Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

4330 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
Ransomware: krybit claims www.hymiasa.com (PE) — Other
Ransomware: SilentRansomGroup claims Mayer Brown (US) — Professional Services
Ransomware: qilin claims Crystal Pharmatech (US) — Healthcare
Ransomware: play claims Signature Services — Professional Services
Ransomware: play claims GCATS Investments (US) — Financial Services
Ransomware: play claims Platinum Group (SG) — Manufacturing
Ransomware: lynx claims www.talbotdes.org (GB) — Other
Ransomware: lynx claims www.jerryleigh.com (US) — Other
Ransomware: Gammax claims King International LLC (US) — Other
Ransomware: qilin claims AmSpec (US) — Energy & Utilities
Ransomware: qilin claims Jakle & Alexander (US) — Not Found
Ransomware: qilin claims Akuur Law Firm (TR) — Professional Services
Ransomware: bravox claims MITC AG (CH) — Other
Ransomware: Barracuda claims RS Automation Co., Ltd. (CN) — Manufacturing
CVE-2026-8470 (CVSS 7.4) — IBM Langflow OSS 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, and 1.0...
CVE-2026-9205 (CVSS 7.4) — IBM Langflow OSS contains a weak cryptographic key derivation vulnerability in the ensure_...
CVE-2026-53984 (CVSS 9.1) — Ground Station prior to 0.6.0 contains an unauthenticated database-destruction and arbitr...
CVE-2026-67622 (CVSS 9.9) — Flowise through 3.1.4 contains an insecure direct object reference vulnerability in the O...
CVE-2026-70558 (CVSS 9.8) — Dinky's POST /download/uploadFromRsByLocal handler passes the caller-supplied path parame...
CVE-2026-50515 (CVSS 9.9) — Deserialization of untrusted data in Azure Service Bus allows an authorized attacker to e...