EU Clarifies When Phishing Triggers DORA Incident Reporting
Phishing attacks are a daily reality for banks and their customers alike. But under the EU’s Digital Operational Resilience Act, not every phishing email belongs in a regulator’s incident inbox. That distinction is now clearer following a formal question from Germany’s financial supervisor, BaFin.
