nicfab
123 subscribers
15 photos
16 files
2.49K links
Canale di aggiornamento su Privacy, Data Protection, IA e Cybersecurity
Channel for updates on Privacy, Data Protection, AI, and Cybersecurity
Download Telegram
Daily Digest | 9 June 2026

SoFi confirms third-party data breach at Hong Kong subsidiary
BleepingComputer
https://www.bleepingcomputer.com/news/security/sofi-confirms-third-party-data-breach-at-hong-kong-subsidiary/

Following Anthropic, OpenAI files confidentially for IPO
TechCrunch
https://techcrunch.com/2026/06/08/following-anthropic-openai-files-confidentially-for-ipo/

Check Point links VPN zero-day attacks to Qilin ransomware gang
BleepingComputer
https://www.bleepingcomputer.com/news/security/check-point-links-vpn-zero-day-attacks-to-qilin-ransomware-gang/

CELEX:52026DC0210: Recommendation for a COUNCIL RECOMMENDATION on the economic, social, employment, structural and bu...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CELEX:52026DC0210

CELEX:52026SC0210: COMMISSION STAFF WORKING DOCUMENT 2026 Country Report - France Accompanying the document Recommend...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CELEX:52026SC0210

#Privacy #AI #Cybersecurity #DailyDigest

━━━━━━━━━━━━━━━━━━━━

⚖️ Giurisprudenza UE

🔹 CASE OF J.B. v. GREECE
Sentenza · 26 maggio 2026 · Corte europea dei diritti dell'uomo

🔹 Across Fiduciaria SpA and Others v Presidenza del Consiglio dei ministri and Others (C-684/24)
Sentenza · 21 maggio 2026 · Corte di giustizia dell'Unione europea

🔹 CASE OF V.I. v. THE REPUBLIC OF MOLDOVA AND RUSSIA
Sentenza · 21 maggio 2026 · Corte europea dei diritti dell'uomo
Daily Digest | 10 June 2026

Briefing - 28th regime: Proposal for an EU corporate legal framework - 09-06-2026
Documents - Think Tank - European Parliament
https://www.europarl.europa.eu/thinktank/en/document/EPRS_BRI(2026)788143

CISA gives US federal agencies three days to fix a VPN bug under attack by a ransomware gang
TechCrunch
https://techcrunch.com/2026/06/09/cisa-gives-us-federal-agencies-three-days-to-fix-a-vpn-bug-under-attack-by-a-ransomware-gang/

Check Point VPN Zero-Day Exploited in Qilin Ransomware Attacks
SecurityWeek RSS Feed
https://www.securityweek.com/check-point-vpn-zero-day-exploited-in-qilin-ransomware-attacks/

Microsoft June 2026 Patch Tuesday fixes 3 zero-day, 200 flaws
BleepingComputer
https://www.bleepingcomputer.com/news/microsoft/microsoft-june-2026-patch-tuesday-fixes-3-zero-day-200-flaws/

Chrome V8 Zero-Day CVE-2026-11645 Exploited in the Wild - Patch Now
The Hacker News
https://thehackernews.com/2026/06/chrome-v8-zero-day-cve-2026-11645.html

#Privacy #AI #Cybersecurity #DailyDigest

━━━━━━━━━━━━━━━━━━━━

⚖️ EU Case-Law

🔹 AFFAIRE VELEV ET AUTRES c. BULGARIE
Judgment · 9 June 2026 · European Court of Human Rights
Daily Digest | 11 June 2026

EDPB meets with EU Commissioner McGrath and adopts common data breach notification template
European Data Protection Board
https://www.edpb.europa.eu/news/news/2026/edpb-meets-eu-commissioner-mcgrath-and-adopts-common-data-breach-notification_en

Template for personal data breach notification
EDPB publications
https://www.edpb.europa.eu/our-work-tools/our-documents/other/template-personal-data-breach-notification_en

CONSIL:ST_10346_2026_INIT: Proposal for a REGULATION OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL on the establishme...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CONSIL:ST_10346_2026_INIT

Microsoft patches Exchange Server zero-day exploited in attacks
BleepingComputer
https://www.bleepingcomputer.com/news/microsoft/microsoft-patches-exchange-server-zero-day-exploited-in-attacks/

ServiceNow Patches Vulnerability Exploited Against Some Customers
SecurityWeek RSS Feed
https://www.securityweek.com/servicenow-patches-vulnerability-exploited-against-some-customers/

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 12 June 2026

Template for personal data breach notification
EDPB publications
https://www.edpb.europa.eu/our-work-tools/documents/public-consultations/2026/template-personal-data-breach-notification_en

