[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> Medical records, SSNs, and bank details exposed in CareCloud data breach
Healthcare technology provider CareCloud confirmed that 3.75 million people were affected by a March data breach.
> Attackers impersonate popular AI brands to spread malware
Attackers are impersonating popular AI brands like Perplexity, Claude, ChatGPT, and Copilot to spread information stealers, backdoors, malicious browser extensions, and other malware, according to Sophos. Overview of MDR cases with AI involvement (Source: Sophos) Sophos X-Ops reviewed 12 months of m...
> Wazuh and AI For Enhanced SOC Workflows
Artificial Intelligence (AI) has become one of this decade's defining technologies. From healthcare and finance to manufacturing and education, organizations increasingly rely on AI to automate repetitive tasks, uncover patterns hidden within large datasets, and support faster decision-making. Cyber...
> Fake Conferences, OAuth and WhatsApp: Inside Russia’s New Espionage Tactics
Google tracks three Russia-linked espionage clusters using phishing and legitimate authentication tools to target researchers, diplomats and defense staff. Google’s Threat Intelligence Group tracked three separate suspected Russia-linked cyber espionage clusters. All three focus on the same thing: a...
> Microsoft warns of max severity Entra ID flaw exploited in attacks
Microsoft has patched a maximum-severity vulnerability in the Entra ID identity and access management (IAM) platform that has been exploited in attacks. [...]
> Hackers abuse FTP server banners to deliver new Windows malware
Threat actors are abusing FTP banners to hide commands that deliver two previously undocumented remote access trojans named E4del and PINHOLE. [...]
> Forensic Focus Digest, August 21 2026
Discover what’s new on Forensic Focus – explore UK police well-being funding, BitLocker decryption, protecting investigators working on child safeguarding cases, and more.
> Puériculture : trois bases clients revendiquées en 2026
Trois bases liées à la maternité et la puériculture sont revendiquées en 2026, dont Made in Bébé, Allobébé et Babyvista.
> SickKids data breach exposes employee and job applicant info
Toronto's Hospital for Sick Children (SickKids) says a cybersecurity incident exposed the personal information of some current and former employees and job applicants, stemming from a flaw in third-party software. Clinical systems and patient records were not affected. (264) [...]
> Cisco Patches Nine Crosswork and Secure Workload Flaws, Five Scoring CVSS 10.0
Cisco has published another round of security updates for Crosswork platforms and Secure Workload Software as part of a continued comprehensive internal security review. Four of the security vulnerabilities affect Crosswork Data Gateway, Crosswork Network Controller, and Crosswork Planning, regardl...
> GitLab Warns of Active Exploitation of Critical GraphQL Flaw
GitLab flaw CVE-2026-19478 is now under active exploitation, allowing unauthenticated attackers to modify or delete public projects. WatchTowr researchers warn of active exploitation of critical GitLab flaw CVE-2026-19478 (CVSS score of 9.4). This week, GitLab pushed out an emergency patch to addres...
> OpenAI adds an AI safety layer to detect misuse without retaining enterprise data
OpenAI is adding a new safety capability that allows enterprises to detect misuse of its AI systems across multiple interactions without retaining prompts or responses, enabling risk monitoring while preserving its Zero Data Retention (ZDR) commitments. “OpenAI does not ret...
> More Incidents of AIs Going Rogue in Cybersecurity Challenges
The AI Security Institute has a new report of AI systems engaging in “unsanctioned behavior”—what I have been calling “genie behavior—while being tested on their cybersecurity capabilities. The incident stemmed from a single evaluation where agents were given a task of solving a cyber security chall...
> Backdoored Rust packages hit crates.io, exposing developers to malware at build time
Malicious versions of three Rust packages, including the widely used arrayref, were published to the crates.io registry on August 20, carrying a backdoor that executed automatically when affected projects were compiled. Security researchers at Wiz said the attack also share...
> Graft, l’outil open source qui cartographie votre code pour les agents IA
Graft, outil open source signé Nanonets, transforme votre dépôt en graphe Markdown lisible par Claude Code, Cursor ou Codex. De quoi brûler moins de tokens. Le post Graft, l’outil open source qui cartographie votre code pour les agents IA a été publié sur IT-Connect.
> Rust Supply Chain Attack Linked to North Korean Hackers
Hackers pushed a poisoned arrayref version that added a dependency to fetch a malicious payload from a remote server. The post Rust Supply Chain Attack Linked to North Korean Hackers appeared first on SecurityWeek.
> GitLab : la faille critique CVE-2026-19478 est déjà exploitée, deux jours après le correctif
Deux jours après le correctif publié par GitLab, la faille critique CVE-2026-19478 fait l'objet de tentatives d'exploitation par les pirates. Le post GitLab : la faille critique CVE-2026-19478 est déjà exploitée, deux jours après le correctif a été publié sur IT-Connect.
> Windows 11 : la mise Ă  jour KB5121003 fait planter des jeux, Microsoft cherche une solution
Microsoft enquête sur les plantages de jeux provoqués par la mise à jour KB5121003 de Windows 11. Le studio Embark pointe le pilote tiers inpoutx64.sys. Le post Windows 11 : la mise à jour KB5121003 fait planter des jeux, Microsoft cherche une solution a été publié sur IT-Connect.
> Poland’s CERT Warns of Active Exploitation of Critical Zimbra Collaboration Suite Flaw
CERT Polska confirmed active exploitation of CVE-2026-73570, a critical unauthenticated RCE in Zimbra Collaboration Suite patched on July 20. CERT Polska, Poland’s national computer emergency response team, confirmed this week that threat actors are actively exploiting a critical vulnerability in Zi...
> Proton Mail trie enfin vos e-mails automatiquement, et sans lire leur contenu
Proton déploie les catégories dans Proton Mail : six onglets pour trier vos e-mails entrants, avec un classement basé sur les métadonnées et non sur le contenu. Le post Proton Mail trie enfin vos e-mails automatiquement, et sans lire leur contenu a été publié sur IT-Connect.