News & Updates
EDPB Moves Toward a Common GDPR Breach Notification Template
The European Data Protection Board has adopted a common template for reporting personal data breaches under the GDPR. The template is now open for public consultation until August 5, 2026, and is ...
The TanStack Breach and the Fragility of Trusted Code
On May 11, 2026, several TanStack packages on npm were briefly replaced with malicious versions, raising fresh concerns about how attackers can use trusted open-source software to reach developer systems and corporate ...
The IBM Italy Breach Puts Third-Party Infrastructure Risk Back in Focus
In late April 2026, IBM Italy’s Sistemi Informativi confirmed that it had contained a cybersecurity incident affecting its systems. The company, which is owned by IBM Italy, provides IT infrastructure services to ...
Copy Fail Explained
A newly disclosed Linux vulnerability known as Copy Fail is drawing serious attention across the security community because of one simple fact: it can let a regular local user gain full root ...
Google Says North Korea Was Behind the Axios npm Supply Chain Attack
A supply chain compromise involving the widely used JavaScript package Axios is now being tied to a North Korea-linked threat actor, turning what already looked like a serious open-source incident into a ...
Colorado Moves to Revise Its Landmark AI Law After Industry Pushback
Colorado lawmakers are preparing to revise one of the first comprehensive artificial intelligence laws in the United States, following months of tension between regulators, consumer advocates, and the technology industry. A newly ...
Lloyds Banking Group Investigates Mobile App Data Exposure Affecting Multiple UK Banks
Lloyds Banking Group has launched an internal investigation after a technical error in its mobile banking applications allowed some customers to briefly see other users’ transaction details. The incident affected the mobile ...
​​How Chinese Hackers Reached America’s Surveillance Infrastructure
Chinese government-linked hackers have breached a network used by the Federal Bureau of Investigation to manage court-authorized surveillance operations. The intrusion, first detected on February 17, 2026, involved systems supporting the FBI’s ...
Figure Breach Enters New Phase After Data Leak Claims
The data breach disclosed by fintech lender Figure Technology Solutions is moving beyond a contained security incident, as reports that stolen customer information is circulating online coincide with early legal investigations. The ...
California Fines Disney $2.75 Million in Record CCPA Case
California regulators have issued their largest penalty yet under the California Consumer Privacy Act, announcing a $2.75 million settlement with The Walt Disney Company after investigators found that consumer opt-out requests were ...

