wrong. This bill closes that gap,” he said.
The bill would empower the Commerce Department, in collaboration with other federal agencies and AI developers, to establish criteria to identify AI models that “could pose significant risks to the national security of the United States or to public safety,” the bill says.
“AI is a powerful engine of innovation, and I want to see it flourish, but not without accountability and not without human oversight,” Rep. Moran said. “The rule of law should apply to this new frontier. This legislation ensures that when something goes wrong with a high-capability AI system, the U.S. Government has the information needed to act quickly.”
News: FederalLegislation DataSecurity AINews