[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (1 articles)

|

// AI-powered summary generated at 04:00

> French nonprofit starts global intelligence and research hub for AI cyber threats 
One of the project’s top goals is stitching together an international, quick response coalition of governments, businesses and civil experts for AI-related threats. The post French nonprofit starts global intelligence and research hub for AI cyber threats  appeared first on CyberScoop.
> Debian Chromium Significant Arbitrary Code DoS DSA-6384-1
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For the stable distribution (trixie), this problem has been fixed in version 150.0.7871.100-1~deb13u1.
> Meta’s new AI image generator is using your public Instagram photos
Meta's AI image generator, Muse Image, lets anyone create pictures using your public Instagram photos. Here's how to turn it off.
> USN-8518-1: mailcap vulnerability
Aaron Rainbolt discovered that the cautious-launcher utility in the mailcap package did not properly restrict the execution of certain file types. An attacker could use this issue to escape a sandboxed application and execute arbitrary code on the host operating system.
> Is Cloaked legit? An honest review of the privacy app
Is Cloaked legit? Yes, but the real question is does it do what you think. Read our breakdown of features, pricing, and where it falls short. 
> AI Coding Agents Found Triggering Endpoint Security Rules Built to Catch Attackers
Sophos looked at a week of its own endpoint data and found that AI coding agents such as Claude Code, Cursor, and OpenAI Codex are setting off detection rules written to catch human intruders. The agents are not malicious. They just do a lot of things that, to a behavioral engine, look exactly like...
> Protecting Microsoft at AI speed: How SFI proactively hardens our cloud  
At Microsoft we encompass these security requirements, along with threat knowledge, and operational frameworks in our Secure Future Initiative (SFI), to guide what a well-defended cloud service looks like. But defining the requirements is only the start. Meeting the requirements means continuously e...
> Taiwan charges two businessmen over alleged role in Chinese espionage campaign
A company based in Taiwan was leasing out accounts on the popular LINE messaging app to Chinese spies, according to prosecutors, who charged two men in the alleged scheme.
> How to stop Meta from tracking you
Meta tracks far more than your Facebook activity. Here's how to limit its surveillance across Facebook, Instagram, WhatsApp, and Threads.
> Entra passkey enrollment vishing targets Microsoft 365 users
A threat actor has been targeting organizations across multiple sectors with voice-based fake security requests that ask Microsoft 365 users to enroll a new Entra passkey. [...]
> HPC AI Workloads Need Runtime Security. The Architecture Already Exists.
Learn how to secure HPC AI infrastructure against runtime and supply chain threats via continuous behavioral monitoring.
> Another massive data breach exposed millions of driver’s license numbers
The cyberattack targeting a U.S. insurance giant is the largest known breach of driver's license numbers so far in 2026.
> Connection Allowlist: a network firewall, built into the browser
Connection Allowlist is a new browser security mechanism that lets a document declare, up front, the exact set of destinations it's permitted to open network connections to. Anything not on the list is blocked by the browser before the connection leaves the machine. It's currently a
> Accenture Confirms Data Breach After Hacker Claims Source Code Theft
The professional services giant says it contained the incident, remediated its source, and experienced no operational or service delivery impact. The post Accenture Confirms Data Breach After Hacker Claims Source Code Theft appeared first on SecurityWeek.
> GDID, cet identifiant Windows qui a permis au FBI de traquer un membre de Scattered Spider
Un identifiant Windows, le GDID, a aidé le FBI à relier un membre présumé de Scattered Spider à une cyberattaque, d'après une plainte fédérale américaine. Le post GDID, cet identifiant Windows qui a permis au FBI de traquer un membre de Scattered Spider a été publié sur IT-Connect.
> China-Linked APT Expands Arsenal With New ‘Leash’ Backdoors
Cisco says the threat actor behind the LapDogs campaign has expanded its SOHO router malware toolkit with LongLeash, DogLeash, and JarLeash backdoors. The post China-Linked APT Expands Arsenal With New ‘Leash’ Backdoors appeared first on SecurityWeek.
> InTruth veut vérifier les politiques en direct
InTruth utilise l’IA pour vérifier en direct les déclarations politiques et limiter l’impact des fausses informations.
> Ubuntu Apache2 Critical Denial of Service Threats USN-8516-1
Several security issues were fixed in Apache HTTP Server.
> Ubuntu 26.04 ClamAV Important Denial Of Service Vulnerabilities USN-8517-1
Several security issues were fixed in ClamAV.
> RedWing Android Spyware Sold as a Service on Telegram
Zimperium found RedWing, an Android spyware sold as a service via Telegram to target banking apps