[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (51 articles)

|

// AI-powered summary generated at 12:01

> The Good, the Bad and the Ugly in Cybersecurity – Week 33
Courts sentence Com member for sextorting 117 minors, joint advisory warns of Gunra ransomware, and ShieldBreak bypasses MS Defender for SYSTEM access.
> Best remote collaboration tools for teams in 2026
Compare the best remote collaboration tools for messaging, meetings, and project management.
> Hackers exploit macOS Screen Sharing flaw to deploy Monero miner
The Netherlands' National Cyber Security Centre (NCSC) is warning that hackers are actively exploiting a macOS authentication bypass vulnerability after public exploit code emerged. [...]
> Researchers Confirm ExfilSquad’s Access to Sensitive Data Across 13 Organizations
Researchers have verified that ExfilSquad possesses sensitive data stolen from at least 13 victims after the extortion group published leaked datasets via torrents
> French tax authority admits data heist after crook touts 2M records
Government disputes claims of continued access as investigators measure damage
> CVE-2026-69414 Microsoft Defender Elevation of Privilege Vulnerability
Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "ShieldBreak ". We are working to provide a high quality security update that addresses this vulnerability. We will provide information in this CVE when the upda...
> CVE-2026-50523 Microsoft PowerShell Remote Code Execution Vulnerability
The security updates for Powershell have been updated.
> Machine Learning Has a Specific Role in Blockchain Intelligence
Machine learning is a valuable tool in blockchain analytics – so long as it is used responsibly. Automated tools can… The post Machine Learning Has a Specific Role in Blockchain Intelligence appeared first on Chainalysis.
> CVE-2026-72970 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
> The Modern Attack Chain: Rethinking Google Workspace Security in the Age of AI
Google Workspace attacks do not always begin with phishing. Stolen OAuth tokens can provide another path into Gmail, Drive, and connected systems. Material Security explains why organizations need defenses that cover the entire Workspace attack chain. [...]
> Max severity SAP Commerce Cloud flaw now targeted in attacks
A maximum-severity SAP Commerce Cloud remote code execution vulnerability patched three days ago is already being targeted in attacks, according to threat intelligence company Defused. [...]
> Salesforce, ServiceNow data targeted in ‘City-Forum’ attacks
Records held in Salesforce and ServiceNow systems are under attack leaving user data exposed, according to researchers at Reco. The attack appears similar to those perpetrated by the extortion group ShinyHunters, Reco said. ShinyHunters has been particularly active this yea...
> US courts will start publishing how often the government uses spyware
The Administrative Office of the U.S. Courts told TechCrunch that it will start disclosing how many times judges authorized the use of spyware to wiretap suspected criminals.
> France investigates tax authority breach after hacker claims 600,000 victims
French authorities confirmed that someone gained unauthorized access to systems at the Directorate General of Public Finances in late June after stealing or misusing someone’s identity.
> Oracle’s new database security tool is free — for six months
Oracle has released a security tool intended to provide organizations with a centralized view of security risk across their database environments. Oracle Database Security Central will be available free of charge until the end of February 2027. It arrives at a critical t...
> How Cloudflare detects MCP traffic and helps secure it
Cloudflare Gateway identifies MCP requests using protocol-level heuristics. Security teams can use that signal to find shadow MCP traffic, enforce Portal-only access for approved servers, and block direct connections on managed network paths.
> Mustang Panda Adds Signed Windows Rootkit to CoolClient Backdoor for Stealth
The threat actor known as HoneyMyte (aka Mustang Panda) has been observed deploying an updated version of the CoolClient backdoor with a signed Windows kernel-mode rootkit that can hide and protect malicious processes, files, registry objects, and command-and-control (C2) network information. Russi...
> Oracle Linux 10 .NET 8.0 Important Bug Fix Advisory ELSA-2026-54541
Oracle Linux 10 released updated rpms for the .NET SDK and runtime, addressing specific CVEs and adding support for the platform, improving security and functionality.
> Oracle Linux 10 ELSA-2026-54590 .NET 9.0 Important Bug Fix
Oracle Linux 10 has new RPM packages for .NET SDK and Runtime, including updates for x86_64 and aarch64 architectures, addressing several CVEs and adding support for Oracle Linux.
> Autonomous AI attacks pose 'clear and present danger' to critical infrastructure
Weaponized agents could turn digital intrusions into kinetic disasters, experts warn