> TODAY'S SUMMARY (108 articles)
Today's cybersecurity landscape highlights several significant threats and trends. AI models continue to leak sensitive corporate data, with over 13,000 exposed images identified by Glow Security. A major breakthrough in law enforcement occurred with the arrest of a ShinyHunters leader in the Netherlands, coinciding with recent high-profile hacks, including an attack on the FBI. Russian threat actor Star Blizzard has refined phishing techniques, while Citrix NetScaler is facing mass exploitation of a zero-day vulnerability (CVE-2026-88771). Apple has patched a critical zero-day flaw (CVE-2026-86950) linked to sophisticated attacks, underscoring ongoing vulnerabilities in popular software. Additionally, the Pentagon personnel agency breach affecting 3 million individuals emphasizes the persistent risk to sensitive government data.
|
// AI-powered summary generated at 16:00
La municipalité de Milford, dans le New Hampshire, a été confrontée à un incident de cybersécurité qui a provoqué des perturbations majeures des services municipaux, incluant les télécommunications, l'accès à Internet, la facturation de l'eau et les services du greffier. Les problèmes opérationnels...
Introducing Sophos Fusion, the industry’s most complete AI-Native Cybersecurity Defense System.
Les sociétés Eurohold Bulgaria AD et ZD Euroins AD ont annoncé avoir repoussé une cyberattaque massive dont l'objectif était le vol de données et l'extorsion. L'incident, survenu la semaine dernière, a occasionné quelques perturbations techniques temporaires, rendant le portail en ligne de l'assureu...
L'Oklahoma Manufacturing Alliance (OMA) a détecté une activité de ransomware le 15 juillet, ciblant deux ordinateurs employés et affectant une partie limitée de son réseau local. Le groupe de ransomware, connu sous le nom de Booba Project, a affirmé avoir pénétré les systèmes et obtenu 10 gigaoctets...
Insights from 2,158 IT and cybersecurity leaders across 17 countries whose organizations were hit by ransomware in the past year.
Stadler Rail a été victime d'une cyberattaque où des criminels ont accédé à une plateforme d'échange de données avec un fournisseur. L'entreprise a confirmé que ses systèmes informatiques n'étaient pas affectés et qu'aucune donnée sensible ou personnelle n'a été volée. L'incident, survenu à la mi-ju...
Several security issues were fixed in Wget.
It was discovered that LuaJIT incorrectly handled certain inputs. An attacker
could possibly use these issues to cause a crash, resulting in a denial of
service, or execute arbitrary code.
The White House said the clearinghouse has already started to receive intelligence on vulnerabilities and prioritize patches.
The post White House details ‘Gold Eagle’ clearinghouse for AI cyber threats appeared first on CyberScoop.
WordPress updates help close known vulnerabilities before automated attacks can find and exploit them. Once a patch is released, attackers often move quickly to scan for sites that have not yet updated.
It’s easy to put off updates when everything seems to be working. But once a vulnerability is pub...
Patch Tuesday: Microsoft fixes a record 621 CVEs, including 2 exploited zero-days and critical flaws affecting SharePoint, RDP, Hyper-V, and AD FS. Microsoft’s July 2026 Patch Tuesday is, by a significant margin, the largest single-month security release in the company’s history. The Zero Day Initia...
SonicWall warns that threat actors have been exploiting two SMA1000 vulnerabilities, tracked as CVE-2026-15409 and CVE-2026-15410, in zero-day attacks and urges customers to install the newly released security updates. [...]
One of the best bulwarks against monopoly is interoperability—that is making a new product or service work with an existing product or service. Interoperability allows users, and not the manufacturers of their devices or largest player in a market, to decide what application best serves them. Unsurp...
Remember when last month's 206 CVEs seemed eye-watering? Yeah, those were the days
Microsoft has released its monthly security update for July 2026, which includes 622 vulnerabilities affecting a range of products, including 57 that Microsoft marked as "critical".Microsoft notes that two of the vulnerabilities disclosed this month have been exploited in the wild.CVE-2026-56155 is...
On this hot summer’s day in Basel, Switzerland, the seventh HTTP workshop started. These events tend to work roughly the same way and the people in the room are also to large extent familiar and known since previous editions. Forty people in a meeting room, where we take turns in doing short talks o...
Microsoft shipped its largest Patch Tuesday on record today, and two of the fixes close holes that attackers are already exploiting. The release covers 622 of Microsoft's own CVEs by its Security Update Guide count, more than triple June's previous high of around 200.
Those two live bugs are the on...
The Spanish Police dismantled a cybercrime and money-laundering organization that made €140 million ($160 million) from investment fraud and business email compromise (BEC) attacks. [...]
Several security issues were fixed in Vim.
Several security issues were fixed in Dnsmasq.