[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (57 articles)

|

// AI-powered summary generated at 12:00

> Glendale Community College - 793,925 breached accounts
In June 2026, Glendale Community College was the target of a ShinyHunters "pay or leak" extortion campaign. Data allegedly obtained from Glendale was later published online and included almost 800k unique email addresses along with various other data fields, including names, addresses, phone numbers...
> AI Found a Root Bug in Linux That Everyone Missed for 15 Years
Plus: The Pentagon is training amateurs to become part of its hacker army, a Flock license plate reader error led to cops surrounding a car reviewer, and more.
> ToolPie : comparer deux visages pour une enquĂŞte OSINT ?
Deux photos, un doute : ToolPie mesure gratuitement leur ressemblance et aide à vérifier une identité, sans lancer de recherche sur Internet.
> Wireshark 4.6.7 Released, (Sat, Jul 11th)
Wireshark release 4.6.7 fixes 12 vulnerabilities and 16 bugs.
> 'Ghostcommit' hides prompt injection in images to fool AI agents, steal secrets
A PNG hiding a prompt injection could steal your repo's secrets, researchers demonstrate. The technique, dubbed 'Ghostcommit,' slipped past AI code reviewers CodeRabbit and Bugbot, which never open image files at all, then convinced a coding agent to read a repo's .env and write every secret into th...
> CVE-2026-54908 Pion DTLS: Denial of service via panic while parsing a crafted ECDHE_PSK ServerKeyExchange message
Information published.
> CVE-2026-58253 NATS Server: Route API Auth Bypass
Information published.
> Critical Zimbra Flaw Could Let Crafted Emails Run Malicious Code in User Sessions
Zimbra is urging customers to apply updates to address a critical security vulnerability impacting the Classic Web Client that could result in arbitrary code execution. The vulnerability has been described as a case of stored cross-site scripting (XSS) that could allow specially crafted emails to e...
> CVE-2026-56000 xorg-x11-server / xwayland GLX contextTags Use-After-Free in CommonMakeCurrent()
Information published.
> CVE-2026-58208 NATS Server: MQTT-over-WebSocket Path Can Crash WebSocket-Only JetStream Servers Before MQTT Is Enabled
Information published.
> US cyber agency CISA had to build its incident playbook during the incident, agency reveals
CISA said it "missed" an opportunity to get ahead of the security incident by not creating a response plan ahead of time.
> CVE-2026-58252 NATS Server: Subscribe Authz Bypass via Wildcard-Overlap
Information published.
> CVE-2026-58209 NATS Server: MQTT retained and QoS replay bypass subscribe deny filters
Information published.
> Nihon Kotsu
La société japonaise Nihon Kotsu, l'un des plus grands opérateurs de taxis du Japon, a confirmé avoir subi un accès non autorisé à ses systèmes internes et une infection par un logiciel malveillant. L'incident, découvert le 11 juillet, a conduit à l'isolement immédiat des systèmes affectés (tels que...
> CVE-2026-58250 NATS Server: Pre-auth server crash via double INFO in leafnode handshake
Information published.
> CVE-2026-59869 js-yaml: YAML merge-key chains can force quadratic CPU consumption
Information published.
> Solid Advance Co., Ltd.
Solid Advance Co., Ltd. a détecté une infection par un logiciel malveillant sur certains de ses systèmes internes suite à un accès non autorisé depuis l'extérieur. En réponse, l'entreprise a mis en place des mesures d'urgence, notamment la coupure du réseau, ce qui a entraîné la suspension de certai...
> CVE-2026-59922 Mistune plugins/formatting: quadratic-time parsing on long runs of `~~x~~`, `==x==`, and `^^x^^` markers (strikethrough / mark / insert)
Information published.
> CVE-2026-58251 NATS Server: Queue Subscribe Authz Bypass
Information published.
> Slackware p11-kit Addresses Critical Stack Overflow Issue 2026-191-01
New p11-kit packages are available for Slackware 15.0 and -current to fix a security issue.