SMBs are increasingly the target of ransomware kidnappers, credentials thieves and data burglars. Newly passed bipartisan legislation vows to offer small and medium-sized businesses (SMBs) more tools to strengthen their defenses against cybersecurity threats.The new law, dubbed "Making Available Information Now to Strengthen Trust and Resilience and Enhance Enterprise Technology" (MAIN STREET) and sponsored by Senators James Risch (R-Idaho) and Brian Schatz (D-Hawaii), was initially brought up for discussion on the Senate floor last March. It requires the National Institute of Standards and Technology (NIST) to "disseminate clear and concise resources to help small business concerns identify, assess, manage, and reduce their cyber security risks."On its face the bill promises SMBs will get the coordinated resources they need to use the NIST’s Cybersecurity Framework, a set of voluntary guidelines for organizations and businesses to improve their defense posture against attacks. To what degree SMBs can dodge or ward off attacks by using the framework is an open question at this point.Both Risch and Schatz referenced the massive Equifax data heist to stress the new law’s timing and importance for SMBs.“This legislation will help America’s small business owners safeguard against cyber threats and better position them to protect their assets, customers, and employees,” said Risch. "The recent Equifax hack is the latest example of the many vulnerabilities that exist and why we must take urgent, proactive steps to prevent cyber-attacks on small businesses in addition to individuals.”