Security
-

EU cyber rules enter 24-hour reporting phase
EU cyber rules will shortly impose rapid vulnerability reporting deadlines on manufacturers.
-

Telecom security rules reach procurement
A five-year DDoS protection contract with an unnamed Tier-1 UK telecoms provider shows security regulation feeding directly into infrastructure procurement as operators face tighter requirements around resilience, control, and network operations.
-

Cybersecurity’s biggest blind spot? Diversity outpaces attackers
Cybersecurity resilience weakens when defensive teams share too many assumptions. Samantha Jennings, Head of Operations at Avella Security, argues that broader entry routes and stronger progression can reduce collective blind spots.
-

Pistachio turns failed startup IP into compliance play
Norwegian cybersecurity company Pistachio has bought Hugin.io’s technology from its bankruptcy estate, using the intellectual property to build compliance software for smaller businesses facing expanding European security obligations.
-

Brussels backs cyber deployment with €96m
Brussels is putting €96 million behind practical European cyber deployment.
-

SecNumCloud opens OVHcloud’s European route
OVHcloud’s French security qualification opens a wider European cloud push.
-

Frontier AI enters the financial stability file
The FSB says frontier AI could accelerate systemic cyber disruption.
-

Tech coalition calls for AI cyber-defence surge
More than 100 technology, telecoms, financial, and security organisations are calling for coordinated cyber defence as increasingly capable AI threatens to amplify attacks against existing infrastructure weaknesses.
-

Five Eyes widens attack on digital fraud
Five Eyes governments have agreed deeper cooperation against online fraud networks, drawing technology platforms, telecoms, financial infrastructure, and international law enforcement further into efforts to disrupt scams.
-

Cyber bill revives defence for researchers
A Lords amendment would force ministers to review whether legitimate cyber-security researchers need a statutory defence under the Computer Misuse Act, reviving a long-running dispute over authorised access.











