[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (135 articles)

|

// AI-powered summary generated at 20:00

> Ubuntu GnuTLS Critical Machine-in-the-Middle Denial of Service Vuln 8539-1
Several security issues were fixed in GnuTLS.
> Adobe Patches Critical ColdFusion Vulnerabilities
The ColdFusion security defects could allow attackers to execute arbitrary code or elevate their privileges. The post Adobe Patches Critical ColdFusion Vulnerabilities appeared first on SecurityWeek.
> LabubaRAT Masquerades as NVIDIA Software to Control Windows Hosts
Cybersecurity researchers have flagged a previously undocumented Rust-based remote access trojan (RAT) codenamed LabubaRAT that masquerades as NVIDIA software to blend into target environments. "LabubaRAT creates a reusable foothold for hands-on activity," Blackpoint Cyber researchers Sam Decker an...
> Ubuntu 26.04 OpenVPN Critical Security Issues CVE-2026-11771
Several security issues were fixed in OpenVPN.
> USN-8526-2: libheif vulnerabilities
USN-8526-1 fixed vulnerabilities in libheif. This update provides the corresponding updates for CVE-2026-47709 and CVE-2026-47714 in Ubuntu 24.04 LTS. Original advisory details: Junyi Liu discovered that libheif had a null pointer dereference in its image tiling interface. An attacker could poss...
> USN-8541-1: Vim vulnerabilities
Hirohito Higashi discovered that Vim incorrectly escaped class or trait names when performing PHP omni-completion. An attacker could possibly use this issue to trick a user into opening a specially crafted PHP file and executing arbitrary commands. This issue only affected Ubuntu 22.04 LTS, Ubuntu 2...
> ESET Inspect On-Prem version 3.1 has been released
ESET Inspect On-Prem version 3.1 has been released.
> Welsh Doxbin admin jailed for egging on swatters from behind a screen
Callum Dare encouraged others to carry out dangerous hoaxes, made mini-movies from the footage
> Progress confirms ShareFile zero-day flaw behind Storage Zone shutdown
Progress Software has confirmed that a high-severity zero-day vulnerability is behind the emergency shutdown of ShareFile Storage Zone Controllers last week and has released security updates to patch the flaw. [...]
> Oracle Linux 9 gimp Important DoS Fix ELSA-2026-38496 CVE-2026-58379
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 9 ELSA-2026-38498 Important OpenEXR Security Fix
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Upcoming Speaking Engagements
This is a current list of where and when I am scheduled to speak: I’m speaking (virtually) at the Policy-Relevant Privacy Research Workshop in Calgary, Canada, on Monday, July 20, 2026. I’m speaking at Boston Leadership Exchange in Boston, Massachusetts, USA, on Wednesday, July 22, 2026. I’m speaki...
> Oracle Linux 9 ELSA-2026-38511 vim Important Code Injection
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Oracle 9 perl-DBI Important Buffer Overflow Fix ELSA-2026-38512
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Treasury sanctions First VPN Service, others for abetting ransomware gangs
The designations hit 1VPNS, its alleged Ukrainian administrator and a Belarusian who allegedly sold “cryptors” to disguise ransomware and other malware. The post Treasury sanctions First VPN Service, others for abetting ransomware gangs appeared first on CyberScoop.
> Oracle Linux 9 Podman Important ELSA-2026-38878 CVE-2026-39822
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> USN-8540-1: OpenVPN vulnerabilities
It was discovered that OpenVPN had a 1-byte buffer overrun when handling NTLMv2 proxy responses. An attacker could use this issue to cause a denial of service or possibly execute arbitrary code. This issue only affected Ubuntu 24.04 LTS and Ubuntu 26.04 LTS. (CVE-2026-11771) It was discovered that...
> LastPass, Bitwarden users targeted with fake security alerts
LastPass is warning users about an ongoing phishing campaign that is using fake security notices to direct them to fraudulent websites. [...]
> US: Pentagon Suspends CMMC Phase II Requirements for Defense Contractors
The US Department of Defense announced the immediate suspension of the CMMC Phase II requirements until further review
> Meta launched and almost instantly rolled back a feature that trained its AI image generator on Instagram user content. | Kaspersky official blog
Meta turned on — then immediately killed — an AI feature that used public Instagram content to generate images. Here’s a look at why they pivoted, what this means for the future, and how you can protect your social media accounts from unauthorized use.