[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (14 articles)

|

// AI-powered summary generated at 16:00

> High-Risk SQLi Flaw Exposes WordPress Memberships Plugin Users
A vulnerability in the WordPress Paid Memberships Subscription plugin could lead to unauthenticated SQL injection on affected sites
> Three Lazarus RATs coming for your cheese
Authors: Yun Zheng Hu and Mick Koomen Introduction In the past few years, Fox-IT and NCC Group have conducted multiple incident response cases involving a Lazarus subgroup that specifically targets organizations in the financial and cryptocurrency sector. This Lazarus subgroup overlaps with activity...
> Three Lazarus RATs coming for your cheese
Authors: Yun Zheng Hu and Mick Koomen Introduction In the past few years, Fox-IT and NCC Group have conducted multiple incident response cases involving a Lazarus subgroup that specifically targets organizations in the financial and cryptocurrency sector. This Lazarus subgroup overlaps with activity...
> Ransomware Attack on Pennsylvania’s AG Office Disrupts Court Cases
Pennsylvania’s Attorney General confirmed the OAG had refused to pay a ransom demand to the attackers after files were encrypted
> Three Lazarus RATs coming for your cheese
Authors: Yun Zheng Hu and Mick Koomen Introduction In the past few years, Fox-IT and NCC Group have conducted multiple incident response cases involving a Lazarus subgroup that specifically targets organizations in the financial and cryptocurrency sector. This Lazarus subgroup overlaps with activity...
> 1st September – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 1st September, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES American consumer credit reporting agency TransUnion has suffered a data breach that resulted in the exposure of sensitive personal information for o...
> Amazon Stops Russian APT29 Watering Hole Attack Exploiting Microsoft Auth
The campaign shows APT29’s intentions to “cast a wider net in their intelligence collection efforts,” said Amazon
> Giglio - 1,026,468 breached accounts
In August 2025, over 1M unique email addresses appeared in a breach allegedly obtained from Italian fashion designer Giglio. The data also included names, phone numbers and physical addresses. Giglio did not respond to repeated attempts to disclose the incident.
> Salesloft Attacks Target Google Workspace
Adversaries targeting the Salesloft Drift application integration with Salesforce have also compromised Google Workspace accounts
> WhatsApp Patches Zero-Day, Zero-Click Flaw
WhatsApp has fixed a zero-day vulnerability linked to a sophisticated cyber-attack
> Mecklenburg County Public Schools
Mecklenburg County Public Schools est victime d'une faille de sécurité informatique, ce qui a entraîné une interruption de ses infrastructures numériques. L'école a activé ses protocoles de réponse et a fait appel à des experts en cybersécurité pour enquêter sur l'incident. Les enseignants ont été i...
> Bulletin d'actualité CERTFR-2025-ACT-036 (01 septembre 2025)
Ce bulletin d'actualité du CERT-FR revient sur les vulnérabilités significatives de la semaine passée pour souligner leurs criticités. Il ne remplace pas l'analyse de l'ensemble des avis et alertes publiés par le CERT-FR dans le cadre d'une analyse de risques pour prioriser l'application des...
> Artivo Surfaces
Artivo Surfaces detected suspicious activity on its network on September 1, 2025, and an unauthorized actor accessed or acquired certain information, including names and Social Security numbers. Artivo conducted a detailed review of the potentially impacted data and determined that information relat...
> Médias et blogs
Le projet de règlement européen visant à prévenir et combattre les abus sexuels sur les enfants, proposé par la Commission européenne, est en cours de négociation entre le Parlement et le Conseil de l'UE, soulevant d'importantes questions sur la surveillance des communications privées. La propositi...
> Weekly Update 467
Presently sponsored by: 1Password Extended Access Management: Secure every sign-in for every app on every device.Using AI to analyse photos and send alerts if I've forgotten to take the bins out isn't going to revolutionise my life, no more so than using it to describe who's at the mailbox when a le...
> Wrap Up: The Month of AI Bugs
That’s it. The Month of AI Bugs is done. There won’t be a post tomorrow, because I will be at PAX West. Overview of Posts ChatGPT: Exfiltrating Your Chat History and Memories With Prompt Injection | Video ChatGPT Codex: Turning ChatGPT Codex Into a ZombAI Agent | Video Anthropic Filesystem MCP Serve...
> AWO Karlsruhe-Land
Une cyberattaque a paralysé les systèmes informatiques de l'AWO Karlsruhe-Land, et les investigations suggèrent que la responsabilité pourrait incomber à un groupe criminel issu du milieu russe. L'AWO Karlsruhe-Land a confirmé que les systèmes étaient hors service. Les autorités enquêtent sur l'inci...
> Jaguar Land Rover
Jaguar Land Rover, une filiale de Tata Motors, a subi une perturbation de ses systèmes informatiques à l'échelle mondiale, ce qui a un impact sur ses opérations commerciales. L'incident a été signalé dans un fichier réglementaire auprès des bourses de valeurs indiennes le 1er septembre 2025. Le sect...
> Slackware 15.0: udisks2 Critical Local Escalation Fix SSA:2025-242-01
New udisks2 packages are available for Slackware 15.0 and -current to fix a security issue.
> Bridgestone
L'usine Bridgestone à Joliette est à l'arrêt en raison d'une possible cyberattaque, plus de 1400 employés sont touchés. L'entreprise a indiqué avoir contenu rapidement l'incident de cybersécurité et ne pense pas que les données des employés ou des clients aient été compromises. Les dispositifs affec...