Risk & governance
-
Risk Ledger finds supplier incidents hit four in five UK organisations
Risk Ledger research found that 82.4% of UK organisations experienced a supply chain cyber incident in the past year, with many unable to map exposure quickly.
-
Cybanetix packages managed service for enterprise AI risk
Cybanetix has launched a managed AI security service covering employee AI use, AI governance, embedded agents, posture management, testing, and SOC monitoring.
-
Cyera raises $600m as AI data controls draw capital
Cyera’s $600 million round at a $12 billion valuation reflects enterprise demand for data controls as AI agents gain access to sensitive systems.
-
CISA cuts top vulnerability remediation window to three days
CISA’s new directive gives US civilian agencies three days to remediate the highest-risk vulnerabilities, setting a faster benchmark for exposed system response.
-
FSB sets out AI governance practices for finance
The Financial Stability Board is consulting on AI adoption practices for financial institutions, with governance, cyber resilience, and agentic AI risk in scope.
-
Nottingham student records incident exposes platform risk
The University of Nottingham says student and alumni data was accessed in a cyber incident affecting its Campus Solutions records platform.
-
FCA warns agentic AI could scale financial crime
The FCA’s 2026 horizon scan warns that agentic AI could automate fraud, phishing, vulnerability discovery, synthetic identities, and market manipulation.
-
NCSC warns software dependencies are becoming attack paths
The NCSC has warned that compromised open source packages can carry malware through dependency chains, software builds, and automated deployment pipelines.
-
UK cyber resilience bill reaches decisive Commons stage
The UK Cyber Security and Resilience Bill is moving through Parliament with proposed duties covering infrastructure, suppliers, datacentres, managed services, and digital dependencies.
-
ENISA tests EU transport cyber response
ENISA’s Cyber Europe 2026 exercise tested how European rail and maritime organisations would respond to cyber disruption affecting ports, freight, passenger services, and crisis coordination.







