Cyber Resilience Act (CRA) stories
Supplier breaches are amplifying disruption, with ransomware incidents in Europe rising 55.1% year on year in the first four months of 2026.
The tie-up aims to cut Europe's reliance on overseas chip ecosystems by certifying SUSE software for Openchip's RISC-V hardware.
Enterprises can now trace hidden AI components in code to meet growing audit and compliance demands as production use outpaces governance.
The recognition underlines rising demand for tools that secure software builds before attackers can exploit open source dependencies and pipelines.
Mid-sized firms facing faster exploits can now outsource patching, exposure scanning and threat monitoring under one contract.
Members are backing tougher open source security as OpenSSF expands guidance on regulation, Python coding and AI-driven vulnerability tools.
Existing certification and update limits on SIM components could be upended if Brussels keeps draft cyber rules unchanged.
A decade of support has helped operators keep rail, power and factory systems running on Linux without frequent upgrades.
Financial regulators are alarmed after Anthropic said Claude Mythos can uncover software flaws at machine speed, raising bank security risks.
Companies face tougher, more fragmented compliance as governments tie cyber rules to national security, AI use and digital sovereignty.
Most engineering teams could struggle to meet EU Cyber Resilience Act reporting deadlines, with many still handling SBOMs manually or only after incidents.
New EU rules could force access control makers to prove stronger patching, sourcing and disclosure processes as cyberattacks rise.
Greater scrutiny of connected-device software is driving demand for product security tools, as Finite State adds another senior hire.
Red Hat survey finds 97% of organisations hit by cloud-native security incidents, forcing delays, higher costs and loss of customer trust.
Red Hat reports 97% of organisations suffered cloud-native security incidents last year, exposing basic failings in configuration and governance.
Cloudsmith adds automated controls to quarantine and block risky dependencies, tightening enforcement on software supply chain security.
OpenSSF adds new members and launches AI security, supply chain and training initiatives after securing USD $12.5 million in funding.
Small firms are being squeezed as payroll gets harder and skilled staff near retirement, leaving software to fill the gap.
Industrial operators face pressure to run AI locally as IEI targets faster automation, tighter security and fewer production interruptions.
Belgian software SMEs risk losing B2B contracts as new EU rules expose weak threat modelling and scant security training, a PXL study says.