ENISA Publishes 2026 Report on the State of SBOM Adoption Across Europe
ENISA has published its SBOM Adoption State of Play – 2026 report, providing insights into how organisations across Europe are implementing Software Bills of Materials (SBOMs) in response to the Cyber Resilience Act (CRA) and identifying key challenges affecting adoption.
MedTech Europe Responds to Consultation on the Revision of the EU Cybersecurity Act
MedTech Europe responds to the EU Cybersecurity Act consultation, highlighting key implications for medical device and IVD manufacturers, including certification, vulnerability management, and supply chain security.
ENISA Publishes National Capabilities Assessment Framework (NCAF) 2.0 – 2026 Edition
ENISA releases NCAF 2.0, a new framework to assess EU cybersecurity capabilities, aligned with NIS2, CRA and DORA, with focus on risk, supply chain and incident response.
EU Defines Conditions for Delaying Cybersecurity Notifications under the Cyber Resilience Act
EU Delegated Regulation 2026/881 defines when cybersecurity vulnerability and incident notifications may be delayed under the Cyber Resilience Act.