Index live· 1,284 files · 148 editions
ForensicPost

Search the index

13 results
Try
Results for “Regulation”Newest first
26-0216
File

Vulnerability Programme Targeted the Foundational Libraries Everything Depends On

“Systemically important” is borrowed from financial regulation, where it triggers obligations. Applied to FFmpeg and the kernel it triggers nothing.

UnattributedGovernance gapMultipleInfrastructure
Sev 4TargetFoundational open-source componentsActorUnattributed
25-1215
File

UK Bill and EU NIS2 Diverge on Scope, Supervision and Penalties

Two regimes trying different approaches produce evidence a single harmonised one cannot. Nobody knows whether 24 hours beats 72.

RegulatorMultipleRegulation
Sev 2TargetCross-border suppliersActorRegulatorUnited Kingdom
25-1126b
File

A Regulator Told the Market

The mechanism works. Its scope is defined by the wrong boundary — these incidents are not sector-shaped.

RegulatorFinanceRegulation
Sev 2TargetSecurities firmsActorRegulator
25-1124
File

Managed Service Providers, Data Centres, and Designated Critical Suppliers

Criticality is emergent — it comes from how many organisations happen to depend on you, which is not visible from outside.

RegulatorMultipleRegulation
Sev 2TargetUK supplier populationActorRegulatorUnited Kingdom
25-1121
File

Draft UK Bill Proposes Fines up to £17 Million or 4% of Turnover

For a large company the regulator is not the most expensive consequence of a failure. The failure is.

RegulatorMultipleRegulation
Sev 2TargetUK regulated entitiesActorRegulatorUnited Kingdom
25-1119
File

Draft UK Bill Proposes 24-hour Initial Breach Notification

The fact travels immediately; the detail follows when it is reliable. It is the structure this desk asked for at 25-1027.

RegulatorMultipleRegulation
Sev 2TargetUK regulated entitiesActorRegulatorUnited Kingdom
25-1113
File

UK Publishes Draft Cyber Security and Resilience Bill

The regime being amended was made in 2018. Almost nothing in this corpus existed in its current form then.

RegulatorMultipleRegulation
Sev 2TargetUK regulated entitiesActorRegulatorUnited Kingdom
25-1014b
File

Pharmaceutical Rules Govern Data Integrity but Barely Touch Network Security

It asks whether a record is trustworthy, not whether an adversary could reach the system holding it.

RegulatorPharmaRegulation
Sev 3TargetPharmaceutical sectorActorRegulator
25-0920b
File

The Regulator Warned About the Factory, Not the Database

Data integrity rules exist because a falsified batch record is a patient safety issue — and they describe exactly what an attacker would need to alter.

MultipleVariousPharmaRegulation
Sev 4TargetPharmaceutical manufacturingActorMultiple
25-0720
File

Telecom Operators Hold Payment and Identity Data Without Financial Regulation

The data followed the obligation and the supervision did not follow the data.

MultipleVariousTelecomAnalysis
Sev 3TargetTelecom subscribersActorMultiple
25-0616
File

The Most Expensive Sector to Be Breached In

A retailer and a bank suffering identical intrusions produce very different invoices, and the difference is regulation rather than damage.

MultipleVariousFinanceAnalysis
Sev 3TargetFinancial sectorActorMultiple
25-0616b
File

Neither DORA nor the UK Bill Reaches the Small Firms Taking 43% of Attacks

What that population needs is not an obligation. It is secure defaults in the products they already buy.

RegulatorMultipleRegulation
Sev 3TargetSmall organisationsActorRegulatorUnited Kingdom
25-0117
File

The Rule That Made a Bank Answerable for Its Suppliers

The first instrument in this corpus that reaches the organisation the customer has never heard of — and it regulates availability, not just data.

RegulatorFinanceRegulation
Sev 2TargetEU financial entitiesActorRegulator
© 2026 ForensicPost Media · the desk · newsletterGlossaryNo search logging