[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (3 articles)

|

// AI-powered summary generated at 08:00

> [local] Microsoft Windows - Storage QoS Filter Driver Checker
Microsoft Windows - Storage QoS Filter Driver Checker
> [webapps] projectworlds Online Admission System 1.0 - SQL Injection
projectworlds Online Admission System 1.0 - SQL Injection
> Yes24
Yes24, le plus grand détaillant de billets et de livres en ligne de Corée du Sud, a subi une attaque de ransomware qui a mis son site Web et son application mobile hors ligne pendant plusieurs heures. Il s'agit de la deuxième attaque de ce type en moins de deux mois pour l'entreprise. Les services o...
> [remote] Cisco ISE 3.0 - Authorization Bypass
Cisco ISE 3.0 - Authorization Bypass
> [remote] Cisco ISE 3.0 - Remote Code Execution (RCE)
Cisco ISE 3.0 - Remote Code Execution (RCE)
> Office of the Attorney General of Pennsylvania
Le bureau de l'avocat général de Pennsylvanie a été victime d'une cyberattaque qui a mis hors ligne ses systèmes téléphoniques et de messagerie électronique. Les enquêteurs travaillent pour déterminer la cause de l'incident et restaurer les services. Les procureurs continuent de travailler sur les a...
> Linedata
Une cyberattaque a visé le fournisseur français de services de gestion de fonds Linedata, ce qui a entraîné la suspension de fonds utilisant Tutman Fund Solutions en tant que directeur corporatif autorisé. L'attaque a eu un impact sur environ 80 fonds. Linedata est une entreprise de technologie, de...
> Bulletin d'actualité CERTFR-2025-ACT-033 (11 août 2025)
Ce bulletin d'actualité du CERT-FR revient sur les vulnérabilités significatives de la semaine passée pour souligner leurs criticités. Il ne remplace pas l'analyse de l'ensemble des avis et alertes publiés par le CERT-FR dans le cadre d'une analyse de risques pour prioriser l'application des...
> Welcome Financial Group
Un groupe russe a revendiqué une attaque par ransomware contre Welrix I&F, une filiale de Welcome Financial Group, et a affirmé avoir acquis la base de données des clients. L'entreprise a alerté les autorités de cybersécurité et les autorités financières. L'attaque est la dernière d'une série de cyb...
> Organisme canadien de réglementation des investissements (OCRI)
L'Organisme canadien de réglementation des investissements a été victime d'une menace de cybersécurité, des renseignements personnels de courtiers membres ont été touchés, mais les données des investisseurs ne sont pas affectées. L'OCRI collabore avec des experts pour cerner l'ampleur de l'attaque e...
> ZombAI Exploit with OpenHands: Prompt Injection To Remote Code Execution
Today we have another post about OpenHands from All Hands AI. It is a popular agent, initially named “OpenDevin”, and recently the company also provides a cloud-based service. Which is all pretty cool and exciting. Prompt Injection to Full System Compromise However, as you know, LLM powered apps and...
> Wellborn & Company, LLC
Wellborn & Company, LLC experienced a ransomware event on August 11, 2025, which resulted in unauthorized access to certain data. The affected data may include names and other types of information. The company is providing complimentary identity monitoring services to affected individuals.
> BTU International
BTU International experienced a ransomware attack in August 2025, resulting in unauthorized access to its IT systems and potential exposure of personal information. The affected information may have included individuals' names, Social Security numbers, and financial account numbers. BTU is providing...
> L’Usine digitale
Google et Cisco à leur tour victimes de fuites de données depuis un système CRM Les deux sociétés ont annoncé avoir été visées par des campagnes de phishing vocal – ou vishing – permettant à des acteurs malveillants de s’introduire dans les bases de données de logiciels tiers de gestion de la relat...
> Washington Prime Group Holdings L.P.
Washington Prime Group Holdings L.P. suffered a cyber security event where an unauthorized third party gained access to certain systems within their network, potentially viewing or taking personal information between July 30, 2025, and August 9, 2025. An attack was claimed by Worldleaks on September...
> Manhattan Theatre Club
Manhattan Theater Club experienced a data security incident that may have involved personal information. The incident occurred on August 11, 2025, when an unknown actor accessed and acquired certain personal information without authorization. MTC has no evidence of any actual or suspected misuse of...
> Trail of Bits' Buttercup wins 2nd place in AIxCC Challenge
Our team won the runner-up prize of $3M at DARPA’s AI Cyber Challenge, demonstrating Buttercup’s world-class automated vulnerability discovery and patching capabilities with remarkable cost efficiency.
> TAKBroadband, LLC
TAKBroadband, LLC experienced a security incident where an unauthorized third party accessed certain systems and acquired files containing personal information between August 2, 2025, and August 12, 2025. The affected files contained names and other personal information. The incident was discovered...
> Greater Pittsburgh Orthopedic Associates Inc.
Greater Pittsburgh Orthopedic Associates Inc. experienced a data security incident involving unauthorized access to their computer network, potentially affecting personal or health information. The incident occurred on August 10, 2025, and the organization has taken measures to secure their environm...
> #DEFCON: AI Cyber Challenge Winners Revealed in DARPA’s $4M Cybersecurity Showdown
The winners of the AI Cybersecurity Challenge (AIxCC), Team Atlanta, won a $4m prize