Hackers breached a heat-and-power plant facility in Poland, which supplies heat to about 50,000 residents, using a private APN (Access Point Name) to access an OT (Operational Technology) network. [...]
Deux pirates revendiquent le piratage d'un professionnel du cloud et l’accès à 159 instances contenant des données clients.
Oracle Linux 7 has updated rpms to fix vulnerabilities CVE-2026-33416 and CVE-2026-25646 in libpng12 packages, enhancing security against issues like use-after-free and heap buffer overflow.
Oracle released security updates for Oracle Linux 10, addressing multiple CVEs and including new kernel versions and enhancements alongside changes in driver signing and module handling.
Cars.no aurait exposé noms, téléphones et plaques, créant un risque élevé de phishing automobile ciblé.
Oracle Linux has released security updates for version 10, addressing various fixes and CVE-2026-43186, including kernel enhancements and certificate updates, available on the Unbreakable Linux Network.
Oracle Linux has released updates for version 10, addressing security vulnerabilities related to CVE-2026-14164 with new rpm packages available for both x86_64 and aarch64 architectures.
Une fuite Firebase présumée expose kiosques Pokémon, paiements, code source et accès à 217 machines connectées.
Oracle Linux updated the nodejs-nodemon package for version 10 to address CVE-2026-69152, related to brace-expansion fixes, available for x86_64 and aarch64 architectures.
Phishing Ameli, cloaking et fausse boutique IA : le clic pourrait servir Ă identifier et qualifier de futures victimes.
Analysis of the Aeternum botnet loader, a threat leveraging Polygon blockchain smart contracts for decentralized C2 infrastructure and payload execution.
The post The Permanent Threat: Analyzing Aeternum’s Blockchain-Based C2 Operations and Communications appeared first on Unit 42.
Nouveau faux mail AR24, CAPTCHA et vol d’identifiants : Tester en live ce phishing et vérifier une notification AR24.
Ubuntu has patched several vulnerabilities in ImageMagick across various LTS versions, which could allow for arbitrary code execution and denial of service through specific image handling flaws.
Une municipalité italienne a été sanctionnée pour avoir communiqué prématurément l'appartenance syndicale d'une employée à son futur employeur, l'autorité jugeant que la finalisation future du transfert de l'employée ne justifiait pas une telle divulgation anticipée en l'absence de base juridique sp...
La publication d'une décision administrative mentionnant le numéro de matricule et le motif de la rupture du contrat de travail d'un agent public, même en l'absence de son nom, constitue une diffusion illicite de données personnelles, car l'agent reste identifiable par le contexte.Faits et contexteL...
The commission is mulling whether to begin regulating bias in AI systems. Critics say they’re overstepping their legal authority and infringing on free speech.
The post The FTC wants to regulate AI for ideological bias appeared first on CyberScoop.
An AI agent hacked a gym booking system while trying to help a user, booking early and removing another person from the waitlist. An Australian man asked his AI assistant to book him into a gym class. He didn’t ask it to hack the booking software, and he definitely didn’t ask it to remove another […...
A threat actor compromised the upstream infrastructure of BdThemes, a developer of premium WordPress web-design tools, and modified a remote JSON feed delivered to administrators' browsers to create rogue admin accounts. [...]
Franklin project adds new security providers, employs digital twins and AI
The company rolled out “Red” and “Blue” programs for defenders, introduced a new model and announced partnerships with 16 major cybersecurity vendors.
The post OpenAI says Daybreak will expand to offer specialized cyber services appeared first on CyberScoop.