Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

782 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
Ransomware: incransom claims Nothing (TW) — Technology
Ransomware: dragonforce claims TAURUS INVESTMENT HOLDINGS (CY) — Financial Services
Ransomware: dragonforce claims ZFG ALTHERM Engineering (AT) — Manufacturing
Ransomware: SilentRansomGroup claims Barclay Damon (US) — Business Services
Ransomware: play claims Zuther Hautmann (DE) — Not Found
Ransomware: lamashtu claims ROTH‑TECHNIK AUSTRIA (AT) — Manufacturing
CVE-2026-41947 (CVSS 7.4) — Dify version 1.14.1 and prior contains an authorization bypass vulnerability that allows ...
CVE-2026-41948 (CVSS 7.7) — Dify version 1.14.1 and prior contain a path traversal vulnerability that allows authenti...
CVE-2026-45495 (CVSS 8.8) — Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2026-4885 (CVSS 9.8) — The Piotnet Addons for Elementor Pro plugin for WordPress is vulnerable to arbitrary file ...
CVE-2026-4883 (CVSS 9.8) — The Piotnet Forms plugin for WordPress is vulnerable to arbitrary file upload due to missi...
CVE-2026-43633 (CVSS 10.0) — HestiaCP versions 1.9.0 through 1.9.4 contain a deserialization vulnerability in the web...
CVE-2026-6555 (CVSS 9.8) — The ProSolution WP Client plugin for WordPress is vulnerable to Arbitrary File Upload in v...
CVE-2026-7284 (CVSS 9.8) — The Easy Elements for Elementor – Addons & Website Templates plugin for WordPress is vulne...
CVE-2026-7637 (CVSS 9.8) — The Boost plugin for WordPress is vulnerable to PHP Object Injection in versions up to, an...
[UPDATE] [hoch] Podman: Schwachstelle ermöglicht Manipulation von Dateien
CELEX:32024R1366R(04)
Ransomware: AiLock claims Jazz Hipster (US) — Consumer Services
On 18 May 2026, a ransomware group known as AiLock published a claim that it had breached Jazz Hipster, a US-based consumer services company. The incident was reported on the ransomware monitoring ...
Read analysis →
Ransomware: titan claims Quahe Woo & Palmer LLC (SG) — Business Services
On 18 May 2026, a ransomware incident was reported involving Quahe Woo & Palmer LLC, a Singapore-based business services firm. The breach was published on the ransomware monitoring platform ransomw...
Read analysis →
Ransomware: nightspire claims C***r*o T**uc**n* — Not Found
A new ransomware incident has been published on the ransomware.live tracking site, dated 18 May 2026, involving a group called Nightspire. The posting claims that the group has compromised an entit...
Read analysis →