South Korea hits Coupang with $400M+ fine for data breach that affected millions
TechCrunch
https://techcrunch.com/2026/06/11/south-korea-hits-coupang-with-400m-fine-for-data-breach-that-affected-millions/

ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities
The Hacker News
https://thehackernews.com/2026/06/shinyhunters-exploits-oracle-peoplesoft.html

Nottingham University data breach affects over 450,000 students
BleepingComputer
https://www.bleepingcomputer.com/news/security/nottingham-university-data-breach-affects-over-450-000-students/

Authorities dismantle 'AudiA6' ransomware crypto-laundering service
BleepingComputer
https://www.bleepingcomputer.com/news/legal/authorities-dismantle-audia6-ransomware-crypto-laundering-service/

#Privacy #AI #Cybersecurity #DailyDigest

━━━━━━━━━━━━━━━━━━━━

⚖️ EU Case-Law

🔹 CASE OF C.P. v. SPAIN
Judgment · 11 June 2026 · European Court of Human Rights
🔹 Nuovo articolo sul blog

La governance dell'intelligenza artificiale richiede ormai competenze giuridiche specialistiche che non possono essere interamente assorbite dai ruoli professionali esistenti.

Il nuovo articolo presenta il paper "The AI Legal Specialist: A Juridically Autonomous Professional Profile for AI Governance", disponibile su arXiv, e sviluppa una tesi precisa: la regolazione dell'IA sta facendo emergere una figura giuridica autonoma, distinta dal DPO, dal privacy lawyer, dal compliance officer e dalle figure generiche di AI governance.

Articolo:
https://www.nicfab.eu/it/posts/ai-legal-specialist/
🔹 New article on the blog

AI governance now requires specialised legal expertise that can no longer be entirely absorbed by existing professional roles.

The new article introduces the paper "The AI Legal Specialist: A Juridically Autonomous Professional Profile for AI Governance", available on arXiv, and develops a specific thesis: AI regulation is bringing forth an autonomous legal profile, distinct from the DPO, the privacy lawyer, the compliance officer, and generic AI governance roles.

Article:
https://www.nicfab.eu/en/posts/ai-legal-specialist/
Daily Digest | 15 June 2026

Briefing - Revision of the Cybersecurity Act - 12-06-2026
Documents - Think Tank - European Parliament
https://www.europarl.europa.eu/thinktank/en/document/EPRS_BRI(2026)788144

CONSIL:ST_10491_2026_INIT: Regulation establishing European Competitiveness Fund (ECF), including specific programme ...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CONSIL:ST_10491_2026_INIT

FBI disrupts massive AI-powered phishing service using a million URLs
BleepingComputer
https://www.bleepingcomputer.com/news/security/fbi-disrupts-massive-ai-powered-phishing-service-using-a-million-urls/

US’s Anthropic order exposes EU’s AI dependency
Politico EU Technology
https://www.politico.eu/article/us-anthropic-order-exposes-eu-ai-dependency/?utm_source=RSS_Feed&utm_medium=RSS&utm_campaign=RSS_Syndication

Arch Linux AUR Hit by Another Wave of Now More Sophisticated Malware Attack
Hacker News
https://www.phoronix.com/news/Arch-Linux-AUR-More-Malware

#Privacy #AI #Cybersecurity #DailyDigest

━━━━━━━━━━━━━━━━━━━━

⚖️ EU Case-Law

🔹 CL v Prokuratura na Republika Bulgaria (C-312/24)
Opinion AG · 4 June 2026 · Court of Justice of the European Union
Daily Digest | 16 June 2026

Hired by an algorithm: Data protection and AI regulation in modern HR practices
EDPS News Feed
https://www.edps.europa.eu/press-publications/press-news/news/2026/hired-algorithm-data-protection-and-ai-regulation-modern-hr-practices

Managing Shadow AI’s Hidden Data Breach Risk
EDPS News Feed
https://www.edps.europa.eu/press-publications/press-news/news/2026/managing-shadow-ais-hidden-data-breach-risk

Revoir le webinaire - Pixels de suivi dans les courriels : présentation des recommandations de la CNIL
CNIL France
https://www.cnil.fr/fr/webinaire-pixels-de-suivi-recommandations-cnil

Council of Europe investigates ShinyHunters data breach claims
BleepingComputer
https://www.bleepingcomputer.com/news/security/council-of-europe-investigates-shinyhunters-data-breach-claims/

