> TODAY'S SUMMARY (70 articles)
Today's cybersecurity landscape highlights several significant threats and trends. Notably, North Korean hackers are suspected of stealing $351 million from the Bitget cryptocurrency exchange, underscoring the ongoing risk to the crypto sector. The Dyfed-Powys Police in Wales experienced a cyberattack that potentially compromised staff data, while a new campaign named ClickFix exploits trusted websites to deploy the Psychedelic Stealer, targeting browser and crypto credentials. Vulnerabilities in Salesforce's Agentforce have been identified, allowing zero-click data exfiltration, further emphasizing the need for robust security measures. LinkedIn is enhancing checks against fake profiles as AI-generated content becomes more prevalent, indicating a rising trend in AI-related security threats. Additionally, multiple vulnerabilities in Linux kernels across various distributions have been reported, necessitating immediate attention from organizations using these systems.
|
// AI-powered summary generated at 16:00
This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab OriginPro . User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The f...
This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab Origin Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. Th...
The December 29 cyberattack on a Polish combined heat and power (CHP) plant was the first observed case of attackers gaining access to an OT network through a private APN, according to CERT Polska. The private APN is a dedicated mobile network that a Distribution System Operator (DSO), the company r...
This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab Origin Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. Th...
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels RAS Client. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The fol...
Selected red team specialists can now use OpenAIâs cyber models to find and exploit weaknesses in client applications and infrastructure. Those clients never get the models themselves. That split is the design of the Daybreak Cyber Partner Program, which OpenAI expanded on August 10: access to the u...
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels RAS Client. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The fol...
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels RAS Client. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The fol...
CTI Detection Engineer Department of Parliamentary Services | Australia | Hybrid â View job details As a CTI Detection Engineer, you will lead the detection lifecycle by identifying detection gaps, developing and validating detection logic, deploying and tuning analytics, maintaining cyber threat in...
Découvrez deux méthodes pour transférer des fichiers entre l'hÎte et une VM Vagrant : le plugin vagrant-scp et les dossiers partagés (synced_folder).
Le post Transférer des fichiers entre un hÎte et une VM Vagrant a été publié sur IT-Connect.
Multiple vulnerabilities in the Caddy web server can lead to unauthorized access and other security issues; users are urged to upgrade to version 2.6.2-12+deb13u1 for protection.
Meet HTTP Terminator, a new AI system that has identified hundreds of websites vulnerable to HTTP request smuggling, hacked them live at scale, and even identified a âgenuinely new classâ of vulnerability, dubbed âshared-parser confusion.â
But it didnât do it alone; it was...
La sociĂ©tĂ© Charm a annoncĂ© qu'un accĂšs non autorisĂ© Ă ses magasins Charm Honten 1 et 2 avait Ă©tĂ© dĂ©tectĂ© le 12 aoĂ»t 2026, suite Ă une intrusion par un tiers le 11 aoĂ»t 2026. L'entreprise enquĂȘte actuellement sur l'Ă©tendue des dĂ©gĂąts, confirmant que certaines informations clients ont pu fuiter. Envir...
Les systĂšmes de Brazosport College sont restĂ©s hors ligne suite Ă un incident de cybersĂ©curitĂ© dont la cause reste inconnue. L'incident a Ă©tĂ© dĂ©couvert le lundi par l'Ă©quipe informatique du collĂšge, et des spĂ©cialistes externes ont Ă©tĂ© appelĂ©s pour mener l'enquĂȘte.
Lures on compromised WordPress sites led to installation of Deno and a Python-based infostealer
Le comté de Darlington, en Caroline du Sud, a dû isoler certains de ses systÚmes informatiques suite à un incident de cybersécurité qui a perturbé les téléphones et certains services gouvernementaux. Les services d'urgence (911) sont restés opérationnels. L'incident est survenu mercredi, et les auto...
Vingt organisations municipales du capixaba (Ătat du EspĂrito Santo) ont Ă©tĂ© touchĂ©es par une cyberattaque visant leurs portails publics. L'attaque, attribuĂ©e au groupe hacker BLCKORDER, a entraĂźnĂ© une indisponibilitĂ© des services en ligne. Les autoritĂ©s locales et l'entreprise prestataire de servic...
Attack TTPs combine fileless execution, wide LOLBin use
Le 11 août 2026, la CH Biotech a subi une cyberattaque ayant touché une partie de ses systÚmes d'information. Selon les premiÚres évaluations, l'incident n'a pas d'impact significatif sur les opérations de l'entreprise. Pour y répondre, la société a activé ses mécanismes de défense, engagé des cabin...