[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (70 articles)

|

// AI-powered summary generated at 16:00

> CVE-2026-68252 drm/amdgpu/sdma7.0: replace BUG_ON() with WARN_ON()
Information published.
> CVE-2026-68242 drm/i915/gt: Fix NULL deref on sched_engine alloc failure
Information published.
> Only Half of UK Manufacturers Have a Cyber Incident Response Plan
Make UK reveals major cyber resilience gaps as 30% of UK manufacturers report recent cyber incidents
> CVE-2026-68256 drm/amd/display: detect_link_and_local_sink: DP alt mode timeout path leaks prev_sink reference
Information published.
> CVE-2026-64581 xfrm: fix sk_dst_cache double-free in xfrm_user_policy()
Information published.
> Hackers Breach Polish Power Plant Controls via Private Cellular Network and Shut Turbine
Attackers shut down a steam turbine and the process-water treatment system at a Polish combined heat and power plant by coming in over the private cellular network the local grid operator uses to reach remote equipment. The plant supplies heat to roughly 50,000 residents. Recovery began at about 7:...
> CVE-2026-54332 GoPacket's sFlow ExtendedGatewayFlow decoder: unbounded attacker-controlled allocation (104-byte UDP datagram -> up to 16 GiB make) -> unauthenticated remote DoS
Information published.
> CVE-2026-55995 Double-free in the iSNS attribute decoder in open-iscsi
Information published.
> GPT-5.6-Cyber refuses security researchers’ requests far less often
GPT-5.6-Cyber is a new OpenAI model built on GPT-5.6 Sol, trained to find zero-day vulnerabilities and build exploit chains, with fewer refusals on higher-risk, dual-use work. Model is available only through Daybreak Red, the higher tier of OpenAI’s vetted access program for cybersecurity profession...
> CVE-2026-68289 tipc: fix integer overflow in tipc_recvmsg() and tipc_recvstream()
Information published.
> CVE-2026-68171 arm64: syscall: Ensure saved x0 is kept in-sync with tracer updates
Information published.
> Mozilla Issues New Firefox GPG Key Following Exposure
The previous GPG signing subkey was inadvertently added to a GitHub repository and Mozilla decided to revoke it. The post Mozilla Issues New Firefox GPG Key Following Exposure appeared first on SecurityWeek.
> CVE-2026-68244 drm/i915/gem: Do not leak siblings[] on proto context error
Information published.
> CVE-2026-68127 ila: reload IPv6 header after pskb_may_pull in checksum adjust
Information published.
> Who will be the Stanislav Petrov in your organization?
The recent news coverage of “rogue AI” systems hacking innocent companies reminded me of one of the world’s most unsung heroes and genuinely someone who may well have saved the world. In 1983, the USSR’s early warning systems reported that the United States had launched nuclear missiles towards the...
> CVE-2026-68399 bpf: Fix UAF in sock clone early bailouts
Information published.
> CVE-2026-64563 rhashtable: clear stale iter->p on table restart
Information published.
> BdThemes Supply Chain Attack Poisons JSON to Create Rogue WordPress Admins
Cybersecurity researchers have warned of a supply chain compromise impacting WordPress plugin vendor BdThemes, prompting the content management systems (CMS) platform's plugins team to temporarily disable their downloads. "Unlike traditional software supply chain attacks, zero source code files wer...
> CVE-2026-68288 net: drop_monitor: fix info leak in NET_DM_ATTR_PAYLOAD
Information published.
> CVE-2026-68388 smb/client: handle overlapping allocated ranges in fallocate
Information published.