Skip to main content
CivicGate

HR 2154
Introduced Re-checks Congress.gov for new actions and updates the bill's status, and fills in any sponsors, committees, or related bills that are missing. It does not re-pull sponsors/cosponsors/committees/related — those rarely change — and it skips all work if nothing has changed upstream, so it's cheap to click.

American Cybersecurity Literacy Act

To establish a cybersecurity literacy campaign, and for other purposes.

Introduced Mar 14, 2025

Latest action (Mar 14, 2025) Referred to the House Committee on Energy and Commerce.

Issues
EducationTechnology & Privacy

Summary

This bill would require the Assistant Secretary of Commerce for Communications and Information to develop and conduct a national cybersecurity literacy campaign to educate the American public about cybersecurity best practices and risk mitigation. The campaign would instruct people on how to identify phishing emails and secure websites, change default passwords, use security tools such as multi-factor authentication and antivirus software, and recognize internet-connected devices that pose cybersecurity risks. The campaign would also address mobile app security practices, including reviewing application permissions and downloading apps only from trusted sources, as well as educating people about risks associated with public Wi-Fi networks. The campaign would be made available in multiple languages and formats where practicable. The bill reflects Congress's view that promoting cybersecurity literacy among the general public serves national security and economic interests.

AI-generated plain-language summary of the bill text — neutral, and may be imperfect. See the full text below for the exact wording.

Sponsor (1)

Money behind the sponsor

Top reported contributors to Jay Obernolte’s campaign committee (2024 cycle) — who funds the bill’s sponsor, not a claim about this bill. Data from FEC.

  • NULL $69,760
  • GOOGLE $17,500
  • ROUTE 66 SHOOTING $13,200
  • APPLE VALLEY COMMUNICATIONS $13,200
  • CHANDI GROUP USA $13,200

Organizations whose employees gave the most — itemized individual contributions grouped by the donor’s reported employer (FEC Schedule A). Full finance for Jay Obernolte → · Outside spending →

Actions (2)

  1. Mar 14, 2025 Referred to the House Committee on Energy and Commerce. · house
  2. Mar 14, 2025 Introduced in House

Similar bills (6)

Bills with similar text or summary — includes reintroductions across Congresses. Ranked by semantic similarity of the bill text (computed locally); a neutral discovery aid, not a claim the bills are duplicates.

Text versions (1)

  • Introduced in House · Mar 14, 2025

Only one text version is on file, so there’s no earlier version to compare against yet.

Full text

IN THE HOUSE OF REPRESENTATIVES

March 14, 2025

Mr. Obernolte (for himself and Ms. McClellan) introduced the following bill; which was referred to the Committee on Energy and Commerce

A BILL

To establish a cybersecurity literacy campaign, and for other purposes.

Be it enacted by the Senate and House of Representatives of the United States of America in Congress assembled,

SECTION 1. SHORT TITLE.

This Act may be cited as the “American Cybersecurity Literacy Act”.

SEC. 2. SENSE OF CONGRESS.

It is the sense of the Congress that the United States has a national security and economic interest in promoting cybersecurity literacy amongst the general public.

SEC. 3. ESTABLISHMENT OF CYBERSECURITY LITERACY CAMPAIGN.

(a) In General.—The Assistant Secretary shall develop and conduct a cybersecurity literacy campaign (which shall be available in multiple languages and formats, if practicable) to increase the knowledge and awareness of the American people of best practices to reduce cybersecurity risks.

(b) Campaign Requirements.—In carrying out subsection (a), the Assistant Secretary shall—

(1) educate the American people on how to prevent and mitigate cyberattacks and cybersecurity risks, including by—

(A) instructing the American people on how to identify—

(i) phishing emails and messages; and

(ii) secure websites;

(B) instructing the American people about the benefits of changing default passwords on hardware and software technology;

(C) encouraging the use of cybersecurity tools, including—

(i) multi-factor authentication;

(ii) complex passwords;

(iii) anti-virus software;

(iv) patching and updating software and applications; and

(v) virtual private networks;

(D) identifying the devices that could pose possible cybersecurity risks, including—

(i) personal computers;

(ii) smartphones;

(iii) tablets;

(iv) Wi-Fi routers;

(v) smart home appliances;

(vi) webcams;

(vii) internet-connected monitors; and

(viii) any other device that can be connected to the internet, including mobile devices other than smartphones and tablets;

(E) encouraging Americans to—

(i) regularly review mobile application permissions;

(ii) decline privilege requests from mobile applications that are unnecessary;

(iii) download applications only from trusted vendors or sources; and

(iv) consider a product’s life cycle and the developer or manufacturer’s commitment to providing security updates during a connected device’s expected period of use; and

(F) identifying the potential cybersecurity risks of using publicly available Wi-Fi networks and the methods a user may utilize to limit such risks; and

(2) encourage the American people to use resources to help mitigate the cybersecurity risks identified in this subsection.

(c) Assistant Secretary Defined.—In this section, the term “Assistant Secretary” means the Assistant Secretary of Commerce for Communications and Information. <all>

Comments

Comments

Loading comments…