Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

4507 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
Ransomware: qilin claims EISNER ZT GMBH (AT) — Professional Services
Ransomware: qilin claims Nikan Awasisak Agency (CA) — Not Found
Ransomware: qilin claims Depona (SE) — Technology
CVE-2026-54489 (CVSS 9.1) — Dell Virtual Storage Integrator for VMware vSphere Client, versions prior to 10.11.1.0, c...
CVE-2026-62836 (CVSS 8.7) — Improper restriction of communication channel to intended endpoints in Azure SQL Managed ...
CVE-2026-56793 (CVSS 7.7) — Dell OpenManage Server Administrator, versions prior to 11.1.0.2, contains an Improper Au...
KEV: CVE-2026-8037 — Progress LoadMaster (Progress LoadMaster Command Injection Vulnerability)
Breach: Exact Sciences (10,869,543 accounts) — Dates of birth, Email addresses, Genders
CELEX:32024R2690R(03)
CELEX:32024R1026R(01)
CELEX:32024R1348R(04)
arXiv: A Sound Translation from Tamarin to ProVerif: Enabling Comparative Analysis
A new academic paper, published on arXiv, presents a formal method for translating security protocol analyses between two leading verification tools, Tamarin and ProVerif. This is not a regulatory ...
Read analysis →
arXiv: Game Hopping in Lean
The publication introduces a novel technique called Game Hopping, a method for verifying the correctness and security properties of software systems by translating them into formal game-based proof...
Read analysis →
arXiv: Reversible Unlearnable Examples: Towards the Copyright Protection in Deep Learning Era
A new research paper, titled Reversible Unlearnable Examples: Towards the Copyright Protection in Deep Learning Era, has been published on arXiv. The paper proposes a technical method that allows d...
Read analysis →
arXiv: Hardware Keystores for AI Agent Signing Workflows: A Zero-Trust MCP Enforcement Architecture
This paper, published on arXiv in August 2026, proposes a technical architecture for using hardware security modules as keystores to cryptographically sign actions taken by AI agents. It introduces...
Read analysis →
arXiv: dfence: Fine-Grained Speculation Barriers for Efficient and Effective Hardware-Software Protection in the Spec...
This publication introduces dfence, a hardware-software co-design framework that implements fine-grained speculation barriers to mitigate Spectre-style side-channel attacks. Unlike current coarse-g...
Read analysis →
arXiv: A Note on the Influence of a Zero Length Nonce on GCM and GMAC
This publication is a technical research note, not a regulatory update. It analyzes the security implications of using a zero-length nonce in the GCM and GMAC cryptographic modes. The paper demonst...
Read analysis →
arXiv: MMAligner: Safeguarding Multimodal Large Language Models through Representation Calibration
The publication introduces MMAligner, a new technical framework designed to improve the safety of multimodal large language models (MLLMs) by calibrating their internal representations. Unlike trad...
Read analysis →
arXiv: Tool Demo: Topology analysis with GPML for detection of cyberattacks in Water Distribution Networks
A new academic paper, published on arXiv, introduces a tool that applies topological data analysis, combined with Gaussian Process Maximum Likelihood, to detect cyberattacks on water distribution n...
Read analysis →
arXiv: The Vulnerability With No CVE: Managing Persistent Gaps Between Mandate and Authority in AI Coding Agents
This paper, published on arXiv in August 2026, identifies a systemic gap in how AI coding agents are governed under current EU regulatory frameworks. It argues that these agents can introduce vulne...
Read analysis →