Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

4430 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
Ransomware: Booba Project claims Incredible Technologies (US) — Technology
Ransomware: incransom claims Della Casa Group AG (CH) — Other
Ransomware: qilin claims Gran valle negocios (AR) — Other
Ransomware: coinbasecartel claims Accesso (GB) — Financial Services
Ransomware: akira claims Franz Krause artworksgroup (US) — Other
Ransomware: incransom claims https://eclmn.com/ (US) — Healthcare
Ransomware: Deadlock claims Takis srl (IT) — Healthcare
Breach: Houston City College (831,642 accounts) — Academic records, Citizenship statuses, Dates of birth
CVE-2026-14446 (CVSS 9.8) — IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to broken access control/priv...
CVE-2026-14512 (CVSS 9.8) — IBM WebSphere Application Server 9.0, and 8.5 traditional is vulnerable to pre-authentica...
CVE-2026-14958 (CVSS 9.1) — IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 could allow a remote authenticated attacker to...
CVE-2026-14959 (CVSS 9.1) — IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 could allow a remote authenticated attacker to...
CVE-2026-14973 (CVSS 9.3) — IBM Aspera Desktop App 1.0.5 through 1.0.19 IBM Aspera for desktop can allow files to be ...
[NEU] [hoch] Progress Software LoadMaster und MOVEit WAF: Mehrere Schwachstellen
arXiv: There Will Be Spam: Characterizing State-Invariant Transactions and Speculative MEV
A new academic paper published on arXiv, titled "There Will Be Spam: Characterizing State-Invariant Transactions and Speculative MEV," analyzes a specific class of blockchain transactions that are ...
Read analysis →
arXiv: A Cybersecurity MLPS Large Language Model with Multi-Path Retrieval Fusion
This publication introduces a new technical framework called MLPS, which stands for Multi-Path Retrieval Fusion, designed to improve the security and reliability of large language models used in cy...
Read analysis →
arXiv: Agentic Cloud Decoys: A Deception-Driven Framework for Autonomous Intrusion Investigation
This publication, titled "Agentic Cloud Decoys: A Deception-Driven Framework for Autonomous Intrusion Investigation," is a research paper from arXiv, not a formal regulatory change. It proposes a n...
Read analysis →
arXiv: ContainmentBench: Trace-Based Evaluation of Post-Injection Containment in Tool-Using LLM Agents
A new research paper, ContainmentBench, has been published on arXiv that introduces a trace-based evaluation framework for assessing how well tool-using large language model (LLM) agents can contai...
Read analysis →
arXiv: Beyond GDPR: Examining Disclosure Gaps in Mobile AR Privacy Policies under U.S. State Privacy Laws
This paper, published on arXiv in July 2026, is a research study that examines how mobile augmented reality (AR) applications disclose their data practices under U.S. state privacy laws, comparing ...
Read analysis →
arXiv: Development of Vision-Language Model-based GNSS Spoofing Detection for Autonomous Vehicle Navigation
A new research paper published on arXiv proposes a method for detecting GNSS spoofing attacks in autonomous vehicles using a vision-language model. This is not a regulatory change itself, but it si...
Read analysis →