[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (5 articles)

|

// AI-powered summary generated at 04:00

> USN-8629-3: Linux kernel (HWE) vulnerabilities
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - x86 architecture; - InfiniBand drivers; - Network drivers; - Network traffic control; - IPv4 networking; -...
> Implement custom authentication for tools integration using request Lambda interceptor in AgentCore Gateway
When deploying AI agents with Amazon Bedrock AgentCore, organizations benefit from built-in modern support for OAuth 2.0, AWS Identity and Access Management (IAM), and API key authentication through Amazon Bedrock AgentCore Gateway. However, some enterprise environments still use legacy authenticati...
> Expired credit cards revived by researchers to make unauthorized payments
Gaps in expiry checks could let dead plastic make purchases again
> Comcast turns your Xfinity WiFi into a home motion detector
Comcast is promoting WiFi-based motion detection as a part of its new Xfinity Shield home protection platform, allowing routers and wireless devices to detect people moving through a home without cameras or motion sensors. [...]
> Eight years later, federal authorities re-up charges against alleged Iranian hackers at Mabna Institute
The superseding indictment adds defendants and allegations against the Iranian firm accused of a massive cybertheft campaign against foreign universities and others. The post Eight years later, federal authorities re-up charges against alleged Iranian hackers at Mabna Institute appeared first on Cyb...
> Critical GitLab flaw allows attackers to delete and modify public repos
GitLab has fixed a critical vulnerability that could allow unauthenticated attackers to perform unauthorized modifications inside code repositories or to completely delete them with a single HTTP request. The patched releases also address a second high-risk cross-site request...
> Debian SPIP Severe Remote Code Execution Vulnerability DSA-6448-1
A vulnerability in SPIP could allow unauthenticated remote code execution; an update has been released for the stable distribution, and users are advised to upgrade their packages.
> Debian DSA-6447-1 Librabbitmq Important DoS Code Exec Vulnerabilities
Debian issued DSA-6447-1 for librabbitmq, addressing two vulnerabilities that could lead to denial of service or arbitrary code execution, urging users to upgrade to version 0.15.0-1+deb13u2.
> Ubuntu Kernel Security Notice USN-8644-1 CVE-2026-43071 to CVE-2026-53309
Ubuntu Security Notice USN-8644-1 details fixes for several vulnerabilities in the Linux kernel affecting Ubuntu 18.04 LTS and 16.04 LTS, requiring users to update and reboot their systems.
> Ubuntu Linux Kernel Important WiFi Injection Flaws Addressed USN-8645-1
Ubuntu released a security update addressing multiple vulnerabilities in the Linux kernel affecting versions 16.04 and 18.04 LTS, requiring users to update and reboot their systems.
> OpenAI Overhauls Safety Protocols After Its AI Agents Went Rogue
The ChatGPT maker says its upcoming Astra model may have reached “critical” cyber capabilities, prompting it to halt a significant number of training runs while it tightens internal safeguards.
> Ubuntu 14.04 LTS Linux Kernel Security Advisory USN-8646-1
A security update for Ubuntu 14.04 LTS addresses multiple vulnerabilities in the Linux kernel, potentially allowing system compromise. Users should update and reboot their systems.
> Ubuntu Linux Kernel Security Advisory USN-8643-1 Multiple Issues
Ubuntu released security updates addressing vulnerabilities in the Linux kernel for versions 24.04 and 22.04 LTS, requiring users to reboot and possibly recompile third-party kernel modules.
> USN-8646-1: Linux kernel vulnerabilities
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - OCFS2 file system; - B.A.T.M.A.N. meshing protocol; - Netfilter; - SCTP protocol; (CVE-2026-52914, CVE-2026-53...
> USN-8645-1: Linux kernel (Oracle) vulnerabilities
Siebe Devroe, Héloïse Gollier, and Mathy Vanhoef discovered that the WiFi implementation in the Linux kernel did not properly handle aggregated frames in mesh networks, due to an incorrect fix for CVE-2020-24588. A physically proximate attacker could use this issue to inject packets. (CVE-2025-27558...
> More than 200 victims of Medusa ransomware identified over the last year, CISA says
The Cybersecurity and Infrastructure Security Agency (CISA) and FBI updated an advisory on the group initially released in March 2025 — writing that as of April 2026, Medusa actors have hit more than 500 victims. CISA previously said 300 victims, many of which are in critical infrastructure sectors,...
> USN-8644-1: Linux kernel vulnerabilities
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - File systems infrastructure; - OCFS2 file system; - B.A.T.M.A.N. meshing protocol; - SCTP protocol; - TIPC p...
> USN-8643-1: Linux kernel vulnerabilities
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Network drivers; - Open vSwitch; - SCTP protocol; (CVE-2026-53224, CVE-2026-53246, CVE-2026-53247, CVE-2026-6453...
> OpenAI institutes new safeguards after Hugging Face breach
The new safeguards include more detailed monitoring of models during the development process, as well as greater emphasis on alignment and security during the post-training process.
> Hackers Expose Data of 1.2 Million Heights Finance Customers
A Heights Finance breach exposed personal and financial data of over 1.2 million people after hackers compromised a third-party cloud platform. Heights Finance is a U.S. consumer finance company that provides personal loans and related lending services, mainly to customers who may have limited acces...