> TODAY'S SUMMARY (36 articles)
Today's cybersecurity landscape highlights significant threats and vulnerabilities. A major incident involved hackers hijacking Microsoft's official X account to promote a cryptocurrency scheme, showcasing the ongoing risks of social media exploitation. Additionally, a critical zero-day vulnerability in Fortinet's FortiMail is actively being exploited, prompting urgent action from users and inclusion in the U.S. CISA's Known Exploited Vulnerabilities catalog. On the espionage front, a China-aligned group has been phishing AI policy experts by impersonating US officials, emphasizing the trend of targeting high-profile individuals. Meanwhile, AI agents are increasingly being linked to SQL injection attacks against government sites, raising concerns about the security of AI applications. Lastly, law enforcement has made arrests in the KillSec ransomware group, reflecting ongoing efforts to combat cybercrime.
|
// AI-powered summary generated at 12:00
đ
1er juillet 2026 đ Lieu Pavillon RoyalCarrefour du Bout des Lacs75016 Paris Intervenants Anne Le HĂ©nanffMinistre dĂ©lĂ©guĂ©e chargĂ©e de lâIntelligence artificielle et du NumĂ©rique Etienne BusnelExpert Technique Cyber Assurance BessĂ© Joseph GraceffaPrĂ©sident du Clusir Nord de France Seynabou DiopFou...
It was discovered that Gzip's gzexe utility handled temporary files in an
insecure manner. When the mktemp utility was not available, gzexe
constructed a temporary file path based on the process ID, which could be
predicted. A local attacker could possibly use this issue to overwrite
arbitrary files...
WhatsApp is introducing usernames to help protect your phone number. Just make sure you don't undermine that privacy by choosing the wrong one.
Organizations are urged to patch after proof-of-concept code makes the Linux root escalation flaw easier to exploit.
The post Proof-of-Concept Exploit Released for Linux âBad Epollâ Root Access Vulnerability appeared first on SecurityWeek.
Google Maps Timeline a disparu du web et votre historique de localisation s'efface ? Dawarich, alternative open source et auto-hébergée, prend le relais.
Le post Dawarich : lâalternative open source et auto-hĂ©bergĂ©e Ă Google Timeline a Ă©tĂ© publiĂ© sur IT-Connect.
It was discovered that socat incorrectly handled the SOCKS5 proxy server
reply parser. A remote attacker could possibly use this issue to execute
arbitrary code. (CVE-2026-56123)
It was discovered that socat incorrectly handled a sample script. A local
attacker could possibly use this issue to over...
Up to 150 more stores to get the 'Orwellian' tech by year's end
ncurses could be made to crash if it opened a specially crafted file.
Key Points Introduction Since early 2026, Check Point Research (CPR) has tracked a new modular command-and-control framework used by Cavern Manticore, an Iran-nexus APT group primarily targeting Israeli organizations, with a focus on IT providers, and government sectors. Cavern Manticore is an Iran...
For the latest discoveries in cyber research for the week of 6th July, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES River Bank & Trust, a US financial institution, has experienced a ransomware incident after an unauthorized actor accessed the network of parent compa...
It was discovered that tar incorrectly handled symlinks when extracting
archives. An attacker could possibly use this issue to overwrite arbitrary
files.
Google, the FBI, and other partners have disrupted a residential proxy network built on millions of hijacked devices and used by criminals.
It was discovered that Python incorrectly normalized paths in the tarfile
module. An attacker could possibly use this issue to bypass path
restrictions. This issue only affected Ubuntu 22.04 LTS and Ubuntu 24.04
LTS. (CVE-2025-13462)
It was discovered that Python's HTMLParser incorrectly handled ce...
SharePoint RCE CVE-2026-45659 Added to CISA KEV After Active Exploitation A high-severity SharePoint Server flaw enabling remote code execution through deserialization of untrusted data was added to a federal known-exploited-vulnerabilities catalog after evidence surfaced that attackers are actively...
A fully autonomous AI agent conducted an end-to-end cyber intrusion and extortion campaign after exploiting a vulnerable Langflow server, demonstrating how large language models could accelerate ransomware operations, according to research published by Sysdig.
Sysdig detail...
Building a shortlist for an AI SOC evaluation can be tough. SIEM, SOAR, and pureplay AI SOC vendors are all saying the same thing. But behind the identical label sit very different products, from chat assistants bolted onto a legacy SIEM to agent platforms that run detection, triage, investigation,...
Researchers uncovered two campaigns embedding indirect prompt injections in malicious websites to exploit autonomous AI agents browsing the web.
The post Prompt Injection Attacks Trick AI Agents Into Making Crypto Payments appeared first on SecurityWeek.
Aleksander Iwicki discovered that Request Tracker did not properly sanitize
the search "Page" URL parameter. A remote attacker could possibly use this
issue to conduct a reflected cross-site scripting attack. (CVE-2026-6841)
It was discovered that Request Tracker did not properly sanitize user-
con...
It was discovered that Parsl incorrectly constructed SQL queries using
unsafe string formatting with user-supplied input in the parsl-visualize
component. A remote attacker could possibly use this issue to perform SQL
injection attacks, leading to data exfiltration or a denial of service.