Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

4676 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
Ransomware: play claims Kuhnline (DE) — Not Found
[claim-framed]On 2026-06-27, the ransomware leak-site mirror ransomware.live published a claim by an unspecified ransomware group naming Kuhnline (DE). The posting alleges that Kuhnline is a victim...
Read analysis →
CVE-2026-2053 (CVSS 8.3) — The WSO2 API Manager's message flow component, when processing WS-Addressing headers, does...
A new vulnerability, CVE-2026-2053, has been published with a CVSS score of 8.3, indicating a high severity risk. The issue affects the WSO2 API Manager, specifically its message flow component, wh...
Read analysis →
CVE-2026-53914 (CVSS 6.7) — In JetBrains Kotlin before 2.4.20 code execution was possible via unsafe deserialization ...
A new vulnerability, CVE-2026-53914, has been published with a CVSS score of 6.7, affecting JetBrains Kotlin versions prior to 2.4.20. The issue allows code execution through unsafe deserialization...
Read analysis →
CVE-2026-57926 (CVSS 2.6) — In JetBrains YouTrack before 2026.2.16593 the websandbox bridge was vulnerable to a proto...
A new vulnerability has been published under CVE-2026-57926, affecting JetBrains YouTrack versions prior to 2026.2.16593. The issue involves a prototype pollution attack in the websandbox bridge, w...
Read analysis →
CVE-2026-12415 (CVSS 9.8) — The Invoice Generator plugin for WordPress is vulnerable to privilege escalation due to a...
A critical vulnerability has been published under CVE-2026-12415, affecting the Invoice Generator plugin for WordPress up to version 1.0. The flaw, rated 9.8 on the CVSS scale, allows privilege esc...
Read analysis →
CVE-2026-58053 (CVSS 9.9) — Gitea act_runner with the Docker backend (through act 0.262.0) passes a workflow's contai...
A critical vulnerability, CVE-2026-58053, has been published with a CVSS score of 9.9, affecting Gitea act_runner when using the Docker backend up to version act 0.262.0. The flaw allows a maliciou...
Read analysis →
Ransomware: dragonforce claims Aptora (US) — Technology
[claim-framed]On 27 June 2026, the ransomware group DragonForce posted a claim on a leak-site mirror naming Aptora, a US technology firm, as an alleged victim. The posting asserts the group has lis...
Read analysis →
Ransomware: play claims Benchmark Industrial Supply (US) — Business Services
[claim-framed]A ransomware group, as mirrored on ransomwarelive, has published a claim naming Benchmark Industrial Supply, a US business services firm. The posting, dated 2026-06-26, alleges an inc...
Read analysis →
Ransomware: incransom claims callhorton.com (US) — Business Services
[claim-framed]On 2026-06-26, the ransomware group incransom posted a claim on its leak site, as mirrored by ransomwarelive, naming callhorton.com, a US business services entity. The posting alleges...
Read analysis →
Ransomware: incransom claims johndufourlaw.com (US) — Business Services
[claim-framed]On 2026-06-26, the ransomware group incransom posted a claim on its leak site, mirrored by ransomware.live, naming johndufourlaw.com, a US business services entity. The posting allege...
Read analysis →
Ransomware: incransom claims theswansonlawgroup.com (US) — Business Services
[claim-framed]On 2026-06-26, the ransomware group incransom published a claim on the ransomwarelive leak-site mirror, listing theswansonlawgroup.com as a victim in the Business Services sector. The...
Read analysis →
Ransomware: nova claims NSW Rural Fire Service (AU) — Public Sector
[claim-framed]A ransomware group has listed the NSW Rural Fire Service on its leak site, claiming the organisation is a victim. This posting, published on 26 June 2026, is the only fact available. ...
Read analysis →
Ransomware: payload claims Clínica La Sabana (CR) — Healthcare
[claim-framed]A ransomware group, as mirrored on ransomwarelive, has posted a claim naming Clínica La Sabana in Costa Rica, in the healthcare sector. The posting alleges an incident involving this ...
Read analysis →
Ransomware: payload claims Software Arge (TR) — Technology
[claim-framed]A ransomware group operating a leak site has published a claim naming Software Arge (TR) as a victim. The posting, mirrored by ransomwarelive, alleges the organisation is associated w...
Read analysis →
Ransomware: payload claims Mosaic Partners (CH) — Business Services
[claim-framed]A ransomware group, as mirrored on ransomwarelive, has published a claim naming Mosaic Partners (CH), a business services firm, on 2026-06-26. The posting alleges an incident involvin...
Read analysis →
Ransomware: chaos claims ingerman.com (DE) — Business Services
[claim-framed]The ransomware group Chaos has listed ingerman.com, a business services firm in Germany, on its leak site, according to a posting mirrored by ransomwarelive on 26 June 2026. The posti...
Read analysis →
Ransomware: AiLock claims Hokua (CL) — Not Found
[claim-framed]On 2026-06-26, the ransomware group AiLock posted a claim on the ransomwarelive leak-site mirror, listing "Hokua (CL)" as an alleged victim. The posting asserts an incident but provid...
Read analysis →
Ransomware: nova claims vslmarine (IN) — Transportation/Logistics
[claim-framed]On 26 June 2026, the ransomware leak-site mirror ransomware.live posted a claim attributed to the group "nova" naming "vslmarine (IN)" in the Transportation/Logistics sector. The post...
Read analysis →
Ransomware: cmdorganization claims Kohinoor Mills (IN) — Manufacturing
Ransomware: akira claims Precise Forms (US) — Business Services