[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (5 articles)

|

// AI-powered summary generated at 04:00

> AEPD - autorité espagnole
L'autorité espagnole de protection des données a sanctionné un opérateur de télécommunications pour une violation de données résultant de l'absence de contrat de sous-traitance valide et de mesures de sécurité adéquates chez son prestataire, soulignant la responsabilité indéfectible du responsable d...
> DPA - autorité grecque
L'autorité hellénique de protection des données a été désignée comme l'autorité principale en Grèce pour l'application du Règlement sur l'Intelligence Artificielle.En vertu de la loi 5321/2026 transposant le Règlement (UE) 2024/1689 sur l'Intelligence Artificielle, l'autorité est désignée autorité d...
> Bluesky says its recent outage was caused by another DDoS attack
This is the latest large-scale DDoS attack to hit the social networking site this year.
> Datatilsynet - autorité norvégienne
L'autorité norvégienne de protection des données (Datatilsynet) a initié une inspection du secteur de l'assurance portant sur la collecte de données de santé.Cette démarche fait suite à plusieurs plaintes reçues au cours des dernières années concernant les pratiques des assureurs en matière de colle...
> ICO - autorité britannique
Le Bureau du Commissaire à l'information (ICO) britannique a publié les conclusions de ses audits portant sur l'utilisation de la technologie de reconnaissance faciale par les forces de police en Angleterre et au Pays de Galles.Les audits menés auprès de cinq forces de police ont révélé des incohére...
> Wiz AI Agent Finds Critical Snowflake GitHub Repo Flaw Advanced Security Missed
The security flaw in Snowflake’s GitHub Actions workflow had been missed by a GitHub Advanced Security scan, said a Wiz researcher
> CISA gives feds 3 days to fix actively exploited Ray RCE bug
Phishing, malvertising attacks could target devs to gain access to private corporate networks
> BGP Role model: tracking the adoption of RFC 9234
RFC 9234 lets routers reject route leaks on their own, using BGP Roles and the Only to Customer attribute. We measured who has deployed it, and found two Tier 1 networks unexpectedly stripping OTC.
> Webinar Today: Rethinking Cyber Defense for AI-Speed Attacks
Join the live webinar as we explore if detection-first security operations can keep pace with AI, or if it’s time to rethink prevention as the strongest default. The post Webinar Today: Rethinking Cyber Defense for AI-Speed Attacks appeared first on SecurityWeek.
> USN-8641-1: .NET vulnerabilities
Miha Zupan discovered that .NET did not properly interpret certain HTTP requests. An attacker could possibly use this issue to perform request smuggling and bypass a security feature. (CVE-2026-62899) Ivan Demchuk discovered that .NET did not properly handle the removal of sensitive information bef...
> Enterprise Applications Carry 4.31x More Critical and High Vulnerabilities
Enterprise software creation has accelerated as vulnerability levels rise, Sonatype finds
> Apple plugs image-processing hole ripe for spyware abuse
Patch batch spans current kit, older iGadgets, Macs, and Vision Pro
> Apple fixes another image-processing flaw that could allow code execution
Apple has released updates fixing 27 vulnerabilities in iOS, iPadOS, and macOS Tahoe, including a potentially serious image-processing flaw.
> Meta Ran Ads for an App That Promised to Nudify Female Politicians
One advertisement featured a pornographic video with a deepfake closely resembling a prominent US politician. Apple removed the app from the App Store after an inquiry from WIRED.
> Hackers target Ukrainian agency managing assets seized from sanctioned Russians
The agency said the latest attack came amid preparations to select a manager for seized corporate rights in IDS Ukraine, one of the country’s largest producers of bottled mineral water and beverages.
> NASA Ground Control Software Flaw Enables Unauthenticated Commands
Critical AIT-GUI flaws expose spacecraft commands and scripts to unauthenticated attackers
> CISO Conversations: Nico Waisman – From Self-Taught Hacker to AI-Driven Offensive Security at XBOW
With no formal training and no career plan, Waisman built a path from Argentina's early hacking scene to leading security at an AI-powered offensive security firm. The post CISO Conversations: Nico Waisman – From Self-Taught Hacker to AI-Driven Offensive Security at XBOW appeared first on SecurityWe...
> Éducation nationale : le ministère confirme le piratage
Aprés le Ministére des Finances, le Ministére de l'Éducation confirme un piratage de son informatique. Maintenant à savoir si les informations diffusées par le pirate sont vraies.
> Your Controls Block Known Attacks. What About the Behavior?
Security controls can block a familiar attack method while missing quieter ways to achieve the same objective. Picus Security's Blue Report 2026 shows how prevention rates can vary dramatically by technique and why behavioral testing is needed to uncover those gaps. [...]
> £2.4 Million For UK Police Well-Being – What Will It Actually Buy?
Paul Gullon-Scott examines whether ÂŁ2.4m for police well-being is enough to turn good national initiatives into meaningful support on the ground.