[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (13 articles)

|

// AI-powered summary generated at 16:01

> CVE-2026-31507 net/smc: fix double-free of smc_spd_priv when tee() duplicates splice pipe buffer
Information published.
> CVE-2026-31483 s390/syscalls: Add spectre boundary for syscall dispatch table
Information published.
> Apple Patches iOS Flaw That Stored Deleted Signal Notifications in FBI Forensic Case
Apple has rolled out a software fix for iOS and iPadOS to address a Notification Services flaw that stored notifications marked for deletion on the device. The vulnerability, tracked as CVE-2026-28950 (CVSS score: N/A), has been described as a logging issue that has been addressed with improved data...
> CVE-2026-31485 spi: spi-fsl-lpspi: fix teardown order issue (UAF)
Information published.
> CVE-2026-31433 ksmbd: fix potencial OOB in get_file_all_info() for compound requests
Information published.
> Recent Microsoft Defender Vulnerability Exploited as Zero-Day
The flaw allows attackers to access the SAM database, extract NTLM hashes, and gain System privileges. The post Recent Microsoft Defender Vulnerability Exploited as Zero-Day appeared first on SecurityWeek.
> CVE-2026-31519 btrfs: set BTRFS_ROOT_ORPHAN_CLEANUP during subvol create
Information published.
> CVE-2026-31520 HID: apple: avoid memory leak in apple_report_fixup()
Information published.
> Pass the key, passwords have passed their sell-by date
NCSC passes judgment: passkeys pass muster, passwords fail The UK's National Cyber Security Centre (NCSC) has officially endorsed passkeys as the default authentication standard, marking the first time the agency has told consumers to move away from passwords entirely.…
> CVE-2026-31464 scsi: ibmvfc: Fix OOB access in ibmvfc_discover_targets_done()
Information published.
> CVE-2026-31461 drm/amd/display: Fix drm_edid leak in amdgpu_dm
Information published.
> Roblox clamps down on chats and age checks as legal pressure builds
Roblox is paying millions to settle child safety claims while rolling out strict age checks and chat limits that could reshape how kids use the platform.
> CVE-2026-31441 dmaengine: idxd: Fix memory leak when a wq is reset
Information published.
> CVE-2026-31454 xfs: save ailp before dropping the AIL lock in push callbacks
Information published.
> Microsoft Graph API misused by new GoGra Linux malware for hidden communication
A new GoGra Linux malware uses Microsoft Graph API and an Outlook inbox to deliver payloads, making it stealthy and hard to detect. A new Linux version of the GoGra backdoor uses Microsoft’s Graph API and an Outlook inbox to deliver malicious payloads stealthily. The malware is linked to the Harvest...
> CVE-2026-31446 ext4: fix use-after-free in update_super_work when racing with umount
Information published.
> CVE-2026-31518 esp: fix skb leak with espintcp and async crypto
Information published.
> Every Employee is Getting an AI Assistant, But Is Security Infrastructure Ready?
2 min readThere’s a conversation happening inside almost every enterprise right now. Leadership has decided that AI agents are going to change how the organization works. Claude for Work licenses are being purchased. Rollouts are being planned. Employees are being told that their personal AI assis...
> CVE-2026-31482 s390/entry: Scrub r12 register on kernel entry
Information published.
> CVE-2026-31449 ext4: validate p_idx bounds in ext4_ext_correct_indexes
Information published.