Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

1898 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
Ransomware: akira claims Schacht Law Office — Business Services
Ransomware: nova claims Badan Pangan Nasional (ID) — Agriculture and Food Production
Ransomware: akira claims Interstate Roofing (US) — Construction
Ransomware: chaos claims entransinternational.com (US) — Business Services
Ransomware: SilentRansomGroup claims Fox Rothschild LLP (US) — Business Services
Ransomware: worldleaks claims American Battery Factory (US) — Manufacturing
Ransomware: thegentlemen claims Corporacion Prokompra (CL) — Business Services
KEV: CVE-2026-0257 — Palo Alto Networks PAN-OS (Palo Alto Networks PAN-OS Authentication Bypass Vulnerability)
CVE-2026-9874 (CVSS 9.6) — Use after free in Dawn in Google Chrome prior to 148.0.7778.216 allowed a remote attacker ...
CVE-2026-8732 (CVSS 9.8) — The WP Maps Pro plugin for WordPress is vulnerable to Privilege Escalation via Administrat...
CVE-2026-3655 (CVSS 9.8) — The OTP Login With Phone Number, OTP Verification plugin for WordPress is vulnerable to au...
CVE-2026-10071 (CVSS 9.8) — DreamMaker developed by Interinfo has an Arbitrary File Upload vulnerability, allowing un...
CVE-2026-4290 (CVSS 9.1) — The WP Travel Pro plugin for WordPress is vulnerable to arbitrary user deletion via the /w...
Breach: Charter (4,851,517 accounts) — Email addresses, Job titles, Names
On 23 May 2026, a data breach affecting Charter was published on Have I Been Pwned, exposing 4,851,517 accounts. The compromised data includes email addresses, job titles, and names. This incident ...
Read analysis →
Breach: Kemper (269,299 accounts) — Email addresses, Names, Partial credit card data
On 15 April 2026, a data breach affecting Kemper was publicly disclosed via Have I Been Pwned, exposing 269,299 accounts. The compromised data includes email addresses, names, and partial credit ca...
Read analysis →
CVE-2026-4408 (CVSS 9.0) — A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file ...
A critical vulnerability, CVE-2026-4408, has been published with a CVSS score of 9.0, affecting Samba file servers and classic domain controllers that use the "check password script" feature. The f...
Read analysis →
CVE-2026-24444 (CVSS 9.8) — SDMC NE6037 cable modem routers running firmware 7.1.6.0.25 and 7.1.6.1.9_B9 contain a ha...
A critical vulnerability has been published under CVE-2026-24444, affecting SDMC NE6037 cable modem routers running firmware versions 7.1.6.0.25 and 7.1.6.1.9_B9. The issue involves a hardcoded pas...
Read analysis →
CVE-2026-34311 (CVSS 9.8) — Vulnerability in the Oracle Hospitality OPERA 5 Property Services product of Oracle Hospi...
A critical vulnerability has been published under CVE-2026-34311, affecting Oracle Hospitality OPERA 5 Property Services, specifically versions 5.6.19.24, 5.6.22, and 5.6.25.19. The vulnerability c...
Read analysis →
CVE-2026-46775 (CVSS 9.9) — Vulnerability in Oracle REST Data Services (component: Core). Supported versions that ar...
A critical vulnerability has been published under CVE-2026-46775, affecting Oracle REST Data Services in versions 24.2.0 through 26.1.0. The flaw, rated 9.9 on the CVSS scale, is easily exploitable...
Read analysis →
CVE-2026-46817 (CVSS 9.8) — Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File ...
A critical vulnerability has been published under CVE-2026-46817, affecting the Oracle Payments component of Oracle E-Business Suite, specifically versions 12.2.3 through 12.2.15. The flaw, rated 9...
Read analysis →