Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

782 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
CVE-2026-9454 (CVSS 9.8) — A flaw has been found in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects ...
CVE-2026-9455 (CVSS 9.8) — A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. This issue affects...
CVE-2026-9456 (CVSS 9.8) — A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521. Impacted is the functio...
CVE-2026-9457 (CVSS 9.8) — A vulnerability was determined in Totolink A8000RU 7.1cu.643_b20200521. The affected eleme...
CVE-2026-9458 (CVSS 9.8) — A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. The impacted eleme...
CVE-2026-9475 (CVSS 9.8) — A vulnerability was determined in Totolink A8000RU 7.1cu.643_b20200521. This affects the f...
CVE-2026-9476 (CVSS 9.8) — A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability...
CVE-2026-9477 (CVSS 9.8) — A security flaw has been discovered in Totolink A8000RU 7.1cu.643_b20200521. This issue af...
CVE-2026-9478 (CVSS 9.8) — A weakness has been identified in Totolink A8000RU 7.1cu.643_b20200521. Impacted is the fu...
arXiv: Shielded but Lightweight: Building Practical Confidential Containers with ARM CCA
This paper, published on arXiv, presents a technical architecture for deploying confidential containers using ARM’s Confidential Compute Architecture (CCA). It proposes a method to run container wo...
Read analysis →
arXiv: Building an Adversarial Malware Dataset by Family and Type: Generation, Evasion, and Poisoning Evaluation
This publication, dated 25 May 2026, presents a new methodology for creating adversarial malware datasets, specifically designed to test the robustness of AI-based cybersecurity systems. The resear...
Read analysis →
arXiv: Semantic Validation of Packer Identification Tools: Characterization, Repair, and Downstream Impact
This publication, titled "Semantic Validation of Packer Identification Tools," presents a technical analysis of software tools used to detect packed executables—a common technique used by malware t...
Read analysis →
arXiv: Capability and Robustness Cannot Both Be Free: An Information-Theoretic Bound for Vision-Language-Action Models
A new preprint from arXiv, titled "Capability and Robustness Cannot Both Be Free," presents an information-theoretic bound for Vision-Language-Action (VLA) models, which are AI systems that combine...
Read analysis →
arXiv: How Agentic AI Coding Assistants Become the Attacker's Shell
A new preprint from arXiv, titled "How Agentic AI Coding Assistants Become the Attacker's Shell," published on 25 May 2026, presents a significant security analysis of advanced AI coding assistants...
Read analysis →
arXiv: Broken Object Level Authorization in the Wild: An Empirical Taxonomy from 100+ Bug Bounty Disclosures
This publication, a research paper from arXiv, does not represent a formal regulatory change but rather an empirical analysis of a critical security vulnerability pattern. The study examines over 1...
Read analysis →
arXiv: Proof of Useful Attestation: A Consensus Primitive for Attestation-Native Chains
This publication introduces a new consensus mechanism called Proof of Useful Attestation, designed for blockchain networks that prioritize verification of AI-generated content and data integrity. T...
Read analysis →
arXiv: TTPrint: Evidence-Grounded TTP Extraction via Diverge-then-Converge Verification
**Summary for Compliance Professionals** A new research paper, TTPrint, has been published on arXiv proposing a method for extracting Tactics, Techniques, and Procedures (TTPs) from threat intelli...
Read analysis →
arXiv: "What is the Problem Space?" Defining Host-space Adversarial Perturbations against Network Intrusion Detection...
This publication, dated May 25, 2026, introduces a new category of cybersecurity vulnerability specifically targeting Network Intrusion Detection Systems (NIDS). The paper defines "host-space adver...
Read analysis →
arXiv: On Reliability of Efficient Membership Inference Vulnerability Evaluation
This paper, published on arXiv, presents a new evaluation framework for assessing the vulnerability of machine learning models to membership inference attacks. These attacks attempt to determine wh...
Read analysis →
arXiv: SAMark: A Self-Anchored Text Watermarking with Paragraph-Level Paraphrase Robustness