Topic: cybersecurity legislation
-
EU Moves to Block High-Risk Foreign Tech Over Cybersecurity
The European Commission has proposed new mandatory cybersecurity legislation to replace voluntary guidelines, requiring the removal of high-risk foreign suppliers from critical telecom networks to address security vulnerabilities. The rules, which avoid naming specific companies but target concer...
Read More » -
Parliament Seeks Security Experts to Bolster Cyber Resilience
A UK parliamentary committee is actively seeking expert evidence to refine the proposed Cyber Security and Resilience Bill, a major legislative update for critical infrastructure protection. The bill expands regulatory scope to include new entities like managed service providers, mandates stricte...
Read More » -
EU Cybersecurity Rules: A Game Developer's Essential Guide
The video game industry faces escalating cyber threats, including attacks on in-game economies and data breaches, which can damage player trust and company reputations. New EU regulations, specifically the NIS2 Directive and the Cyber Resilience Act, impose strict cybersecurity obligations on gam...
Read More » -
European Commission Data Breach Confirmed After Hack
The European Commission confirmed a cybersecurity breach of its Europa.eu platform by the ShinyHunters gang, which compromised an AWS account and led to data exfiltration, though public websites were not disrupted. The attackers claim to have stolen over 350 GB of sensitive data, including employ...
Read More » -
NIST Updates DNS Security, PyPI Packages Compromised
The cybersecurity threat landscape is dominated by active exploits, including a critical F5 BIG-IP vulnerability (CVE-2025-53521) and supply chain attacks like malicious PyPI packages targeting the LiteLLM library. Significant security gaps persist in emerging areas, including fragmented post-qua...
Read More » -
EU Staff Data Exposed in European Commission Security Breach
The European Commission suffered a cybersecurity breach on January 30th, exposing staff personal data, but the incident was contained within nine hours without device compromise. The attack exploited vulnerabilities in Ivanti Endpoint Manager Mobile software, mirroring a wider campaign targeting ...
Read More » -
EU Probes Amazon Cloud Hack Data Breach
The European Commission is investigating a major data breach in its AWS cloud environment, where unauthorized access led to the potential theft of over 350 GB of data, including employee information. This is the second major security incident disclosed by the Commission this year, following a sep...
Read More » -
Russia's Sandworm Blamed for Polish Power Grid Wiper Attack
A Russian state-sponsored hacking group, Sandworm, is attributed with a cyberattack on Poland's energy grid in late 2025 using destructive DynoWiper malware, though it did not cause a power outage. The attack's timing is seen as symbolic, coinciding with the 10-year anniversary of Sandworm's 2015...
Read More »