[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> Oracle Linux 10 java-25-openjdk Remote Access Vulnerability ELSA-2026-9693
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 9 buildah Important Update ELSA-2026-10135 CVE-2026-34986
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Quantum-Resistant Identity and Access Management for MCP Resources
Secure your MCP hosts with quantum-resistant IAM. Learn about lattice-based signatures, PQuAKE, and 4D context-aware access for AI agents. The post Quantum-Resistant Identity and Access Management for MCP Resources appeared first on Security Boulevard.
> Oracle Linux 9 Golang Significant Patch ELSA-2026-10220
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 9 Grafana Important Update CVE-2026-27877 ELSA-2026-10226
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Google Cloud Next proves what we suspected: Everything is AI now
Join us for this week's Kettle as we dive into GCN and the latest not-so-alarming revelations about Mythos KETTLE  If you needed further evidence that AI comes first in pretty much everything nowadays, look no further than this year's Google Cloud Next show, which happened last week.…
> Oracle Linux 9 java-17-openjdk Important Security Update ELSA-2026-9686
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 9 java-25-openjdk Key Security Patch ELSA-2026-9700
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Multiples vulnérabilités dans Zabbix Agent2 (27 avril 2026)
De multiples vulnérabilités ont été découvertes dans Zabbix Agent2. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.
> Multiples vulnérabilités dans les produits Moxa (27 avril 2026)
De multiples vulnérabilités ont été découvertes dans les produits Moxa. Elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à la confidentialité des données et un contournement de la politique de sécurité.
> Redefining security data: Red Hat’s new VEX experience heading to Red Hat Summit 2026
At Red Hat, our deep focus on security doesn't stop at the code, it extends to how we communicate vulnerability information to our partners and customers. Based on valuable feedback from our partner community, Red Hat Product Security is announcing a major evolution in our security data ecosystem—th...
> Multiples vulnérabilités dans les produits FoxIT (27 avril 2026)
De multiples vulnérabilités ont été découvertes dans les produits FoxIT. Elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et une atteinte à la confidentialité des données.
> Multiples vulnérabilités dans Microsoft Edge (27 avril 2026)
De multiples vulnérabilités ont été découvertes dans Microsoft Edge. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.
> Udemy - 1,401,259 breached accounts
In April 2026, online training company Udemy was the victim of a “pay or leak” extortion attempt perpetrated by the ShinyHunters group. The data was subsequently leaked publicly and contained 1.4M unique email addresses belonging to customers and instructors. The data also included names, physical a...
> Multiples vulnérabilités dans VMware Tanzu (27 avril 2026)
De multiples vulnérabilités ont été découvertes dans VMware Tanzu. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.
> Multiples vulnérabilités dans les produits Microsoft (27 avril 2026)
De multiples vulnérabilités ont été découvertes dans les produits Microsoft. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.
> Why PoP Count Isn’t the Real Measure of Application Security Performance
When evaluating cloud security platforms, one question comes up again and again: “How many Points of Presence do you have?” At first glance, the logic seems sound. More locations should mean lower latency, faster response times, and better protection. The assumption is simple: if security is deliver...
> Bulletin d'actualité CERTFR-2026-ACT-019 (27 avril 2026)
Ce bulletin d'actualité du CERT-FR revient sur les vulnérabilités significatives de la semaine passée pour souligner leurs criticités. Il ne remplace pas l'analyse de l'ensemble des avis et alertes publiés par le CERT-FR dans le cadre d'une analyse de risques pour prioriser l'application des...
> Protecting Michigan’s Patients: The State’s Healthcare CISOs
Michigan’s healthcare sector is one of the most complex in the Midwest, spanning academic medical centers, regional health systems, long-term care, and the statewide associations that set the security standards many smaller organizations depend on. The leaders in this feature are not working in comp...
> Critical bug in CrowdStrike LogScale let attackers access files
CrowdStrike fixed CVE-2026-40050 in LogScale self-hosted, a critical flaw allowing unauthenticated file access via path traversal. CrowdStrike recently disclosed a critical vulnerability, tracked as CVE-2026-40050, affecting its LogScale self-hosted product. The flaw enables unauthenticated path tra...