Bordeaux : La solidarité avec les exilé-e-x c’est tous les jours - [mcInform@ctions]

Le 18 décembre 2025 a eu « lieu » la journée internationale des exilé-e-x. Nous pensons que la solidarité envers les...

🚨 The EU just made SBOMs mandatory for all software products!

Our guide breaks down the Cyber Resilience Act requirements and provides a roadmap to compliance before the 2027 deadline.

Don't wait—start building your SBOM strategy today.

🔗 https://anchore.com/sbom/eu-cra/

#SBOM #CRA

Making EU #cybersecurity regulation work for a dynamic digital market 🛡️

We call on @EU_Commission to go beyond streamlining reporting processes, and modernise the EU cybersecurity system as a whole.

➡️ Position paper: https://ccianet.org/library/making-eu-cybersecurity-regulation-work-for-a-dynamic-european-digital-market/

#CRA #DSA #DORA #GDPR #NIS2

Was ist eigentlich Cyber-Resilienz? Eine Begriffsklärung

Heute in genau zwei Jahren tritt der Cyber Resilience Act in Kraft. Doch was Cyber-Resilienz bedeutet und wie man sie erreicht, ist vielen immer noch unklar.

Security
@PhoenixSerenity
It is like #CRA has disconnected the phones for most employees. I am dealing with some shithead that wrote to me, first initial, last name only, no phone number. I cannot contact them except in writing and they haven’t acknowledged my written submissions. Sent them a fax; no reply. Sent a fax to their manager on Dec 09; no reply from that slackass twat either.

#CRA is basically refusing to do help on phone & pushing citizens to sign up for all digital services - requiring taking photos of your ID & sending it to them. Fucking hell. You opt out - they won't help you!

#CDNpoli

On a very special Christmas episode of #OpenSourceSecurity I asked Daniel Thompson-Yvetot how the #CRA will impact Santa Claus

I meant the episode to be silly, just in time for Christmas, but I think I learned more from Daniel in those 50 minutes than I have in the last 3 years reading about CRA

It's an amazing episode filled with things to learn, and even some silly ideas :)

Also, Daniel has a new book you can enter a drawing for, instructions are at the end of the show

https://opensourcesecurity.io/2025/2025-12-daniel-cra-santa/

Daniel Thompson answers: Does the CRA apply to Santa?

Josh welcomes back Daniel Thompson explore the rather silly question of whether Santa Claus needs to be compliant with the Cyber Resilience Act (CRA). This episode was intended to be silly, but it ended up being an incredibly interesting conversation. Daniel explained a great deal about how the CRA works and how it could apply to Santa Claus. The TL;DR is even if he’s giving out free stuff, the CRA almost certainly applies. Daniel also fills us in on his book (you can email Josh to enter into a drawing for a copy), and his work on web browsers for the CRA. It’s an incredibly informative discussion.

Open Source Security

Proposed rules aim to stop CRA from paying out more bogus refunds

https://www.cbc.ca/news/canada/carousel-scheme-budget-update-9.7023232
- - -
Des règles proposées tentent de prévenir l’ARC de payer de nouveaux remboursements bidons

// Article en anglais //

#Canada #Taxes #GST #TPS #HST #TVH #CRA #ARC

‘This was totally preventable’: Proposed rules aim to stop CRA from paying out more bogus refunds | CBC News

When the federal government tabled its 2025 budget last month, it included a proposal that tax fraud experts say is long overdue — if also a belated acknowledgement that the Canada Revenue Agency has been repeatedly duped into paying out millions in bogus tax refunds to scammers.

CBC
The #CRA #standards team at #ETSI has organised detailed interactive free webinars on each of the vertical #standards throughout January. In these webinars, the rapporteurs of each vertical will present their work and give you an opportunity to ask questions and provide feedback. Full details on the #OpenSource participants' summary page at https://pad.softwarefreedom.net/pad/#/2/pad/view/uJAiNHWU7XUlErGMwS9Z2OzStjlXZqMSnD+zJ2Y7unI/embed/
Encrypted Rich text

CryptPad: end-to-end encrypted collaboration suite

The most important part of the forthcoming EU standards for the Cyber Resilience Act - on Vulnerability Handling - is now open for public comment across Europe. Our network of #OpenSource contributors to the #CRA and its #Standards has made a page collecting the links to the place you can review in your country. You have until the start of February, so look before #'FOSDEM!

https://pad.softwarefreedom.net/pad/#/2/pad/view/rnmTsKqw555zO0ukEvWWhgdthlI7b5mxGUqZE3pTSYg/embed/

Encrypted Rich text

CryptPad: end-to-end encrypted collaboration suite