Changeflow GovPing Data Privacy & Cybersecurity

Recent changes

Friday, March 13, 2026

Favicon for www.nist.gov

NIST Cybersecurity Framework (CSF) 2.0 Anniversary and Updates

NIST is celebrating the two-year anniversary of the Cybersecurity Framework (CSF) 2.0. The blog post highlights updates and resources released over the past two years, including expanded guidance on governance and informative references to other standards, emphasizing the framework's widespread adoption and ongoing development.

Routine Notice Cybersecurity
Favicon for www.nist.gov

NIST Cybersecurity Framework 2.0 Profiles and Resources

The National Institute of Standards and Technology (NIST) has released updated resources for its Cybersecurity Framework (CSF) 2.0, including organizational profile templates and community profiles. These resources aim to help organizations assess and improve their cybersecurity posture.

Routine Guidance Cybersecurity
Favicon for www.cisa.gov

Apple Use-After-Free Vulnerability Fixed in iOS/iPadOS 17

CISA has added a use-after-free vulnerability (CVE-2023-41974) affecting Apple iOS and iPadOS to its Known Exploited Vulnerabilities (KEV) catalog. The vulnerability, which could allow an app to execute arbitrary code with kernel privileges, has been fixed by Apple in iOS 17, iPadOS 17, iOS 15.8.7, and iPadOS 15.8.7.

Priority review Notice Cybersecurity
Favicon for www.cisa.gov

VMware Workspace ONE UEM SSRF Vulnerability CVE-2021-22054

CISA has added VMware Workspace ONE UEM console versions to the Known Exploited Vulnerabilities (KEV) catalog due to an SSRF vulnerability (CVE-2021-22054). This vulnerability may allow a malicious actor to gain access to sensitive information.

Priority review Notice Cybersecurity
Favicon for www.cisa.gov

SolarWinds Web Help Desk RCE Vulnerability CVE-2025-26399

CISA has added CVE-2025-26399, a critical remote code execution vulnerability in SolarWinds Web Help Desk, to its Known Exploited Vulnerabilities (KEV) catalog. The vulnerability affects versions 12.8.7 and below and allows unauthenticated attackers to run commands on the host machine.

Urgent Notice Cybersecurity
Favicon for www.cisa.gov

Ivanti EPM Authentication Bypass Vulnerability

CISA has added a vulnerability (CVE-2026-1603) in Ivanti Endpoint Manager (EPM) to its Known Exploited Vulnerabilities (KEV) catalog. The vulnerability, an authentication bypass allowing credential data leakage, affects versions before 2024 SU5.

Urgent Notice Cybersecurity
Favicon for www.cisa.gov

n8n RCE Vulnerability CVE-2025-68613

CISA has added CVE-2025-68613, a critical Remote Code Execution vulnerability in n8n's workflow evaluation system, to its Known Exploited Vulnerabilities (KEV) catalog. The vulnerability affects versions prior to 1.120.4, 1.121.1, and 1.122.0 and allows authenticated attackers to execute arbitrary code.

Urgent Notice Cybersecurity
Favicon for www.pcisecuritystandards.org

PCI SSC Meeting Advances Payment Security and AI Guidance

The PCI Security Standards Council held its North America Community Meeting, focusing on advancing payment security and launching AI guidance. The event brought together over 1,200 stakeholders to discuss evolving standards, best practices for AI in payments, and cross-industry collaboration.

Routine Notice Payments
Favicon for www.pcisecuritystandards.org

PCI SSC Asia-Pacific Community Meeting on Payment Security

The PCI Security Standards Council (PCI SSC) is hosting its annual Asia-Pacific Community Meeting in Bangkok on November 5-6, 2025. The event will bring together payment security experts to discuss evolving threats, new technologies, and best practices for preventing cyberattacks and fraud in the region.

Routine Notice Cybersecurity
Favicon for www.pcisecuritystandards.org

PCI SSC Establishes India-South Asia Regional Engagement Board

The PCI Security Standards Council (PCI SSC) has established its first Regional Engagement Board (REB) for the India and South Asia region, effective for 2025-2026. The board comprises 27 organizations from the payment industry to advise on payment security issues and promote awareness of PCI SSC standards.

