nicfab
127 subscribers
15 photos
16 files
2.43K links
Canale di aggiornamento su Privacy, Data Protection, IA e Cybersecurity
Channel for updates on Privacy, Data Protection, AI, and Cybersecurity
Download Telegram
Daily Digest | 19 February 2026

Blog post: Advancing into Practice: Third Meeting of the AI Act Correspondents Network
EDPS News Feed
https://www.edps.europa.eu/press-publications/press-news/news/2026/blog-post-advancing-practice-third-meeting-ai-act-correspondents-network

COMUNICATO STAMPA - Sanità: Garante privacy, sì all’uso dei recapiti telefonici per gli screening. Adottate apposite ...
Garante Protezione dei dati personali - news
https://www.gpdp.it/garante/doc.jsp?ID=10221829

Coordinated Enforcement Action, implementation of the right to erasure by controllers
EDPB publications
https://www.edpb.europa.eu/our-work-tools/our-documents/other/coordinated-enforcement-action-implementation-right-erasure_en

Data breach at fintech giant Figure affects close to a million customers
TechCrunch
https://techcrunch.com/2026/02/18/data-breach-at-fintech-giant-figure-affects-close-to-a-million-customers/

Critical infra Honeywell CCTVs vulnerable to auth bypass flaw
BleepingComputer
https://www.bleepingcomputer.com/news/security/critical-infra-honeywell-cctvs-vulnerable-to-auth-bypass-flaw/

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 20 February 2026

Recap - Data takes flight: Navigating privacy at the airport
EDPS News Feed
https://www.edps.europa.eu/press-publications/press-news/news/2026/recap-data-takes-flight-navigating-privacy-airport

Droit à l’effacement : bilan des contrôles de la CNIL dans le cadre de l’action coordonnée européenne
CNIL France
https://www.cnil.fr/fr/droit-effacement-bilan-cnil-action-europeenne

PromptSpy is the first Android malware to use generative AI at runtime
BleepingComputer
https://www.bleepingcomputer.com/news/security/promptspy-is-the-first-android-malware-to-use-generative-ai-at-runtime/

Nearly 1 Million User Records Compromised in Figure Data Breach
SecurityWeek RSS Feed
https://www.securityweek.com/nearly-1-million-user-records-compromised-in-figure-data-breach/

Best-in-Class 'Starkiller' Phishing Kit Bypasses MFA
Dark Reading
https://www.darkreading.com/threat-intelligence/starkiller-phishing-kit-mfa

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 23 February 2026

Newsletter 20/02/26 - Il Garante privacy sanziona eCampus, stop al riconoscimento facciale - Garante privacy a comun...
Garante Protezione dei dati personali - news
https://www.gpdp.it/garante/doc.jsp?ID=10222071

European Commission statement on the recent judgment of the Supreme Court of the United States
European Commission Press Corner
https://ec.europa.eu/commission/presscorner/detail/en/statement_26_450

Attacker gets into France's database listing all bank accounts, makes off with 1.2 million records
The Register
https://go.theregister.com/feed/www.theregister.com/2026/02/22/french_bank_hack/

UK council faces data breach claim after mishandling trans complaints
The Register
https://go.theregister.com/feed/www.theregister.com/2026/02/22/cornwall_council_complaints_breach/

America desperately needs new privacy laws
The Verge - All Posts
https://www.theverge.com/column/882516/privacy-laws-america

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 24 February 2026

Joint Statement on AI-Generated Imagery and the Protection of Privacy
EDPS News Feed
https://www.edps.europa.eu/press-publications/press-news/news/2026/joint-statement-ai-generated-imagery-and-protection-privacy

OJ:C_202600599: P10_TA(2025)0102 – Screening of foreign investments in the Union – Amendments adopted by the European...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=OJ:C_202600599

OJ:C_202600573: P10_TA(2025)0075 – Protection of the European Union’s financial interests – combating fraud – annual ...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=OJ:C_202600573

Ad tech firm Optimizely confirms data breach after vishing attack
BleepingComputer
https://www.bleepingcomputer.com/news/security/ad-tech-firm-optimizely-confirms-data-breach-after-vishing-attack/

PayPal Data Breach Led to Fraudulent Transactions
SecurityWeek RSS Feed
https://www.securityweek.com/paypal-data-breach-led-to-fraudulent-transactions/

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 25 February 2026

COMUNICATO STAMPA - Garante privacy ad Amazon: stop alla schedatura dei lavoratori. Raccolte informazioni su patologi...
Garante Protezione dei dati personali - news
https://www.gpdp.it/garante/doc.jsp?ID=10224050