Ransomware Attack Shuts Down Mills of Australia’s Second-Largest Sugar Producer
SecurityWeek RSS Feed
https://www.securityweek.com/ransomware-attack-shuts-down-mills-of-australias-second-largest-sugar-producer/

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 17 June 2026

Press release - AI Act: EP approves simplification measures and “nudifier” app ban
Press releases - Plenary sessions - European Parliament
https://www.europarl.europa.eu/news/en/press-room/20260611IPR45207/

Briefing - Cybersecurity Act Revision (CSA2) - 16-06-2026
Documents - Think Tank - European Parliament
https://www.europarl.europa.eu/thinktank/en/document/EPRS_BRI(2026)789345

PI_COM:Ares(2026)6130856: Communication from the Commission on the Review of the European Interoperability Framework ...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=PI_COM:Ares(2026)6130856

Ransomware gang abuses Microsoft Teams relays to hide malicious traffic
BleepingComputer
https://www.bleepingcomputer.com/news/security/ransomware-gang-abuses-microsoft-teams-relays-to-hide-malicious-traffic/

iRhythm discloses data breach, says hackers stole patient info
BleepingComputer
https://www.bleepingcomputer.com/news/security/irhythm-discloses-data-breach-says-hackers-stole-patient-info/

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 18 June 2026

NEWSLETTER del 17 giugno 2026 - Passeggeri a mobilità ridotta, il Garante privacy sanziona Emirates - Telecamere di s...
Garante Protezione dei dati personali - news
https://www.gpdp.it/garante/doc.jsp?ID=10261301

Latest EDPS Newsletter out now
EDPS News Feed
https://www.edps.europa.eu/press-publications/press-news/news/2026/latest-edps-newsletter-out-now-1

Press release - Artificial intelligence: press conference on simplification measures
Press releases - Committees - European Parliament
https://www.europarl.europa.eu/news/en/press-room/20260615IPR45412/

Kodak confirms data breach claimed by ShinyHunters extortion gang
BleepingComputer
https://www.bleepingcomputer.com/news/security/kodak-confirms-data-breach-claimed-by-shinyhunters-extortion-gang/

Microsoft Confirms RoguePlanet Defender Zero-Day, Says Patch is in Development
The Hacker News
https://thehackernews.com/2026/06/microsoft-confirms-rogueplanet-defender_02022423645.html

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 19 June 2026

58th EDPS-DPO meeting: Shaping data protection priorities
EDPS News Feed
https://www.edps.europa.eu/press-publications/press-news/news/2026/58th-edps-dpo-meeting-shaping-data-protection-priorities

CONSIL:ST_10599_2026_INIT: Proposal for a REGULATION OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL amending Regulatio...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CONSIL:ST_10599_2026_INIT

Nomination de Jean-Michel FIETIER au poste de directeur administratif et financier de la CNIL
CNIL France
https://www.cnil.fr/fr/nomination-jean-michel-fietier

Kodak Admits Data Breach After ShinyHunters Hack Claims
SecurityWeek RSS Feed
https://www.securityweek.com/kodak-admits-data-breach-after-shinyhunters-hack-claims/

INC Ransomware Emerges as Major RaaS Threat in 2026 with 830+ Victims Since 2023
The Hacker News
https://thehackernews.com/2026/06/inc-ransomware-claims-830-victims-since.html

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 22 June 2026

European Council conclusions on the next multiannual financial framework, migration, illicit drugs, enlargement and r...
Council of the EU Press Releases
https://www.consilium.europa.eu/en/press/press-releases/2026/06/19/european-council-conclusions-on-the-next-multiannual-financial-framework-migration-illicit-drugs-the-republic-of-moldova-western-balkans-and-other-items/

CONSIL:PE_10_2026_REV_1: REGULATION OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL ON THE SCREENING OF FOREIGN INVESTM...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CONSIL:PE_10_2026_REV_1

Study - Different legal methodologies of enforcement of key EU digital laws structures - 19-06-2026
Documents - Think Tank - European Parliament
https://www.europarl.europa.eu/thinktank/en/document/ECTI_STU(2026)772650

Briefing - Reforming the Better Regulation agenda: 'A simpler, clearer and better enforced EU rulebook' - 19-06-2026
Documents - Think Tank - European Parliament
https://www.europarl.europa.eu/thinktank/en/document/EPRS_BRI(2026)788148

Malware Has Gotten Smarter. Here's How Your Antivirus Has, Too
CNET News.com
https://www.cnet.com/tech/services-and-software/how-antivirus-software-becoming-more-advanced-detecting-threats/

