[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (10 articles)

|

// AI-powered summary generated at 16:00

> Vulnérabilité dans les produits Check Point (04 août 2026)
Une vulnérabilité a été découverte dans les produits Check Point. Elle permet à un attaquant de provoquer une exécution de code arbitraire à distance et un contournement de la politique de sécurité.
> Multiples vulnérabilités dans Microsoft Edge (04 août 2026)
De multiples vulnérabilités ont été découvertes dans Microsoft Edge. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.
> New Pass-ta-key attacks let malware hijack Google-synced passkeys
Security researchers have discovered three attacks that allow malware on already-compromised Windows devices to abuse Google Password Manager's synced passkeys to take over accounts, bypass user verification, and extract passkey private keys. [...]
> The Senate Should Reject KOSA's Privacy Risks
The Senate Commerce Committee is once again considering legislation that would dramatically expand age verification, and undermine privacy for everyone. Alongside the SCREEN Act, the CHATBOT Act, and the Youth AI Privacy Act, the Kids Online Safety Act (KOSA) would push companies to collect more inf...
> EFF Joins 18 Civil Rights Organizations Calling on Governor Hochul to Reject the Stealth Crawler Prohibition Act
EFF joined a group of 18 civil society organizations to send a letter encouraging New York Governor Kathy Hochul to Senate Bill 9934A, the New York Stealth Crawler Prohibition Act. The letter states: While framed as a measure to protect local journalism, this legislation harms free expression and es...
> Public interest coalition urges Congress to investigate OpenAI, Hugging Face hack
The post Public interest coalition urges Congress to investigate OpenAI, Hugging Face hack appeared first on CyberScoop.
> EFF Joins Call for FTC to Drop Its Disastrous AI Policy Proposal
The Federal Trade Commission (FTC) in July issued a proposed policy statement “concerning the suppression of accuracy in artificial intelligence systems.” We urge the FTC to withdraw this misguided proposal and instead focus on its core strengths and mission to protect consumers.  The new proposed p...
> Oracle Linux 10 php Low Advisory ELSA-2026-48170 CVE-2026-14355
Oracle Linux Security Advisory ELSA-2026-48170 announces updated RPM packages for PHP version 8.3.32 for x86_64 and aarch64 architectures, addressing vulnerabilities including CVE-2026-14355.
> Oracle Linux 10 gstreamer1-plugins-good Critical Integer Overflow Issue
Oracle Linux has released security updates for version 10, addressing CVE-2026-5056 related to integer overflow and bounds check vulnerabilities in uncompressed video handling.
> “Adult TikTok” searches lead to scams
That "free" adult TikTok site could leave you with spam, unwanted apps, or fake verification fees.
> Oracle 10 perl-DBI Important Threat Fix Advisory ELSA-2026-49514
Oracle Linux has released updated Perl DBI packages to fix vulnerabilities CVE-2026-14380 and CVE-2026-14739, affecting Oracle Linux 10 for x86_64 and aarch64 architectures.
> Oracle Linux 10 ELSA-2026-49523 perl-Archive-Tar Important Memory DoS Fix
Oracle released updates for Oracle Linux 10 to address CVE-2026-9538, enhancing security by fixing a vulnerability in the Archive-Tar package that could lead to memory denial-of-service.
> The Youth AI Privacy Act’s Privacy Paradox
The Senate Commerce Committee is poised to consider the Youth AI Privacy Act, a bill that would require AI companies to create kids-only privacy rules and implement so-called “safe design features,” which would—like three other bills under consideration this week—require more data collection and mak...
> Oracle Linux 10 p11-kit Moderate Security Issue ELSA-2026-49668
Oracle Linux has released updated RPMs for version 10 addressing CVE-2026-13757, specifically re-basing to version 0.26.4 across various package subsets for x86_64 and aarch64 architectures.
> The AI Act kicks into action, forces companies to be clear about AI chatbots
The European Union (EU) has started enforcing key parts of the AI Act, with immediate, visible consequences for chatbots, deepfakes and other consumer‑facing AI.
> Californians can tell data brokers to DROP their information
California has launched the Delete Request and Opt‑out Platform (DROP), a state‑run portal that lets residents send deletion and opt‑out requests to all registered data brokers.
> Google dev kit spurs first-ever agent-on-agent violence
Poisoned pull requests contain prompt injection that allows one to control another
> Bitcoin hardware wallet maker destroys some inventory after more than $88 million stolen
The company behind a popular hardware wallet for bitcoin owners was forced to destroy part of its inventory after thieves siphoned more than $88 million from customers through a firmware vulnerability.
> New DOUBLECUP ClickFix service hides malware in browser cache images
A new Russian loader-as-a-service named DOUBLECUP uses ClickFix attacks to hide malicious code in PNG images cached by victims' browsers, ultimately delivering CountLoader to Windows and macOS devices and a new remote access trojan named DeviceManager to Windows systems. [...]
> Who’s legally to blame for Anthropic and OpenAI’s autonomous AI hacks? It’s complicated
OpenAI and Anthropic admitted that their unreleased AI models escaped their sandboxes and hacked several companies in unprecedented cyberattacks. Who is legally to blame? Should prosecutors charge the two AI frontier labs? Can victims sue them? We spoke to lawyers who specialize in computer hacking...