Breaking news

EU Confirms Cyberattack After 92 GB Of Data Extracted From Commission Systems

Overview Of The Breach

CERT-EU confirmed a cyberattack on European Commission systems that resulted in the extraction of about 92 GB of data from an Amazon Web Services account. The breach affected cloud infrastructure linked to EU institutional platforms and raised concerns about the exposure of sensitive information.

Incident Details And Affected Infrastructure

Attackers gained access using a secret API key associated with the Commission’s AWS environment. The key was exposed after a compromised version of the open source security tool Trivy was downloaded. Access extended beyond AWS to infrastructure supporting the Europa.eu platform, which hosts EU institutional websites and publications. The breach enabled data extraction across multiple systems.

Attribution And The Complexity Of Cyber Threats

CERT-EU attributed the incident to TeamPCP, with links to activity associated with the ShinyHunters group. Reports indicate that data obtained in earlier operations may have been redistributed or leaked. At least 29 EU entities may be affected, with potential exposure of email communications and internal data. The case reflects increasing coordination between cybercriminal groups.

Strategic Implications And Industry Response

Security researchers have linked TeamPCP to activities including ransomware and crypto-mining operations. Compromised access to development tools and keys can enable broader system intrusion. The incident highlights risks associated with supply chain vulnerabilities, particularly in open source software. Cloud environments remain a key target due to the volume of stored data.

Conclusion And Ongoing Analysis

The European Commission has not yet issued a full response and is expected to provide further details. CERT-EU has contacted affected entities following the breach. Approximately 52,000 files have already appeared online, including automated messages and user-related communications. Further analysis will determine the full scope of the incident.

Google Sets New Android App Rules To Cut Memory Use

Google is introducing new quality requirements for Android apps as developers face tighter constraints on device memory and broader hardware supply pressures.

The company announced two new requirements this week. One focuses on reducing apps’ memory use and improving code efficiency, while the other requires apps to restore users’ sign-in status when they move to a new Android device.

Google Sets New Memory Performance Rules

Google said the mobile industry is facing “significant hardware supply constraints that are altering device memory availability,” which could affect app performance and the user experience.

Under the new rules, developers will need to meet thresholds covering areas including dynamic memory and bitmap usage. Additional code optimisation requirements are designed to reduce slowdowns and crashes linked to excessive resource use.

Google is also rolling out tools that alert developers when their apps exceed the new limits. More diagnostic features are planned later this year, including deeper analysis through Android’s Memory Limiter, which restricts excessive memory use.

Developers have until February 2027 to comply with the new standards, according to Google’s Android Developer documentation.

Zero-Tap Sign-In Requirement Starts In 2027

A separate requirement will apply to all apps distributed through Google Play. By April 2027, apps that use optional or mandatory sign-ins must automatically restore a user’s sign-in state when they move between Android devices.

The feature will rely on Android’s Restore Credentials API, which is designed to transfer sign-in credentials during device migration without requiring users to log in again.

Google said the new standards are intended to help developers maintain app performance and simplify device transitions as device specifications and memory availability change.

The Future Forbes Realty Global Properties
Aretilaw firm
Uol
eCredo

Become a Speaker

Become a Speaker

Become a Partner

Subscribe for our weekly newsletter