What do you monitor?
Curated feeds for your role. Pick your area and get exactly the sources you need.
Compliance & Legal
Legal Research
Court opinions, regulatory guidance, and enforcement actions. AI-summarized.
Financial Compliance
SEC, OCC, FDIC, Fed, FINRA, CFPB, FASB, and state banking regulators. One feed.
Insurance Compliance
State commissioner bulletins, NAIC model laws, and DOI enforcement actions.
Environmental Compliance
EPA enforcement, state environmental agencies, PFAS regulatory updates.
Data Privacy
State AG privacy enforcement, FTC actions, CPPA rulemaking, and HIPAA enforcement.
Tax Compliance
IRS guidance changes and state tax department bulletins.
AML Compliance
FinCEN, OCC, FDIC, Fed, FATF, and banking regulator enforcement.
Labor & Employment
NLRB decisions, EEOC guidance, DOL wage updates, and 50-state labor law changes.
Immigration Law
USCIS policy changes, visa bulletin updates, CBP processing changes.
Industry
Pharma & Life Sciences
FDA warning letters, drug approvals, ICH guidelines, EMA updates, and DEA scheduling.
Energy & Utilities
FERC orders, state PUC decisions, and energy regulatory changes.
Cybersecurity
CISA KEV catalog, ICS-CERT, NSA advisories, NIST CSF, and FedRAMP updates.
Healthcare Compliance
CMS transmittals, OIG work plan, HIPAA enforcement, and Medicaid updates.
Trade & Procurement
Recent changes
Michael Roger Day CPA Reinstatement Order
The Minnesota Board of Accountancy issued a reinstatement order for Michael Roger Day's CPA certificate, which had been revoked in 2018 for failure to renew. The certificate will be reinstated to inactive status upon payment of a $25 renewal fee within 90 days.
Medicaid Fraud Control Units Annual Report: FY 2025
The HHS OIG has released its annual report for Medicaid Fraud Control Units (MFCUs) for Fiscal Year 2025. The report details nearly $2 billion in combined criminal and civil recoveries, 1,185 convictions, and 900 exclusions from federal health care programs. It highlights trends in fraud and patient abuse investigations and prosecutions.
Netwrix Password Secure Vulnerabilities Allow Code Execution and DoS
CERT-Bund has issued a security advisory for Netwrix Password Secure, detailing multiple vulnerabilities that could allow for code execution and denial-of-service attacks. The advisory affects versions prior to 26.3.100 and is rated as high severity.
Critical Azure Vulnerabilities: Remote Attack, Privilege Escalation
CERT-Bund has issued a security advisory regarding critical vulnerabilities in Microsoft Azure DevOps, Data Factory, and Cloud Shell. These vulnerabilities allow remote attackers to escalate privileges, manipulate data, and disclose sensitive information, with a CVSS base score of 10.0.
Microsoft 365 Copilot Vulnerabilities Advisory
CERT-Bund has issued an advisory regarding multiple vulnerabilities in Microsoft 365 Copilot, with a CVSS base score of 8.9. These vulnerabilities could allow remote attackers to disclose information, manipulate data, and gain elevated privileges. Mitigation measures are available.
VMware Tanzu Spring Security Vulnerability
CERT-Bund has issued a security advisory for VMware Tanzu Spring Security, detailing a critical vulnerability (CVSS 9.1) that allows remote attackers to bypass security controls and potentially access confidential information. The advisory affects multiple versions of the Spring Security framework.
VMware Tanzu Spring Boot Actuator Vulnerabilities
CERT-Bund has issued a security advisory for VMware Tanzu Spring Boot Actuator, detailing vulnerabilities that allow remote attackers to bypass security measures. The advisory affects multiple versions of VMware Tanzu Spring Boot prior to specific patch levels and includes a high CVSS base score.
Kubernetes ingress-nginx Vulnerability Allows Code Execution and Info Disclosure
CERT-Bund has issued a security advisory for Kubernetes ingress-nginx, detailing a vulnerability that allows authenticated remote attackers to execute arbitrary code and disclose sensitive information. The advisory affects versions prior to 1.13.9, 1.14.5, and 1.15.1, with a high CVSS base score of 8.8.
Langflow Vulnerability Allows Remote Code Execution
CERT-Bund has issued a security advisory for Langflow, detailing a critical vulnerability that allows remote code execution. The advisory affects versions prior to 1.9.0 and impacts Linux, UNIX, and Windows operating systems. Mitigation measures are available.
Oracle Fusion Middleware Vulnerability Allows Code Execution
CERT-Bund has issued a security advisory for Oracle Fusion Middleware Identity Manager and Web Services Manager versions prior to 12.2.1.4.0 and 14.1.2.1.0. A critical vulnerability (CVSS 9.8) allows remote attackers to execute arbitrary code, potentially leading to full system compromise.
Browse by category
US Federal
999 sources
US State
116 sources
US Courts
122 sources
UK
77 sources
EU
71 sources
Canada
28 sources
Courts & Legal
312 sources
Government & Legislation
258 sources
Banking & Finance
228 sources
Healthcare
131 sources
Trade & Sanctions
124 sources
Labor & Employment
110 sources
Energy
104 sources
Pharma & Drug Safety
94 sources
Environment
83 sources
Securities & Markets
76 sources
Data Privacy & Cybersecurity
62 sources
Tax
62 sources
Agriculture & Food Safety
61 sources
Transportation
56 sources
Insurance
55 sources
Defense & National Security
48 sources
Telecom & Technology
42 sources
Consumer Protection
40 sources
Education
20 sources
Housing
15 sources
Immigration
9 sources
Legal & Courts
1 sources
Browse by agency
USDA
6 sources
DOE
6 sources
MAS
5 sources
FinCEN
5 sources
DOS
5 sources
CFTC
5 sources
WIPO
5 sources
EOIR
5 sources
DEA
5 sources
NIH
5 sources
NIST
5 sources
State BON
5 sources
GAO
5 sources
FCA
4 sources
FMC
4 sources
ECJU
4 sources
MHRA
4 sources
UK Government
4 sources
OFSI
4 sources
GPO
4 sources
Get alerts when regulations change
Weekly digest. AI-summarized, no noise.
Free. Unsubscribe anytime.