The Official Journal L-series page was updated to reflect a new Council Decision (EU) 2026/1950 concerning scientific and technological cooperation between the EU and Jordan under the PRIMA framework…
Latest changes
The Official Journal daily edition now displays Commission Implementing Regulation (EU) 2026/1974 of 8 September 2026 granting Union authorisation for the single biocidal product ERO MN under Regulat…
NIST has published the final version of CSF 2.0 Informative References Quick-Start Guide, which explains how to find, filter, and apply informative references using NIST tools. Additionally, a draft …
The BSI press releases page has been updated. The diff shows only a change to the page title/heading from German to English version, but the actual content remains unchanged. This appears to be a met…
ESMA published its second risk monitoring report of 2026, highlighting risks and vulnerabilities in EU financial markets. The report finds that while markets remain resilient, stretched technology va…
PCI Security Standards Council blog series launch offering resources for payment security stakeholders on post-quantum cryptography preparation and crypto-agility strategies.
EBA e-mail alert referencing an EBA response to the European Commission's non-adoption of draft amending technical standards on prior permission.
On 3 September 2026, the French data protection authority (CNIL) issued an administrative fine of 500 000 EUR against Hôpital Privé de la Loire for failures to comply with GDPR obligations following …
The European Data Protection Board published a case summary regarding a CNIL enforcement decision against Hôpital Privé de la Loire. On 3 September 2026, the CNIL imposed a fine of EUR 500,000 for fa…
CISA has released an updated version of its insider threat guide containing new insights and recommendations for mitigating both physical and cyber threats related to insider risks. This is a guidanc…
ESMA has published a consultation package under the Prospectus Regulation to reflect changes introduced by the Listing Act. The package includes a Consultation Paper on updated Guidelines on disclosu…
EDPB news item reporting on a CNIL (French Data Protection Authority) enforcement action: a fine of 500,000 EUR imposed on Hôpital Privé de la Loire for a health data breach. This is an enforcement c…
Joint warning from CISA, NSA, and FBI regarding coordinated campaigns by China-based AI companies using industrial-scale knowledge distillation techniques to extract and replicate US AI models. The a…
Event announcement for the Apply AI Summit scheduled for 17 November 2026, designed to gather high-level stakeholders from industry, policymaking, and startups to accelerate AI implementation in stra…
Event announcement for the Apply AI Summit scheduled for 17 November 2026. The summit will gather high-level stakeholders – industrial representatives, policymakers and startups – to accelerate AI im…
Announcement of the Apply AI Summit scheduled for 17 November 2026 in Brussels. The summit will gather high-level stakeholders from industry, policymakers, and startups to accelerate AI implementatio…
NCSC blog post discussing the security challenges posed by staff using unapproved AI tools, focusing on understanding why such tools are adopted and how to manage the associated risks.
ESMA has signed a Memorandum of Understanding (MoU) with the Securities and Exchange Board of India (SEBI) to facilitate cooperation and exchange of information regarding the recognition of central c…
ESMA announces Data Day 2026 conference scheduled for 24 November in Paris. The event will bring together over 200 industry participants, regulators and stakeholders to discuss supervisory reporting,…
Article discusses challenges of identity governance and access control for autonomous AI agents. Highlights concerns about overly broad permissions required for AI systems to function effectively, us…
Automatic release of the latest bleeding-edge version of ASVS from the master branch, generated on 2026-09-03. This version represents the most current state of ASVS documentation and is intended for…
Ireland's Data Protection Commission (DPC) issued its final decision on 28 August 2026 against the HSE following unauthorised physical intrusions at two disused psychiatric hospitals — St. Loman's (M…
The European Data Protection Board (EDPB) announces a final decision following an inquiry into the Health Service Executive (HSE). The announcement provides limited information in the excerpt; the fu…
CSA blog article discussing findings from Intruder's 2026 Cloud Security Index, which reveals differences in security risk profiles across major cloud providers (AWS, Azure, Google Cloud). The index …
CIS CTI team published analysis of an active phishing campaign targeting U.S. state, local, tribal, and territorial (SLTT) organizations. The campaign leverages a custom PowerShell WebSocket RAT and …