Back to Feed

Tag

Compliance

GDPR, NIS2, SEC rules, regulatory frameworks

53 items tagged #compliance

Articles

FBI: Cybercrime Losses Neared $21 Billion in 2025

FBI reports $20.9 billion in cybercrime losses from 1M complaints in 2025, up 26% YoY.

Garante per la protezione dei dati personali (Italy) - 10234984

Italian DPA fines Intesa Sanpaolo €31.8M for inadequate safeguards allowing employee unauthorized financial data access.

Garante per la protezione dei dati personali (Italy) - 10234984

Italian DPA fines Intesa Sanpaolo €31.8M for data breach affecting 3,500+ customers and delayed notification.

Garante per la protezione dei dati personali (Italy) - 10234984

Italy's DPA fines Intesa Sanpaolo €31.8M for inadequate security and delayed breach notification.

AI Agents and Non-Human Identities Creating Critical Security Gaps, Report

Keeper Security report finds non-human identities and AI agents creating critical security gaps in enterprise

AEPD (Spain) - EXP202308705

Spain's AEPD fines Vodafone €200K for SIM-swap fraud enabling unauthorized bank access.

pcTattleTale stalkerware maker sentence includes fine, supervised release

pcTattleTale stalkerware maker Bryan Fleming sentenced to $5K fine and supervised release.

BrowserGate: LinkedIn Tracks 6,000+ Browser Extensions on Users’ PCs

LinkedIn accused of tracking 6,000+ browser extensions on users' PCs via hidden scripts.

LinkedIn secretly scans for 6,000+ Chrome extensions, collects data

LinkedIn secretly scans 6,000+ Chrome extensions and collects device data via hidden JavaScript.

LinkedIn secretely scans for 6,000+ Chrome extensions, collects data

LinkedIn secretly scans 6,000+ Chrome extensions and collects device data via hidden JavaScript.

AEPD (Spain) - EXP202307472

Spain's AEPD fines utilities company €220,000 for unlawful direct marketing and lack of legal basis under GDPR.

Garante per la protezione dei dati personali (Italy) - 10233396

Italian DPA fines Enel Energia €563,052 for unlawful marketing calls and processor oversight failures.

Rb. Amsterdam - C/13/783613 / KG ZA 26-120

Dutch court bans X's Grok from generating non-consensual intimate and child sexual abuse material.

AEPD (Spain) - EXP202305035

Spain's AEPD fines Orange Espagne €230K for weak eSIM security enabling identity theft.

Rb. Amsterdam - C/13/783613 / KG ZA 26-120

Dutch court bans X's Grok from generating non-consensual intimate and CSAM imagery.

AEPD (Spain) - EXP202307472

Spanish DPA fines utilities company €220,000 for unlawful direct marketing and lack of consent

AEPD (Spain) - EXP202305035

AEPD fines Orange España €230K for issuing duplicate eSIM without consent.

Garante per la protezione dei dati personali (Italy) - 10233396

Italian DPA fines Enel Energia €563K for unlawful direct marketing via inadequate SMS consent system.

ANSPDCP (Romania) - fine against Renault Commercial Roumanie SRL

Romania fines Renault €125K for inadequate data security measures after cyberattack.

‼️🇧🇷 A dataset allegedly containing 2.3 million unique user records from https://t.co/vMukBzeSS...

2.3M user records from Brazilian debt collection platform leaked on cybercrime forum.

Garante per la protezione dei dati personali (Italy) - 10230206

Italy's DPA fines two airlines €1.25M for unlawful employee data sharing during asset sale.

ICO (UK) - Reddit, Inc

UK ICO fines Reddit £14.5M for unlawful processing of children's personal data.

AEPD (Spain) - PS/00552/2023

Spanish DPA fines e-commerce company €1.09M for legacy system breach exposing 1M+ records on dark web.

AEPD (Spain) - EXP202408496

Spanish DPA fines BBVA €100,000 for unlawfully redirecting SEPA payments without consent.

AEPD (Spain) - PS/00552/2023

Spanish DPA fines e-commerce company €1.09M for data breach affecting 1M+ records and GDPR violations.

‼️🇫🇷 Alleged Breach of Airsoft-Entrepot Exposes 333K Customer Records, Orders, Invoices, and B2...

Alleged breach of French airsoft retailer Airsoft-Entrepot exposes 333K customer records and business data.

The Broken Physics of Remediation

Study reveals 88% of organizations fail to patch critical weaponized vulnerabilities before exploitation.

AEPD (Spain) - PS/00552/2023

Spanish DPA fines e-commerce firm €1.09M for exposed million-record database and GDPR breach notification failures.

AEPD (Spain) - PS/00552/2023

Spain's AEPD fines e-commerce firm €1.09M for dark web database breach and delayed notification.

Police take down 373,000 fake CSAM sites in Operation Alice
3 Men Charged With Conspiring to Smuggle US Artificial Intelligence to China
2.7 million hit in workplace benefits data breach exposing SSNs, dates of birth and health account data
ICO (UK) - Reddit, Inc

UK ICO fines Reddit £14.5M for unlawful processing of children's personal data without parental consent.

Garante per la protezione dei dati personali (Italy) - 10230412

Italian DPA fines bank €17.6M for GDPR violations in customer profiling and account transfers.

It’s time to get serious about post-quantum security. Here’s where to start.
Cyberattackers Don't Care About Good Causes
Meta to Shut Down Instagram End-to-End Encrypted Chat Support Starting May 2026
From VMware to what’s next: Protecting data during hypervisor migration
Why Post-Quantum Cryptography Can't Wait
What Boards Must Demand in the Age of AI-Automated Exploitation
'Overly Permissive' Salesforce Cloud Configs in the Crosshairs
Can the Security Platform Finally Deliver for the Mid-Market?
Stranger Things Meets Cybersecurity: Lessons from the Hive Mind

Events

Tips & tricks