The US Department of Commerce has proposed a rule requiring US Infrastructure as a Service (IaaS) providers to verify the identity of their foreign customers. The proposed rule aims to prevent foreign malicious cyber actors from using US IaaS products for illicit activities. The public has four days to comment on the proposed rule, which has sparked concerns about its potential impact on online freedom and anonymity. The rule would also require IaaS providers to report certain transactions involving foreign persons and AI model training.