UK fines Reddit for not checking user ages aggressively enough
Ars Technica
https://arstechnica.com/tech-policy/2026/02/uk-fines-reddit-for-not-checking-user-ages-aggressively-enough/

Phishing campaign targets freight and logistics orgs in the US, Europe
BleepingComputer
https://www.bleepingcomputer.com/news/security/phishing-campaign-targets-freight-and-logistics-orgs-in-the-us-europe/

CarGurus data breach affects 12.5 million accounts
TechCrunch
https://techcrunch.com/2026/02/24/cargurus-data-breach-affects-12-5-million-accounts/

Lazarus Group Picks a New Poison: Medusa Ransomware
Dark Reading
https://www.darkreading.com/cyberattacks-data-breaches/lazarus-group-new-position-medusa-ransomware

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 26 February 2026

AI-generated imagery and protection of privacy: EDPB supports joint Global Privacy Assembly’s statement
EDPB News
https://www.edpb.europa.eu/news/news/2026/ai-generated-imagery-and-protection-privacy-edpb-supports-joint-global-privacy_en

Rejeu de session : la CNIL lance une consultation publique sur son projet de recommandation
CNIL France
https://www.cnil.fr/fr/rejeu-de-session-la-cnil-lance-une-consultation-publique-sur-son-projet-de-recommandation

Commission invites comments on draft new State aid General Block Exemption Regulation
European Commission Press Corner
https://ec.europa.eu/commission/presscorner/detail/en/ip_26_453

RAMP Forum Seizure Fractures Ransomware Ecosystem
Dark Reading
https://www.darkreading.com/threat-intelligence/ramp-forum-seizure-fractures-ransomware-ecosystem

Claude’s New AI Vulnerability Scanner Sends Cybersecurity Shares Plunging
SecurityWeek RSS Feed
https://www.securityweek.com/claudes-new-ai-vulnerability-scanner-sends-cybersecurity-shares-plunging/

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 27 February 2026

EU sanctions against terrorism: Council strengthens the scope of the EU Terrorist List and maintains all existing lis...
Council of the EU Press Releases
https://www.consilium.europa.eu/en/press/press-releases/2026/02/26/eu-sanctions-against-terrorism-council-strengthens-the-scope-of-the-eu-terrorist-list-and-maintains-all-existing-listings/

European DYI chain ManoMano data breach impacts 38 million customers
BleepingComputer
https://www.bleepingcomputer.com/news/security/european-dyi-chain-manomano-data-breach-impacts-38-million-customers/

Press release - Time for EU legislation to define rape based on absence of consent, say MEPs
European Parliament Press Releases
https://www.europarl.europa.eu/news/en/press-room/20260220IPR35907/

CELEX:52025AP0102: P10_TA(2025)0102 – Screening of foreign investments in the Union – Amendments adopted by the Europ...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CELEX:52025AP0102

CELEX:52025IP0075: P10_TA(2025)0075 – Protection of the European Union’s financial interests – combating fraud – annu...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CELEX:52025IP0075

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 2 March 2026

Mercosur gamble shows von der Leyen thinks she can go over France’s head
POLITICO
https://www.politico.eu/article/eu-mercosur-ursula-von-der-leyen-france/?utm_source=RSS_Feed&utm_medium=RSS&utm_campaign=RSS_Syndication

France to bolster military presence in the Middle East
POLITICO
https://www.politico.eu/article/france-military-presence-middle-east-emmanuel-macron-iran/?utm_source=RSS_Feed&utm_medium=RSS&utm_campaign=RSS_Syndication

CONSIL:ST_6868_2026_INIT: Proposal for a COUNCIL RECOMMENDATION on a European Union framework for science diplomacy
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CONSIL:ST_6868_2026_INIT

COM:2026:97:FIN: Proposal for a COUNCIL RECOMMENDATION on a European Union framework for science diplomacy
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=COM:2026:97:FIN

CELEX:52025AE2823: Opinion of the European Economic and Social Committee – Proposal for a Regulation of the European ...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CELEX:52025AE2823

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 3 March 2026

CELEX:52026DC0097: Proposal for a COUNCIL RECOMMENDATION on a European Union framework for science diplomacy
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CELEX:52026DC0097

The President of the European Commission and the President of the Swiss Confederation sign a broad package of EU-Swit...
European Commission Press Corner
https://ec.europa.eu/commission/presscorner/detail/en/ip_26_505

