[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (1 articles)

|

// AI-powered summary generated at 04:00

> InTruth veut vérifier les politiques en direct
InTruth utilise l’IA pour vĂ©rifier en direct les dĂ©clarations politiques et limiter l’impact des fausses informations.
> Ubuntu Apache2 Critical Denial of Service Threats USN-8516-1
Several security issues were fixed in Apache HTTP Server.
> Ubuntu 26.04 ClamAV Important Denial Of Service Vulnerabilities USN-8517-1
Several security issues were fixed in ClamAV.
> RedWing Android Spyware Sold as a Service on Telegram
Zimperium found RedWing, an Android spyware sold as a service via Telegram to target banking apps
> Sauvegardes et rançongiciels : le 3-2-1 dépassé ?
Pourquoi la rÚgle 3-2-1 reste utile face aux rançongiciels, et pourquoi elle doit évoluer.
> LHDN : 10 millions de dossiers fiscaux en vente
Données fiscales en vente : 10 millions de dossiers fiscaux revendiqués, risque cyber critique.
> New HalluSquatting Attack Could Trick AI Coding Assistants Into Installing Botnet Malware
AI coding assistants have a habit of making things up. Ask one to fetch a popular tool, and it will sometimes hand back a real-sounding name for a project that does not exist. New research, which its authors call HalluSquatting, turns that habit into an attack: work out the fake names an AI reliabl...
> The CISO’s guide to post-quantum mandates and migrations
Over a dozen major economies have now published post-quantum cryptography (PQC) adoption guidance. As a CISO, you’re probably well into your migration plan and know the most difficult part has little to do with changing algorithms. The real leadership challenge is driving coordinated change across a...
> Ubiquiti Patches Critical UniFi Flaws Across Connect, Talk, Access, Protect, and OS
Ubiquiti has shipped updates to address multiple critical security flaws impacting UniFi Connect, UniFi Talk, UniFi Access, UniFi Protect, and UniFi OS that could result in privilege escalation and arbitrary command execution. The list of vulnerabilities is as follows - CVE-2026-50746 (CVSS sco...
> Réseaux sociaux : Bruxelles recadre la loi mineurs
Bruxelles valide la liste noire sĂ©natoriale, en ciblant les pouvoirs de l’Arcom sur les rĂ©seaux sociaux.
> China-Linked APT Expands Proxy Network With New Malware
Cisco Talos said China-linked APT UAT-7810 is growing its proxy relay network with new malware
> Targeted phishing attacks on manufacturing companies | Kaspersky official blog
Attackers attempt to steal credentials using multi-stage targeted phishing attacks against manufacturing companies.
> Former UK privacy chief preparing legal action against woman who reported him, minister says
Liz Kendall, the secretary of state for science, innovation and technology, said she was “absolutely appalled” at the findings of “sexual harassment and bullying” made by an independent investigation at the Information Commissioner’s Office (ICO).
> USN-8517-1: ClamAV vulnerabilities
It was discovered that ClamAV incorrectly handled certain PE files. A remote attacker could possibly use this issue to cause ClamAV to crash, resulting in a denial of service. (CVE-2026-20213, CVE-2026-20214, CVE-2026-20217) It was discovered that ClamAV incorrectly handled certain 7z archive files...
> Attackers using Langflow flaw for credential harvesting (CVE-2026-55255)
The US Cybersecurity and Infrastructure Security Agency (CISA) is warning about yet another Langflow vulnerability (CVE-2026-55255) leveraged by attackers in the wild. The flaw was added to the agency’s Known Exploited Vulnerabilities catalog on Tuesday, July 7, nearly two weeks after the Sysdig Thr...
> 3 Ways AI Powers Service Desk Attacks and How to Prevent Them
Specops Software explains how AI is making service desk impersonation attacks more convincing, personalized, and scalable, along with practical steps organizations can take to strengthen onboarding and identity verification. [...]
> CVE-2026-58525 Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network.
> Bug in top AI coding agents shows that Unix-era security headaches never really die
'GhostApproval' problem highlights human-in-the-loop fails
> China tells devs to ditch Claude Code over 'backdoor code' fears
National vulnerability database claims monitoring mechanism can forward Chinese users' data to remote servers
> Weekly Update 511: Live from my Riad in Marrakech
Presently sponsored by: Report URI: Guarding you from rogue JavaScript! Don’t get pwned; get real-time alerts & prevent breaches #SecureYourSiteHow's this for a location?! I mean, last week was nice with Scott in Mallorca, but Marrakech is, well, wow 😼 Anyway, about those data breaches... This...