[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (1 articles)

|

// AI-powered summary generated at 00:01

> Creams Cafe - 159,652 breached accounts
In May 2025, 160k records of customer data was allegedly obtained from Creams Cafe, "the UK's favourite dessert parlour". The data included email and physical addresses, names and phone numbers. Creams Cafe did not respond to repeated attempts to disclose the incident, however multiple impacted HIBP...
> Post
Le groupe Post a subi une cyberattaque ciblée qui a affecté l'ensemble de son réseau, causant des perturbations importantes dans le pays. Les analyses forensiques ont permis d'identifier la cause de l'incident, qui a été qualifiée de cyberattaque d'un niveau technique avancé. Aucune donnée n'a été c...
> Slackware 15.0: Mozilla-Thunderbird Critical Issue Advisory 2025-203-02
New mozilla-thunderbird packages are available for Slackware 15.0 and -current to fix security issues.
> Slackware 15.0: mozilla-firefox Important Security Fix SSA:2025-203-01
New mozilla-firefox packages are available for Slackware 15.0 and -current to fix security issues.
> Russian Threat Actors Target NGOs with New OAuth Phishing Tactics
A new wave of phishing attacks exploiting Microsoft 365 OAuth tools has been observed impersonating diplomats to steal access codes
> Widespread Net RFQ Scam Targets High-Value Goods
A widespread RFQ scam exploited net payment terms to fraudulently obtain high-value devices
> Why is your data worth so much? | Unlocked 403 cybersecurity podcast (S2E4)
Behind every free online service, there's a price being paid. Learn why your digital footprint is so valuable, and when you might actually be the product.
> SharePoint 'ToolShell' Vulnerabilities Exploited by Chinese Nation-State Hackers
Microsoft has observed three China-based threat actors, Linen Typhoon, Violet Typhoon and Storm-2603, exploiting the SharePoint vulnerabilities
> UK Confirms Ransomware Payment Ban for Public Sector and CNI
The UK government said a public consultation showed widespread support on a payment ban for public sector and CNI organizations
> CVE-2025-29819 Windows Admin Center in Azure Portal Information Disclosure Vulnerability
Updated acknowledgment. This is an informational change only.
> Ransomware Group Uses AI Chatbot to Intensify Pressure on Victims
Despite being a rebrand of several ransomware families, GLOBAL GROUP innovated with the use of an AI chatbot in the negotiation process
> Australian Regulator Alleges Financial Firm Exposed Clients to Unacceptable Cyber Risks
ASIC said the financial services firm’s failings led to a data breach impacting nearly 10,000 clients
> CVE-2022-44693 Microsoft SharePoint Server Remote Code Execution Vulnerability
Updated the build numbers. This is an informational update only.
> AI Adoption is Driving SOC Role Reallocation Without Cutting Headcount
Abnormal AI found that 96% of security leaders have no plans to reduce the headcount in SOC teams as a result of AI adoption, instead focusing on reallocating roles
> SĂĽdwestdeutsche Medienholding (SWMH)
La Südwestdeutsche Medienholding a été victime d'une attaque de pirates informatiques, des tiers non autorisés ont pu accéder à son réseau, la société a déclaré un incident de sécurité informatique critique et est en contact étroit avec les autorités de sécurité.
> Gap International, Inc.
Gap International, Inc. experienced a network disruption on July 22, 2025, which led to unauthorized access to certain files containing personal information. The affected data included names, Social Security numbers, driver's license or state ID numbers, medical information, and health insurance inf...
> Introducing OSS Rebuild: Open Source, Rebuilt to Last
Posted by Matthew Suozzo, Google Open Source Security Team (GOSST)Today we're excited to announce OSS Rebuild, a new project to strengthen trust in open source package ecosystems by reproducing upstream artifacts. As supply chain attacks continue to target widely-used dependencies, OSS Rebuild gives...
> HealthcareInteractive, Inc.
HealthcareInteractive, Inc. suffered a security incident where an unauthorized actor copied certain files from their computer network between July 8, 2025, and July 12, 2025. The incident was discovered on or about July 22, 2025. The company is offering complimentary access to credit monitoring serv...
> Nova Biomedical Corp.
Nova Biomedical Corp. experienced a sophisticated cybersecurity attack on July 22, 2025, which may have impacted personally identifiable information. The company is offering complimentary access to Experian IdentityWorks for 24 months to help protect affected individuals. Nova is also providing info...
> Iranian Hackers Deploy New Android Spyware Version
New samples of DCHSpy, a spyware implant linked to Iranian APT group MuddyWater, were detected by Lookout one week after the start of the Israel-Iran conflict