Inside Europe's New Cyber Solidarity Act: Who Gets Protected and Who Pays
A critical infrastructure shield for EU member states — but the cost-sharing model is already drawing fire from smaller economies.
Threat intelligence, data breaches, ransomware campaigns, nation-state attacks and the EU's evolving cyber law framework. Europe's sharpest security coverage — tracked in real time.
Remote code execution vulnerability in SSL-VPN component. EU financial sector specifically targeted. Patch available — deploy immediately.
Polish CERT confirms spear-phishing and network scanning activity linked to APT28 (Fancy Bear) targeting energy and transport operators.
Ransomware group claims to have exfiltrated customer data, shipping manifests and employee PII. Victim has 72 hours before alleged publication.
Sophisticated phishing targeting NHS Scotland primary care login portals. 340+ GP practices warned. Two-factor authentication bypass technique confirmed.
Iran-linked APT using fake recruiter profiles on LinkedIn to deliver malware-laced documents to employees at Tier 2 German defence suppliers.
Annual ENISA report shows sharp rise in ransomware affecting public services. Healthcare and municipal governments most impacted. SME defences rated "critically insufficient."
The Cyber Solidarity Act creates a pan-European shield for critical infrastructure — but the cost-sharing model is already drawing fire from smaller economies who say they're subsidising richer states' defences.
.png)
.png)
.png)
.png)
A critical infrastructure shield for EU member states — but the cost-sharing model is already drawing fire from smaller economies.
.png)
Step-by-step guide to applying the emergency patch and hardening configurations while a full fix is deployed.
.png)
The group's latest variant evades EDR solutions that stopped LockBit 3.0 — and its affiliate programme is recruiting aggressively across dark web forums.
.png)
Forensic analysis of the TTPs used in the confirmed Polish energy sector reconnaissance — and why other EU operators should check their logs now.
.png)
Ransomware up 38%, supply chain attacks up 52%, mean time to detect still averaging 197 days — the full breakdown of this year's threat picture.
.png)
Fake recruiter profiles, weaponised PDFs and a C2 infrastructure that's been active since January — a full technical breakdown of the campaign.
| Organisation | Records | Attack Vector | Disclosed | Status |
|---|---|---|---|---|
Dutch Logistics Operator (unnamed) Transport & Logistics |
2.4M | Ransomware (LockBit 4.0) | Jun 7, 2026 | Ongoing |
Stadtwerke München (SWM) Energy / Municipal |
890K | Supply Chain | May 28, 2026 | Contained |
Caisse Nationale d'Assurance Healthcare / Insurance |
4.1M | Credential Stuffing | May 19, 2026 | Contained |
PKN Orlen (partial) Energy |
Unknown | APT28 Recon | Jun 8, 2026 | Ongoing |
NHS Scotland GP Network Healthcare |
340+ practices | Phishing | Jun 6, 2026 | Investigating |
.png)
.png)
.png)
.png)
.png)