Critical systems
-
UK cyber resilience bill reaches decisive Commons stage
The UK Cyber Security and Resilience Bill is moving through Parliament with proposed duties covering infrastructure, suppliers, datacentres, managed services, and digital dependencies.
-
Novo Nordisk says cyber incident exposed trial data
Novo Nordisk has disclosed unauthorised access to internal IT systems, with copied non-public data including limited pseudonymised clinical trial information.
-
ENISA tests EU transport cyber response
ENISA’s Cyber Europe 2026 exercise tested how European rail and maritime organisations would respond to cyber disruption affecting ports, freight, passenger services, and crisis coordination.
-
SSEN joins European grid cyber group
SSEN Transmission’s ENCS membership links UK electricity network resilience with European OT security collaboration, testing, and knowledge sharing across critical energy infrastructure.
-
UK revises telecoms security code
The revised code updates technical guidance for public telecoms providers as state-linked threats, cloud adoption, automation, APIs, and network dependency reshape UK telecoms resilience.
-
Datacentre equipment flaws expose uptime risk
Claroty research into UPS and HVAC equipment shows how datacentre resilience depends on cyber-physical systems that often sit outside normal security governance.
-
ANSSI puts G7 Evian summit on cyber alert
France’s cyber agency is supporting G7 summit preparations as major diplomatic events remain exposed to espionage, destabilisation, extortion, and denial-of-service activity.
-
NHS flags critical Veeam flaw
NHS England has warned that a critical Veeam Backup & Replication vulnerability could allow authenticated domain users to execute remote code on affected backup servers.
-
France contains Tchap account compromise
French officials say an account compromise affected public conversations in Tchap, the government messaging service, while private encrypted conversations remained protected.
-
Spanish energy SaaS flaw exposes supplier risk
INCIBE says a critical SQL injection flaw in Nemon energy-sector ERP products has been fixed centrally, highlighting specialist SaaS dependency in critical-sector operations.







