Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

1656 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
CVE-2019-25763 (CVSS 9.8) — WordPress Ultimate Addons for Beaver Builder 1.2.4.1 contains an authentication bypass vu...
CVE-2022-50972 (CVSS 9.8) — WooCommerce 7.1.0 contains a remote code execution vulnerability that allows attackers to...
CVE-2024-58351 (CVSS 9.8) — Flowise before 2.1.4 allows configuration to be injected into the Chainflow during execut...
Ransomware: BrainCipher claims themintgaming.com — Consumer Services
On 19 June 2026, a ransomware group known as BrainCipher publicly claimed responsibility for an attack on themintgaming.com, a consumer services platform. The claim was published on the ransomware....
Read analysis →
Ransomware: krybit claims aasa.ae (AE) — Not Found
A new ransomware incident has been reported involving the domain aasa.ae, associated with the United Arab Emirates. The claim was published on the ransomware monitoring platform ransomware.live on ...
Read analysis →
Ransomware: krybit claims www.mupras.com (BR) — Business Services
On June 19, 2026, a ransomware group known as krybit claimed responsibility for an attack on www.mupras.com, a Brazilian business services provider. The incident was published on the ransomware.liv...
Read analysis →
Ransomware: krybit claims coemi.com.br (BR) — Not Found
On June 19, 2026, a ransomware group known as Krybit published a claim on the ransomware.live site, alleging a breach of coemi.com.br, a Brazilian domain. The entry is labeled under the BREACH fram...
Read analysis →
Ransomware: qilin claims Roth Industries (DE) — Manufacturing
On June 19, 2026, a ransomware group known as Qilin publicly claimed responsibility for a cyberattack against Roth Industries, a German manufacturing firm. The incident was published on the ransomw...
Read analysis →
Ransomware: qilin claims Sparkle Pools (US) — Consumer Services
On 19 June 2026, the ransomware group Qilin published a claim that it had breached Sparkle Pools, a US-based consumer services company. The claim was posted on the ransomware.live leak site, which ...
Read analysis →
Ransomware: qilin claims PJ Daly Contracting (IE) — Construction
On 19 June 2026, the ransomware group Qilin published a claim that it had breached PJ Daly Contracting, an Irish construction firm. The incident was listed on the ransomware group’s leak site, indi...
Read analysis →
Ransomware: nova claims Desert Micro — Technology
On 19 June 2026, a ransomware group known as nova claimed responsibility for an attack on Desert Micro, a technology firm, as reported on the ransomware monitoring platform ransomware.live. This in...
Read analysis →
Ransomware: anubis claims KTR Real Estate Advisors (US) — Financial Services
On 19 June 2026, a ransomware group known as Anubis published a claim of responsibility for a cyberattack against KTR Real Estate Advisors, a US-based firm operating in the financial services secto...
Read analysis →
Ransomware: Icarus claims Klue.com (CA) — Technology
A new ransomware incident has been published on the ransomware.live leak site, involving the threat group Icarus and the victim Klue.com, a Canadian technology company. The breach was reported on J...
Read analysis →
Ransomware: stormous claims mlit.com.my UPDATE-FULL DATA DUMP 10GB (MY) — Public Sector
Ransomware: aurora claims Hagerman & Company — Business Services
CVE-2026-56081 (CVSS 9.1) — Cap-go before 12.128.2 contains an authentication logic flaw that lets an attacker regist...
CVE-2026-11551 (CVSS 9.8) — The Branda plugin for WordPress is vulnerable to privilege escalation via account takeove...
Breach: JCPenney (368,418 accounts) — Dates of birth, Email addresses, Government issued IDs
CVE-2026-8024 (CVSS 9.8) — A remote, unauthenticated attacker may exploit a deserialization of untrusted data vulnera...
CVE-2026-54390 (CVSS 9.8) — JTL Shop versions 5.2.0 through 5.7.1 contains a server-side template injection vulnerabi...