SecurityBrief UK - Technology news for CISOs & cybersecurity decision-makers

Cyber Resilience Act (CRA) stories

Flux result aec568f9 6058 4698 84f4 390bda71a536

Cyber rules shift as geopolitics & AI reshape policy

Yesterday
#
data protection
#
digital transformation
#
cloud security
NCC Group says geopolitics, digital sovereignty and AI are driving tougher cyber rules, with boards facing greater accountability and scrutiny.
Flux result a551e609 c277 41e0 a40d 9441732a3040

Cloudsmith survey finds SBOM gaps before cyber law

Last week
#
devops
#
cloud security
#
application security
Cloudsmith survey finds most engineering teams still lack automated SBOM checks, leaving many unready for fast EU Cyber Resilience Act audits.
Email attachment20260409 980833 ho90zp

2N urges tougher cyber rules for access control devices

Last week
#
edutech
#
data protection
#
hyperscale
2N calls for tougher cyber rules on access control, urging stronger vulnerability reporting, tighter component sourcing and longer support lifecycles.
Editorial storm cloud over server racks cracked padlocks data risk

Red Hat survey finds cloud security incidents rife

Last month
#
data protection
#
digital transformation
#
cloud security
Red Hat survey finds 97% of organisations hit by cloud-native security incidents, forcing delays, higher costs and loss of customer trust.
Editorial storm cloud cloud security failure server racks padlocks warnings

Red Hat finds cloud security incidents hit 97% of firms

Last month
#
data protection
#
hybrid cloud
#
cloud security
Red Hat reports 97% of organisations suffered cloud-native security incidents last year, exposing basic failings in configuration and governance.
Alison

Cloudsmith adds controls to block risky dependencies

Last month
#
devops
#
cloud security
#
application security
Cloudsmith adds automated controls to quarantine and block risky dependencies, tightening enforcement on software supply chain security.
Editorial interlocking open source components secure supply chain ai shield

OpenSSF adds members, boosts AI & supply chain security

Last month
#
virtualisation
#
application security
#
advanced persistent threat protection
OpenSSF adds new members and launches AI security, supply chain and training initiatives after securing USD $12.5 million in funding.
Software supply chain security dashboard global infrastructure

Keysight unveils SBOM Manager to meet new cyber rules

Last month
#
application security
#
physical security
#
devsecops
Keysight debuts SBOM Manager to automate software bills of materials as EU and US cyber rules tighten transparency and compliance demands.
Moody night coding workstation puzzle piece supply chain risks

Open source dependencies leave apps dangerously exposed

Last month
#
uc
#
digital transformation
#
application security
Secure.com warns most apps hide critical flaws in open source components, as unpatched dependencies and licence risks leave firms exposed.
Uk cyberattack ransomware map dark blues red locks data loss

Ransomware dominates UK cyber incidents, data loss surges

Last month
#
data protection
#
ransomware
#
phishing
Ransomware drives over half of UK cyber incidents as data loss surges, with healthcare, retail and complex supply chains hardest hit.
Connected tractor combine wheat field cyber threat clouds

NCC warns of rising cyber risks to connected farming

Last month
#
agricultural technology
#
ransomware
#
cloud security
NCC warns that insecure connected farm machinery could let cyber attacks disrupt harvests, cut yields and threaten food supply chains.
Ai governance zero trust secure data center corridor shield

Xiid & Cytex link AI governance with zero trust access

Sun, 15th Feb 2026
#
firewalls
#
data protection
#
ransomware
Xiid and Cytex join forces to fuse AI governance with zero trust access, targeting shrinking attack paths and stricter cyber regulation.
Encs and divd sign mou to strengthen vulnerability disclosure for europe s critical infrastructure

New ENCS-DIVD pact targets energy cyber weaknesses

Thu, 5th Feb 2026
#
devops
#
iot security
#
iot
ENCS and DIVD have agreed a new cyber pact to uncover and disclose vulnerabilities in Europe's high-impact energy and critical systems.
Umbraco

Umbraco secures ISO 27001 certification for CMS arm

Wed, 28th Jan 2026
#
data protection
#
ecm
#
martech
Umbraco's product arm wins ISO 27001/IEC:2022 certification, boosting security credentials for its open-source .NET CMS and partners.
Moody eu data center dusk glowing shield excluding foreign vendors

EU Cybersecurity Act revamp targets high risk vendors

Fri, 23rd Jan 2026
#
virtualisation
#
firewalls
#
data protection
Brussels moves to tighten EU cyber rules, targeting high risk foreign vendors while streamlining certification and boosting sovereignty.
Modern european factory ai robots zero trust cybersecurity

Industrial AI drives new approach to OT cyber security

Thu, 22nd Jan 2026
#
firewalls
#
cloud security
#
iot security
Industrial AI and IT/OT convergence are forcing factories to abandon closed networks and adopt hybrid, zero trust cyber security architectures.
Untitled design  55

Vincent Lomba joins ENISA group on EU cyber policy

Wed, 21st Jan 2026
#
firewalls
#
data protection
#
network security
Vincent Lomba joins ENISA's Advisory Group, bringing industry insight to EU efforts on NIS2, the Cyber Resilience Act and digital sovereignty.
Corporate boardroom dusk cyber supply chain security locks chains

Codific sets 2026 priorities for boards on cyber risk

Tue, 13th Jan 2026
#
data protection
#
ransomware
#
cloud security
Codific urges boards to prioritise preemptive cyber defence, identity and supply-chain control as 2026 scrutiny and rules tighten.
Europe factory floor ti am6x secure boot board circuit shield

CommScope, TI boost secure boot for industrial devices

Wed, 7th Jan 2026
#
manufacturing
#
mfa
#
cloud security
CommScope launches PRiSM-based secure boot signing for TI AM6x chips, aiming to simplify compliance with tightening industrial cyber rules.
Eu 2026 cybersecurity digital fortress ai threats supply chain

Codific predicts nine key cybersecurity shifts for 2026

Wed, 24th Dec 2025
#
data protection
#
digital transformation
#
encryption
Codific sees 2026 cybersecurity shaped by shadow AI, passwordless logins, tighter regulation and a sharper focus on software supply chains.