Regulation & Policy
-
NCSC opens Cyber Essentials Pathways
The NCSC is widening Cyber Essentials Pathways, giving complex organisations a managed route to show equivalent security outcomes without weakening certification trust.
-
SAP commitments shift ERP support risk
SAP’s binding EU commitments on maintenance and support reshape a long-running enterprise dependency issue for organisations still running critical ERP systems.
-
Commission turns NIS2 delays into court action
Ireland, Spain, France, and the Netherlands face EU court action after failing to complete NIS2 transposition, extending regulatory uncertainty across major European markets.
-
EU prepares cyber reserve support for Moldova
Council agenda material shows the EU moving to authorise Cybersecurity Reserve support for Moldova, placing cyber assistance inside Europe’s neighbourhood resilience and hybrid threat posture.
-
BSI and Berlin deepen cyber cooperation
Germany’s BSI and the Land of Berlin have signed a cyber and information security cooperation agreement, expanding federal-state coordination on prevention, response, and public-sector resilience.
-
EDPB tightens AI scraping rules
The European Data Protection Board has adopted guidance on anonymisation, generative AI web scraping, and blockchain data processing, sharpening compliance expectations for data-intensive systems.
-
ENISA warns on frontier AI cyber pressure
ENISA says frontier AI could compress vulnerability and patch cycles, forcing European authorities, providers, and defenders to adapt cyber resilience to machine-speed threats.
-
ECB gives banks AI cyber deadline
Eurozone banks have until 31 October to submit AI cyber action plans, with supervisors tying frontier AI risk to DORA, patching, exposed assets, suppliers, and board accountability.
-
FCA warns AI could amplify cyber risk
The Mills Review says AI could reshape retail financial services by 2030 while increasing fraud, cyber security, consumer harm, and concentration risks.
-
French regulators tighten finance cyber coordination
ANSSI, ACPR, and the Banque de France have signed a new agreement covering cyber incidents, crisis management, controls, and threat led penetration testing.










