[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (1 articles)

|

// AI-powered summary generated at 08:00

> Securing agentic AI: Your guide to the Microsoft Ignite sessions catalog
​Security is a core focus at Microsoft Ignite 2025, reflected in dedicated sessions and hands-on experiences designed for security professionals and leaders. Take a look at the session catalog. The post Securing agentic AI: Your guide to the Microsoft Ignite sessions catalog appeared first on Micro...
> New ClayRat Spyware Targets Android Users via Fake WhatsApp and TikTok Apps
A rapidly evolving Android spyware campaign called ClayRat has targeted users in Russia using a mix of Telegram channels and lookalike phishing websites by impersonating popular apps like WhatsApp, Google Photos, TikTok, and YouTube as lures to install them. "Once active, the spyware can exfiltrate...
> Investigating targeted “payroll pirate” attacks affecting US universities
Microsoft Threat Intelligence has identified a financially motivated threat actor that we track as Storm-2657 compromising employee accounts to gain unauthorized access to employee profiles and divert salary payments to attacker-controlled accounts, attacks that have been dubbed “payroll pirate”. T...
> Oracle Linux 7: ELSA-2025-16130 udisks2 Important Index Underflow Fix
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:
> Alexander Fehrmann: How To Analyze Impression Evidence In Amped FIVE
Amped Software’s Alexander Fehrmann explains how fingerprints, shoeprints, and other impressions become courtroom-ready with Amped FIVE.
> HTTP/1.1 must die: Dafydd Stuttard on what this means for enterprise security
At Black Hat USA 2025 and DEF CON 33, PortSwigger's Director of Research, James Kettle, unveiled new HTTP desync techniques that prove one thing beyond doubt: HTTP/1.1 is broken, and every organizatio
> Introducing REACT: Why We Built an Elite Incident Response Team
We're launching Cloudforce One REACT, a team of expert security responders designed to eliminate the gap between perimeter defense and internal incident response.
> Oracle E-Business Suite Zero-Day Exploited in Widespread Extortion Campaign
Written by: Peter Ukhanov, Genevieve Stark, Zander Work, Ashley Pearson, Josh Murchie, Austin Larsen Update (Oct. 15) Added new information for CVE-2025-61844. Introduction Beginning Sept. 29, 2025, Google Threat Intelligence Group (GTIG) and Mandiant began tracking a new, large-scale extortion cam...
> Hackers Access SonicWall Cloud Firewall Backups, Spark Urgent Security Checks
SonicWall on Wednesday disclosed that an unauthorized party accessed firewall configuration backup files for all customers who have used the cloud backup service. "The files contain encrypted credentials and configuration data; while encryption remains in place, possession of these files could incre...
> How to protect your car from hacking | Kaspersky official blog
We explore cyberthreats facing modern cars, and share practical advice on protecting your vehicle from hacking and theft in 2025.
> SonicWall breach hits every cloud backup customer after 5% claim goes up in smoke
Affects users regardless of when their backups were created SonicWall has admitted that all customers who used its cloud backup service to store firewall configuration files were affected by a cybersecurity incident first disclosed in mid-September, walking back earlier assurances that only a small...
> Researchers Warn of Security Gaps in AI Browsers
A new report from SquareX Labs highlights security weaknesses in AI browsers like Comet, revealing new cyber-risks
> ClayRat Spyware Campaign Targets Android Users in Russia
A new ClayRat spyware campaign has been observed targeting Russian users via fake apps on Telegram and exfiltrating data
> ThreatsDay Bulletin: MS Teams Hack, MFA Hijacking, $2B Crypto Heist, Apple Siri Probe & More
Cyber threats are evolving faster than ever. Attackers now combine social engineering, AI-driven manipulation, and cloud exploitation to breach targets once considered secure. From communication platforms to connected devices, every system that enhances convenience also expands the attack surface. T...
> RĂ©sultat de l’appel Ă  manifestation d’intĂ©rĂȘt
RĂ©sultat de l’appel Ă  manifestation d’intĂ©rĂȘt anssiadm jeu 09/10/2025 - 11:52 L’ANSSI a publiĂ© le 22 aoĂ»t 2025 un appel Ă  manifestation d‘intĂ©rĂȘt (AMI) pour le renforcement de l’accompagnement local aux enjeux de cybersĂ©curitĂ©, AMI clos le 15 septembre....
> The Growing Landscape of Seizable Crypto Assets: On-Chain Balances Linked to Criminal Activity Exceed $75 Billion
Key findings Criminal balances Illicit entities hold nearly $15 billion in 2025, with stolen funds representing the largest category. Wallets
 The post The Growing Landscape of Seizable Crypto Assets: On-Chain Balances Linked to Criminal Activity Exceed $75 Billion appeared first on Chainalysis.
> SaaS Breaches Start with Tokens - What Security Teams Must Watch
Token theft is a leading cause of SaaS breaches. Discover why OAuth and API tokens are often overlooked and how security teams can strengthen token hygiene to prevent attacks. Most companies in 2025 rely on a whole range of software-as-a-service (SaaS) applications to run their operations. However,...
> All SonicWall Cloud Backup Users Have Firewall Configuration Files Stolen
SonicWall said that a threat actor has accessed files containing encrypted credentials and configuration data for all customers who have used its cloud backup service
> California just put people back in control of their data
California just passed 14 new privacy and AI laws. We’re highlighting a few that give users real control over their personal data.
> Oracle Linux 10: ELSA-2025-17429 open-vm-tools Important CVE-2025-41244
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network: