[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (2 articles)

|

// AI-powered summary generated at 04:00

> Progress Patches Critical MOVEit Automation Bug Enabling Authentication Bypass
Progress Software has released updates to address two security flaws in MOVEit Automation, including a critical bug that could result in an authentication bypass. MOVEit Automation (formerly Central) is a secure, server-based managed file transfer (MFT) solution used to schedule and automate file mo...
> Trellix discloses data breach after source code repository hack
Cybersecurity firm Trellix disclosed a data breach after attackers gained access to "a portion" of its source code repository. [...]
> SaaS Identity Is the New Security Perimeter
Learn why SaaS identity, not the network, is now the true security perimeter in AI-driven environments. The post SaaS Identity Is the New Security Perimeter appeared first on Security Boulevard.
> The AI Vulnerability Storm Is Here. Is Your Security Program Breach Ready?
How a new class of AI-powered attacks is redrawing the rules of cybersecurity, and why the organizations that survive will be those that build for containment, not just prevention. There is a moment in every technological shift when the future stops being theoretical and starts breaking things. For...
> A college student is suing a dating app that allegedly used her TikTok videos to target men in her dormitory
The woman’s lawyer told CyberScoop they believe the company edited her video to suggest she was a “friend with benefits” and intentionally geofenced it to men around her.  The post A college student is suing a dating app that allegedly used her TikTok videos to target men in her dormitory appeared f...
> Cyberattaque contre Warner Bros France
Defacement visant Warner Bros France : sous-domaines, Magento, fichiers publics et risques cyber à vérifier.
> Slackware 15.0 server crucial update system down SSA-2026-125-03
New httpd packages are available for Slackware 15.0 and -current to fix security issues.
> Getting Digital Fairness Right: EFF's Recommendations for the EU's Digital Fairness Act
Digital Fairness in the EU The next few years will be decisive for EU digital policymaking. With major laws like the Digital Services Act, the Digital Markets Act, and the AI Act now in place, the EU is entering an enforcement era that will show whether these rules are rights-respecting or drift tow...
> Ransomware group claims breach of pro-OrbĂĄn Hungarian media firm
Mediaworks confirmed the incident on Friday, warning that “a significant amount of illegally obtained data may have come into the possession of unauthorized persons."
> Hasbro signale un accÚs non autorisé
Hasbro signale un accÚs réseau non autorisé avec des enjeux cyber et de continuité sans pour le moment parler de fuite de données.
> La mise Ă  jour Windows d’avril perturbe vos sauvegardes, voici les logiciels concernĂ©s
Certaines applications de sauvegarde sont susceptibles de ne plus fonctionner sur Windows et Windows Server, suite Ă  l'installation des correctifs d'avril 2026. Le post La mise Ă  jour Windows d’avril perturbe vos sauvegardes, voici les logiciels concernĂ©s a Ă©tĂ© publiĂ© sur IT-Connect.
> Shadow IT has given way to shadow AI. Enter AI-BOMs
'If you don't have visibility, you can't understand what to protect' When it comes to securing enterprise supply chains, now heavily infused with AI applications and agents, a software bill of materials (SBOM) no longer provides a complete inventory of all the components in the environment. Enter AI...
> Shadow IT has given way to shadow AI. Enter AI-BOMs
'If you don't have visibility, you can't understand what to protect'
> [un]prompted 2026 – Why Most ML Vulnerability Detection Fails
Author, Creator & Presenter: Jenny Guanni Qu, AI Researcher At Pebblebed Our thanks to [un]prompted for publishing their Creators, Authors and Presenter’s outstanding [un]prompted 2026 AI Security Practitioner content on the Organizations' YouTube Channel. Permalink The post [un]prompted 2026...
> Breaking the code: Multi-stage ‘code of conduct’ phishing campaign leads to AiTM token compromise
Microsoft Defender Research observed a large-scale credential theft campaign that exemplifies this trend, using code of conduct-themed lures, a multi-step attack chain, and legitimate email services to distribute fully authenticated messages from attacker-controlled domains. The post Breaking the co...
> Cyberattacks are raising your prices (Lock and Code S07E09)
This week on the Lock and Code podcast, we speak with Eva Velasquez about small business cyberattacks and the "cyber tax" coming for us all.
> Critical MOVEit Automation auth bypass vulnerability fixed (CVE-2026-4670)
Progress Software has fixed a critical authentication bypass (CVE-2026-4670) and a privilege escalation (CVE-2026-5174) vulnerability in MOVEit Automation, exploitation of which “may lead to unauthorized access, administrative control, and data exposure.” The vulnerabilities were reported privately...
> FlowCarp Identifies Protocols
I am thrilled to announce the release of a brand new tool called FlowCarp! FlowCarp is a simple command line tool that performs a very complicated task. It identifies the application layer protocol in network traffic without relying on port numbers, static signatures or code that tries to parse the[...
> Bulle d’oxygĂšne dans les rĂ©seaux sociaux
Face aux risques d’addiction, de dĂ©sinformation et de harcĂšlement, le projet Bulle dĂ©fend une rĂ©ponse qui ne se limite pas au contrĂŽle de l’ñge.
> DHS Demanded Google Surrender Data on Canadian's Activity, Location Over Anti-ICE Posts
Using a 1930s trade law, Homeland Security targeted the man—who hasn't entered the US in more than a decade—following posts on X condemning the killings of Renee Good and Alex Pretti.