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 23 June 2026

CONSIL:PE_30_2026_INIT: REGULATION OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL amending Regulations (EU) 2024/1689,...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CONSIL:PE_30_2026_INIT

EDPB gets a new look: discover the new website and brand identity
European Data Protection Board
https://www.edpb.europa.eu/news/edpb-gets-a-new-look-discover-the-new-website-and-brand-identity_en

At a Glance - Different legal methodologies of enforcement of key EU digital laws structures - 22-06-2026
Documents - Think Tank - European Parliament
https://www.europarl.europa.eu/thinktank/en/document/ECTI_ATA(2026)772651

More Cybersecurity Firms Disclose Impact From Klue Hack
SecurityWeek RSS Feed
https://www.securityweek.com/more-cybersecurity-firms-disclose-impact-from-klue-hack/

WhatsApp phishing attack uses fake business docs to hack PCs
BleepingComputer
https://www.bleepingcomputer.com/news/security/whatsapp-phishing-attack-uses-fake-business-docs-to-hack-pcs/

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 24 June 2026

Press release - Digital euro: MEPs want to ensure sovereignty, privacy and financial stability
Press releases - Committees - European Parliament
https://www.europarl.europa.eu/news/en/press-room/20260622IPR45912/

Briefing - The revision of the Eurojust Regulation: Implementation takeaways - 23-06-2026
Documents - Think Tank - European Parliament
https://www.europarl.europa.eu/thinktank/en/document/EPRS_BRI(2026)774744

LastPass confirms data breach in Klue supply chain attack
BleepingComputer
https://www.bleepingcomputer.com/news/security/lastpass-confirms-data-breach-in-klue-supply-chain-attack/

Canadian Electricity Provider London Hydro Discloses Data Breach
SecurityWeek RSS Feed
https://www.securityweek.com/canadian-electricity-provider-london-hydro-discloses-data-breach/

Healthtech firm Xolis suffers data breach impacting 1.4 million people
BleepingComputer
https://www.bleepingcomputer.com/news/security/healthtech-firm-xolis-suffers-data-breach-impacting-14-million-people/

#Privacy #AI #Cybersecurity #DailyDigest

━━━━━━━━━━━━━━━━━━━━

⚖️ EU Case-Law

🔹 CASE OF ACAR v. TÜRKİYE
Judgment · 23 June 2026 · European Court of Human Rights

🔹 AFFAIRE DOTANI c. GRÈCE
Judgment · 23 June 2026 · European Court of Human Rights

🔹 AFFAIRE SUJI c. GRÈCE
Judgment · 23 June 2026 · European Court of Human Rights
Daily Digest | 25 June 2026

Supporting GDPR consistency: EDPB launches dedicated form
EDPB News
https://www.edpb.europa.eu/news/supporting-gdpr-consistency-edpb-launches-dedicated-form_en

CONSIL:ST_10752_2026_INIT: Draft REGULATION OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL amending Regulations (EU) 2...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CONSIL:ST_10752_2026_INIT

Élections professionnelles dans la fonction publique et vote électronique : comment transmettre les rapports d’expert...
CNIL France
https://www.cnil.fr/fr/elections-professionnelles-fonction-publique-vote-electronique

Microsoft and Allies Smash Shared Infrastructure of Amadey and StealC Malware
SecurityWeek RSS Feed
https://www.securityweek.com/microsoft-and-allies-smash-shared-infrastructure-of-amadey-and-stealc-malware/

Mandiant reveals how Cisco SD-WAN zero-day attacks gained root access
BleepingComputer
https://www.bleepingcomputer.com/news/security/mandiant-reveals-how-cisco-sd-wan-zero-day-attacks-gained-root-access/

#Privacy #AI #Cybersecurity #DailyDigest

━━━━━━━━━━━━━━━━━━━━

⚖️ EU Case-Law

🔹 AFFAIRE T.N. c. GRÈCE
Judgment · 23 June 2026 · European Court of Human Rights
Daily Digest | 26 June 2026

CONSIL:ST_10752_2026_ADD_2: Draft REGULATION OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL amending Regulations (EU) ...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CONSIL:ST_10752_2026_ADD_2

COMUNICATO STAMPA - Il Garante privacy presenta la Relazione annuale. Il 2 luglio alla Camera dei Deputati. Il bilanc...
Garante Protezione dei dati personali - news
https://www.gpdp.it/garante/doc.jsp?ID=10264473

COM:2026:580:FIN: Proposal for a REGULATION OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL on the European Union Agenc...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=COM:2026:580:FIN

