[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (16 articles)

|

// AI-powered summary generated at 08:00

> Song Shang Electronics Co., Ltd
La société Song Shang Electronics, fabricant de circuits imprimés (PCB) et de composants magnétiques, a annoncé avoir subi une cyberattaque sur une partie de ses systèmes d'information. L'incident a été détecté le 17 juillet et les équipes informatiques ont immédiatement activé les mécanismes de déf...
> ACR Stealer: Two observed intrusion chains amid increased threat activity
From late April 2026 to mid-June 2026, Microsoft Defender Experts observed increased ACR Stealer activity across customer environments. These campaigns are successfully using ClickFix lures to steal browser credentials, authentication tokens, and sensitive documents from enterprise environments. The...
> AI, Automation and Attacks: Unpacking the Unit 42 2026 Global Incident Response Report
Explore Unit 42's perspectives on AI's impact on cybersecurity, including key updates since the 2026 Incident Response Report. The post AI, Automation and Attacks: Unpacking the Unit 42 2026 Global Incident Response Report appeared first on Unit 42.
> Ubuntu 26.04 Tar Important Regression Extraction Issue USN-8477-2
USN-8477-1 introduced a regression in tar
> OpenAI admits GPT-5.6 occasionally deletes files – but it's an 'honest mistake'
Data purges deemed an example of 'misaligned behavior' that upstart is working to avoid
> New ClickLock macOS malware traps users into revealing login password
A new macOS information-stealing malware dubbed ClickLock terminates all visible processes to force users into entering their system login password. [...]
> Coca-Cola suspended production at its Fairlife dairy after a ransomware attack
Coca Cola said dairy production at its Fairlife unit will "remain suspended" in the United States following a hack.
> Coca-Cola says Fairlife ransomware attack halts US dairy production
The Coca-Cola Company disclosed today that a ransomware attack impacting its Fairlife dairy subsidiary has disrupted operations, temporarily suspending production of Fairlife products across the United States. [...]
> Anubis ransomware: what you need to know
The Anubis ransomware-as-a-service (RaaS) operation has hit some healthcare organisations hard - but they are not the only ones at risk. Read more in my article on the Fortra blog.
> Senator calls on Rubio, Blanche to push back against Canadian surveillance legislation
Democratic Sen. Ron Wyden says the Trump administration should pressure Canada not to enact a proposal that would "weaponize American technology infrastructure" for surveillance purposes.
> DSB - autorité autrichienne
La Cour administrative suprême autrichienne a confirmé la sanction de l'autorité de protection des données pour le traitement illicite de données relatives aux "affinités politiques" de 2,2 millions de personnes, qualifiées de catégories particulières de données, et a fixé l'amende finale à 13 milli...
> AEPD - autorité espagnole
L'autorité espagnole sanctionne une entreprise américaine pour des mesures de sécurité insuffisantes face à une attaque par bourrage d'identifiants et pour une notification tardive de la violation de données qui en a résulté.Faits et contexteL'autorité espagnole de protection des données (AEPD) a au...
> Researcher poisons open-weight AI model for under $100
Models demand trust without offering verification
> Datatilsynet - autorité norvégienne
L'autorité norvégienne de protection des données (Datatilsynet) a commenté un projet de loi visant à encadrer la lutte contre le dopage et la manipulation des compétitions sportives.L'autorité accueille favorablement la codification légale des activités antidopage, destinée à remplacer les autorisat...
> DPA - autorité grecque
L'autorité grecque de protection des données a sanctionné un fournisseur d'énergie et ses quatre centres d'appels sous-traitants pour avoir mené des campagnes de prospection téléphonique sous le prétexte d'appels d'information ou d'enquêtes de satisfaction, révélant des défaillances systémiques dans...
> USN-8477-2: tar regression
USN-8477-1 fixed a vulnerability in tar. The update introduced a regression that could cause tar to fail to extract certain valid files. This update fixes the problem. Original advisory details: It was discovered that tar incorrectly handled certain crafted archive files. An attacker could possi...
> Workshop Basel day three
See also: day one, day two. There is only one thing that is better than two days of HTTP workshop, and that is of course three days of HTTP workshop. The final day of this edition of the series started out with us again shuffling around where we parked ourselves around the big table. Except … Contin...
> Ubuntu 26.04 Authlib Important JWT Bypass and CSRF Vulnerities USN-8557-1
Several security issues were fixed in Authlib.
> Claude Chrome extension flaw lets malicious extensions trigger AI actions
A flaw in Anthropic's Claude for Chrome browser extension could allow a malicious extension to trigger predefined AI actions by simulating user clicks, potentially allowing it to abuse Claude's access to connected services such as Gmail, Google Docs, Google Calendar, and Salesforce. [...]
> Program to rotate cyber personnel through federal agencies saw little use
The number of people who got approval to be in the Federal Rotational Cyber Workforce program was in the single digits, GAO found. The post Program to rotate cyber personnel through federal agencies saw little use appeared first on CyberScoop.