Brussels is tying cybersecurity and artificial intelligence to the same strategic problem: how to protect innovation without relying too heavily on outside systems, suppliers, or infrastructure.
New EU obligations around Google’s Android and Search, plus a narrower liability shield for YouTube, show how platform governance can reshape risk even when no breach is involved.
An EU-level registry for TDM opt-outs could make reserved rights easier to spot, but the final design and impact remain unsettled.
The arrest-linked investigation in Italy points less to a flashy hack than to a harder problem: how insiders, privileges, and sensitive repositories can be turned into a quiet intelligence channel.
A cyber-intelligence roundup tied TKMS to a reported ransomware case, but the public record here still leaves the technical picture incomplete.
Three patched vulnerabilities are now accompanied by public proof-of-concept material, a reminder that remediation does not end when the vendor ships an update.
Two closely linked rulings sharpen a simple rule: naming a processor is not enough unless the controller also checks how that processor works.
A compromise in a third-party support platform used by internal IT staff shows how everyday service tooling can become a high-value entry point for sensitive business data.
A new victim listing can create urgency, but it does not by itself prove a breach, data theft, or encryption event.
A long-running campaign tied to weakly managed network gear shows how routers can be turned into stealth relay points, not just broken devices.
Italy’s privacy authority has closed its inquiry into Wind Tre with a seven-figure sanction, but the most interesting part is what remains unconfirmed: whether a human compromise, an API path, or both helped turn a localized incident into a personal-data case.
Qilin is named in an unverified attack claim, the event is tagged with a hash code, and the victim website field is left as N/D.
A new Italian health-data project is trying to do what Europe has struggled to achieve for years: make clinical records usable for AI research while keeping privacy risk under control.
Sophos Fusion is being framed as an AI-native defense system, but the deeper story is how much trust organizations are willing to place in unified automation, human oversight, and product claims.
Yevhenii Khmara's move into the acting defense minister role signals a wartime preference for leaders who understand intelligence, counterterrorism, and long-range pressure, not just conventional command.
A named ransomware claim and an incident hash are visible, but the public record does not confirm a breach, data theft, or impact.
A 1.7 million euro sanction tied to Wind Tre shows how privacy enforcement now hinges on breach readiness, not only on the incident itself.
The Sacmi case, developed with Siav, shows how document automation can move from storage to operations by connecting accounting data, workflows, ERP, and compliance-heavy processes.
Two young men were convicted in connection with a cyberattack on London public transport, and police called the outcome a significant blow to Scattered Spider.
The European Commission has ordered Google to give competing AI assistants Android access comparable to Gemini’s, turning assistant features into a high-stakes question of permissions, privacy, and control.