Russia’s war of aggression against Ukraine: Council extends economic sanctions for another year
Council of the EU Press Releases
https://www.consilium.europa.eu/en/press/press-releases/2026/06/25/russia-s-war-of-aggression-against-ukraine-council-extends-economic-sanctions-for-another-year/

EU-UN dialogue on Business and Human Rights
FRA News
https://fra.europa.eu/en/news/2026/eu-un-dialogue-business-and-human-rights

#Privacy #AI #Cybersecurity #DailyDigest

━━━━━━━━━━━━━━━━━━━━

⚖️ EU Case-Law

🔹 CASE OF SHEVCHUK v. UKRAINE
Judgment · 25 June 2026 · European Court of Human Rights
Daily Digest | 29 June 2026

CONSIL:ST_10094_2026_ADD_1: ANNEXES to the PROPOSAL FOR A REGULATION OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL on...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CONSIL:ST_10094_2026_ADD_1

CELEX:52026SC0504: COMMISSION STAFF WORKING DOCUMENT IMPACT ASSESSMENT REPORT Accompanying the document Proposal for ...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CELEX:52026SC0504

CONSIL:ST_11033_2026_INIT: Proposal for a Regulation of the European Parliament and of the Council establishing a bud...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CONSIL:ST_11033_2026_INIT

CONSIL:ST_11158_2026_ADD_2: COMMISSION STAFF WORKING DOCUMENT IMPACT ASSESSMENT REPORT Accompanying the document Prop...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CONSIL:ST_11158_2026_ADD_2

CONSIL:ST_11158_2026_INIT: Proposal for a REGULATION OF THE EUROPEAN PARLIAMENT AND OF THE COUNCIL on the European Un...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CONSIL:ST_11158_2026_INIT

#Privacy #AI #Cybersecurity #DailyDigest
🇪🇺 Digital Omnibus sull'IA: il via libera finale del Consiglio

Il 29 giugno 2026 il Consiglio dell'Unione europea ha adottato formalmente il Digital Omnibus sull'IA, il testo già approvato dal Parlamento il 16 giugno. Si chiude la procedura legislativa ordinaria sul fascicolo 2025/0359(COD).

Il punto da tenere fermo: il Consiglio non cambia il contenuto già concordato, ma rende irreversibile il passaggio verso un nuovo calendario dell'AI Act. Il discrimine giuridico resta la pubblicazione in GUUE: il regolamento modificativo entra in vigore il terzo giorno successivo alla pubblicazione, e solo da quel momento il nuovo calendario sostituisce quello vigente.

Le scadenze definitive fissate dal testo adottato:
- 2 dicembre 2026 — nuovi divieti art. 5 (contenuti intimi non consensuali e CSAM) e marcatura dei contenuti generati dall'IA (art. 50, par. 2)
- 2 agosto 2027 — sandbox regolamentari nazionali
- 2 dicembre 2027 — sistemi ad alto rischio stand-alone (Allegato III)
- 2 agosto 2028 — sistemi ad alto rischio in prodotti settoriali (Allegato I)

📄 Analisi completa: https://www.nicfab.eu/it/posts/digital-omnibus-ai-council-adoption/

🔗 Fonte: https://www.consilium.europa.eu/en/press/press-releases/2026/06/29/artificial-intelligence-council-gives-final-green-light-to-simplify-and-streamline-rules/
🇪🇺 Digital Omnibus on AI: the Council's final green light

On 29 June 2026 the Council of the European Union formally adopted the Digital Omnibus on AI — the text already approved by Parliament on 16 June. This closes the ordinary legislative procedure on file 2025/0359(COD).

The point to keep firm: the Council does not change the agreed content, but it makes the move toward a new AI Act calendar irreversible. The legal dividing line remains publication in the Official Journal: the amending regulation enters into force on the third day after publication, and only from that moment does the new calendar replace the current one.

The definitive deadlines set by the adopted text:
- 2 December 2026 — new Article 5 prohibitions (non-consensual intimate material and CSAM) and marking of AI-generated content (Article 50(2))
- 2 August 2027 — national regulatory sandboxes
- 2 December 2027 — stand-alone high-risk systems (Annex III)
- 2 August 2028 — high-risk systems embedded in sectoral products (Annex I)

📄 Full analysis: https://www.nicfab.eu/en/posts/digital-omnibus-ai-council-adoption/

🔗 Source: https://www.consilium.europa.eu/en/press/press-releases/2026/06/29/artificial-intelligence-council-gives-final-green-light-to-simplify-and-streamline-rules/