Changeflow GovPing Data Privacy & Cybersecurity

Recent changes

Friday, March 13, 2026

4d ago Dutch DPA News
Favicon for www.autoriteitpersoonsgegevens.nl

AI Chatbots Provide Biased Voting Advice, Ignoring Local Parties

The Dutch Data Protection Authority (AP) released a study showing AI chatbots rarely recommend local political parties when providing voting advice. The AP warns that this bias makes chatbots unreliable voting aids and calls on providers to implement measures to prevent their systems from being used for voting advice, especially in light of the EU AI Act.

Priority review Notice Public Health
Favicon for www.csa.gov.sg

HPE Patches Critical Aruba Networking AOS-CX Vulnerabilities

Hewlett Packard Enterprise (HPE) has released patches for critical vulnerabilities in its Aruba Networking AOS-CX operating system. The most severe flaw (CVE-2026-23813) allows unauthenticated remote attackers to reset administrator passwords. Users are urged to update immediately.

Urgent Notice Cybersecurity
Favicon for www.csa.gov.sg

Microsoft Security Patches for Critical Vulnerabilities

The Cyber Security Agency of Singapore (CSA) has issued an alert regarding Microsoft's release of security patches for critical vulnerabilities in its software. These patches address multiple security flaws, some with a base score of 9.8, requiring immediate attention from users and organizations.

Priority review Notice Cybersecurity
Favicon for www.csa.gov.sg

Fortinet Vulnerabilities Require Immediate Updates

The Cyber Security Agency of Singapore (CSA) has issued an alert regarding high-severity vulnerabilities in multiple Fortinet enterprise products. Users are strongly advised to update affected systems immediately to mitigate risks of unauthorized code execution, authentication bypass, and privilege escalation.

Urgent Notice Cybersecurity
Favicon for www.csa.gov.sg

Critical Cisco Secure Firewall Management Center Vulnerabilities Addressed

Cisco has released security updates for critical vulnerabilities (CVSS 10.0) in its Secure Firewall Management Center software. Users of affected on-premises versions are advised to update immediately to prevent root access and arbitrary code execution.

Urgent Notice Cybersecurity
Favicon for www.pdpc.gov.sg

Ransomware Incident Data Breach and Security Lapses

Singapore's Personal Data Protection Commission issued a decision regarding a ransomware incident affecting 39,000 individuals' data due to security lapses. Three separate undertakings were also accepted for similar incidents. The Commission directed the organization to strengthen its security posture and highlighted key takeaways for all organizations to prevent future breaches.

Priority review Enforcement Cybersecurity
Favicon for www.pdpc.gov.sg

Data Breach Decision Highlights Security Lapses

The Singapore Personal Data Protection Commission (PDPC) issued a decision regarding a data breach affecting 665,000 individuals due to system misconfiguration. The case highlights lapses in security practices and emphasizes the need for robust technical and governance measures.

Priority review Enforcement Data Privacy
Favicon for www.pdpc.gov.sg

PDPC Steps Up NRIC Misuse Enforcement and Issues New Advisory

The Singapore Personal Data Protection Commission (PDPC) is stepping up enforcement against private organizations misusing NRIC numbers for authentication starting January 1, 2027. New advisories are also being issued to guide organizations on data protection lapses and recommend more secure authentication methods.

Priority review Guidance Data Privacy
Favicon for www.pdpc.gov.sg

PDPC Publishes Four Undertakings on Ransomware and Unauthorized Access

Singapore's Personal Data Protection Commission (PDPC) has published four undertakings from organizations that experienced ransomware attacks and unauthorized access. These undertakings detail remediation measures to strengthen cybersecurity defenses and data protection practices.

Priority review Enforcement Cybersecurity
Favicon for www.pdpc.gov.sg

Data Protection Breaches Result in Financial Penalties

Singapore's Personal Data Protection Commission issued financial penalties to four organizations for data protection breaches affecting over 1 million individuals. These breaches stemmed from inadequate security measures, including poor patch management and lack of data protection policies. An additional organization committed to an undertaking following a ransomware attack.

