Currently free during beta - premium features coming soon. Subscribe now to lock in early access.
All Changes

EU Regulatory Changes

1866 changes tracked across 24 compliance frameworks including DORA, NIS2, GDPR, EU AI Act, Cyber Resilience Act, and more.

All DORA NIS2 GDPR CSRD MaRisk ISO27001 EU_AI_ACT CRA DSA DMA eIDAS2 SOC2 PCI_DSS HIPAA ISO42001 AMLD6 PSD3 DATA_ACT GPSR CER EUDR CVE BREACH AI_SAFETY
KEV: CVE-2025-67038 — Lantronix EDS5000 (Lantronix EDS5000 Code Injection Vulnerability)
KEV: CVE-2026-34910 — Ubiquiti UniFi OS (Ubiquiti UniFi OS Improper Input Validation Vulnerability)
KEV: CVE-2026-34909 — Ubiquiti UniFi OS (Ubiquiti UniFi OS Path Traversal Vulnerability)
KEV: CVE-2026-34908 — Ubiquiti UniFi OS (Ubiquiti UniFi OS Improper Access Control Vulnerability)
Ransomware: incransom claims horizoneye.com (US) — Technology
CVE-2026-12628 (CVSS 9.1) — IBM Storage Protect Client 8.1.0.0 through 8.2.1.0 and IBM Storage Protect Snapshot For W...
CVE-2026-8646 (CVSS 7.4) — IBM WebSphere Application Server 9.0 and 8.5 and IBM WebSphere Application Server - Libert...
CVE-2026-9006 (CVSS 7.4) — IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to server-side request forgery...
CVE-2026-9072 (CVSS 8.1) — IBM i 7.6, 7.5, 7.4, and 7.3, IBM WebSphere Application Server, and IBM WebSphere Applicat...
CVE-2026-48509 (CVSS 9.1) — MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, the pa...
Press release - Special committee adopts proposals to improve the European Democracy Shield
arXiv: Understanding the Stealthy BGP Hijacking Risk in the ROV Era
A new research paper published on arXiv on June 22, 2026, titled "Understanding the Stealthy BGP Hijacking Risk in the ROV Era," highlights a critical vulnerability in internet routing security. Th...
Read analysis →
arXiv: VCT: A Verifiable Transcript System for LLM Conversations
A new academic paper titled VCT: A Verifiable Transcript System for LLM Conversations has been published on arXiv, proposing a technical framework for creating tamper-evident, cryptographically ver...
Read analysis →
arXiv: Public Diffusion Models, Private Images: Key-Controlled Inversion for Conditional Reconstruction
This paper, published on arXiv on June 22, 2026, introduces a new method called Key-Controlled Inversion for Conditional Reconstruction. It demonstrates that public diffusion models—widely used AI ...
Read analysis →
arXiv: Attacking the Trusted Imagination: Oracle-Level Integrity Attacks on Imagine-then-Act World Models
This publication, dated June 22, 2026, presents a novel vulnerability class affecting "imagine-then-act" world models used in advanced AI systems. The research demonstrates that an attacker can inj...
Read analysis →
arXiv: CITADEL: CSI-Based Jamming Detection and Open-Set Classification for IIoT Networks
As a senior EU regulatory compliance analyst, I summarize the following regulatory change for compliance professionals. This publication introduces CITADEL, a novel framework for detecting jamming...
Read analysis →
arXiv: HADES: Privacy-Preserving Federated Learning via Selective Feature Encryption and Hybrid Model Fusion
This publication introduces HADES, a novel technical framework for privacy-preserving federated learning that combines selective feature encryption with hybrid model fusion. The paper, released on ...
Read analysis →
arXiv: When the Learning With Errors Problem Meets the Coherent Ising Machine: A Penalty-Free Algorithm-Hardware Co-D...
This paper, published on arXiv, presents a novel algorithm-hardware co-design that uses a Coherent Ising Machine to solve the Learning With Errors problem, which is the mathematical foundation of m...
Read analysis →
arXiv: CLIP-guided Diffusion Model for Backdoor Generation in Sensor-based Human Activity Recognition
A new research paper published on arXiv proposes a method for generating backdoor attacks in sensor-based human activity recognition systems using a CLIP-guided diffusion model. This technique allo...
Read analysis →
arXiv: What You See Is Not What You Execute: Memory-Based Runtime SBOM Generation for Supply Chain Security
This paper, published on arXiv, introduces a novel approach to software supply chain security called memory-based runtime Software Bill of Materials (SBOM) generation. It addresses a critical gap: ...
Read analysis →