Headline items from across our industry, and what they mean in practice.
Scroll or use the arrows to move through the articles.
-

Your AI agents are already in production. Who is accountable for them?
Agent deployments are outpacing the governance around them. Survey data suggests most organisations have agents running in production that nobody monitors, and no named owner for…
-

Deepfake executive fraud has become a board-level risk
Synthetic voice and video have made executive impersonation cheap and convincing. The controls that stop it are procedural, not technological – and most organisations already have…
-

The Cyber Security and Resilience Bill: the supply chain is the part most organisations underestimate
The Bill cleared the Commons in June 2026 and is now in the Lords. The provision with the widest reach is not the list of regulated…
-

EU AI Act: high-risk obligations deferred to December 2027 – what still applies now
The AI Omnibus package pushes high-risk AI obligations to December 2027 and August 2028. A deferral is not a repeal – here is what still bites,…
-

NCSC: hostile states behind three quarters of attacks on UK critical infrastructure
The NCSC handled more than 200 incidents in the year to May 2026 and linked three quarters of attacks on critical infrastructure to hostile states. Its…




