[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (14 articles)

|

// AI-powered summary generated at 08:00

> Breadth, Depth, And Quality: Why Comparing Blockchain Analytics Vendors by Cluster Count Is Only Part of the Calculation
When compliance teams, regulators, or investigators evaluate blockchain analytics providers, the conversation almost always starts the same: How many services
 The post Breadth, Depth, And Quality: Why Comparing Blockchain Analytics Vendors by Cluster Count Is Only Part of the Calculation appeared f...
> Canadian spy agency reports hacking three criminal groups in 2025
A ransomware-as-a-service gang, an online foreign extremist group and drug traffickers were separately the targets of offensive operations in 2025, according to Canada's Communications Security Establishment.
> Attackers vote themselves $20 million in BONK cryptocurrency
BonkDAO said in a social media post that it was the victim of a “malicious governance proposal,” or an attack in which holders of a large amount of BONK used that leverage to vote more coins into their wallets.
> Phishing poses as big-brand job interview to steal Google accounts
A phishing campaign is impersonating more than 30 well-known brands, including Adobe, Netflix, Coca-Cola, and OpenAI, in fake job interviews to steal Google account credentials from marketing professionals. [...]
> Fake IT support calls on Microsoft Teams push EtherRAT malware
Threat actors are abusing Microsoft Teams voice calls by impersonating corporate IT support staff to trick employees into installing the EtherRAT malware, giving attackers initial access to corporate networks. [...]
> Adobe ColdFusion flaw CVE-2026-48282 now exploited in the wild
Attackers are exploiting the critical Adobe ColdFusion flaw CVE-2026-48282, which allows remote code execution on unpatched servers. Attackers have started exploiting CVE-2026-48282, a maximum-severity vulnerability in Adobe ColdFusion. The flaw is a path traversal issue that could result in arbitra...
> Blogspot-Hosted Payloads Delivered in ‘Veil#Drop’ Attacks
Securonix says the sophisticated framework abuses compromised websites, Blogspot, PowerShell, and fileless techniques to evade detection and deploy the PureLog information stealer. The post Blogspot-Hosted Payloads Delivered in ‘Veil#Drop’ Attacks appeared first on SecurityWeek.
> GPDP - autorité italienne
L'autorité italienne sanctionne une commune pour l'utilisation d'un systÚme de vidéoverbalisation sans information adéquate, sans minimisation des données et sans analyse d'impact préalable.Faits et contexteL'autorité italienne de protection des données (GPDP) a aujourd'hui publié une décision de sa...
> GPDP - autorité italienne
L'autorité italienne de protection des données (GPDP) a sanctionné un sous-traitant pour avoir effectué une prospection téléphonique illicite pour le compte d'un fournisseur d'énergie, utilisé un sous-traitant ultérieur sans autorisation et mal géré une demande d'exercice de droits, lui infligeant u...
> Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli Organizations
An Iranian hacking group affiliated with Iran's Ministry of Intelligence and Security (MOIS) has been wielding a previously undocumented modular command-and-control (C2) framework dubbed Cavern (aka Cav3rn) targeting Israeli organizations. The activity, which has primarily singled out IT providers...
> EDPB
Le Comité européen de la protection des données (CEPD) a mis en ligne un formulaire de contact dédié pour permettre aux parties prenantes de signaler les incohérences dans l'interprétation du RGPD en Europe.Cette initiative s'inscrit dans les engagements de la Déclaration d'Helsinki du CEPD sur l'am...
> SDTB - autorité allemande
La Conférence des délégués à la liberté d'information en Allemagne (IFK) s'oppose fermement au projet du gouvernement fédéral visant à restreindre de maniÚre significative la loi sur la liberté d'information.Selon les décisions publiées le 1er juillet 2026, le projet prévoit de conditionner le droit...
> Vietnam arrests suspects behind HiAnime anime piracy service
​Vietnamese authorities have arrested and are prosecuting seven suspects believed to have run HiAnime, the largest anime piracy streaming service before its shutdown in June. [...]
> CNIL
La Commission Nationale de l'Informatique et des LibertĂ©s (CNIL) a publiĂ© un bilan de son activitĂ© de sanction par procĂ©dure simplifiĂ©e pour le premier semestre 2026, rĂ©vĂ©lant 23 nouvelles dĂ©cisions pour un montant total de 133 750 €. Ces sanctions ciblent principalement des manquements rĂ©currents l...
> PIPC - autorité sud-coréenne
La Commission de protection des informations personnelles (PIPC) sud-coréenne a initié une modification du décret d'application de la loi sur la protection des informations personnelles visant à étendre le droit à la portabilité des données aux secteurs de l'éducation et de l'emploi.Le projet, soumi...
> Major medical device manufacturer notifies nearly 4 million of breach
Information like Social Security numbers and health-related data was accessed, but the company said it had “no evidence that impacted information has been publicly posted or exposed on the internet.”
> US Army websites defaced with pro-Kurdish sentiments, insults to Trump
At least two websites appear to be victim to 404 hijacking attacks. Army officials took the sites down after being contacted by CyberScoop. The post US Army websites defaced with pro-Kurdish sentiments, insults to Trump appeared first on CyberScoop.
> Why CAPTCHAs are about to vanish: how AI rewrote the “prove you’re human” test | Kaspersky official blog
Modern LLMs can now crack CAPTCHAs faster than humans. Here is why traditional CAPTCHAs are soon to become history, what’s replacing them, and what this means for your online security.
> 16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 Systems
A use-after-free bug in Linux's KVM hypervisor can be triggered from a guest virtual machine to corrupt the shadow-page state of the host kernel that runs it. Dubbed 'Januscape' and tracked as CVE-2026-53359, the flaw sits in the shadow MMU code that KVM shares across both Intel and AMD. The public...
> EU urged to act after Pegasus infects phone of spyware inquiry MEP
Campaigners demand investigation and long-delayed action on PEGA Committee recommendations