> TODAY'S SUMMARY (51 articles)
Today's cybersecurity landscape reveals a record surge in ransomware attacks, with 1,073 firms targeted globally in August, primarily in the industrial sector. Microsoft has disrupted the AI-powered phishing service, EvilTokens, which compromised over 12,000 inboxes across various organizations. Meanwhile, critical vulnerabilities have been reported in several platforms, including Adobe, WordPress, and F5's BIG-IP, necessitating immediate patches to prevent potential exploitation. Additionally, the ShinyHunters group claims to have breached FBI systems via a zero-day vulnerability in Oracle PeopleSoft, threatening to leak sensitive data. In malware developments, Chinese hackers are leveraging a Chrome-Windows zero-day to deploy CLEANGULP malware, highlighting the ongoing threat posed by exploit chains.
|
// AI-powered summary generated at 12:01
L'autorité portugaise de protection des données, la Commission Nationale de Protection des Données (CNPD), a tenu une réunion avec l'Autorité Nationale des Communications (ANACOM) et l'Entité Régulatrice pour la Communication Sociale (ERC) concernant l'application du Règlement sur les Services Numér...
L'Autorité néerlandaise de protection des données, l'Autoriteit Persoonsgegevens (AP), annonce la tenue d'une journée portes ouvertes le 12 septembre 2026 afin de présenter ses missions au public.Cet événement, organisé à La Haye dans le cadre de la "Semaine de l'État de droit", permettra de mieux c...
Apple warns users of credible, targeted attacks and urges immediate verification, stronger protections, and expert assistance. Apple has sent a new round of threat notifications to users it believes may have been singled out by mercenary spyware. The company told TechCrunch the latest alerts reached...
L'Autorité Nationale hongroise pour la Protection des Données et la Liberté d'Information (NAIH) communique sur l'élargissement des obligations de transparence relatives aux fonds publics, suite à une modification législative.Une loi du 26 juin 2026, modifiant la loi sur la liberté d'information, ét...
L'autorité norvégienne de protection des données a émis une réprimande et des injonctions correctives à l'encontre d'une chaîne de salles de sport pour avoir imposé la prise d'une photographie de ses membres en se fondant sur une base juridique incorrecte et en ne respectant pas le droit d'oppositio...
The Debian Security Advisory DSA-6442-1 outlines several vulnerabilities in the util-linux package that could lead to privilege escalation, recommending users to upgrade to version 2.41.5-0+deb13u1.
Le Contrôleur européen de la protection des données (CEPD) a publié son avis 19/2026 sur la proposition de la Commission européenne visant à moderniser l'Agence de l'Union européenne pour la coopération judiciaire en matière pénale (Eurojust).Cette proposition de règlement, qui s'inscrit dans un paq...
This is a current list of where and when I am scheduled to speak:
I’m speaking, signing books, and participating in panel discussions at LAcon V in Anaheim, California, USA. My full schedule is here.
I’m speaking online (via Zoom) at a League of Women Voters event on Tuesday, September 22, 2026, at...
Courts sentence Com member for sextorting 117 minors, joint advisory warns of Gunra ransomware, and ShieldBreak bypasses MS Defender for SYSTEM access.
Compare the best remote collaboration tools for messaging, meetings, and project management.
The Netherlands' National Cyber Security Centre (NCSC) is warning that hackers are actively exploiting a macOS authentication bypass vulnerability after public exploit code emerged. [...]
Researchers have verified that ExfilSquad possesses sensitive data stolen from at least 13 victims after the extortion group published leaked datasets via torrents
Government disputes claims of continued access as investigators measure damage
Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "ShieldBreak ".
We are working to provide a high quality security update that addresses this vulnerability. We will provide information in this CVE when the upda...
The security updates for Powershell have been updated.
Machine learning is a valuable tool in blockchain analytics – so long as it is used responsibly. Automated tools can…
The post Machine Learning Has a Specific Role in Blockchain Intelligence appeared first on Chainalysis.
Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
Google Workspace attacks do not always begin with phishing. Stolen OAuth tokens can provide another path into Gmail, Drive, and connected systems. Material Security explains why organizations need defenses that cover the entire Workspace attack chain. [...]
A maximum-severity SAP Commerce Cloud remote code execution vulnerability patched three days ago is already being targeted in attacks, according to threat intelligence company Defused. [...]
Records held in Salesforce and ServiceNow systems are under attack leaving user data exposed, according to researchers at Reco.
The attack appears similar to those perpetrated by the extortion group ShinyHunters, Reco said. ShinyHunters has been particularly active this yea...