FedRAMP opened a new Request for Comment (RFC) concerning offerings by government entities. This RFC seeks public input on government cloud service offerings and related requirements. Stakeholders in…
Latest changes
Watching 52 official sources · all on schedule · last checked 13 minutes ago
From 2 August 2026, the European Commission's AI Office and national authorities will start enforcing the AI Act and applying new transparency rules. AI system providers must disclose when users inte…
CISA published a new guidance document for federal agencies on the secure and effective use of open source software (OSS) and open source AI models. The guide provides best practices for reviewing an…
CISA, together with other U.S. government agencies and international organizations, released the 2026 Minimum Elements for a Software Bill of Materials (SBOM), which builds on the 2021 NTIA framework…
CISA, Australian Signals Directorate, UK National Cyber Security Centre, and Canadian Centre for Cyber Security published CI Fortify – Advice for Isolating Vital Systems, a joint guidance document to…
The National Cyber Security Centre has published new guidance providing a structured framework to help organisations manage response and recovery following cyber attacks. This guidance is designed to…
CISA, NSA, FBI and international partners published a joint advisory warning of ongoing Russian state-supported cyber attacks on Zimbra Collaboration Suite (ZCS) users. The advanced persistent threat…
The proposed amended version of the Law on Electronic Communications includes provisions on restoration of damaged communications networks during martial law. This means that communications providers…
The proposed amendments to Ukrainian legislation aim at improving the effectiveness of measures against technical intelligence. The draft changes procedures and mechanisms for ensuring security in co…
CIS Security has released updated versions of eight Benchmarks in July 2026, including new versions for Microsoft SQL Server 2022, Apple macOS (26 Tahoe, 15.0 Sequoia, and 14.0 Sonoma), MariaDB Enter…
PCI Security Standards Council has published new guidance for compensating controls and the customized approach. This guidance provides organizations with frameworks and best practices for implementi…
PCI Security Standards Council has published new guidance document on compensating controls and the customized approach for implementing PCI DSS requirements. This guidance provides organizations wit…
The EDPB issued a binding decision requiring the Belgian DPA to assess a complaint about VRT's cookie banners on its substantive merits instead of dismissing it on procedural grounds. The complaint, …
FedRAMP has updated its Consolidated Rules for 2026 to clarify existing rules and correct issues in the FedRAMP JSON schemas. The updates address both procedural clarifications in the regulatory fram…
CIS and SAFECode have published version 1.1 of Secure by Design: A Guide to Assessing Software Security Practices, updating the original framework to address evolving software development practices a…
The European Data Protection Board has adopted three sets of guidelines: on anonymisation (with clarity on what constitutes anonymous data following CJEU ruling C-413/23 P), on web scraping in genera…
A draft law has been submitted aimed at developing the cloud computing and data processing sector in Ukraine. The bill provides for amendments to a number of existing laws in order to create a favora…
The EU Parliament and Council adopted Regulation (EU) 2026/1744 (Digital Omnibus on AI) on 8 July 2026, which amends the AI Act and related regulations to simplify their implementation. The regulatio…
The European Data Protection Board (EDPB) and Anti-Money Laundering Authority (AMLA) are jointly developing guidelines to clarify information sharing practices under Article 75 of the AML Regulation,…
The VDA (German Association of the Automotive Industry) has officially published the new VDA ISA2027 standard. This release marks a significant milestone in the evolution of TISAX, the information se…
FedRAMP has released version 2026.06.25.01 of the Consolidated Rules for 2026 and introduced a mini-game feature. Organizations working with FedRAMP authorization should review the updated rules for …
NIST has released an initial public draft of SP 800-213 Revision 1, which establishes IoT product cybersecurity requirements and guidelines for federal government procurement and use. The update refl…
FedRAMP has released the Consolidated Ruleset for 2026 (CR26), establishing the updated framework for federal cloud security authorization. This update provides cloud service providers with revised s…
A draft law has been introduced proposing amendments to certain laws of Ukraine in the field of cloud services and data center services. The amendments are intended to improve the legal regulation of…
CIS Security released 15 new and updated Benchmarks in June 2026, spanning cloud platforms, database systems, network equipment, and Linux distributions. These updates introduce new recommendations, …