Changeflow GovPing Data Privacy & Cybersecurity

Recent changes

Friday, March 13, 2026

Favicon for wid.cert-bund.de

FreeRDP Vulnerabilities - Remote Code Execution

CERT-Bund has issued an advisory for multiple vulnerabilities in FreeRDP, a Remote Desktop Protocol implementation. The vulnerabilities have a CVSS base score of 8.8 and allow for remote code execution, denial-of-service, and information disclosure.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

Mozilla Firefox, Thunderbird Vulnerabilities (CVSS 8.8)

CERT-Bund has issued an advisory regarding multiple vulnerabilities in Mozilla Firefox, Firefox ESR, and Thunderbird, with a CVSS Base Score of 8.8. The advisory has been updated multiple times to include specific product versions and affected operating systems.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

Vim Vulnerability Allows Code Execution (CVSS 6.6)

The German National Cybersecurity Agency (BSI) has issued a security advisory for a vulnerability in the Vim text editor. The vulnerability, with a CVSS score of 6.6, allows local attackers to execute arbitrary code. Mitigation is available.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

Microsoft ASP.NET/.NET Vulnerabilities Advisory

This advisory updates information on multiple vulnerabilities in Microsoft ASP.NET and .NET, with a CVSS Base Score of 7.8. The update includes affected products on Ubuntu, Oracle, and Red Hat Linux, in addition to previously listed Microsoft ASP.NET Core and .NET versions.

Priority review Notice Cybersecurity
Favicon for www.cisa.gov

CISA Adds Two Exploited Vulnerabilities to KEV Catalog

CISA has added two new vulnerabilities, CVE-2026-3909 and CVE-2026-3910, to its Known Exploited Vulnerabilities (KEV) Catalog due to evidence of active exploitation. Federal Civilian Executive Branch (FCEB) agencies are required to remediate these vulnerabilities per Binding Operational Directive (BOD) 22-01.

Priority review Notice Cybersecurity
Favicon for www.pcpd.org.hk

Global Privacy Authorities Joint Statement on AI-Generated Imagery

The Office of the Privacy Commissioner for Personal Data (PCPD) and 60 other global privacy authorities have issued a joint statement expressing concern over AI-generated imagery and its potential for harm. The statement urges organizations to develop and use AI content generation systems lawfully, with specific measures to protect data subjects, particularly children.

Priority review Guidance Data Privacy
Favicon for www.pcpd.org.hk

Hong Kong PCPD Arrests Two for Suspected Doxxing

The Hong Kong Office of the Privacy Commissioner for Personal Data (PCPD) arrested two men for suspected doxxing and disclosure of personal data without consent, in contravention of the Personal Data (Privacy) Ordinance. The arrests stem from a monetary dispute where personal data and family photos were posted online.

Urgent Enforcement Data Privacy
Favicon for www.pcpd.org.hk

AI Security and Cybersecurity Summit for Enterprises Registration Open

The Office of the Privacy Commissioner for Personal Data (PCPD) and HKIRC are co-organising an AI Security and Cybersecurity Summit for Enterprises on March 31, 2026. Registration is now open for organizations to address AI security and cybersecurity risks. The event aims to raise awareness and readiness among businesses, including SMEs.

Routine Notice Cybersecurity
Favicon for www.pcpd.org.hk

Privacy Commissioner Reports 2025 Work and Data Security Incidents

The Office of the Privacy Commissioner for Personal Data (PCPD) reported on its 2025 activities, including a 23% increase in complaints and a 21% rise in data breach notifications. The PCPD also intervened in three data security incidents and conducted 435 compliance checks.

Priority review Notice Data Privacy
Favicon for www.pcpd.org.hk

Privacy Commissioner Warns of Construction Worker Recruitment Fraud

The Hong Kong Privacy Commissioner's Office issued a warning regarding fraudulent recruitment advertisements targeting construction workers. The office received 42 complaints in two weeks involving scams that requested sensitive personal data, including construction site "Three Essentials." The PCPD urges vigilance and provides guidance on safeguarding personal data during job applications.