Priority review Enforcement Data Privacy

Showing 121–130 of 478 changes

1 11 12 13 14 15 48

58 monitored sources

ICO Decision Notices

Updated 22h ago 102 recent

CERT-Bund Security Advisories

Updated 11h ago 27 recent

CERT-FR Security Advisories

Updated 9h ago 17 recent

Regs.gov: Privacy and Civil Liberties Oversight Board

Updated 3d ago 15 recent

AEPD Resolutions (Spain DPA)

Updated 23h ago 14 recent

NIST Publications

Updated 3d ago 14 recent

WA Data Breach Notifications

Updated 6d ago 12 recent

CISA Known Exploited Vulnerabilities (KEV)

Updated 17h ago 8 recent

CA CPPA Newsroom

Updated 12d ago 7 recent

ICO News & Blogs

Updated 5d ago 7 recent

PCPD Media Statements (HK)

Updated 14h ago 7 recent

Dutch DPA News

Updated 1d ago 7 recent

IAPP Privacy News

Updated 4d ago 6 recent

EDPB Documents (GDPR)

Updated 5d ago 6 recent

ENISA News

Updated 12h ago 6 recent

Hungary NAIH News

Updated 4d ago 5 recent

HITRUST News & Advisories

Updated 4d ago 5 recent

Greece HDPA News

Updated 4d ago 5 recent

Garante Privacy News

Updated 4d ago 5 recent

Luxembourg CNPD News

Updated 4d ago 5 recent

NCSC UK News

Updated 5d ago 5 recent

FR: Information Security Oversight Office

Updated 3d ago 5 recent

NCSC UK Threat Reports

Updated 5d ago 5 recent

Croatia AZOP News

Updated 4d ago 5 recent

PDPC Announcements (Singapore)

Updated 4d ago 5 recent

Canada OPC News & Actions

Updated 4d ago 5 recent

Regs.gov: Cybersecurity and Infrastructure Security Agency

Updated 2d ago 5 recent

CPPA California Privacy Rulemaking

Updated 4d ago 5 recent

Austria DSB News

Updated 4d ago 5 recent

Romania ANSPDCP Press

Updated 4d ago 5 recent

NIST Cybersecurity Framework Updates

Updated 4d ago 4 recent

OAIC Media Centre

Updated 4d ago 4 recent

PCI SSC Press Releases

Updated 4d ago 4 recent

Regs.gov: Information Security Oversight Office

Updated 3d ago 4 recent

Regs.gov: Office of the National Cyber Director

Updated 3d ago 4 recent

CNIL News (France DPA)

Updated 1d ago 4 recent

CSA Alerts & Advisories (Singapore)

Updated 4d ago 4 recent

Canada OPC PIPEDA Investigations

Updated 4d ago 4 recent

FTC Press Releases

Updated 19d ago 4 recent

CISA Cybersecurity Advisories

Updated 5d ago 4 recent

CISA ICS-CERT Advisories

Updated 1d ago 3 recent

SWIFT News

Updated 4d ago 3 recent

Colorado AG Press Releases

Updated 1d ago 2 recent

BfDI Press Releases (Germany DPA)

Updated 10h ago 2 recent

FR: Office of the National Cyber Director

Updated 3d ago 2 recent

IMY News (Sweden DPA)

Updated 22d ago 2 recent

Garante Privacy Newsletter (Italy DPA)

Updated 8d ago 2 recent

EDPB News

Updated 14d ago 1 recent

NSA Cybersecurity Advisories

Updated 4d ago 1 recent

FedRAMP Changelog

Updated 1d ago 1 recent

UK NCSC Alerts & Advisories

Updated -- 0 recent

APD/GBA News (Belgium DPA)

Updated 1mo ago 0 recent

CNIL News & Enforcement

Updated -- 0 recent

DPC Press Releases (Ireland DPA)

Updated 1mo ago 0 recent

EDPB Guidelines & Recommendations

Updated 1mo ago 0 recent

EDPB Public Consultations

Updated 1mo ago 0 recent

ICO GDPR Guidance

Updated 1mo ago 0 recent

ICO Enforcement Actions

Updated 1mo ago 0 recent

Get Data Privacy & Cybersecurity alerts

Daily digest. AI-summarized, no noise.

Free. Unsubscribe anytime.

Get Data Privacy & Cybersecurity alerts

We'll email you when new data privacy & cybersecurity changes are detected.

Free. Unsubscribe anytime.