Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

1767 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
Ransomware: thegentlemen claims Central Arkansas Pediatrics (US) — Healthcare
Ransomware: thegentlemen claims IP Rings (IE) — Technology
CVE-2026-11499 (CVSS 9.8) — A vulnerability was determined in Tenda HG7HG9 and HG10 300001138_en_xpon. This affects t...
CVE-2026-25555 (CVSS 9.8) — OpenBullet2 through version 0.3.2 contains an authentication bypass vulnerability in the ...
CVE-2026-39910 (CVSS 9.8) — STACKIT IaaS API contains a missing authorization check vulnerability that allows authent...
CVE-2026-41448 (CVSS 9.4) — AdGuard Home, when started with the --glinet flag, contains an authentication bypass vuln...
CVE-2026-27671 (CVSS 9.8) — Due to improper RFC protocol validation in the SAP Kernel used by the Application Server ...
CVE-2026-40128 (CVSS 9.0) — SAP NetWeaver Application Server Java (Web Container) allows an unauthenticated attacker ...
CVE-2026-44748 (CVSS 9.9) — SAP NetWeaver Application Server ABAP and ABAP Platform allows an authenticated attacker ...
KEV: CVE-2026-42271 — BerriAI LiteLLM (BerriAI LiteLLM Command Injection Vulnerability)
KEV: CVE-2026-50751 — Check Point Security Gateway (Check Point Security Gateway Improper Authentication Vulnerability)
[NEU] [hoch] Kemp LoadMaster: Mehrere Schwachstellen
Update: Identification of obliged entities that will be eligible for direct supervision by the European Authority for...
arXiv: Empirical Evaluation of Large Language Models for Migration of Code Fragments to Post-Quantum Cryptography
This publication presents an empirical evaluation of large language models (LLMs) for automatically migrating existing code fragments to post-quantum cryptography (PQC) algorithms. The study assess...
Read analysis →
arXiv: Defending Jailbreak Attacks on Large Language Models via Manifold Trajectory Kinetics
This paper, published on arXiv, introduces a novel technical method called Manifold Trajectory Kinetics designed to defend large language models against "jailbreak" attacks—prompts that trick AI sy...
Read analysis →
arXiv: Authorized and Verifiable Searchable Encryption Based on Public Key Equality Test for Cloud Storage
This document is a research paper proposing a new cryptographic method for cloud storage, not a formal regulatory change. It introduces an "Authorized and Verifiable Searchable Encryption" scheme b...
Read analysis →
arXiv: Rethinking IoT Intrusion Detection: Augmenting Routing Metrics with Radio Features
This publication, dated June 5, 2026, presents a novel framework for intrusion detection in Internet of Things (IoT) networks. The core change is a proposed methodology that moves beyond traditiona...
Read analysis →
arXiv: The Capacity of Information-Theoretic Secure Aggregation in Federated Learning
This publication from arXiv presents a theoretical analysis of the capacity limits for information-theoretic secure aggregation in federated learning. It does not introduce a new regulation or bind...
Read analysis →
arXiv: A Large-Scale Per-Speaker Analysis of Re-identification Risk in Speech Anonymization
This publication from June 2026 presents a large-scale study on the re-identification risk of speech anonymization techniques, specifically analyzing how well current methods protect individual spe...
Read analysis →
arXiv: Synthetic APTs: the Collapse of TTP-Based Attribution
A new preprint from arXiv, titled "Synthetic APTs: the Collapse of TTP-Based Attribution," published on June 5, 2026, presents a significant challenge to existing cybersecurity threat intelligence ...
Read analysis →