> TODAY'S SUMMARY (1 articles)
Raheim Hamilton, co-creator of the dark web marketplace Empire Market, was sentenced to 40 years in prison after pleading guilty to drug conspiracy charges. Hamilton's case underscores the ongoing law enforcement efforts to dismantle illegal online drug trafficking operations. Additionally, he agreed to forfeit over $100 million in Bitcoin and various properties, highlighting the financial ramifications of cybercrime. This incident reflects a broader trend in cybersecurity where authorities are increasingly targeting cryptocurrency-related crimes in the dark web space. As cybercriminal activities evolve, the focus on dismantling such marketplaces is likely to intensify.
|
// AI-powered summary generated at 00:01
Cifas says that 13% of employees admit selling company credentials to a former colleague
Cybersecurity researchers have disclosed details of an intrusion that involved the use of a CloudZ remote access tool (RAT) and a previous undocumented plugin dubbed Pheno with the aim of facilitating credential theft.
"According to the functionalities of the CloudZ RAT and Pheno plugin, this was wi...
While trojanized Daemon Tools versions were installed worldwide, a sophisticated backdoor was dropped only on a dozen systems.
The post Government, Scientific Entities Hit via Daemon Tools Supply Chain Attack appeared first on SecurityWeek.
Information published.
Information published.
Attaques contre Sam Altman : l’IA devient un enjeu de sécurité, entre peur existentielle et radicalisation.
Protégez vos serveurs Apache contre la faille CVE-2026-23918 dans le module HTTP/2. Cette vulnérabilité peut entraîner un DoS, et même une RCE.
Le post Faille Apache : deux simples trames suffisent à faire un déni de service (CVE-2026-23918) a été publié sur IT-Connect.
Mots de passe affichés, Wi-Fi exposé, accès sensibles visibles : ZATAZ rappelle, exemples à l’appui, pourquoi la négligence reste l’un des meilleurs alliés des cybercriminels.
A malicious PyTorch Lightning update (v2.6.3) on PyPI spread briefly, stealing credentials and raising major concerns about AI supply chain security. A malicious update of the PyTorch Lightning library exposed developers to credential theft and remote compromise. Attackers uploaded version 2.6.3 to...
FulcrumSec accuse des géants d’avoir exposé des secrets critiques dans leurs codes et dépôts privés.
Containing fixes for critical-severity vulnerabilities, the monthly rollouts will focus on addressing priority issues faster.
The post Oracle Debuts Monthly Critical Security Patch Updates appeared first on SecurityWeek.
Le pirate FulcrumSec accuse des startups IA santé de failles cloud et de fuites de données médicales sensibles.
Palo Alto Networks has released an advisory warning that a critical buffer overflow vulnerability in its PAN-OS software has been exploited in the wild.
The vulnerability, tracked as CVE-2026-0300, has been described as a case of unauthenticated remote code execution. It carries a CVSS score of 9.3...
It was discovered that Slurm did not correctly handle certain file system
operations. An attacker could possibly use this issue to modify files or
leak sensitive information. This issue only affected Ubuntu 22.04 LTS.
(CVE-2023-41914)
Ryan Hall discovered that Slurm did not correctly enforce certai...
Depuis début avril 2026, les programmes d'installation de DAEMON Tools sont infectés par un logiciel malveillant suite à une attaque de type supply-chain.
Le post DAEMON Tools : des milliers de PC infectés via les versions officielles a été publié sur IT-Connect.
Tous les utilisateurs de Proton Mail peuvent désormais activer la protection post-quantique sur leur compte afin de protéger leurs e-mails des futures menaces.
Le post Proton Mail déploie le chiffrement post-quantique : voici comment l’activer a été publié sur IT-Connect.
CVE-2026-0300 affects the Captive Portal service of PAN-OS software on PA and VM series firewalls.
The post Palo Alto Networks to Patch Zero-Day Exploited to Hack Firewalls appeared first on SecurityWeek.
Several security issues were fixed in Docker.
It was discovered that BuildKit, contained within Docker, incorrectly
handled file path validation when processing frontend API messages. An
attacker could possibly use this issue to write files outside of the
intended state directory. (CVE-2026-33747)
It was discovered that BuildKit, contained wit...