At a Glance - Copyright and generative artificial intelligence – Opportunities and challenges - 02-03-2026
Documents - Think Tank - European Parliament
https://www.europarl.europa.eu/thinktank/en/document/EPRS_ATA(2026)782674

Madison Square Garden Data Breach Confirmed Months After Hacker Attack
SecurityWeek RSS Feed
https://www.securityweek.com/madison-square-garden-data-breach-confirmed-months-after-hacker-attack/

New Chrome Vulnerability Let Malicious Extensions Escalate Privileges via Gemini Panel
The Hacker News
https://thehackernews.com/2026/03/new-chrome-vulnerability-let-malicious.html

#Privacy #AI #Cybersecurity #DailyDigest
📬 NicFab Newsletter #10 | 3 marzo 2026

Privacy, Data Protection, AI e Cybersecurity — la rassegna settimanale.

In questo numero:

🔴 Garante Privacy vieta ad Amazon Italia la schedatura illecita di 1.800 lavoratori con dati sensibili conservati fino a 10 anni

📊 EDPB aderisce alla dichiarazione globale di 61 autorità sui rischi dell'AI generativa per immagini non consensuali

🏛️ Le riforme GDPR della Commissione UE incontrano forte resistenza dai governi nazionali sulla definizione di "dato personale"

🟢 CNIL lancia progetto PANAME per testare strumenti di audit RGPD specifici per modelli di intelligenza artificiale

📈 Parlamento UE pubblica analisi Digital Omnibus sulle interconnessioni tra normative digitali europee

⚠️ CISA avvisa del malware RESURGE dormiente sui dispositivi Ivanti e zero-day Cisco sfruttato dal 2023

🔍 Data breach Canadian Tire colpisce 38 milioni di account, ManoMano coinvolge 38 milioni di utenti

📖 AI Act in Pillole: Articolo 14 sulla sorveglianza umana e il principio dell'essere umano al centro

👉 Leggi il numero completo: https://www.nicfab.eu/it/newsletter/2026-03-03-issue-10/

📩 Iscriviti alla newsletter: https://www.nicfab.eu/it/pages/newsletter/#iscriviti-ora

#Privacy #GDPR #AIAct #Cybersecurity
📬 NicFab Newsletter #10 | March 3, 2026

Privacy, Data Protection, AI & Cybersecurity — weekly review.

In this issue:

🔴 Italian DPA orders Amazon Italia to cease unlawful processing of 1,800 workers' sensitive data including medical conditions and union activities

🏛️ EDPB endorses Global Privacy Assembly statement addressing AI-generated imagery risks with 61 authorities calling for robust safeguards

📊 European Parliament publishes detailed Digital Omnibus study analyzing interconnections in EU digital legislation and regulatory overlaps

⚠️ CISA warns of RESURGE malware remaining dormant on Ivanti devices posing ongoing cybersecurity threats

🟢 CNIL launches PANAME project inviting professionals to test innovative GDPR audit tools specifically designed for AI models

🔍 Canadian Tire data breach affects 38 million accounts highlighting vulnerabilities in retail cybersecurity infrastructure

📖 AI Act Explained Part 10: Article 14 on Human Oversight requirements and the fundamental principle of human-centered AI systems

👉 Read the full issue: https://www.nicfab.eu/en/newsletter/2026-03-03-issue-10/

📩 Subscribe to the newsletter: https://www.nicfab.eu/en/pages/newsletter/#subscribe-now

#Privacy #GDPR #AIAct #Cybersecurity
Daily Digest | 4 March 2026

Tables Informatique et Libertés : la CNIL publie la mise à jour 2026
CNIL France
https://www.cnil.fr/fr/tables-informatique-et-libertes-2026

Microsoft: Hackers abuse OAuth error flows to spread malware
BleepingComputer
https://www.bleepingcomputer.com/news/security/microsoft-hackers-abuse-oauth-error-flows-to-spread-malware/

LexisNexis confirms data breach as hackers leak stolen files
BleepingComputer
https://www.bleepingcomputer.com/news/security/lexisnexis-confirms-data-breach-as-hackers-leak-stolen-files/

Iranian Strikes on Amazon Data Centers Highlight Industry’s Vulnerability to Physical Disasters
SecurityWeek RSS Feed
https://www.securityweek.com/iranian-strikes-on-amazon-data-centers-highlight-industrys-vulnerability-to-physical-disasters/

Vulnerability in MS-Agent AI Framework Can Allow Full System Compromise
SecurityWeek RSS Feed
https://www.securityweek.com/vulnerability-in-ms-agent-ai-framework-can-allow-full-system-compromise/

