Risk & governance
-
Saxony links agencies in cyber defence alliance
Saxony has created a cyber defence alliance linking ministries, police, intelligence, prosecutors, and incident responders while leaving their existing legal responsibilities intact.
-
Five Countries widen state-threat cyber agenda
The UK and four intelligence partners have put cyber activity, critical infrastructure, supply chains, vendors, and frontier AI into a broader programme for responding to hostile state threats.
-
Cyber bill enters detailed Lords scrutiny
Peers begin line-by-line examination of the Cyber Security and Resilience Bill on Tuesday, with proposed changes spanning AI, software, data centres, smaller providers, and executive liability.
-
NCSC warns exposed OT faces rising attacks
The NCSC says operational technology is facing increased targeting across multiple sectors, with internet exposure, legacy connectivity, and unmanaged assets creating routes to limited real-world disruption.
-
Dutch bill widens intelligence cyber powers
The Netherlands has opened consultation on legislation designed to let its intelligence services act faster against cyber and national-security threats while reshaping oversight of bulk data and AI use.
-
TRACE targets verifiable AI runtime evidence
The Linux Foundation has taken governance of TRACE, an open specification designed to produce hardware-attested evidence about the runtime behaviour and compliance of AI workloads.
-
Basware moves to acquire Trustpair
Basware has agreed to acquire payment-fraud specialist Trustpair, extending its invoice-management platform into supplier account verification and payment assurance.
-
German cyber losses reach up to €205.8bn
Cyberattacks accounted for 76% of losses from data theft, industrial espionage, and sabotage in Germany, as more affected businesses associated incidents with foreign intelligence services.
-
Device trust blocks ReliaQuest breach escalation
A ReliaQuest employee surrendered credentials and approved an MFA prompt during a vishing attack, but device-trust controls prevented the attacker reaching business applications.
-
Swiss cyber reporting exposes enterprise attack patterns
Switzerland received 200 mandatory critical-infrastructure cyber reports in the first half of 2026, alongside rising Microsoft 365 phishing and persistent ransomware activity.










