Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

5038 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
arXiv: Fully Automated End-to-End Adversary Emulation from MITRE ATT\&CK Based Cyber Threat Intelligence Using LLMs
arXiv: Context Contamination in LLM Analysis of Network Security Logs: Poison with Passive Prompt Injection and Mitig...
arXiv: Disclosure Divergence: Measuring Privacy Policy and Data Safety Misalignment at Scale
arXiv: A Measurement Study of AI-Environment Realism Gaps in Malware-Analysis Sandboxes
arXiv: Better Privacy Guarantees for Larger Groups
arXiv: Exploring Delay-based PUFs for Energy-Efficient Low-Overhead Security of Wearable Devices
arXiv: Value Leakage: An LLM's Answers Are Silently Shaped by Its Own Values
CVE-2026-56398 (CVSS 7.3) — Open WebUI before 0.9.5 contains a stored cross-site scripting vulnerability in the OAuth...
CVE-2026-56400 (CVSS 8.3) — open-webui before 0.3.14 contains a cross-origin resource sharing misconfiguration allowi...
CVE-2023-49899 (CVSS 9.8) — An unauthenticated remote attacker can execute any command on the affected device due to ...
CVE-2026-63087 (CVSS 9.8) — Grafana OnCall through 1.16.11 contains an unauthenticated access vulnerability that allo...
CVE-2026-63089 (CVSS 9.3) — WireGuard Easy through 15.3.0, fixed in commit 66b292b, contains a cryptographically weak...
CVE-2026-14956 (CVSS 9.8) — The Bricksforge plugin for WordPress is vulnerable to Privilege Escalation in all version...
CVE-2026-62241 (CVSS 9.1) — clawvet self-hosted API server (apps/api) before 0.7.5 hard-codes a fallback JWT secret (...
KEV: CVE-2026-58644 — Microsoft SharePoint (Microsoft SharePoint Deserialization of Untrusted Data Vulnerability)
KEV: CVE-2026-25089 — Fortinet FortiSandbox (Fortinet FortiSandbox OS Command Injection Vulnerability)
KEV: CVE-2026-39808 — Fortinet FortiSandbox (Fortinet FortiSandbox OS Command Injection Vulnerability)
arXiv: How Agents Ask for Permission: User Permissions for AI Agents, from Interfaces to Enforcement
This paper, published on arXiv in July 2026, proposes a new technical framework for how AI agents should request and manage user permissions. It moves beyond simple app-style consent popups to a mo...
Read analysis →
arXiv: WarpGuard: Towards Control-Flow Attestation for Heterogeneous CPU-GPU Execution
This publication introduces WarpGuard, a proposed technical framework for control-flow attestation in heterogeneous computing environments where CPUs and GPUs execute code together. Control-flow at...
Read analysis →
arXiv: Protective Capacity Hallucination: When Large Language Models Claim Nonexistent Capabilities
This paper, published on arXiv on July 15, 2026, introduces a new class of AI failure mode termed "protective capacity hallucination." Unlike standard hallucinations where a model invents facts, th...
Read analysis →