Recent changes
Friday, March 13, 2026
FreeRDP Vulnerabilities - Remote Code Execution
CERT-Bund has issued an advisory for multiple vulnerabilities in FreeRDP, a Remote Desktop Protocol implementation. The vulnerabilities have a CVSS base score of 8.8 and allow for remote code execution, denial-of-service, and information disclosure.
Mozilla Firefox, Thunderbird Vulnerabilities (CVSS 8.8)
CERT-Bund has issued an advisory regarding multiple vulnerabilities in Mozilla Firefox, Firefox ESR, and Thunderbird, with a CVSS Base Score of 8.8. The advisory has been updated multiple times to include specific product versions and affected operating systems.
Vim Vulnerability Allows Code Execution (CVSS 6.6)
The German National Cybersecurity Agency (BSI) has issued a security advisory for a vulnerability in the Vim text editor. The vulnerability, with a CVSS score of 6.6, allows local attackers to execute arbitrary code. Mitigation is available.
Microsoft ASP.NET/.NET Vulnerabilities Advisory
This advisory updates information on multiple vulnerabilities in Microsoft ASP.NET and .NET, with a CVSS Base Score of 7.8. The update includes affected products on Ubuntu, Oracle, and Red Hat Linux, in addition to previously listed Microsoft ASP.NET Core and .NET versions.
CISA Adds Two Exploited Vulnerabilities to KEV Catalog
CISA has added two new vulnerabilities, CVE-2026-3909 and CVE-2026-3910, to its Known Exploited Vulnerabilities (KEV) Catalog due to evidence of active exploitation. Federal Civilian Executive Branch (FCEB) agencies are required to remediate these vulnerabilities per Binding Operational Directive (BOD) 22-01.
Global Privacy Authorities Joint Statement on AI-Generated Imagery
The Office of the Privacy Commissioner for Personal Data (PCPD) and 60 other global privacy authorities have issued a joint statement expressing concern over AI-generated imagery and its potential for harm. The statement urges organizations to develop and use AI content generation systems lawfully, with specific measures to protect data subjects, particularly children.
Hong Kong PCPD Arrests Two for Suspected Doxxing
The Hong Kong Office of the Privacy Commissioner for Personal Data (PCPD) arrested two men for suspected doxxing and disclosure of personal data without consent, in contravention of the Personal Data (Privacy) Ordinance. The arrests stem from a monetary dispute where personal data and family photos were posted online.
AI Security and Cybersecurity Summit for Enterprises Registration Open
The Office of the Privacy Commissioner for Personal Data (PCPD) and HKIRC are co-organising an AI Security and Cybersecurity Summit for Enterprises on March 31, 2026. Registration is now open for organizations to address AI security and cybersecurity risks. The event aims to raise awareness and readiness among businesses, including SMEs.
Privacy Commissioner Reports 2025 Work and Data Security Incidents
The Office of the Privacy Commissioner for Personal Data (PCPD) reported on its 2025 activities, including a 23% increase in complaints and a 21% rise in data breach notifications. The PCPD also intervened in three data security incidents and conducted 435 compliance checks.
Privacy Commissioner Warns of Construction Worker Recruitment Fraud
The Hong Kong Privacy Commissioner's Office issued a warning regarding fraudulent recruitment advertisements targeting construction workers. The office received 42 complaints in two weeks involving scams that requested sensitive personal data, including construction site "Three Essentials." The PCPD urges vigilance and provides guidance on safeguarding personal data during job applications.
Last 7 days
Most active sources
Browse Categories
Activity
Get daily alerts
Morning digest delivered to your inbox. Free.
Free. Unsubscribe anytime.
58 monitored sources
Regs.gov: Privacy and Civil Liberties Oversight Board
Regs.gov: Cybersecurity and Infrastructure Security Agency
Regs.gov: Information Security Oversight Office
Regs.gov: Office of the National Cyber Director
Get Data Privacy & Cybersecurity alerts
Daily digest. AI-summarized, no noise.
Free. Unsubscribe anytime.
Get Data Privacy & Cybersecurity alerts
We'll email you when new data privacy & cybersecurity changes are detected.