[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (101 articles)

|

// AI-powered summary generated at 16:00

> VMware vCenter : des serveurs français compromis
VMware vCenter : CVE-2026-59310 est exploitée activement, avec plus de 360 IP victimes, dont en France.
> Ghost Tap : une fraude NFC signalée depuis Pattaya
À Pattaya, un lecteur de ZATAZ signale une fraude NFC. Son histoire éclaire la menace Ghost Tap suivie par l’EPC.
> Debian Chromium Critical Code Execution Denial of Service Vuln DSA-6436-1
Debian released DSA-6436-1, addressing critical security vulnerabilities in Chromium that could allow arbitrary code execution, denial of service, or information disclosure; users are advised to upgrade.
> New Mirai variant adds stealth capabilities to notorious botnet code
Beyond Mirai’s usual functions, the new code features include encrypted communications with command-and-control servers and a “sniffer” that looks for default access credentials.
> Exposed AWS Access Key Linked to Data Breach Affecting 1500+ UK Charities
CRM provider Beacon has revealed that a compromised AWS access key was the likely root cause of the breach of 1500 UK charities’ data
> Maisons du Monde : une fuite au timing troublant
Une fuite attribuée à Maisons du Monde apparaît avant une période financière critique. Le timing du pirate interroge.
> Trezor discloses data breach affecting nearly 14,000 customers
Hardware wallet manufacturer Trezor disclosed a data breach affecting nearly 14,000 of its customers after ShipMonk, its shipping and logistics provider, was hacked [...]
> Trump wants to grant private cyber firms a license to hack back
Contractors could surveil and disrupt foreign criminal networks, provided they follow strict rules and put up $1M
> New PATCHCORD Backdoor Targets Afghan Telecom and Indian Critical Infrastructure
Afghan telecom providers and South Asian critical infrastructure organizations have emerged as the target of a new ongoing campaign that delivers a previously undocumented backdoor called PATCHCORD. According to Acronis Threat Research Unit (TRU), the backdoor is a compiled C/C++ implant delivered...
> Google Cloud Targets 2027 for First Major Post-Quantum Security Milestone
Google Cloud has set a 2027 deadline to mitigate store-now-decrypt-later risks as part of its post-quantum cryptography roadmap, with wider migration goals extending through 2028
> Protecting Those Who Protect Children: Inspection Findings And The Evidence Base For Investigator Well-Being
A major new HMICFRS report exposes the urgent need for proactive, mandatory mental health support for digital forensic investigators and others working daily with online child sexual abuse material.
> The backup Microsoft never promised you
SPONSORED FEATURE: Your M365 and Azure data might not be as safe as you think from ransomware; time for a reality check
> How to tell an AI-written book from an expert’s | Kaspersky official blog
Why — and for whom — artificial intelligence is now churning out books, how they end up on Amazon, and what risks this poses for readers.
> Cybersecurity M&A Roundup: 21 Deals Announced in July 2026
Significant cybersecurity M&A deals announced by Barracuda, CrowdStrike, Cyera, Okta, Palo Alto Networks, and Qualcomm. The post Cybersecurity M&A Roundup: 21 Deals Announced in July 2026 appeared first on SecurityWeek.
> White House authorizes private US companies to hack foreign criminal networks
President Trump signed a National Security Presidential Memorandum on August 12 allowing vetted private companies to run offensive cyber operations against foreign threat actors, under the control and oversight of the US government. The post White House authorizes private US companies to hack foreig...
> Black Hat USA 2026: Will vulnerability discovery eventually decline in the AI era?
And will today’s surge in AI-driven vulnerability discovery eventually make tomorrow’s software safer?
> Adobe Commerce Bug Targeted Immediately After Disclosure
The first exploitation attempts targeting CVE-2026-71362 were observed shortly after Adobe released patches. The post Adobe Commerce Bug Targeted Immediately After Disclosure appeared first on SecurityWeek.
> In a first, US will allow some private firms to carry out cyberattacks
The new order sweeps away decades of existing U.S. cybersecurity policy prohibiting private companies from conducting 'hack back' attacks or offensive cyber operations.
> Who Vets AI’s Code? The Scale Challenge Facing Open Source Ingestion
AI coding tools can introduce unvetted or hallucinated open source dependencies faster than traditional security reviews can keep pace. ActiveState explains why organizations should govern packages at the point of selection, before they enter the development pipeline. [...]
> vCenter Flaw Exploited Just Five Days After Disclosure
Attackers exploited a critical-severity vCenter flaw five days after Broadcom disclosed it