[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (12 articles)

|

// AI-powered summary generated at 08:00

> AEPD - autorité espagnole
L'autorité espagnole de protection des données a archivé une procédure initiée contre un établissement de crédit pour une violation présumée de la confidentialité, après que ce dernier a démontré que l'envoi d'informations contractuelles à une adresse électronique erronée résultait d'une modificatio...
> UODO - autorité polonaise
L'autorité polonaise de protection des données (UODO) a émis un avertissement à l'encontre de deux parlementaires pour ne pas avoir coopéré à son enquête, illustrant que l'obligation de fournir des informations à l'autorité de contrôle s'applique à tous, et que la coopération, même tardive, peut per...
> StreamRat Android malware spreads through Meta and TikTok ads
Social media ads for a free streaming service exposed roughly 570,000 people to StreamRat, a banking Trojan that can take control of infected phones.
> IMY - autorité suédoise
L'Autorité suédoise de protection de la vie privée (IMY) a initié une enquête à l'encontre de la société informatique Cogno Scio AB concernant ses activités potentielles d'information de crédit et leur conformité avec la législation applicable.L'enquête, initiée sur la base des informations disponib...
> GPDP - autorité italienne
La diffusion non autorisée de conversations privées d'une personnalité publique à des fins de commérage, sans lien avec un intérêt public légitime, constitue une violation des principes fondamentaux du RGPD, notamment ceux de licéité, de loyauté et de minimisation des données.Faits et contexteL'auto...
> ASCII smuggling crosses over from AI prompt injection to phishing evasion
Invisible Unicode characters popularized for hiding instructions from AI models are now being used to obfuscate words before email filters parse them. The post ASCII smuggling crosses over from AI prompt injection to phishing evasion appeared first on Microsoft Security Blog.
> CNIL
La Commission nationale de l'informatique et des libertés (CNIL) a sanctionné un hôpital pour des manquements graves à la sécurité ayant permis l'accès aux données de plus de 700 000 personnes, et pour n'avoir informé qu'une partie des victimes de la violation.Faits et contexteLa Commission national...
> Critical Cisco Nexus 9000 Flaw Lets Unauthenticated Remote Attackers Run Code as Root
Cisco has released patches to address a critical security flaw affecting 10 Silicon One-based Nexus 9000 switches that could allow an unauthenticated, remote attacker to execute code as root, alongside an IOS XR hardening release bundling 7 umbrella CVEs, 2 of which are rated 9.8, with no workaround...
> USN-8724-1: rabbitmq-c vulnerabilities
It was discovered that the rabbitmq-c command-line tools only accepted credentials on the command line, making them visible to other local users through the process list. An attacker could possibly use this to obtain sensitive credentials. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS,...
> Ubuntu FFmpeg Major Vulnerabilities in Code Execution and DoS USN-8716-1
FFmpeg could be made to crash or run programs as your login if it opened a specially crafted file.
> Manchester Airports Group Data on 8.8 Million People Leaked After Ransom Refusal
Hacker group published roughly 550GB of data after MAG reportedly refused to pay a ransom demand; the group says it gained access via exposed admin keys. The post Manchester Airports Group Data on 8.8 Million People Leaked After Ransom Refusal appeared first on SecurityWeek.
> BraZetsu Malware Turns Compromised Windows Hosts Into Criminal Marketplace Inventory
Cybersecurity researchers have disclosed details of a sophisticated Python-based Windows malware framework called BraZetsu that fuels an underground marketplace commercializing access to compromised hosts. "Unlike the standard infostealer model, BraZetsu is a comprehensive master toolkit that empow...
> Pegasus Zero-Click Exploit Infects Serbian Student Activist's iPhone
Pegasus infected a Serbian student activist's iPhone through an iMessage zero-click exploit
> Microsoft: KB5120998 mouse reset bug affects only non-English PCs
Microsoft says a known issue that reverts mouse settings after installing the KB5120998 August 2026 preview update affects only non-English Windows 11 systems. [...]
> Capsule Security Launches ‘AI Circuit Breaker’ to Stop Rogue Agents
New models, trained using NVIDIA Nemotron 3 Ultra, aim to catch rogue agent behavior before it executes, without the latency of large-model review. The post Capsule Security Launches ‘AI Circuit Breaker’ to Stop Rogue Agents appeared first on SecurityWeek.
> OpenAI confirms ChatGPT is down ahead of 'Astra' model launch
ChatGPT and Codex are experiencing a major outage, with users reporting errors across nearly every major ChatGPT feature. [...]
> Anthropic confirms Claude is down, multiple models affected
Claude is experiencing an outage, with users encountering elevated errors when sending requests to multiple Anthropic AI models. [...]
> Drowning in CVEs and thirsty for answers? Try CTEM
Boards want to know if they're less exposed than last quarter. Patching metrics aren't the solution
> Critical Elementor Pro flaw exploited to take over WordPress sites
A recently patched critical vulnerability (CVE-2026-32475) in the Elementor Pro plugin for WordPress is being exploited in attacks that deliver a webshell payload and execute arbitrary commands on the server. [...]
> Thomson Reuters Court Software Breach May Have Exposed SSNs and Sealed Data
Thomson Reuters disclosed on Wednesday that an unauthorized party obtained files from C-Track, the court case management platform sold by its West Publishing Corporation unit, in March 2026, affecting courts in 11 U.S. states, the U.S. Virgin Islands, and Ontario, Canada. West Publishing said it di...