16 1 (A) an information system of such private 2 entity in order to protect the rights or property 3 of the private entity; 4 (B) an information system of another enti- 5 ty upon written consent of such entity for oper- 6 ation of such defensive measure to protect the 7 rights or property of such entity; and 8 (C) an information system of a Federal en- 9 tity upon written consent of an authorized rep- 10 resentative of such Federal entity for operation 11 of such defensive measure to protect the rights 12 or property of the Federal Government. 13 (2) CONSTRUCTION.—Nothing in this sub- 14 section shall be construed— 15 (A) to authorize the use of a defensive 16 measure other than as provided in this sub- 17 section; or 18 19 (B) to limit otherwise lawful activity. (c) AUTHORIZATION FOR 20 CYBER THREAT INDICATORS 21 SHARING OR RECEIVING OR DEFENSIVE MEAS- GENERAL.—Except as provided in para- URES.— 22 (1) IN 23 graph (2) and notwithstanding any other provision 24 of law, an entity may, for a cybersecurity purpose 25 and consistent with the protection of classified infor- † S 754 ES

Select target paragraph3