[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (13 articles)

|

// AI-powered summary generated at 16:01

> CVE-2026-35237
Information published.
> CVE-2026-21998
Information published.
> Pass the key, passwords have passed their sell-by date
NCSC passes judgment: passkeys pass muster, passwords fail The UK's National Cyber Security Centre (NCSC) has officially endorsed passkeys as the default authentication standard, marking the first time the agency has told consumers to move away from passwords entirely.…
> CVE-2026-34278
Information published.
> CVE-2026-35239
Information published.
> Recent Microsoft Defender Vulnerability Exploited as Zero-Day
The flaw allows attackers to access the SAM database, extract NTLM hashes, and gain System privileges. The post Recent Microsoft Defender Vulnerability Exploited as Zero-Day appeared first on SecurityWeek.
> Roblox clamps down on chats and age checks as legal pressure builds
Roblox is paying millions to settle child safety claims while rolling out strict age checks and chat limits that could reshape how kids use the platform.
> Microsoft Graph API misused by new GoGra Linux malware for hidden communication
A new GoGra Linux malware uses Microsoft Graph API and an Outlook inbox to deliver payloads, making it stealthy and hard to detect. A new Linux version of the GoGra backdoor uses Microsoft’s Graph API and an Outlook inbox to deliver malicious payloads stealthily. The malware is linked to the Harvest...
> Every Employee is Getting an AI Assistant, But Is Security Infrastructure Ready?
2 min readThere’s a conversation happening inside almost every enterprise right now. Leadership has decided that AI agents are going to change how the organization works. Claude for Work licenses are being purchased. Rollouts are being planned. Employees are being told that their personal AI assis...
> USN-8202-1: jq vulnerabilities
It was discovered that jq did not correctly handle certain string concatenations. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. This issue was addressed in Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, Ubuntu 24.04 LTS and...
> Oracle Linux 10 Wireshark Moderate Buffer Access Issues ELSA-2026-9666
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 10 Thunderbird Significant Notification ELSA-2026-9640
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
> Le FBI exploitait un bug de l’iPhone pour lire les messages Signal supprimés
La faille CVE-2026-28950 impacte les iPhone et les iPad : le FBI en a fait usage dernièrement pour récupérer des messages Signal via les notifications. Le post Le FBI exploitait un bug de l’iPhone pour lire les messages Signal supprimés a été publié sur IT-Connect.
> Oracle Linux 10 Kernel Important Update ELSA-2026-9264 CVE-2025-39766
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 10 ELSA-2026-8312 bind Important Denial of Service Fix
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
> A year in, Zoom’s CISO reflects on balancing security and business
In this Help Net Security interview, Sandra McLeod, CISO at Zoom, reflects on her first year in the role. She talks about moving from reactive firefighting to business strategy, and what she heard from engineers, the board, and customers during her early months. McLeod discusses how she prepared for...
> Oracle Linux 9 webkit2gtk3 Important Security Update ELSA-2026-9692
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 8 Thunderbird Security Update ELSA-2026-9345 CVE-2026-5731
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
> ZDI-26-296: Delta Electronics ASDA-Soft PAR File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Delta Electronics ASDA-Soft. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8...
> Oracle Linux 8 Kernel Important Update ELSA-2026-9131 CVE-2025-68741
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: