Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

4742 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
Ransomware: qilin claims Md Lewis (US) — Not Found
[claim-framed]The ransomware group Qilin has published a claim on its leak site naming MD Lewis, a US organisation, according to a mirror of the posting. The claim was listed on 2026-07-03. MD Lewi...
Read analysis →
Ransomware: qilin claims Goodwill Manasota (US) — Consumer Services
[claim-framed]On 2026-07-03, the ransomware group Qilin posted a claim on its leak site, as mirrored by ransomwarelive, naming Goodwill Manasota (US) in the Consumer Services sector. The posting al...
Read analysis →
Ransomware: qilin claims Sitmatic (DE) — Technology
[claim-framed]On 2026-07-03, the ransomware group Qilin posted a claim on its leak site, mirrored by ransomware.live, naming Sitmatic (DE) in connection with a technology-related incident. The post...
Read analysis →
Ransomware: qilin claims Sisint (PT) — Technology
[claim-framed]On 3 July 2026, the ransomware group Qilin published a claim on its leak-site mirror listing "Sisint (PT) — Technology" as an alleged victim. The posting asserts an incident but provi...
Read analysis →
Ransomware: Blackfield claims redeplastrs.com.br (BR) — Manufacturing
[claim-framed]On 2026-07-03, the ransomware group Blackfield listed redeplastrs.com.br on its leak site, according to a mirror maintained by ransomware.live. The posting claims the organisation is ...
Read analysis →
Ransomware: apt73 claims aydeniz.com (TR) — Not Found
[claim-framed]On 2026-07-03, the ransomware group tracked as apt73 published a claim on its leak-site mirror, listing aydeniz.com (TR) as a victim. The posting alleges an incident involving that or...
Read analysis →
Ransomware: krybit claims majuhome.com.my (MY) — Consumer Services
[claim-framed]On 2026-07-03, the ransomware group krybit posted a claim on the ransomwarelive leak-site mirror, naming majuhome.com.my, a consumer services entity in Malaysia. The posting alleges a...
Read analysis →
Ransomware: krybit claims duflosa.com (MX) — Not Found
[claim-framed]On 2026-07-03, the ransomware group krybit published a claim on its leak site, mirrored by ransomware.live, listing "duflosa.com (MX)" as a victim. The posting alleges an incident inv...
Read analysis →
CVE-2026-9725 (CVSS 9.1) — The Printcart Web to Print Product Designer for WooCommerce plugin for WordPress is vulner...
A critical vulnerability, CVE-2026-9725, has been published with a CVSS score of 9.1, affecting the Printcart Web to Print Product Designer for WooCommerce plugin for WordPress, versions up to and ...
Read analysis →
CVE-2026-14544 (CVSS 9.8) — A flaw was found in HPLIP (HP Linux Imaging and Printing Software). This vulnerability, a...
A critical vulnerability, CVE-2026-14544, has been published with a CVSS score of 9.8, indicating a severe security flaw in HPLIP, the HP Linux Imaging and Printing Software. This issue represents ...
Read analysis →
CVE-2026-4321 (CVSS 9.8) — Improper neutralization of special elements used in an SQL command ('SQL injection') vulne...
A critical vulnerability has been published under CVE-2026-4321, with a CVSS score of 9.8, indicating a severe SQL injection flaw in the Raera - Ankara Web Design and Digital Advertising Agency Des...
Read analysis →
CVE-2026-58289 (CVSS 9.0) — Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium...
A critical vulnerability has been published under CVE-2026-58289, affecting Microsoft Edge (Chromium-based) with a CVSS score of 9.0. The flaw is a type confusion vulnerability, meaning the browser...
Read analysis →
Breach: Moody Bible Institute (2,303,416 accounts) — Dates of birth, Email addresses, Genders
arXiv: SoK: A Taxonomy for Cybersecurity Incident Response Influence Factors
This publication is a systematic academic review, not a regulatory change. It presents a taxonomy that categorizes the human, organizational, and technical factors influencing how organizations res...
Read analysis →
arXiv: HTTP REST API Structure Learning
This paper, published on arXiv, introduces a new technical framework for learning the structure of causal relationships within REST APIs, specifically designed to support AI safety compliance. It p...
Read analysis →
arXiv: Steerability via constraints: a substrate for scalable oversight of coding agents
This paper, published on arXiv, proposes a new technical framework called "steerability via constraints" for improving the oversight of AI coding agents. It does not represent a binding regulatory ...
Read analysis →
arXiv: Cloak and Detonate: Scanner Evasion and Dynamic Detection of Agent Skill Malware
This publication, "Cloak and Detonate: Scanner Evasion and Dynamic Detection of Agent Skill Malware," presents new research demonstrating how advanced AI-driven malware can evade current static sec...
Read analysis →
arXiv: Securing People and their Machines Against Major Faults
This paper, published on arXiv, presents a new framework called AI_SAFETY, which proposes a structured approach to preventing catastrophic failures in AI systems that control physical machinery, su...
Read analysis →
arXiv: Overview of Risk Assessment and Management for Intelligent Systems under the AI Act and Beyond
This paper, published on arXiv, provides a comprehensive technical analysis of risk assessment and management methodologies for intelligent systems under the EU AI Act. It does not represent a new ...
Read analysis →
arXiv: Privacy-Preserving and Verifiable Approximate Distributed Coded Computing
This publication introduces a new technical framework for privacy-preserving and verifiable approximate distributed coded computing, which addresses how large-scale data processing tasks can be sec...
Read analysis →