[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (109 articles)

|

// AI-powered summary generated at 20:00

> Oracle Linux 9 Advisory ELSA-2026-13677 systemd Moderate DoS
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 9 ELSA-2026-13857 Dovecot Important DoS Issues
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Debian DSA-6248-1 Apache2 Critical RCE Privilege Escalation Risks
Multiple vulnerabilities have been discovered in the Apache HTTP server, which may result in remote code execution, privilege escalation, denial of service or information disclosure. For the oldstable distribution (bookworm), these problems have been fixed in version 2.4.67-1~deb12u2.
> Oracle Linux 9 ELSA-2026-13917 Important fence agents Remote Access Risk
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 9 ELSA-2026-13978 libsoup Moderate Patch Details
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> CloudZ Malware Abuses Phone Link to Steal SMS OTPs
Cisco Talos uncovers CloudZ RAT and Pheno plugin abusing Microsoft Phone Link to intercept SMS OTPs
> Oracle Linux 8 Thunderbird Security Update ELSA-2026-13537 CVE-2026-6746
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 8 ELSA-2026-13577 Important Kernel Security Update
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
> Autonomous Offensive Security Firm XBOW Raises $35 Million
The company raised another $35 million as an extension to its previously announced Series C funding round. The post Autonomous Offensive Security Firm XBOW Raises $35 Million appeared first on SecurityWeek.
> Oracle Linux 8 Dovecot Important Denial of Service Advisory ELSA-2026-13830
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
> Ubuntu 26.04 WebKitGTK Important Remote Code Exec DoS USN-8237-1
Several security issues were fixed in WebKitGTK.
> The SECURE Data Act is Not a Serious Piece of Privacy Legislation
The federal SECURE Data Act is not a serious consumer privacy bill, and its provisions—if enacted—would be a retreat from already insufficient state protections. Republicans on the House Energy and Commerce Committee released a draft of the bill late last month without bipartisan support. The bill i...
> Iranian cyber espionage disguised as a Chaos Ransomware attack
Iran-linked APT MuddyWater used ransomware-style tactics to mask espionage, combining phishing, credential theft, data exfiltration, and extortion without encryption. A newly discovered cyber intrusion attributed to the Iran-linked APT MuddyWater (aka SeedWorm, TEMP.Zagros, Mango Sandstorm, TA450, a...
> Why ransomware attacks succeed even when backups exist
Backups don't fail because they're missing, they fail because attackers destroy them first. Acronis explains how ransomware targets backup systems before encryption, leaving no path to recovery. [...]
> Some kids are bypassing age verification checks with a fake mustache
A new survey found that kids find it easy to bypass age checks, despite a rise in age verification laws around the world.
> Herd Security Raises $3 Million for AI-Powered Training Platform
The startup will invest in expanding its training categories, optimizing video generation, and growing its partnership ecosystem. The post Herd Security Raises $3 Million for AI-Powered Training Platform appeared first on SecurityWeek.
> USN-8237-1: WebKitGTK vulnerabilities
Several security issues were discovered in the WebKitGTK Web and JavaScript engines. If a user were tricked into viewing a malicious website, a remote attacker could exploit a variety of issues related to web browser security, including cross-site scripting attacks, denial of service attacks, and ar...
> CISA Urges Critical Infrastructure Providers to Make Plans to Remain Operational if hit by Cyber-Attack
CISA’s CI Fortify initiative aim for critical infrastructure operators to build isolation & recovery
> UK age-gating plans risk breaking the internet, privacy groups warn
Activists say ministers are targeting access rather than Big Tech's data-hungry business models
> MuddyWater hackers use Chaos ransomware as a decoy in attacks
The MuddyWater Iranian hackers disguised their operations as a Chaos ransomware attack, relying on  Microsoft Teams social engineering to gain access and establish persistence. [...]