[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> VMware fixes three critical flaws allowing auth bypass, VM escapes
Broadcom has released security updates to fix five vulnerabilities in VMware vCenter, ESX, Workstation, and Fusion, including three critical flaws that allow attackers to bypass authentication, execute arbitrary code, or escape from a virtual machine to the host. [...]
> Jscrambler launches Unified Client-Side Security Platform
Jscrambler launched its Unified Client-Side Security Platform, introducing a new approach to securing applications and customer data where AI-powered risks increasingly operate: inside the browser. “AI didn’t create browser risk—it dramatically accelerated it,” said Rui Ribeiro, CEO and Co-Founder o...
> Extend Amazon Inspector SBOM Generator with Plugins
Amazon Inspector is an automated vulnerability management service that continually scans Amazon Web Services (AWS) workloads for software vulnerabilities. The vulnerability management capabilities of Amazon Inspector are powered by an asset inventory engine known as the Amazon Inspector SBOM Generat...
> Cybercriminals Are Leveraging Autonomous AI Offensive Security Agents
Resecurity warns AI offensive agents are lowering hacking barriers, fueling an AI-driven race between attackers and defenders. Resecurity analyzed how autonomous offensive security agents such as T3MP3ST, Strix, CyberStrike, XBOW, PentAGI, PentestGPT, and Nebula lower the barriers to vulnerability i...
> AI takes on a bigger role in finding Chrome vulnerabilities
Google has expanded the use of AI in Chrome’s security workflow, using it to find vulnerabilities, triage bug reports, generate patches, and review code to shorten the time between discovering software flaws and delivering security updates. “Historically, triaging a single security report took anywh...
> Chrome Needs Twice-a-Week Patching Thanks to AI Bug Hunting
The two Chrome updates in June patched more bugs than the 23 updates before them. Now, Google is ramping up its patching schedule thanks to AI-assisted vulnerability discovery.
> Google says AI helped Chrome fix 1,072 security bugs in two releases
Google says artificial intelligence is dramatically increasing the number of security vulnerabilities it can find and fix in Chrome, with more than 1,000 security bugs patched across the browser's two most recent releases as it expands its use of AI. [...]
> AZOP - autorité croate
L'autorité croate de protection des données (AZOP) a clarifié le statut juridique des données pseudonymisées transmises à un sous-traitant, en précisant qu'elles demeurent des données personnelles soumises au RGPD lorsque le responsable du traitement conserve la capacité de ré-identification.Dans un...
> ICO - autorité britannique
Le Bureau du Commissaire à l'information (ICO) a mené des perquisitions au Royaume-Uni dans le cadre d'une enquête sur du marketing intempestif lié à des réclamations pour vente abusive de financement automobile.Le 29 juillet 2026, l'ICO, en collaboration avec l'Autorité de conduite financière (FCA)...
> Read This Before You Buy That TV Streaming Stick
Security experts have been sounding the alarm for years about the risks of using generic TV boxes that promise unlimited content streaming for a one-time fee, warning that they secretly rent the user's Internet connection out to strangers. But a groundbreaking new analysis finds these devices also r...
> AEPD - autorité espagnole
L'autorité espagnole a classé une procédure de sanction car le lien entre la société visée et l'appel commercial litigieux n'a pu être formellement établi, la simple affirmation du téléopérateur étant jugée insuffisante.Faits et contexteL'autorité espagnole de protection des données (AEPD) a aujourd...
> ShinyHunters claims Brinks Home breach, threatens to leak stolen data
Residential security company Brinks Home has disclosed that hackers breached some of its systems and are threatening to leak allegedly stolen data. [...]
> PIPC - autorité sud-coréenne
L'autorité sud-coréenne de protection des données a sanctionné l'opérateur de télécommunications KT pour des failles de sécurité majeures sur son réseau de femtocellules ayant entraîné une fuite de données et un préjudice financier direct pour les utilisateurs. L'autorité a également engagé des pour...
> American Being Prosecuted for Wiping His Phone Before Handing It Over to Border Officials
He’s being prosecuted for giving border officials a code that wiped his phone: The case centers on a feature included in GrapheneOS, a custom Android operating system that runs in place of the software on most modern Google Pixel devices. Tunick’s attorneys confirmed GrapheneOS was running on his ph...
> Okta buys AI security startup Permiso; source says for about $200M
The deal gives Okta identity threat detection capabilities as enterprises seek to secure AI agents and other non-human identities across cloud environments.
> Malwarebytes for Windows, now available on the Microsoft Store 
Install Malwarebytes for Windows from the Microsoft Store with the same full protection and features.
> Escaping Linux Sandboxes via PipeWire (CVE-2026-5674)
This post walks through a sandbox escape from a Flatpak application via PipeWire. The vulnerability was discovered using my automated research pipeline with Claude Code and Opus 4.6 back in April 2026. It was an exciting find, as this was the first bug I submitted to Red Hat. Claude Code was also ex...
> ​​​​What’s new in Microsoft Security: July 2026
This month’s updates help security and IT teams secure their AI environments, use AI to defend, and strengthen the foundations that AI-powered operations depend on. The post ​​​​What’s new in Microsoft Security: July 2026 appeared first on Microsoft Security Blog.
> The 2026 World Cup On-Chain: $20 Billion in Crypto Flows, From Bets to Tickets
Summary The 2026 World Cup generated $20 billion in prediction market volume and $24 million in digital collectible trades, with… The post The 2026 World Cup On-Chain: $20 Billion in Crypto Flows, From Bets to Tickets appeared first on Chainalysis.
> Microsoft Teams vishing attacks lead to Chaos ransomware attacks
Threat actors are impersonating IT support staff in Microsoft Teams calls to gain remote access to corporate devices and deploy Chaos ransomware in attacks targeting North American organizations. [...]