[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> CVE-2026-64154 drm/msm/adreno: Fix a reference leak in a6xx_gpu_init()
Information published.
> CVE-2026-64111 lsm: hold cred_guard_mutex for lsm_set_self_attr()
Information published.
> New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE Attack
Researchers at Sysdig have linked a second attack on the same Langflow server to JADEPUFFER, the AI-agent-driven operator it first documented earlier this month. The same operator has now been spotted deploying ENCFORGE, a new compiled Go ransomware designed to encrypt model weights, vector indexes...
> CVE-2026-64017 blk-mq: pop cached request if it is usable
Information published.
> CVE-2026-63882 drm/amdkfd: fix NULL pointer bug in svm_range_set_attr
Information published.
> Weekly Update 513: Clauding The Home Network
Presently sponsored by: CoreView: Misconfigurations in Microsoft 365 leave doors open. Scan your tenant for free?.I reckon this week's video on how Claude is tying together info from UniFi, Home Assistant and the Pi-Hole is an absolute ripper. Or at least the concept is - if ever there was an actual...
> CVE-2026-63940 KVM: SEV: Ignore Port I/O requests of length '0'
Information published.
> CVE-2026-64077 netfilter: ebtables: move to two-stage removal scheme
Information published.
> HollowByte : une faille DoS dans OpenSSL corrigée en silence, sans CVE
La faille HollowByte sature la mémoire d'un serveur OpenSSL avec un paquet de 11 octets. Corrigée en silence depuis la version 4.0.1, et sans aucun CVE. Le post HollowByte : une faille DoS dans OpenSSL corrigée en silence, sans CVE a été publié sur IT-Connect.
> CVE-2026-63963 usb: typec: tcpm: validate VDO count in Discover Identity ACK handlers
Information published.
> CVE-2026-63961 usb: typec: altmodes/displayport: validate count before reading Status Update VDO
Information published.
> The Hidden Privilege of Automation Platforms
Automation platforms such as n8n are often introduced as productivity tools: connect a few systems, automate repetitive work, maybe add some AI. Inside a corporate network, however, that framing is incomplete. A self-hosted workflow engine can reach internal systems, execute actions on behalf of use...
> CVE-2026-63881 drm/amdkfd: fix a vulnerability of integer overflow in kfd debugger
Information published.
> CVE-2026-63960 usb: typec: wcove: don't write past struct pd_message in wcove_read_rx_buffer()
Information published.
> White hat hacker Park Chan-am zeros in on the AI era’s key security challenges
Dubbed the “Genius Hacker,” Park Chan-am began his white hat hacker journey at the precocious age of 11, winning awards at domestic and international hacking competitions since his teenage years. He has since served as a cybersecurity advisor for various Korean government a...
> CVE-2026-63964 usb: typec: ucsi: ccg: reject firmware images without a ':' record header
Information published.
> CVE-2026-63983 net/sched: fix packet loop on netem when duplicate is on
Information published.
> Context bombing heralds a new AI era of deceptive defense
Attackers are increasingly using AI agents to automate all phases of cyberattacks, prompting the security industry and enterprises to find new network defense approaches. One technique that shows promise is to intentionally plant decoy files with prompts that trigger the conte...
> CVE-2026-63879 drm/amdgpu: fix amdgpu_hmm_range_get_pages
Information published.
> CVE-2026-64097 drm/amd/display: Validate GPIO pin LUT table size before iterating
Information published.