[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (88 articles)

|

// AI-powered summary generated at 16:00

> CVE-2026-34874
Information published.
> CVE-2026-34876
Information published.
> Red Hat Enterprise Linux adds post-quantum security and AI-driven automation in latest releases
Red Hat has announced the upcoming general availability of Red Hat Enterprise Linux 10.2 and 9.8. Building on the innovation of Red Hat Enterprise Linux 10, the latest versions help address security threats, speed AI innovation and minimize operational drift. What Red Hat announced Red Hat Enterpris...
> CVE-2026-25835
Information published.
> CVE-2026-29169 Apache HTTP Server: mod_dav_lock indirect lock crash
Information published.
> La Ville de Quiberon nouvelle victime du ransomware Qilin
Le dimanche 3 mai 2026, le système informatique de la municipalité de Quiberon a été frappé par une cyberattaque orchestrée par le ransomware Qilin. Le post La Ville de Quiberon nouvelle victime du ransomware Qilin a été publié sur IT-Connect.
> CVE-2026-29168 Apache HTTP Server: mod_md unrestricted OCSP response
Information published.
> CVE-2026-33857 Apache HTTP Server: Off-by-one OOB reads in AJP getter functions
Information published.
> Claude AI Guided Hackers Toward OT Assets During Water Utility Intrusion
Dragos has published a report describing how threat actors used Claude AI in an attack on a water and drainage utility in Mexico. The post Claude AI Guided Hackers Toward OT Assets During Water Utility Intrusion appeared first on SecurityWeek.
> CVE-2026-3832 Gnutls: gnutls: security bypass allows acceptance of revoked server certificates via crafted ocsp response
Information published.
> CVE-2026-33523 Apache HTTP Server: multiple modules: HTTP response splitting forwarding malicious status line
Information published.
> USN-8179-4: Linux kernel (GCP) vulnerabilities
Josh Eads, Kristoffer Janke, Eduardo Vela Nava, Tavis Ormandy, and Matteo Rizzo discovered that some AMD Zen processors did not properly verify the signature of CPU microcode. This flaw is known as EntrySign. A privileged attacker could possibly use this issue to cause load malicious CPU microcode c...
> CVE-2026-23918 Apache HTTP Server: http2: double free and possible RCE on early reset
Information published.
> CVE-2026-34059 Apache HTTP Server: mod_proxy_ajp: Heap Over-Read and memory disclosure in ajp_parse_data()
Information published.
> Gemini Nano : Google Chrome déploie une IA de 4 Go, sans rien vous demander
Que ce soit sur macOS, Windows ou Linux, Google Chrome télécharge un modèle d'intelligence artificielle : Gemini Nano, d'une taille de 4 Go, sans votre accord. Le post Gemini Nano : Google Chrome déploie une IA de 4 Go, sans rien vous demander a été publié sur IT-Connect.
> CVE-2026-34032 Apache HTTP Server: mod_proxy_ajp: Heap Buffer Over-Read Due to Missing Null-Termination Check (ajp_msg_get_string)
Information published.
> CVE-2026-24072 Apache HTTP Server: mod_rewrite elevation of privileges via ap_expr
Information published.
> Fixing the password problem is as easy as 123456
How come it’s still possible to ‘secure’ an online account with a six-digit string?
> CVE-2026-33006 Apache HTTP Server: mod_auth_digest timing attack
Information published.
> CVE-2026-33007 Apache HTTP Server: mod_authn_socache crash
Information published.