[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (109 articles)

|

// AI-powered summary generated at 20:00

> Chinese Video Surveillance Vendor Hikvision to Fight Canadian Ban
China’s Hikvision vows legal battle after Canada bans its operations, citing national security concerns
> New Bert Ransomware Group Strikes Globally with Multiple Variants
Trend Micro has observed the Bert ransomware group in operation since April 2025, with confirmed victims in sectors including healthcare, technology and event services
> xvulnhuntr
In 2024 we looked at the possibility of leveraging open weights LLMs for source code analysis. The answer was clearly negative, as a small code base could easily take 200K tokens, more than any context window offered by open weights models. The table below summarizes the top LLMs by context window a...
> Unauthenticated SQL injection in GUI
An improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability [CWE-89] in FortiWeb may allow an unauthenticated attacker to execute unauthorized SQL code or commands via crafted HTTP or HTTPs requests.Fortinet has observed this to be exploited in the wild on F...
> SQL injection in forward module
An Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability [CWE-89] in FortiManager and FortiAnalyzer may allow an authenticated attacker with high privilege to extract database information via crafted requests. Revised on 2025-07-09 00:00:00
> Ameos
Le groupe hospitalier Ameos a été victime d'une attaque informatique, ce qui a entraîné la fermeture de ses systèmes numériques. Les hôpitaux de Mecklenburg-Vorpommern ont été touchés, avec des perturbations du trafic électronique et des services numériques. Les systèmes sont désormais de nouveau en...
> Heap-based buffer overflow in cw_stad daemon
A heap-based buffer overflow vulnerability [CWE-122] in FortiOS cw_stad daemon may allow an authenticated attacker to execute arbitrary code or commands via specifically crafted requests. Revised on 2025-11-03 00:00:00
> York City
La ville de York a subi une cyberattaque l'été dernier, ce qui a entraîné une interruption de ses systèmes informatiques et a nécessité un paiement de rançon de 500 000 dollars. L'attaque a commencé le 8 juillet et a pris le contrôle de l'infrastructure informatique de la ville. Le montant payé repr...
> La Perouse, LLC
La Perouse, LLC suffered a data breach due to unauthorized access to one of their third-party billing platforms, resulting in the potential exposure of patient billing information. The breach occurred in July 2025, and the company became aware of it on July 8, 2025. A cyberattack was claimed by Ever...
> Unless users take action, Android will let Gemini access third-party apps
Important changes to Android devices took effect starting Monday.
> ESET PSA plugin Service Release 2.3 has been released
ESET PSA plugin Service Release 2.3 is now available by logging in to the ESET PSA plugin portal.
> Iran-Aligned Hacking Group Targets Middle Eastern Governments
Iran-aligned BladedFeline group has been observed targeting the government of Iraq and KRG with advanced malware
> Isolated Recovery Environments: A Critical Layer in Modern Cyber Resilience
Written by: Jaysn Rye Executive Summary As adversaries grow faster, stealthier, and more destructive, traditional recovery strategies are increasingly insufficient. Mandiant's M-Trends 2025 report reinforces this shift, highlighting that ransomware operators now routinely target not just production...
> Researchers Share CitrixBleed 2 Detection Analysis After Initial Hold
Vulnerability research company WatchTowr published a detection analysis for the Citrix Blled 2 flaw
> Hackers Target Employee Credentials Amid Spike in ID Attacks
Cybersecurity researchers have observed a 156% increase in credential theft incidents between 2024 and Q1 2025
> AzureWave Technologies, Inc.
Une entreprise a subi une attaque de hackers, mais grâce à son système de détection, elle a pu prendre des mesures pour limiter les dégâts et n'a pas subi d'impact significatif sur ses opérations financières et commerciales. L'entreprise va continuer à améliorer la sécurité de son réseau et de ses i...
> Qantas Contacted by Potential Cybercriminal Following Data Breach
Qantas said it is currently validating the contact, and has informed law enforcement
> Hundreds of Malicious Domains Registered Ahead of Prime Day
Check Point has discovered over 1000 suspicious domains registered in the run-up to Amazon Prime Day
> La Biennale di Venezia
La Biennale di Venezia a été victime d'une attaque informatique le 7 juillet 2025, les techniciens ont isolé les systèmes et les autorités ont été informées. Les opérations de ripristino ont permis la réactivation progressive des services. La Biennale fournira des informations aux personnes dont les...
> IT Giant Ingram Micro Reveals Ransomware Breach
Distributor Ingram Micro says it has found ransomware on its internal systems