[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> Eliminating Cold Starts 2: shard and conquer
We reduced Cloudflare Workers cold starts by 10x by optimistically routing to servers with already-loaded Workers. Learn how we did it here.
> Network performance update: Birthday Week 2025
On the Internet, being fast is what matters and at Cloudflare, we are committed to being the fastest network in the world.
> The Good, the Bad and the Ugly in Cybersecurity – Week 39
Cops make quick arrest after attack on airports, DPRK adversaries team up to weaponize developer identities, and PRC targets edge devices in US companies.
> ArcaneDoor Threat Actor Resurfaces in Continued Attacks Against Cisco Firewalls
An attack campaign has been identified which exploits vulnerabilities in Cisco Adaptive Security Appliance software
> Early Years practitioners: using cyber security to protect your settings
How to protect sensitive information about your setting and the children in your care from accidental damage and online criminals.
> Interpol Cracks Down on Large-Scale African Scamming Networks
The effort, named Operation Contender 3.0, led to the arrest of 260 suspected cybercriminals
> JLR Begins Phased Restart of Operations After Cyber-Attack
JLR said it is in a position to start clearing its backlog of payments for suppliers, while its parts logistics center is returning to full operations
> Roblox executors: It’s all fun and games until someone gets hacked
You could be getting more than you bargained for when you download that cheat tool promising quick wins
> New LockBit Ransomware Variant Emerges as Most Dangerous Yet
Trend Micro highlighted the new LockBit version’s improved technical improvements and cross-platform functionality compared to previous iterations
> Pointer leaks through pointer-keyed data structures
Introduction Some time in 2024, during a Project Zero team discussion, we were talking about how remote ASLR leaks would be helpful or necessary for exploiting some types of memory corruption bugs, specifically in the context of Apple devices. Coming from the angle of “where would be a good first pl...
> How Cloudflare uses the world’s greatest collection of performance data to make the world’s fastest global network even faster
Cloudflare is using its vast traffic to send responses faster than ever before, by learning the characteristics of each individual network and tuning our congestion control system.
> ZDI-25-918: Fortinet FortiWeb _cmf_get_config_file_path Directory Traversal Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Fortinet FortiWeb. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 4.9. The following CVEs are assigned: CVE-2025-53609.
> MPDV Mikrolab GmbH
Le spécialiste en logiciels MPDV Mikrolab GmbH a été victime d'une attaque informatique, mais grâce à une intervention rapide, aucun dommage n'a été causé et les données des clients sont sécurisées. Les autorités ont été informées et les traces sécurisées ont été transmises pour une enquête plus app...
> Bagnoles
L'attaque n'a pas été revendiquée, mais l'enseigne Qilin divulgue des données présentées comme issues des systèmes de Bagnoles.
> Slackware 15.0 expat Critical Fix SSA:2025-268-01 CVE-2025-59375
New expat packages are available for Slackware 15.0 and -current to fix a security issue.
> Medical Computer Business Services (MCBS)
Medical Computer Business Services (MCBS), une société de facturation médicale, a révélé une violation de son réseau survenue entre le 22 et le 26 septembre 2025. L'attaque, revendiquée le groupe de ransomware PEAR le 30 septembre, a exposé les informations sensibles de plus de 1,2 million de person...
> Debian: DSA-6011-1 ThunderBird Critical Exec Code Threats CVE-2025-10527
Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. Debian follows the Thunderbird upstream releases. Support for the
> California: Tweet at Governor Newsom to Get A.B. 566 Signed Into Law
We need your help to make a common-sense bill into California law. Despite the fact that California has one of the nation’s most comprehensive data privacy laws, it’s not always easy for people to exercise those privacy rights. A.B. 566 intends to make it easy by directing browsers to give all their...
> Enabling AI adoption at scale through enterprise risk management framework – Part 2
In Part 1 of this series, we explored the fundamental risks and governance considerations. In this part, we examine practical strategies for adapting your enterprise risk management framework (ERMF) to harness generative AI’s power while maintaining robust controls. This part covers: Adapting your E...
> Enabling AI adoption at scale through enterprise risk management framework – Part 1
According to BCG research, 84% of executives view responsible AI as a top management responsibility, yet only 25% of them have programs that fully address it. Responsible AI can be achieved through effective governance, and with the rapid adoption of generative AI, this governance has become a busin...