Priority review Notice Consumer Protection

Showing 111–120 of 478 changes

1 10 11 12 13 14 48

58 monitored sources

ICO Decision Notices

Updated 22h ago 102 recent

CERT-Bund Security Advisories

Updated 11h ago 27 recent

CERT-FR Security Advisories

Updated 9h ago 17 recent

Regs.gov: Privacy and Civil Liberties Oversight Board

Updated 3d ago 15 recent

AEPD Resolutions (Spain DPA)

Updated 23h ago 14 recent

NIST Publications

Updated 3d ago 14 recent

WA Data Breach Notifications

Updated 6d ago 12 recent

CISA Known Exploited Vulnerabilities (KEV)

Updated 17h ago 8 recent

CA CPPA Newsroom

Updated 12d ago 7 recent

ICO News & Blogs

Updated 5d ago 7 recent

PCPD Media Statements (HK)

Updated 14h ago 7 recent

Dutch DPA News

Updated 1d ago 7 recent

IAPP Privacy News

Updated 4d ago 6 recent

EDPB Documents (GDPR)

Updated 5d ago 6 recent

ENISA News

Updated 12h ago 6 recent

Hungary NAIH News

Updated 4d ago 5 recent

HITRUST News & Advisories

Updated 4d ago 5 recent

Greece HDPA News

Updated 4d ago 5 recent

Garante Privacy News

Updated 4d ago 5 recent

Luxembourg CNPD News

Updated 4d ago 5 recent

NCSC UK News

Updated 5d ago 5 recent

FR: Information Security Oversight Office

Updated 3d ago 5 recent

NCSC UK Threat Reports

Updated 5d ago 5 recent

Croatia AZOP News

Updated 4d ago 5 recent

PDPC Announcements (Singapore)

Updated 4d ago 5 recent

Canada OPC News & Actions

Updated 4d ago 5 recent

Regs.gov: Cybersecurity and Infrastructure Security Agency

Updated 2d ago 5 recent

CPPA California Privacy Rulemaking

Updated 4d ago 5 recent

Austria DSB News

Updated 4d ago 5 recent

Romania ANSPDCP Press

Updated 4d ago 5 recent

NIST Cybersecurity Framework Updates

Updated 4d ago 4 recent

OAIC Media Centre

Updated 4d ago 4 recent

PCI SSC Press Releases

Updated 4d ago 4 recent

Regs.gov: Information Security Oversight Office

Updated 3d ago 4 recent

Regs.gov: Office of the National Cyber Director

Updated 3d ago 4 recent

CNIL News (France DPA)

Updated 1d ago 4 recent

CSA Alerts & Advisories (Singapore)

Updated 4d ago 4 recent

Canada OPC PIPEDA Investigations

Updated 4d ago 4 recent

FTC Press Releases

Updated 19d ago 4 recent

CISA Cybersecurity Advisories

Updated 5d ago 4 recent

CISA ICS-CERT Advisories

Updated 1d ago 3 recent

SWIFT News

Updated 4d ago 3 recent

Colorado AG Press Releases

Updated 1d ago 2 recent

BfDI Press Releases (Germany DPA)

Updated 10h ago 2 recent

FR: Office of the National Cyber Director

Updated 3d ago 2 recent

IMY News (Sweden DPA)

Updated 22d ago 2 recent

Garante Privacy Newsletter (Italy DPA)

Updated 8d ago 2 recent

EDPB News

Updated 14d ago 1 recent

NSA Cybersecurity Advisories

Updated 4d ago 1 recent

FedRAMP Changelog

Updated 1d ago 1 recent

UK NCSC Alerts & Advisories

Updated -- 0 recent

APD/GBA News (Belgium DPA)

Updated 1mo ago 0 recent

CNIL News & Enforcement

Updated -- 0 recent

DPC Press Releases (Ireland DPA)

Updated 1mo ago 0 recent

EDPB Guidelines & Recommendations

Updated 1mo ago 0 recent

EDPB Public Consultations

Updated 1mo ago 0 recent

ICO GDPR Guidance

Updated 1mo ago 0 recent

ICO Enforcement Actions

Updated 1mo ago 0 recent

Get Data Privacy & Cybersecurity alerts

Daily digest. AI-summarized, no noise.

Free. Unsubscribe anytime.

Get Data Privacy & Cybersecurity alerts

We'll email you when new data privacy & cybersecurity changes are detected.

Free. Unsubscribe anytime.