[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (1 articles)

|

// AI-powered summary generated at 04:00

> CVE-2026-45130 Vim: Heap Buffer Overflow in spell file loading
Information published.
> CVE-2026-6666 PgBouncer crash in kill_pool_logins_server_error
Information published.
> Week in review: cPanel vulnerability actively exploited, DigiCert breach, LinkedIn job scams
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Your work apps are quietly handing 19 data points to someone Office work in 2026 relies on mobile apps used alongside personal tools like banking and messaging. Ten widely used workplace apps, including...
> CVE-2026-6667 PgBouncer missing authorization check in KILL_CLIENT admin command
Information published.
> CVE-2026-6665 PgBouncer buffer overflow in SCRAM
Information published.
> Direction générale de la Comptabilité publique et du Trésor
La Direction générale de la Comptabilité publique et du Trésor (DGCPT) a annoncé une perturbation de ses systèmes d'information depuis le dimanche 10 mai 2026, suite à un incident non précisé. Cette panne survient quelques mois après une attaque de cyber-extorsion ayant touché la Direction générale...
> CVE-2026-6664 PgBouncer integer overflow in PgBouncer network packet parsing
Information published.
> Notin
Le fournisseur de services informatiques Notin.es a été victime d'une nouvelle attaque par rançongiciel, cette fois menée par le groupe Crypto24 utilisant le ransomware de Lockbit 5.0. Cette cyberattaque a affecté au moins quinze offices notariaux en Espagne, entraînant l'interruption de leurs servi...
> JDownloader site hacked to replace installers with Python RAT malware
The website for the popular JDownloader download manager was compromised earlier this week to distribute malicious Windows and Linux installers, with the Windows payload found deploying a Python-based remote access trojan. [...]
> Forensic Windows – Partie 3 : surveiller l’exécution des programmes avec Prefetch
Maîtrisez l’utilisation du Prefetch dans Windows pour identifier les programmes exécutés, en exploitant des outils comme WinPrefetchView et PECmd. Le post Forensic Windows – Partie 3 : surveiller l’exécution des programmes avec Prefetch a été publié sur IT-Connect.
> Fake OpenAI repository on Hugging Face pushes infostealer malware
A malicious Hugging Face repository that reached the platform's trending list impersonated OpenAI's "Privacy Filter" project to deliver information-stealing malware to Windows users. [...]
> Quasar Linux RAT (QLNX): A Fileless Linux Implant Built for Stealth and Persistence
Researchers uncovered QLNX, a Linux RAT targeting developers to steal credentials, log keystrokes, monitor systems, and enable remote access. Security researchers discovered a previously undocumented Linux malware called Quasar Linux RAT (QLNX) that targets developers and DevOps environments. The ma...
> Debian Bookworm DSA-6259-1 PyJWT Important Authentication Flaw
It was discovered that PyJWT, a Python implementation of JSON web tokens insufficiently validated the "crit" header parameter, which could result in incomplete enforcement of authentication settings. For the oldstable distribution (bookworm), this problem has been fixed in version 2.6.0-1+deb12u1.
> Hackable Robot Lawn Mower Unlocks a New Nightmare
Plus: Meta officially kills encrypted Instagram DMs, the Trump administration targets “violent left wing extremists,” leaked documents reveal Russia's school for elite hackers, and more.
> Braintrust security incident raises concerns over AI supply chain risks
Braintrust warned customers to rotate API keys after hackers breached an AWS account, exposing secrets tied to cloud-based AI models. AI observability startup Braintrust warned customers to rotate API keys after attackers gained unauthorized access to one of the company’s AWS accounts, potentially e...
> Debian Bookworm Linux Important Local Escalation Fix DSA-6258-1
Two vulnerabilities have been discovered in the Linux kernel that may lead to local privilege escalation. For the oldstable distribution (bookworm), these problems have been fixed in version 6.1.170-3. We recommend that you upgrade your linux packages.
> cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch Now
cPanel has released updates to address three vulnerabilities in cPanel and Web Host Manager (WHM) that could be exploited to achieve privilege escalation, code execution, and denial-of-service. The list of vulnerabilities is as follows - CVE-2026-29201 (CVSS score: 4.3) - An insufficient input vali...
> Matsuzawa Shoten
La société Matsuzawa Shoten a présenté ses excuses à ses partenaires commerciaux pour les désagréments causés par la panne de son système de gestion des commandes, survenue le 9 mai à la suite d'un accès non autorisé et d'une infection par un rançongiciel. Les travaux de restauration du système de c...
> Unoaerre
La société d'orfèvrerie Unoaerre a été victime d'une cyberattaque qui a paralysé son système d'exploitation, ce qui a conduit les cybercriminels à exiger une rançon de 3,8 millions d'euros en bitcoins. Les premières enquêtes suggèrent que cette attaque pourrait avoir des liens avec des pays du Moyen...
> Congress Narrowed the GUARD Act, But Serious Problems Remain
Following criticism, lawmakers have narrowed the GUARD Act, a bill aimed at restricting minors’ access to certain AI systems. The earlier version could have applied broadly to nearly every AI-powered chatbot or search tool. The amended bill focuses more narrowly on so-called “AI companions”—conversa...