Print to PDF: Ctrl+P → Destination: Save as PDF → Margins: None → Background graphics: On
The alarm works. The question is who it rings.
Does your company sell or make anything with software inside it? From tomorrow, Friday 11 September, a European law gives you 24 hours to report it when that…
European Commission: Cyber Resilience Act reporting obligations → https://digital-strategy.ec.europa.eu/en/policies/cra-reporting
Twenty-four hours sounds like plenty. Let me tell you about my week.
A partner tried to start an assessment. It would not run. Their link to Microsoft had been dead for three days. We had a monitor. It counted failed syncs. But the link never failed, it just stopped answering.
The extinguisher was last checked by the man who sold it.
On 5 September N-able rushed out an emergency fix for N-central, the software many IT companies use to run every computer they look after.
CISA: four known exploited vulnerabilities added, 8 September 2026 → https://www.cisa.gov/news-events/alerts/2026/09/08/cisa-adds-four-known-exploited-vulnerabilities-catalog
A good inspector writes down the door that does not close.
Your readiness score used to give you a number. Now it gives you a list of names.
See what an assessor asks for → https://easycyberprotection.com/learn/cyberfundamentals/audit-preparation/