Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

4430 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
Ransomware: qilin claims Ceragres (CA) — Manufacturing
Ransomware: qilin claims Pointe Property Group (US) — Other
Ransomware: thegentlemen claims Philippine Savings Bank (PH) — Financial Services
Ransomware: coinbasecartel claims CEN and Cenelec (BE) — Other
Ransomware: coinbasecartel claims MIM Fertility (GB) — Healthcare
Ransomware: coinbasecartel claims M. B. Kahn Construction Co. (US) — Manufacturing
Ransomware: coinbasecartel claims Xs Cad — Technology
CVE-2026-3141 (CVSS 9.1) — The FormGent plugin for WordPress is vulnerable to unauthorized arbitrary file deletion du...
CVE-2026-15964 (CVSS 9.8) — The Single Sign On For TNG plugin for WordPress is vulnerable to Authentication Bypass vi...
CVE-2026-66402 (CVSS 9.8) — FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains multiple TLS certificate ide...
CVE-2026-67289 (CVSS 9.8) — FreeRDP before 3.29.0 (affected versions <= 3.28.0) does not validate CRLF and control ch...
CVE-2026-67308 (CVSS 10.0) — Wazuh workflows before 44bf114 contain a shell injection vulnerability in GitHub Actions...
CVE-2026-67324 (CVSS 9.8) — GitPython 3.1.50 fails to recognize joined short-option forms such as -u<value> (the shor...
CVE-2026-67330 (CVSS 9.9) — @better-auth/scim (a better-auth plugin) versions >= 1.4.0-beta.27 through <= 1.6.21 and ...
CVE-2026-67340 (CVSS 9.8) — ArcadeDB before 26.7.2 (arcadedb-engine) allows trigger scripts to look up host classes i...
CVE-2026-67341 (CVSS 9.8) — ArcadeDB versions before 26.7.2 fail to enforce scripting authorization checks on the SQL...
CVE-2026-67342 (CVSS 9.8) — ArcadeDB versions before 26.7.2 contain an authorization bypass vulnerability in HTTP han...
CVE-2026-8457 (CVSS 9.8) — The WooCommerce - Social Login plugin for WordPress is vulnerable to Authentication Bypass...
Ransomware: thegentlemen claims Efrata College of Education (IL) — Education
[claim-framed]On 2026-07-31, the ransomware group "thegentlemen" posted a claim on the ransomwarelive leak site naming Efrata College of Education (IL) as a victim. The posting alleges an incident ...
Read analysis →
Ransomware: thegentlemen claims The Municipal Chamber of Serra (BR) — Government & Defense
[claim-framed]On 2026-07-31, the ransomware group "thegentlemen" posted a claim on the ransomwarelive leak site, listing The Municipal Chamber of Serra (BR) as a victim under the Government & Defen...
Read analysis →