SME Squeeze: NIS2, AI Act, Ransomware Collide

Three regulatory and threat deadlines create an SME squeeze in Germany

On January 7, 2026, the ransomware group Akira hit Buhlmann Group, a Hamburg-based steel and metal trading company with roughly 2,000 employees and €428 million in annual revenue. The attackers made off with about 55GB of data — engineering drawings, HR files, financial records — before anyone at the company could respond. Buhlmann wasn’t an…

Read More

Cybersecurity as a Competitive Advantage: A European Perspective

Cybersecurity as a Competitive Advantage — European business trust and governance

Cybersecurity as a competitive advantage is not how most European businesses frame the conversation — at least not yet. The dominant framing is resilience and regulatory compliance: NIS2, GDPR, DORA, and sector-specific obligations that have raised the bar for governance, incident response, and supply chain oversight. At the same time, geopolitical volatility and economic pressure…

Read More