[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (70 articles)

|

// AI-powered summary generated at 16:00

> CVE-2026-68136 net: gro: fix double aggregation of flush-marked skbs
Information published.
> CVE-2026-68351 wifi: carl9170: bound memcpy length in cmd callback to prevent OOB read
Information published.
> Only Half of UK Manufacturers Have a Cyber Incident Response Plan
Make UK reveals major cyber resilience gaps as 30% of UK manufacturers report recent cyber incidents
> CVE-2026-68189 Bluetooth: hci_sync: Protect UUID list traversal
Information published.
> CVE-2026-68348 ASoC: tas2781: bound firmware description string parsing
Information published.
> Hackers Breach Polish Power Plant Controls via Private Cellular Network and Shut Turbine
Attackers shut down a steam turbine and the process-water treatment system at a Polish combined heat and power plant by coming in over the private cellular network the local grid operator uses to reach remote equipment. The plant supplies heat to roughly 50,000 residents. Recovery began at about 7:...
> CVE-2026-68181 mei: bus: access mei_device under device_lock on cleanup
Information published.
> CVE-2026-68152 amt: fix use-after-free in AMT delayed works
Information published.
> GPT-5.6-Cyber refuses security researchers’ requests far less often
GPT-5.6-Cyber is a new OpenAI model built on GPT-5.6 Sol, trained to find zero-day vulnerabilities and build exploit chains, with fewer refusals on higher-risk, dual-use work. Model is available only through Daybreak Red, the higher tier of OpenAI’s vetted access program for cybersecurity profession...
> CVE-2026-68411 wifi: mac80211_hwsim: clamp virtio RX length before skb_put
Information published.
> CVE-2026-68187 exec: fix unsigned loop counter wrap in transfer_args_to_stack()
Information published.
> Mozilla Issues New Firefox GPG Key Following Exposure
The previous GPG signing subkey was inadvertently added to a GitHub repository and Mozilla decided to revoke it. The post Mozilla Issues New Firefox GPG Key Following Exposure appeared first on SecurityWeek.
> CVE-2026-68353 wifi: ath6kl: fix OOB read from firmware num_msg in TX complete handler
Information published.
> CVE-2026-68374 usb: core: sysfs: add lock to bos_descriptors_read()
Information published.
> Who will be the Stanislav Petrov in your organization?
The recent news coverage of “rogue AI” systems hacking innocent companies reminded me of one of the world’s most unsung heroes and genuinely someone who may well have saved the world. In 1983, the USSR’s early warning systems reported that the United States had launched nuclear missiles towards the...
> CVE-2026-68252 drm/amdgpu/sdma7.0: replace BUG_ON() with WARN_ON()
Information published.
> CVE-2026-68242 drm/i915/gt: Fix NULL deref on sched_engine alloc failure
Information published.
> BdThemes Supply Chain Attack Poisons JSON to Create Rogue WordPress Admins
Cybersecurity researchers have warned of a supply chain compromise impacting WordPress plugin vendor BdThemes, prompting the content management systems (CMS) platform's plugins team to temporarily disable their downloads. "Unlike traditional software supply chain attacks, zero source code files wer...
> CVE-2026-68256 drm/amd/display: detect_link_and_local_sink: DP alt mode timeout path leaks prev_sink reference
Information published.
> CVE-2026-64581 xfrm: fix sk_dst_cache double-free in xfrm_user_policy()
Information published.