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 5 March 2026

L'AGENDA DEL GARANTE - Gli eventi a cui partecipano i Componenti del Collegio - Appuntamenti fino al 5 marzo
Garante Protezione dei dati personali - news
https://www.gpdp.it/garante/doc.jsp?ID=9720532

US and EU police shut down LeakBase, a site accused of sharing stolen passwords and hacking tools
TechCrunch
https://techcrunch.com/2026/03/04/u-s-and-eu-police-shut-down-leakbase-a-site-accused-of-sharing-stolen-passwords-and-hacking-tools/

Tycoon 2FA Phishing Platform Dismantled in Global Takedown
SecurityWeek RSS Feed
https://www.securityweek.com/tycoon-2fa-phishing-platform-dismantled-in-global-takedown/

New LexisNexis Data Breach Confirmed After Hackers Leak Files
SecurityWeek RSS Feed
https://www.securityweek.com/new-lexisnexis-data-breach-confirmed-after-hackers-leak-files/

Mississippi medical center reopens clinics hit by ransomware attack
BleepingComputer
https://www.bleepingcomputer.com/news/security/mississippi-medical-center-reopens-clinics-hit-by-ransomware-attack/

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 6 March 2026

SWD:2026:71:FIN: COMMISSION STAFF WORKING DOCUMENT IMPACT ASSESSMENT REPORT Accompanying the document Proposal for a ...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=SWD:2026:71:FIN

IA et santé : la HAS et la CNIL lancent une consultation publique sur un projet de guide
CNIL France
https://www.cnil.fr/fr/ia-et-sante-la-has-et-la-cnil-lancent-une-consultation-publique-sur-un-projet-de-guide

CELEX:52026SC0014: COMMISSION STAFF WORKING DOCUMENT EXECUTIVE SUMMARY OF THE IMPACT ASSESSMENT REPORT Accompanying t...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=CELEX:52026SC0014

Chinese state hackers target telcos with new malware toolkit
BleepingComputer
https://www.bleepingcomputer.com/news/security/chinese-state-hackers-target-telcos-with-new-malware-toolkit/

Tycoon 2FA Goes Boom as Europol, Vendors Bust Phishing Platform
Dark Reading
https://www.darkreading.com/threat-intelligence/tycoon-2fa-europol-vendors-bust-phishing-platform

#Privacy #AI #Cybersecurity #DailyDigest
🔵 nicfab:
👋 Welcome to NicFab News.

This room provides automated updates on:

● Privacy and Data Protection
● GDPR and EU regulatory developments
● AI governance and the EU AI Act
● Cybersecurity and digital regulation
Content sources:
– NicFab Telegram channel (@nicfabnews)
– Weekly NicFab newsletter
– Daily regulatory digest

Curated by Nicola Fabiano — Lawyer, DPO, Independent Researcher.
🌐 https://www.nicfab.eu
Daily Digest | 9 March 2026

COMUNICATO STAMPA - Famiglia nel bosco: il Garante monitora la vicenda e richiama alla tutela dei minori
Garante Protezione dei dati personali - news
https://www.gpdp.it/garante/doc.jsp?ID=10227618

Données personnelles – consultation publique CNIL/HAS
CNIL France
https://www.cnil.fr/fr/donnees-personnelles-consultation-publique-has-cnil

Press release - Press conference: protection of copyright in the age of artificial intelligence
Press releases - Plenary sessions - European Parliament
https://www.europarl.europa.eu/news/en/press-room/20260303IPR37004/

EU court adviser says banks must immediately refund phishing victims
BleepingComputer
https://www.bleepingcomputer.com/news/legal/eu-court-adviser-says-banks-must-immediately-refund-phishing-victims/

Information-Theoretic Privacy Control for Sequential Multi-Agent LLM Systems
cs.LG updates on arXiv.org
https://arxiv.org/abs/2603.05520

#Privacy #AI #Cybersecurity #DailyDigest
Daily Digest | 9 March 2026

COMUNICATO STAMPA - Famiglia nel bosco: il Garante monitora la vicenda e richiama alla tutela dei minori
Garante Protezione dei dati personali - news
https://www.gpdp.it/garante/doc.jsp?ID=10227618

Données personnelles – consultation publique CNIL/HAS
CNIL France
https://www.cnil.fr/fr/donnees-personnelles-consultation-publique-has-cnil

Press release - Press conference: protection of copyright in the age of artificial intelligence
Press releases - Plenary sessions - European Parliament
https://www.europarl.europa.eu/news/en/press-room/20260303IPR37004/

EU court adviser says banks must immediately refund phishing victims
BleepingComputer
https://www.bleepingcomputer.com/news/legal/eu-court-adviser-says-banks-must-immediately-refund-phishing-victims/

Information-Theoretic Privacy Control for Sequential Multi-Agent LLM Systems
cs.LG updates on arXiv.org
https://arxiv.org/abs/2603.05520

#Privacy #AI #Cybersecurity #DailyDigest
📬 NicFab Newsletter #11 | 10 marzo 2026

Privacy, Data Protection, AI e Cybersecurity — la rassegna settimanale.

