[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (1 articles)

|

// AI-powered summary generated at 04:00

> Le Clusif au Forum InCyber 2025
Cette année, le Clusif a renouvelé sa participation au Forum InCyber 2025 de Lille, qui s’est tenu du 1er au 3 avril. Les équipes du Clusif étaient présentes durant les trois jours du salon pour vous rencontrer et échanger avec vous sur nos travaux et nos actions. Vous étiez également au rendez-vous...
> Cyble Urges Critical Vulnerability Fixes Affecting Industrial Systems
Rockwell Automation, Hitachi Energy and Inaba Denki Sangyo have products affected by critical vulnerabilities carrying severity ratings as high as 9.9
> Activités de post-exploitation dans Fortinet FortiGate (11 avril 2025)
Fortinet a publié le 10 avril 2025 un billet de blogue [1] indiquant l'utilisation d'une technique de post-exploitation qui permet une atteinte à la confidentialité des données de l'ensemble du système des équipements Fortigate affectés. Cette technique repose sur l'utilisation d'un lien...
> Bangalore Water Supply and Sewerage Board (BWSSB)
Le Bangalore Water Supply and Sewerage Board (BWSSB) a repoussé une attaque informatique contre son portail de connexion en ligne. L'attaque a été détectée le 11 avril et les investigations préliminaires ont confirmé que aucune donnée sensible des clients n'a été compromise. Le BWSSB envisage de met...
> ESET Mail Security for Microsoft Exchange Server version 12.0.10003.0 has been released
ESET Mail Security for Microsoft Exchange Server version 12.0.10003.0 has been released and is available for download.
> Google Cloud: China Achieves “Cyber Superpower” Status
Google Cloud’s Sandra Joyce said that Chinese state actors’ advanced techniques and ability to stay undetected pose huge challenges
> You asked, we answered: Q&A from The Future of AppSec webinar
When we wrapped up our biggest-ever webinar, The Future of AppSec: PortSwigger’s Vision, the conversation was far from over. With thousands of security professionals tuning in live, the questions came
> Google Cloud: CISOs Demand Simplified Security Tools Amid Growing Tech Complexity
Google Cloud announced a number of security products designed to reduce complexity for security leaders
> Over 40% of UK Businesses Faced Cybersecurity Breaches in 2024
The Cyber Security Breaches Survey 2025 has been released by the UK Home Office and DSIT today, reporting a slight decline in incidents compared to 2024 report
> SAP Emarsys SDK for Android Sensitive Data Leak (CVE-2023-6542)
In late 2023, we’ve discovered and coordinated a quite interesting vulnerability affecting the Emarsys SDK for Android versions 3.6.1 and below with the respective vendor, SAP. While the overall coordination process went smoothly, the security advisory published by SAP only had a brief and partially...
> SpyNote Malware Targets Android Users with Fake Google Play Pages
A new Android malware campaign uses fake Google Play pages to distribute the SpyNote Trojan
> AI-Powered AkiraBot Evades CAPTCHA to Spam 80,000 Websites
A new AI-powered framework dubbed “AkiraBot” has successfully spammed 80,000 websites since September 2024
> Watch out for these traps lurking in search results
Here’s how to avoid being hit by fraudulent websites that scammers can catapult directly to the top of your search results
> Operation Endgame Continues with Smokeloader Customer Arrests
Police have made more arrests in the ongoing Operation Endgame, cracking down on malware customers
> Oregon Department of Environmental Quality (DEQ)
Le département de la qualité de l'environnement de l'Oregon (DEQ) a été victime d'une cyberattaque mercredi, ce qui a entraîné la fermeture de ses systèmes informatiques jusqu'à la fin de la semaine. Les stations d'inspection des véhicules seront fermées jusqu'à vendredi, mais le système de gestion...
> Saito Korotype Printing Co., Ltd.
Comme l’ont rapporté plusieurs organes de presse, la société a été victime d'une attaque par ransomware visant l’une de ses usines. Elle présente ses plus sincères excuses pour les inquiétudes et les désagréments causés.
> OpenAI helps spammers plaster 80,000 sites with messages that bypassed filters
Company didn't notice its chatbot was being abused for (at least) 4 months.
> Appalachian Regional Commission
The Appalachian Regional Commission (ARC) suffered a data security incident involving malware deployment on certain systems, resulting in unauthorized access to personal information. The incident occurred on April 10, 2025, and was discovered on the same date. It was claimed under the Medusa brand o...
> Continental Bancorporation
An unauthorized party attempted to gain access to Continental's internal network via a recently published vulnerability associated with CrushFTP server software, potentially accessing personal information of one New Hampshire resident.
> WK Kellogg Confirms Data Breach Tied to Cleo Software Exploit
WK Kellogg breach exposed employee data after attackers exploited flaws in Cleo software