WilmerHale’s Guide to the European Union’s AI Act
WilmerHale's guide on EU AI Act.
https://www.wilmerhale.com/en/insights/publications/20250414-wilmerhales-guide-to-the-eus-ai-act
Ransomware attacks hit a record high in early 2025, with reported incidents up 81% from the previous year, but payouts are decreasing, down 35% annually. This suggests victims are resisting payments or negotiating lower sums. Criminal organizations face challenges, including reduced affiliate loyalty and increased law enforcement efforts. Despite these issues, ransomware remains a significant threat, urging businesses to enhance protective measures.
https://www.tripwire.com/state-of-security/ransomware-reaches-record-high-payouts-are-dwindling
CISOs are increasingly adopting AI, automation, and Zero Trust to combat complex cyber threats and outdated security models. AI enhances threat detection by analyzing data quickly, while automation addresses alert overload, allowing faster incident response. Zero Trust reinforces security by continuously validating access based on user behavior. Together, these technologies create a robust, adaptive defense system, though challenges include outdated infrastructure, employee resistance, cost, and integration complexity. Embracing these technologies is essential for effective cybersecurity in a rapidly evolving threat landscape.
https://cybersecuritynews.com/why-cisos-are-betting-big-on-ai-automation-zero-trust/
Study by e2e-assure reveals gender gaps in cybersecurity perceptions. Women view cybersecurity as a collective responsibility (50%) more than men (30%). 81% of organizations fear tech-related cyber threats; 90% of cyber risk owners faced attacks. Engagement in training is low, with 68% of women and 69% of men reporting partial engagement. Gaps exist in awareness of AI policies (27% men, 21% women). After breaches, 30% of women and 35% of men received training/disciplinary actions. Recommendations include tailored training and fostering a security awareness culture. Cybersecurity is framed as a business-wide responsibility.
https://securitybrief.co.uk/story/study-reveals-gender-gaps-in-cyber-security-perceptions
Businesses must prepare for the UK's Cyber Security and Resilience Bill, which expands cyber security regulations similar to the EU's NIS2 Directive, impacting many IT service providers and potentially smaller businesses. Key changes include tighter incident reporting deadlines, enhanced powers for the Information Commissioner's Office (ICO), broadened definitions of critical services, and new financial obligations. To prepare, businesses should monitor developments, revise incident reporting processes, train personnel, rehearse responses, review supplier contracts, and ensure board awareness of new liabilities. Compliance is vital for protecting businesses and their reputations against increasing cyber threats.
A study reveals only 31% of Europe's largest fintech platforms comply with essential web accessibility standards, risking exclusion of 100 million Europeans with disabilities ahead of the European Accessibility Act in June 2025. Many fintechs partially meet requirements, illustrating a substantial tech accessibility gap despite the potential revenue benefits of increased accessibility.
Despite existing regulations, web accessibility remains poor globally and in Italy, with significant compliance failures among websites. Developers recognize the importance of accessibility but often lack the skills needed to implement it. Training is essential, as demonstrated by initiatives like the Accattivante Accessibile competition, enhancing student interest and website quality. Accessibility should be viewed as an opportunity to improve search engine rankings and user engagement, rather than just a regulatory obligation.
Breach and Attack Simulation Market Overview
https://www.marketresearchfuture.com/reports/breach-attack-simulation-market-8714
AI could enhance resilience in banks by improving compliance, minimizing downtime, and optimizing operations through predictive analytics and automation. Despite significant investment in AI, the financial sector sees low ROI, revealing a need for strategic alignment and refined implementation. Emphasizing a culture of continuous improvement and seamless integration while balancing automation with human oversight remains crucial for leveraging AI’s full potential in creating robust financial institutions.
CISOs face rising stress despite increased salaries, with burnout affecting their performance. Recent surveys show many work long hours and fear cyberattacks, leading to an overwhelming focus on immediate issues over strategic actions. The complexity of cybersecurity, coupled with heightened accountability for breaches, exacerbates the situation. Solutions include automation of non-security tasks, clearer role definitions, and better mental health support to improve morale and retention, preventing costly security lapses.