In questo numero:

🔴 CNIL chiude procedimento contro KASPR: società inizialmente multata per 240.000 euro per raccolta illecita dati LinkedIn

🏛️ EDPB pubblica agenda stakeholder event del 27 marzo su pubblicità politica mirata e trasparenza nel targeting

📊 Studio EDPB sui data broker: nuova metodologia per identificarli e tipologia completa modelli di business ad alto rischio

🟢 EDPS lancia podcast sui Digital Identity Wallets: dal 2026 ogni Stato UE offrirà portafoglio identità digitale ufficiale

🔴 Garante Privacy italiano monitora caso "famiglia nel bosco" richiamando media alla tutela minori

⚠️ CISA conferma sfruttamento attivo vulnerabilità Cisco Catalyst SD-WAN e falle CVSS 9.8 Hikvision-Rockwell

🔍 ICO Regno Unito indaga Ray-Ban smart glasses Meta mentre emergono preoccupazioni su contenuti intimi osservati da dipendenti

📖 AI Act in Pillole Parte 11: Articolo 15 su accuratezza, robustezza e cybersicurezza dei sistemi ad alto rischio

👉 Leggi il numero completo: https://www.nicfab.eu/it/newsletter/2026-03-10-issue-11/

📩 Iscriviti alla newsletter: https://www.nicfab.eu/it/pages/newsletter/#iscriviti-ora

#Privacy #GDPR #AIAct #Cybersecurity
📬 NicFab Newsletter #11 | March 10, 2026

Privacy, Data Protection, AI & Cybersecurity — weekly review.

In this issue:

🏛️ Italian DPA monitors "Forest Family" case, emphasizing heightened protection standards for minors exposed to media attention

📊 EDPB publishes comprehensive data brokers market study with methodology for identifying entities and analyzing business models

🟢 CNIL closes injunction against KASPR following compliance efforts after €240,000 fine for LinkedIn data scraping violations

⚠️ Cisco Catalyst SD-WAN vulnerabilities now widely exploited with CVSS 9.8 flaws added to CISA KEV catalog

🔍 UK ICO investigates Meta's Smart Glasses after privacy breach reports and data harvesting concerns

📈 EU Member States prepare to roll out European Digital Identity Wallets this year with new privacy implications

🔴 Cognizant TriZetto breach exposes health data of 3.4 million patients in latest healthcare cybersecurity incident

📖 AI Act Explained Part 11: Article 15 requirements for accuracy, robustness and cybersecurity integration from design phase

👉 Read the full issue: https://www.nicfab.eu/en/newsletter/2026-03-10-issue-11/

📩 Subscribe to the newsletter: https://www.nicfab.eu/en/pages/newsletter/#subscribe-now

#Privacy #GDPR #AIAct #Cybersecurity
Daily Digest | 10 March 2026

OJ:L_202600510: Commission Recommendation (EU) 2026/510 of 6 March 2026 on revising the European assessment framework...
EUR-Lex | AI Act | EN
https://eur-lex.europa.eu/legal-content/AUTO/?uri=OJ:L_202600510

Le 8 mars à la CNIL : paroles et regards autour des droits des femmes et de l’égalité professionnelle
CNIL France
https://www.cnil.fr/fr/journee-internationale-droits-des-femmes-2026

Microsoft Teams phishing targets employees with A0Backdoor malware
BleepingComputer
https://www.bleepingcomputer.com/news/security/microsoft-teams-phishing-targets-employees-with-backdoors/

Ericsson US discloses data breach after service provider hack
BleepingComputer
https://www.bleepingcomputer.com/news/security/ericsson-us-discloses-data-breach-after-service-provider-hack/

Invisible Safety Threat: Malicious Finetuning for LLM via Steganography
cs.LG updates on arXiv.org
https://arxiv.org/abs/2603.08104

#Privacy #AI #Cybersecurity #DailyDigest