The EU’s New Data-Centre Labels Won’t Tell You the Whole Energy Story

The EU plans public energy and water grades for individual data centres from 2027. The labels should aid comparisons, but will not show each site’s exact annual electricity total.

The EU plans public energy and water grades for individual data centres from 2027. The labels should aid comparisons, but will not show each site’s exact annual electricity total.

Australia's 2025-26 critical-infrastructure risk report is due on 28 September. The regulator says its next compliance cycle will look harder at serious or persistent gaps behind the board's statement.

Election software can need an urgent security fix while certification rules make vendors and operators afraid to apply it.

ENISA's CRA Single Reporting Platform is now live, and the first 24-hour reporting clock is running. Manufacturers need more than a portal login to meet it.

A US national-emergency order treats power-grid security as a hardware, firmware, maintenance and remote-access supply-chain problem.

Alabama has subpoenaed OpenAI over the Hugging Face agent intrusion, testing whether weak AI evaluation controls can also violate consumer-protection law.

A €824.99 million Dutch GDPR fine against Uber turns meaningful human review from an AI-governance slogan into an operational control.

Alabama has subpoenaed OpenAI over the Hugging Face agent incident, testing whether an AI containment failure can become a consumer-protection case.

The EU e-Evidence Regulation makes cross-border data orders an eight-hour operational challenge for service providers, not merely a legal process.

China’s new rules for network-data security risk assessments took effect on 20 August 2026. For organisations that process data in China, the important change is not simply another assessment obligation. The result may now have to leave the security team,…