[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (1 articles)

|

// AI-powered summary generated at 04:00

> Greek victims file lawsuit against Intellexa over Predator spyware
The use of the spyware came to light in 2022, with traces of Predator found on dozens of phones. The scandal led to the resignation of Greece’s intelligence service chief and the prime minister’s chief of staff.
> Ubiquiti Patches Critical UniFi OS Flaws Allowing Command Injection and Privilege Escalation
Ubiquiti patched seven UniFi OS flaws, including critical CVE-2026-50746, which allows command injection in UniFi Connect Application. Ubiquiti released security updates for seven critical UniFi OS vulnerabilities, including a maximum-severity flaw, tracked as CVE-2026-50746 (CVSS score of 10.0), en...
> Cash App owner to pay $45 million to settle allegations of lax security
State attorneys general announced the bipartisan agreement with Block, Inc. on Wednesday, saying that the company incorrectly promised users that Cash App offered the same protections as a bank.
> Fake Paysafe, Skrill SDKs on NPM and PyPi steal credentials
Malicious packages on the Node Package Manager (npm) and the Python Package Index (PyPI) delivered stealer malware to developers and users of Paysafe, Skrill, and Neteller payment applications. [...]
> Oracle Linux 9 ELSA-2026-36195 389-ds-base Important Heap Overflow
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Oracle 9 FreeIPMI Moderate Security Advisory ELSA-2026-36210
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> GitHub Copilot: Sorry Dave, I can't do that harmful thing - unless you ask me in code
More fun with AI jailbreaks, this time at the workflow level
> Oracle Linux 9 python3.14-pip Important Path Traversal Fix ELSA-2026-36315
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Oracle Skopeo Important Security Update ELSA-2026-36317 for Linux 9
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> AEPD - autorité espagnole
L'autorité espagnole de protection des données a sanctionné une entreprise pour ne pas avoir sécurisé physiquement un tableau d'affichage sur lequel des données personnelles sensibles de salariés avaient été publiées, considérant cette omission comme une violation de l'obligation de mettre en œuvre...
> Oracle Linux 9 ELSA-2026-36318 Aardvark DNS Moderate Security Issue
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> EDPB
Le Comité Européen de la Protection des Données (CEPD) a adopté plusieurs lignes directrices portant sur l'anonymisation, le moissonnage de données web pour l'intelligence artificielle générative, ainsi que la version finale de ses lignes directrices sur les technologies de la chaîne de blocs.Les no...
> GPDP - autorité italienne
L'autorité italienne de protection des données a sanctionné un éditeur de presse en ligne pour ne pas avoir notifié une violation de données et pour l'absence prolongée de politique de confidentialité sur son site, un fait établi par l'autorité grâce à l'utilisation d'archives du web.Faits et contex...
> Designing for the inevitable: System prompt leakage and mitigations in generative AI applications
System prompts form the foundation of generative AI applications. A system prompt is a collection of instructions and operational context provided to a large language model (LLM) that shapes how the model behaves and interacts with users and tools. System prompts often contain proprietary informatio...
> UODO - autorité polonaise
Une amende de 11 594 PLN (environ 2 685 €) a été infligée à un cabinet de conseil fiscal pour ne pas avoir mis en œuvre des mesures techniques et organisationnelles appropriées, ce qui a permis un accès non autorisé à une boîte de courriels contenant les données de 111 personnes.Faits et contexteL'a...
> GPDP - autorité italienne
L'autorité de protection des données italienne sanctionne un organisme de santé pour la publication en ligne de données judiciaires sans base légale et pour ne pas avoir effectivement effacé ces données suite à la demande de la personne concernée, celles-ci étant restées accessibles par inadvertance...
> Hackers exploit Roundcube flaw to spy on academic researchers
A China-linked threat cluster has been exploiting vulnerable Roundcube servers at U.S. and Canadian universities to steal credentials and deploy backdoor malware. [...]
> GPDP - autorité italienne
L'autorité italienne sanctionne une société pour son absence de réponse à une demande d'information, soulignant que le non-respect des pouvoirs d'enquête de l'autorité constitue une violation distincte et sanctionnable du RGPD, indépendamment des manquements initiaux envers la personne concernée.Fai...
> ICO - autorité britannique
L'autorité britannique de protection des données (ICO) a infligé des amendes d'un montant total de 370 000 £ (environ 436 600 €) à deux entreprises spécialisées dans la rénovation de l'habitat pour avoir effectué des centaines de milliers d'appels de démarchage illégaux. Les deux sociétés, dirigées...
> A Hacker Claims 35 GB of Accenture Source Code. The Company discloses the data breach
Accenture confirmed a breach after a hacker claimed to steal 35 GB of source code, keys, and Azure credentials now offered for sale. A threat actor using the handle “888” claimed on the cybercrime forum PwnForums this week to have stolen 35 gigabytes of data from Accenture in July and offered it for...