Togo : une fuite du contrôle de police exposerait plus de 90 000 cartes d’identité.
Belgique : un pirate revendique 148 251 fiches exposées, avec IBAN, courriels, téléphones et données personnelles.
Tracked as CVE-2026-32475 (CVSS score of 9.8), the bug described as an arbitrary file upload issue in the function that handles form submissions.
The post Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites appeared first on SecurityWeek.
Assurance, universités et football : des millions de données égyptiennes revendiquées sur des forums pirates.
Un pirate affirme avoir extrait 2 014 données d'un outil qui sature les téléphones de messages, dont des téléphones, cibles et mots de passe en clair.
An unauthenticated attacker could exploit the security defects by sending crafted packets to the vulnerable service, achieving RCE with elevated privileges
The post HPE Patches Critical RCE Vulnerabilities in AOS-CX appeared first on SecurityWeek.
OpenAI admits it did not disclose an incident where autonomous AI agents hijacked a German wiki, created 18,000 posts, shared answers, and bypassed restrictions, saying it treated the activity as model "misalignment" rather than a security breach. [...]
Plus: Tens of millions of US and Canadian drivers’ licenses go up for sale on the dark web, the US military finally tries to tackle the risk online ad data poses to troops, and more.
Deux arrestations frappent l’écosystème pirate du groupe ZeroBytes en France, tandis que les liens avec l’ancien groupe de hackers Epsilon, plusieurs pseudonymes et des activités postérieures compliquent encore l’attribution cyber. Non, vous ne rêvez pas ! Vous avez déjà vu cette image de titre il y...
Bitbybit Studio visé par une fuite revendiquée de 25 millions de lignes mêlant données personnelles et messages IA.
A group of AI safety researchers says a fleet of autonomous agents that identified themselves as OpenAI systems left about 18,000 posts on a dormant 25-year-old German wiki between May and July 2026, using the site as a shared board to pool answers to a timed web task and pass around a way out of th...
Une annonce sur un forum pirate russe affirme proposer les accès IT de plus de 200 entreprises françaises clientes d’un prestataire.
CareCloud confirme le vol de données médicales et personnelles concernant plus de 3,75 millions de personnes.
Threat actors are exploiting the newly disclosed PaperCut flaws to facilitate credential theft in attacks targeting the education sector in the U.S. and Europe.
The Arctic Wolf Adversary Research Team said it observed attackers exploiting CVE-2026-81578 and CVE-2026-82078 – an authentication bypass...
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
Broadcom patched two VMware Workstation/Fusion VM-escape bugs. No workarounds exist. Update to version 26H1u1 immediately. Broadcom published advisory VMSA-2026-0007, patching two vulnerabilities in VMware Workstation and Fusion that allow an attacker inside a virtual machine to execute code on the...
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
New mozilla-thunderbird packages are available for Slackware 15.0 and -current to fix security issues.