The Docket: Treasury Just Named the Ransomware Supply Chain Treasury's First VPN sanctions show ransomware enforcement is moving upstream to infrastructure, evasion tools, and evidence trails.
The Docket: When the Ransomware Negotiator Joined the Extortion Scheme A DOJ-backed guilty plea shows the ransomware response process can fail at the trust layer, not just at the firewall.
The Docket: Operation PowerOFF Turned DDoS Customers Into the Next Enforcement Surface Operation PowerOFF shows DDoS enforcement shifting from infrastructure takedowns toward customer identification, warning campaigns, and demand-side deterrence.
The Docket: Europe Just Turned Privacy Notices Into an Enforcement Target The EDPB's 2026 transparency sweep turns privacy notices from stale boilerplate into audit evidence that regulators can test across Europe.
Explain This: Device Code Phishing Attacks and OAuth Abuse Device code phishing surged 37x as attackers exploit OAuth's TV login flow to steal credentials without triggering MFA alerts.
Policy Roast: The FTC's AI Enforcement Unfairness Doctrine Is Dangerously Vague When 'unfair AI practices' means whatever the FTC decides it means this week, compliance becomes a moving target.
The Docket: Russia Arrests LeakBase Admin After Global Crackdown Russian authorities detained a LeakBase forum administrator weeks after international law enforcement targeted cybercrime marketplaces.