Routine Notice Payments

Showing 211–220 of 491 changes

1 20 21 22 23 24 50

59 monitored sources

ICO Decision Notices

Updated 1d ago 102 recent

CERT-Bund Security Advisories

Updated 7h ago 35 recent

CERT-FR Security Advisories

Updated 16h ago 17 recent

Regs.gov: Privacy and Civil Liberties Oversight Board

Updated 3d ago 15 recent

AEPD Resolutions (Spain DPA)

Updated 1d ago 14 recent

NIST Publications

Updated 3d ago 14 recent

WA Data Breach Notifications

Updated 6d ago 12 recent

CISA Known Exploited Vulnerabilities (KEV)

Updated 24h ago 8 recent

Dutch DPA News

Updated 1d ago 7 recent

PCPD Media Statements (HK)

Updated 21h ago 7 recent

ICO News & Blogs

Updated 5d ago 7 recent

CA CPPA Newsroom

Updated 12d ago 7 recent

IAPP Privacy News

Updated 4d ago 6 recent

EDPB Documents (GDPR)

Updated 5d ago 6 recent

ENISA News

Updated 19h ago 6 recent

HITRUST News & Advisories

Updated 5d ago 5 recent

Greece HDPA News

Updated 4d ago 5 recent

ICO Enforcement

Updated 5h ago 5 recent

Garante Privacy News

Updated 4d ago 5 recent

Hungary NAIH News

Updated 4d ago 5 recent

Luxembourg CNPD News

Updated 4d ago 5 recent

NCSC UK News

Updated 5d ago 5 recent

FR: Information Security Oversight Office

Updated 3d ago 5 recent

NCSC UK Threat Reports

Updated 5d ago 5 recent

Croatia AZOP News

Updated 4d ago 5 recent

PDPC Announcements (Singapore)

Updated 4d ago 5 recent

Canada OPC News & Actions

Updated 4d ago 5 recent

Regs.gov: Cybersecurity and Infrastructure Security Agency

Updated 3d ago 5 recent

CPPA California Privacy Rulemaking

Updated 5d ago 5 recent

Austria DSB News

Updated 4d ago 5 recent

Romania ANSPDCP Press

Updated 4d ago 5 recent

NIST Cybersecurity Framework Updates

Updated 5d ago 4 recent

OAIC Media Centre

Updated 4d ago 4 recent

PCI SSC Press Releases

Updated 5d ago 4 recent

Regs.gov: Information Security Oversight Office

Updated 3d ago 4 recent

Regs.gov: Office of the National Cyber Director

Updated 3d ago 4 recent

CNIL News (France DPA)

Updated 1d ago 4 recent

CSA Alerts & Advisories (Singapore)

Updated 4d ago 4 recent

Canada OPC PIPEDA Investigations

Updated 4d ago 4 recent

FTC Press Releases

Updated 19d ago 4 recent

CISA Cybersecurity Advisories

Updated 5d ago 4 recent

CISA ICS-CERT Advisories

Updated 1d ago 3 recent

SWIFT News

Updated 5d ago 3 recent

Colorado AG Press Releases

Updated 1d ago 2 recent

BfDI Press Releases (Germany DPA)

Updated 17h ago 2 recent

FR: Office of the National Cyber Director

Updated 3d ago 2 recent

IMY News (Sweden DPA)

Updated 22d ago 2 recent

Garante Privacy Newsletter (Italy DPA)

Updated 8d ago 2 recent

EDPB News

Updated 15d ago 1 recent

NSA Cybersecurity Advisories

Updated 5d ago 1 recent

FedRAMP Changelog

Updated 1d ago 1 recent

UK NCSC Alerts & Advisories

Updated -- 0 recent

APD/GBA News (Belgium DPA)

Updated 1mo ago 0 recent

CNIL News & Enforcement

Updated -- 0 recent

DPC Press Releases (Ireland DPA)

Updated 1mo ago 0 recent

EDPB Guidelines & Recommendations

Updated 1mo ago 0 recent

EDPB Public Consultations

Updated 1mo ago 0 recent

ICO GDPR Guidance

Updated 1mo ago 0 recent

ICO Enforcement Actions

Updated 1mo ago 0 recent

Get Data Privacy & Cybersecurity alerts

Daily digest. AI-summarized, no noise.

Free. Unsubscribe anytime.

Get Data Privacy & Cybersecurity alerts

We'll email you when new data privacy & cybersecurity changes are detected.

Free. Unsubscribe anytime.