[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (51 articles)

|

// AI-powered summary generated at 12:01

> DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate Payouts
The operators of the DevMan ransomware-as-a-service (RaaS) scheme are maintaining a dedicated web platform that offers affiliates the ability to build payloads, oversee earnings, and manage various aspects related to victims. Swiss cybersecurity company PRODAFT is tracking the centrally administere...
> OpenAI confirms ChatGPT is down worldwide
ChatGPT, the famous artificial intelligence chatbot that allows users to converse with various personalities and topics, has connectivity issues worldwide. [...]
> Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git
Security researcher Yuhang Wu at depthfirst has published a working proof-of-concept (PoC) exploit that executes commands as git on an unpatched self-managed GitLab 18.11.3 server. An ordinary authenticated user triggers it by committing two crafted Jupyter notebooks and requesting their diff. The...
> Rockwell Patches Code Execution Flaws in Arena Simulation Software
A researcher has explained how an attacker could exploit these vulnerabilities to target industrial organizations. The post Rockwell Patches Code Execution Flaws in Arena Simulation Software appeared first on SecurityWeek.
> Chromium: CVE-2026-16807 Out of bounds write in Codecs
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
> Chromium: CVE-2026-16806 Use after free in WebMCP
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
> Test Thermal Master P3 : une caméra thermique de poche pour smartphone
Le Thermal Master P3 est-il la meilleure caméra thermique pour smartphone ? Notre test : capteur, mise au point manuelle, cas d'usage et avis. Le post Test Thermal Master P3 : une caméra thermique de poche pour smartphone a été publié sur IT-Connect.
> Chromium: CVE-2026-16805 Use after free in Blink
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
> Chromium: CVE-2026-16804 Use after free in Input
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
> Krefeld Pinguine
Le club de hockey sur glace de Krefeld, les Krefeld Pinguine, a été victime d'une attaque par logiciel malveillant sur son site internet dans la nuit du 25 au 26 juillet. Le club a mis son site hors ligne pour prévenir d'autres dommages et garantir la sécurité des visiteurs. Les Pinguine travaillent...
> Zenith Bank
Zenith Bank a confirmé avoir été victime d'une cyberattaque qui a permis aux attaquants d'accéder à une quantité limitée d'informations client, notamment des adresses e-mail et des numéros de téléphone. La banque a assuré que les fonds et les comptes des clients sont restés en sécurité et que les sy...
> Pope's official prayer app commits cardinal sin, leaks 700K+ users' info
(Security) hole-ier than thou
> Primo Caredent Group
Le groupe dentaire Primo Caredent a été victime d'une attaque informatique d'extorsion. L'incident pourrait également concerner le centre de Trebaseleghe. L'entreprise a alerté ses patients de ne pas payer ni répondre à des messages suspects, et les données des patients sont actuellement en cours d'...
> Debian exim4 Important Privilege Escalation Vuln DSA-6400-1
Debian Security Advisory DSA-6400-1 addressed two vulnerabilities in Exim that could lead to privilege escalation for local attackers, recommending an upgrade to version 4.98.2-1+deb13u4.
> Friday Squid Blogging: Illex Squid Catch in the Falklands
Lower catch this year. As usual, you can also use this squid post to talk about the security stories in the news that I haven’t covered. Blog moderation policy.
> Industry’s message on CIRCIA: Please ask us fewer questions about cyberattacks
The administration set a target date of September for CISA to finalize the rule, but where the agency is headed remains a mystery to some. The post Industry’s message on CIRCIA: Please ask us fewer questions about cyberattacks appeared first on CyberScoop.
> Google Fined €890M Under EU Digital Markets Act Over Search and Play Store Practices
EU fined Google €890M under the DMA for favoring its own services and restricting Play Store competition, with AI search features also under scrutiny. The European Commission hit Google with two fines totalling €890 million on Thursday for violating the Digital Markets Act, one for giving its own se...
> Europol flags 4,340 'horrific' URLs linked to The Com
Stop the spread (of online recruiting and propaganda)
> OnTrac notifies customers of data breach after network hack
OnTrac parcel delivery company is informing that hackers breached its corporate network and may have accessed personal details belonging to its customers. [...]
> Accelerating AWS Network Firewall troubleshooting with AWS DevOps Agent
When an administrator introduces a rule change in AWS Network Firewall and network connectivity is disrupted, pinpointing the cause requires inspecting multiple points in the traffic path. The firewall gives you stateless and stateful rule engines, domain rules, and routing to the firewall endpoint...