[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> AEPD - autorité espagnole
L'autorité espagnole de protection des données sanctionne une entreprise pour avoir utilisé un système de vidéosurveillance captant le son dans des zones de travail, jugeant cette collecte de données audio excessive et non justifiée au regard du principe de minimisation.Faits et contexteL'Agence esp...
> Datatilsynet - autorité danoise
L'autorité danoise de protection des données (Datatilsynet) a clôturé son enquête d'initiative sur l'application de transport "Rejsekort". La décision analyse en profondeur la collecte continue de données de localisation lorsque les utilisateurs oublient de se déconnecter à la fin de leur trajet, au...
> AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure
The U.S. government on Wednesday warned of an "active threat" targeting critical infrastructure organizations in the country using artificial intelligence (AI)-generated exploit scripts. The activity is targeting Siemens S7 SeriesProgrammable Logic Controllers (PLCs) to conduct reconnaissance and c...
> Datatilsynet - autorité norvégienne
L'autorité norvégienne de protection des données (Datatilsynet) annonce sa participation au Festival de la Sécurité 2026, où elle tiendra une conférence sur les risques liés à l'usage non maîtrisé des agents d'intelligence artificielle.L'événement se déroulera du 24 au 26 août à Lillehammer, et l'au...
> UODO - autorité polonaise
La Commission européenne a lancé une consultation publique dans le cadre de la seconde évaluation de la directive 2016/680, dite "directive police", et l'autorité polonaise de protection des données encourage les parties prenantes à y participer.Conformément à l'article 62 de la directive 2016/680,...
> Le NFI a déverrouillé un Google Pixel dans une affaire criminelle néerlandaise
Le parquet néerlandais annonce que l'institut forensique a ouvert le smartphone Google Pixel d'un suspect, de quoi relancer certains débats. Le post Le NFI a déverrouillé un Google Pixel dans une affaire criminelle néerlandaise a été publié sur IT-Connect.
> AEPD - autorité espagnole
L'autorité espagnole a archivé une procédure concernant une caméra de vidéosurveillance installée par un particulier, estimant qu'aucune infraction affectant le contenu essentiel du droit à la protection des données n'était établie, notamment en raison d'un contexte de conflit de voisinage et du ret...
> AP - autorité néerlandaise
L'Autorité de protection des données néerlandaise (AP) recommande aux utilisateurs de la plateforme Twitch de désactiver une option de partage de leurs données personnelles destinées à l'entraînement des modèles d'intelligence artificielle d'Amazon.Twitch, une filiale d'Amazon, a informé que les don...
> Keep important emails in focus with Proton Mail Categories
Proton Mail now sorts your inbox into Categories automatically, while keeping the contents of your email private. Less noise, more focus.
> PIPC - autorité sud-coréenne
La Commission de protection des informations personnelles (PIPC) de Corée du Sud a annoncé l'adoption par l'Assemblée nationale d'un amendement à la Loi sur la protection des informations personnelles, instaurant une dérogation pour l'utilisation de données à caractère personnel dans le développemen...
> Researcher tricks Apple’s Find My into sharing location data with Linux
Clever protocol wrangling gets iBiz-only people tracking working on a non-iGadget
> How to build a secure employee onboarding process for your business
Employee onboarding is one of the most critical – and often overlooked – moments in a company’s security lifecycle. While businesses focus on productivity and integration, the first hours and days of a new hire’s journey frequently introduce unnecessary risk. These early-stage decisions can estab...
> Retail theft bill spurs ‘very large and very dangerous’ surveillance fears
The Combating Organized Retail Crime Act has won a big House vote and could be on the fast track in the Senate — and supporters say it could help fight cybercrime. The post Retail theft bill spurs ‘very large and very dangerous’ surveillance fears appeared first on CyberScoop.
> Hackers Target Zimbra Servers in Active Exploitation Campaign
Exploitation of the Zimbra Collaboration vulnerability CVE-2026-73570 has been observed by Poland’s CERT Polska. The post Hackers Target Zimbra Servers in Active Exploitation Campaign appeared first on SecurityWeek.
> ChatGPT for Teens tackles risky chats and homework shortcuts
OpenAI has strengthened ChatGPT's protections for teens, but some of its strongest parental controls still depend on linked accounts.
> Critical Elementor Pro bug exposes WordPress sites to RCE attacks
A critical vulnerability in the Elementor Pro WordPress plugin could allow attackers to upload executable files for remote code execution on the server. [...]
> New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data
Adversa AI has disclosed an attack technique that it says can cause xAI's Grok chatbot to send a user's name, approximate location, subscription tier, and the prompts from the ongoing conversation to an attacker-controlled server after the user asks it to summarize an ordinary web page. The AI secu...
> Debian libgit2 Vulnerability DSA-6453-1 for Command Execution Risks
Multiple security vulnerabilities in libgit2 could lead to arbitrary command execution, credential disclosure, denial of service, or unauthorized directory creation. Users are advised to upgrade to version 1.9.0+ds-2+deb13u1.
> JFrog Artifactory Flaws Enable Software Supply Chain Attacks
Two Artifactory flaws allowed attackers to poison package metadata across software repositories
> Surveillance – Everything You Wanted to Know, But Were Afraid to Ask
We all know they’re watching us. But we don’t know who they are, nor why nor how they are doing it. The post Surveillance – Everything You Wanted to Know, But Were Afraid to Ask appeared first on SecurityWeek.