[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> Chromium: CVE-2025-11206 Heap buffer overflow in Video
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/202 5) for more information.
> Family group chats: Your (very last) line of cyber defense
Amy gives an homage to parents in family group chats everywhere who want their children to stay safe in this wild world.
> Subpoena tracking platform blames outage on AWS social engineering attack
Software maker Kodex said its domain registrar fell for a fraudulent legal order A software platform used by law enforcement agencies and major tech companies to manage subpoenas and data requests went dark this week after attackers socially engineered AWS into freezing its domain.…
> Tips to Protect Your Posts About Reproductive Health From Being Removed
This is the ninth installment in a blog series documenting EFF’s findings from the Stop Censoring Abortion campaign. You can read additional posts here.   Meta has been getting content moderation wrong for years, like most platforms that host user-generated content. Sometimes it’s a result of del...
> Defending against supply chain attacks like Chalk/Debug and the Shai-Hulud worm
Building on top of open source packages can help accelerate development. By using common libraries and modules from npm, PyPI, Maven Central, NuGet, and others, teams can focus on writing code that is unique to their situation. These open source package registries host millions of packages that are...
> US Government Shutdown to Slash Federal Cybersecurity Staff
The US government shutdown is estimated to result in around 65% of CISA staff being furloughed, with fears that threat actors will exploit critical security gaps
> InfoSec News Nuggets 10/02/2025
UK Government Issues New Order to Access iCloud User Data The report reveals that, in early September, the UK Home Office demanded that Apple creates a way for officials to access encrypted ‌iCloud‌ backups. Unlike its previous order, the latest request focuses on the ‌iCloud‌ data of British citize...
> Hackers are sending extortion emails to executives after claiming Oracle apps’ data breach
Google says hackers associated with the Clop ransomware gang are emailing executives at multiple organizations claiming to have stolen their personal information from a suite of Oracle E-Business apps.
> Extortion Emails Sent to Executives by Self-Proclaimed Clop Gang Member
The initial investigation shows early signs of links with the FIN11 and Clop cyber extortion groups
> Last chance alert: Founder and Investor Bundle savings for TechCrunch Disrupt 2025 ends tomorrow
Founder and Investor Bundle savings for TechCrunch Disrupt 2025 end tomorrow, October 3. Groups of 4–9 founders save 15% and investors save 20%. Access top VCs, pitch-ready startups, and hands-on sessions.
> Confucius Shifts from Document Stealers to Python Backdoors
The Confucius cyber-espionage group has shifted its tactics from document-focused stealers to Python-based backdoors like AnonDoor
> Free VPN Apps Found Riddled With Security Flaws
A new study by Zimperium has revealed serious risks in free VPN apps, exposing users to privacy threats and security flaws
> How to protect yourself from "voting" phishing scams, and avoid losing your WhatsApp account | Kaspersky official blog
We examine a new wave of phishing attacks targeting WhatsApp users, and explain how to avoid getting hacked.
> Expired US Cyber Law Puts Data Sharing and Threat Response at Risk
Experts argued that the lapse of the Cybersecurity Information Sharing Act could have far-reaching consequences in US national cyber defenses
> UAT-8099: Chinese-speaking cybercrime group targets high-value IIS for SEO fraud
Cisco Talos is disclosing details on UAT-8099, a Chinese-speaking cybercrime group mainly involved in SEO fraud and theft of high-value credentials, configuration files, and certificate data.
> Forrester: Agentic AI-Powered Breach Will Happen in 2026
Forrester predicts agentic AI will be responsible for a major data breach in 2026
> New spyware campaigns target privacy-conscious Android users in the UAE
ESET researchers have discovered campaigns distributing spyware disguised as Android Signal and ToTok apps, targeting users in the United Arab Emirates
> Phishing Dominates EU-Wide Intrusions, says ENISA
ENISA reveals phishing and vulnerability exploitation accounted for majority of intrusions in past year
> Le MOOC « SecNumacadémie » en cours d’évolution
Le MOOC « SecNumacadémie » en cours d’évolution anssiadm jeu 02/10/2025 - 07:42 Le MOOC de l’ANSSI SecNumacadémie va évoluer et ne sera plus disponible sur la plateforme en ligne à partir du 28 février 2026. Dans les mois qui suivront, une nouvelle plateforme de form...
> Les écoles sont confrontées à des risques de cybersécurité à l’intérieur et à l’extérieur de la salle de classe
Alors que les élèves sont maintenant retournés en classe, il est essentiel que les administrateurs et les équipes IT restent vigilants face aux acteurs malveillants opportunistes.