[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (19 articles)

|

// AI-powered summary generated at 08:00

> Uncle Sam needs you to fight for 6G leadership and security, lest Beijing get there first
Washington rallies allies to shape next-generation networks after spending 18 months rattling them
> SpecterOps brings AWS attack path management and AI to hybrid identity security
SpecterOps has announced new capabilities built to give defenders a dynamic understanding of how adversaries traverse their hybrid environment and the ability to proactively eliminate pathways before they can be abused. BloodHound Enterprise adds support for Amazon Web Services and Microsoft Entra A...
> Microsoft Launches Flurry of AI Security Initiatives to Combat AI-Enabled Threats
Microsoft has launched a new agentic security system for cyber defenders as well as its first cyber-focused AI model
> We rebuilt Malwarebytes Mobile Security for the scams of today 
Your phone needs more than a lock screen to stay safe. We've rebuilt Malwarebytes Mobile Security to put scam protection first and keep your phone secure.
> Team Cymru unveils Pure Signal Command for AI-powered threat intelligence and incident response
Team Cymru has announced Pure Signal Command, the connected operating environment for analysts, security teams, applications, and AI agents to access and act on Team Cymru’s internet infrastructure intelligence. Command unlocks Team Cymru’s globally observed threat intelligence data by connecting te...
> Shared Claude chats were searchable on Google
Reddit users found that by using a specific search query, they could find shared Claude conversations in search results.
> Microsoft Tier Model : le retour en grâce du on-premises ?
Microsoft Active Directory Tier Model vs HardenAD : aperçu, points forts, pièges de déploiement et faiblesses. Ce qu'il faut savoir avant de l'utiliser. Le post Microsoft Tier Model : le retour en grâce du on-premises ? a été publié sur IT-Connect.
> Ubuntu Samba Critical Denial Of Service Vulnerabilities USN-8621-1
Ubuntu security notice USN-8621-1 addresses several vulnerabilities in Samba affecting various LTS releases, allowing potential denial of service and unauthorized modifications by local or remote attackers.
> Over 24,000 exposed server BMCs leak password hash via decades-old flaw
More than 24,000 internet-exposed servers are leaking authentication password hashes due to a 20-year-old vulnerability in their Baseboard Management Controller (BMC) interface. [...]
> When cyber attacks happen: helping organisations recover
A highly disruptive incident can feel overwhelming. New guidance provides a framework for response and recovery.
> Exposed BMCs hand out password hashes before login
An attacker who reaches UDP port 623 on a server’s baseboard management controller can ask it for a password hash and receive one before logging in. The exchange is part of the IPMI 2.0 handshake, built on an authentication protocol introduced in 2004. That controller runs underneath the operating s...
> Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays
The Iranian state-backed hacking group tracked as Nimbus Manticore (aka GalaxyGato, Mirage Kitten, Smoke Sandstorm, Subtle Snail, and UNC1549) has been attributed to a fresh set of attacks targeting entities across the Middle East, Africa, and South Asia. The intrusions involve the use of a previou...
> USN-8621-1: Samba vulnerabilities
It was discovered that Samba's pam_winbind incorrectly handled home directory ownership when mkhomedir was enabled. A local attacker could possibly use this issue to cause a denial of service by triggering a change in ownership of the root directory. (CVE-2026-15779) Arjun Basnet, Douglas Bagnall,...
> July Apple updates are especially important if you receive images
Apple issued a large July security update with several image processing related vulnerabilities that could compromise your device.
> JetBrains Patches Critical TeamCity Flaw Allowing Server Takeover
JetBrains patched a critical TeamCity flaw (CVE-2026-63077) enabling unauthenticated code execution on affected on-premise servers. JetBrains has released security updates for TeamCity On-Premises after discovering a critical vulnerability, tracked as CVE-2026-63077 (CVSS score of 9.8). The flaw cou...
> Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model 
The company claims MAI-Cyber-1-Flash tops Anthropic’s Mythos and OpenAI’s GPT-5.6 Sol in CyberGym testing. The post Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model  appeared first on SecurityWeek.
> Vatican’s Click To Pray app exposed personal data from 700,000 users
Anyone could access other Click To Pray users' personal information. The flaw went unfixed for more than six months after it was reported.
> Oracle Linux 10 mariadb-connector-c Critical Security Patch ELSA-2026-43505
Oracle released updates for MariaDB Connector C on Oracle Linux 10 to address CVE-2026-44172, along with various related package versions for x86_64 and aarch64 architectures.
> Axon Is Another License Plate Surveillance Company
Governments are switching, but I’m not sure it makes a difference: …some municipalities, including Denver, Colorado, are ditching their Flock arrays. But keep in mind that if they’re only switching from Flock to another brand of license-plate readers, like Axon, it’s like a gambling addict trying to...
> Oracle Linux 10 libpq Important Buffer Overflow Vulnern ELSA-2026-44391
Oracle Linux 10 has released updated RPMs for libpq and libpq-devel, addressing CVE-2026-6477 by rebasing to upstream release 16.14, available on the Unbreakable Linux Network.