[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (51 articles)

|

// AI-powered summary generated at 12:01

> Multiples vulnérabilités dans les produits Microsoft (17 août 2026)
De multiples vulnérabilités ont été découvertes dans les produits Microsoft. Elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance et une élévation de privilèges.
> Bulletin d'actualité CERTFR-2026-ACT-035 (17 août 2026)
Ce bulletin d'actualité du CERT-FR revient sur les vulnérabilités significatives de la semaine passée pour souligner leurs criticités. Il ne remplace pas l'analyse de l'ensemble des avis et alertes publiés par le CERT-FR dans le cadre d'une analyse de risques pour prioriser l'application des...
> [webapps] WooCommerce 1.5.0 - Unauthenticated Arbitrary File Upload
WooCommerce 1.5.0 - Unauthenticated Arbitrary File Upload
> [remote] D-Link DNS_340L - OS Command Injection
D-Link DNS_340L - OS Command Injection
> Reviving the Undead: Accelerating NetNTLMv1 Lookups Without GPUs
Outdated protocols, forgotten configurations, and legacy dependencies continue to create opportunities for attackers in modern environments. This research explores how NetNTLMv1 can still be leveraged today and how improvements in attack tooling are reducing the cost and complexity of exploiting it.
> [remote] ipTIME A3004T - Remote Code Execution
ipTIME A3004T - Remote Code Execution
> [webapps] Joomla JCE_2.9.15 - Remote Code Execution
Joomla JCE_2.9.15 - Remote Code Execution
> SafePal data breach impacts 39,798 customers, stolen info for sale
Cryptocurrency hardware wallet provider SafePal is warning of a data breach affecting about 39,798 customers after a flaw was exploited to steal customer order information, and a threat actor is now claiming to be selling the stolen data. [...]
> [webapps] Duplicati 2.2.0.3 - JWT Signing Key Leak
Duplicati 2.2.0.3 - JWT Signing Key Leak
> [dos] Nmap 7.99 - Extension Header Integer Underflow
Nmap 7.99 - Extension Header Integer Underflow
> DDoS Attacks Cause Major Threema Outages
Large DDoS attacks disrupted Threema, causing severe communication outages. Threema On-Prem users were unaffected by the attacks. Threema suffered multiple large-scale DDoS attacks that disrupted its secure messaging service and caused severe communication issues. Organizations using Threema On-Prem...
> [remote] phpSysInfo 3.4.5 - IP Allowlist Bypass
phpSysInfo 3.4.5 - IP Allowlist Bypass
> [webapps] webpack_devserver 5.2.5 - CSRF
webpack_devserver 5.2.5 - CSRF
> Anthropic confirms Claude is down in major outage affecting multiple services
Claude is experiencing a major outage, with users reporting login problems and degraded performance across several Anthropic services. [...]
> [webapps] Probo 0.222.2 - IDOR
Probo 0.222.2 - IDOR
> [webapps] flyto_core 2.26.7 - Server-Side Request Forgery
flyto_core 2.26.7 - Server-Side Request Forgery
> Wireshark 4.6.8 Released, (Sun, Aug 16th)
Wireshark release 4.6.8 fixes 28 vulnerabilities and 25 bugs.
> [dos] NanaZip 6.5 - DoS
NanaZip 6.5 - DoS
> Debian Neutron Important API Permission Issues CVE-2026-55707 DSA-6444-1
Debian released an advisory for vulnerabilities in Neutron, the OpenStack virtual network service, urging users to upgrade to version 2:26.0.3-0+deb13u3 for better API permission validation.
> SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 110
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Kimsuky Integrates AI into Attack Operations, From AI-Generated Decoy Documents to a Local LLM ShieldBreak – August 2026 disclosure   Kimwolf v7: A...