> TODAY'S SUMMARY (44 articles)
In Q3 2026, ransomware attacks reached a record high of 2,627, particularly impacting critical sectors like finance and healthcare. Citrix has issued urgent patches for a critical NetScaler vulnerability (CVE-2026-107406) that could allow remote code execution. Meanwhile, hackers hijacked multiple country code top-level domains (ccTLDs) linked to Google, raising concerns over domain security. An update on the ASOS breach reveals that customer data, including shopping habits, has been compromised, increasing phishing risks. The FBI has disrupted operations of Chinese state-sponsored hacking tools, while new vulnerabilities in AhsayCBS are being actively exploited. Additionally, the rise of pre-installed malware on low-cost Android devices highlights ongoing threats in mobile security.
|
// AI-powered summary generated at 12:00
Kettering Health a subi une attaque informatique qui a provoqué une panne technologique généralisée, les procédures électives ont été annulées pour la journée. Les salles d'urgence et les cliniques restent ouvertes et continuent de soigner les patients. L'hôpital travaille avec une organisation tier...
Le Département dit avoir été victime d’une cyberattaque qualifiée de grande ampleur. Il indique que l’ensemble de ses systèmes d’information et de ses moyens de communication habituels ont été désactivés pour une période indéterminée.
ESET Chief Security Evangelist Tony Anscombe highlights key findings from the latest issue of the ESET APT Activity Report
Resonac Holdings Corporation a subi une attaque extérieure sur certains de ses serveurs, entraînant une infection par rançongiciel. L'entreprise a mis en place un quartier général de réponse d'urgence pour enquêter sur l'ampleur de l'impact et mettre en œuvre des mesures de récupération. Les efforts...
Bruckner's of Amarillo suffered a data breach due to a brute force attack on their database, which compromised personal information of current and former employees. The breach was discovered on May 21, 2025, and the bad actor's access was eliminated the same day. The compromised information includes...
Malicious dbgpkg package on PyPI poses as a debugging utility but acts as a delivery mechanism for a stealthy backdoor
DALB, Inc. experienced a data security incident where certain files may have been accessed or acquired without authorization on May 20, 2025. The incident involved personal information including names, Social Security numbers, passport numbers, medical information, and health insurance policy number...
RomethemeKit for Elementor has released a patch addressing an RCE vulnerability exposing 30,000 sites
Civil society groups and academics are calling for the EU's GDPR to remain unchanged following the EU Commission's plans to revisit it
Le Clusif a tenu son assemblée générale le 13 mai dernier, procédant notamment au renouvellement partiel de son conseil d’administration. Sont élus : Membres du collège Acteurs Membres du collège Utilisateurs * Nouvellement élus Nous remercions l’ensemble des adhérents du Clusif pour leur participat...
An Alabama man has been sentenced to 14 months for hacking the SEC’s X account
An overview of the activities of selected APT groups investigated and analyzed by ESET Research in Q4 2024 and Q1 2025
The UK government says that hackers accessed a “large amount” of personal information in attack on Legal Aid Agency
Security experts tell Infosecurity about the cloud attack trends in the past year, and how CISOs can mitigate evolving techniques
Key Takeaways The DFIR Report Services Table of Contents: Case Summary In late June 2024, an unpatched Confluence server was compromised via CVE-2023-22527, a template injection vulnerability, first from IP … Read More
L’ASBL a été victime d’une cyberattaque ayant gravement endommagé ses données informatiques. L’équipe administrative s’efforce de restaurer ce qui peut l’être, tout en restant partiellement coupée du réseau pour limiter les risques. Refusant de céder au chantage du pirate, l’ASBL a porté plainte aup...
L'Ayuntamiento de Toluca a été victime d'une attaque cibernétique le 19 mai 2025, l'incident est actuellement en cours d'investigation. Le président municipal Ricardo Moreno Bastida a annoncé des améliorations dans l'équipe de cybersécurité pour éviter de tels incidents à l'avenir. Les autorités tra...
Ce bulletin d'actualité du CERT-FR revient sur les vulnérabilités significatives de la semaine passée pour souligner leurs criticités. Il ne remplace pas l'analyse de l'ensemble des avis et alertes publiés par le CERT-FR dans le cadre d'une analyse de risques pour prioriser l'application des...
La société Fasana a été victime d'une cyberattaque qui a eu des conséquences graves pour l'entreprise et ses 240 employés, entraînant des pertes de revenus importantes et une procédure d'insolvabilité, les autorités cherchant désormais un acheteur pour la société.
L'attaque n'a pas été revendiquée, mais l'enseigne Qilin divulgue des données présentées comme issues des systèmes d'Eaton Babb & Smith