[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (36 articles)

|

// AI-powered summary generated at 12:00

> Vulnérabilité dans PostgreSQL JDBC (06 juillet 2026)
Une vulnérabilité a été découverte dans PostgreSQL JDBC. Elle permet à un attaquant de provoquer un contournement de la politique de sécurité.
> Bulletin d'actualité CERTFR-2026-ACT-029 (06 juillet 2026)
Ce bulletin d'actualité du CERT-FR revient sur les vulnérabilités significatives de la semaine passée pour souligner leurs criticités. Il ne remplace pas l'analyse de l'ensemble des avis et alertes publiés par le CERT-FR dans le cadre d'une analyse de risques pour prioriser l'application des...
> Entra Agent ID: Protect, detect, respond
This post continues and concludes our series on Agent ID, by outlining steps that an administrator or security team can take to secure blueprints and agent identities created in their local Entra ID tenant.
> [webapps] WordPress Plugin WPZOOM Portfolio 1.4.21 - Reflected Cross-Site Scripting (XSS)
WordPress Plugin WPZOOM Portfolio 1.4.21 - Reflected Cross-Site Scripting (XSS)
> [local] Windows Defender (MsMpEng.exe) - Race Condition
Windows Defender (MsMpEng.exe) - Race Condition
> USN-8504-1: SOGo vulnerabilities
It was discovered that SOGo did not properly sanitize categories used for events, tasks, and contacts. A remote authenticated attacker could possibly use this issue to perform cross-site scripting attacks. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu 26.0...
> [webapps] KNX visualisering - Broken Access Control
KNX visualisering - Broken Access Control
> [webapps] KeepInMind 0.8.4.2 - Stored XSS
KeepInMind 0.8.4.2 - Stored XSS
> Slackware 15.0 php82 Critical Memory Corruption Fix 2026-186-02
New php82 packages are available for Slackware 15.0 to fix a security issue.
> [local] MEmu Android Emulator 9.2.7.0 - Local Privilege Escalation
MEmu Android Emulator 9.2.7.0 - Local Privilege Escalation
> [webapps] Pulpy 0.1.1-Beta - Filesystem Sandbox Bypass
Pulpy 0.1.1-Beta - Filesystem Sandbox Bypass
> New ClamAV security patch closes seven scanner bugs dating back two decades
Open source antivirus scanning sits inside mail gateways, file upload checks, and endpoint tooling at organizations of every size. Much of that work runs through ClamAV, the scanning engine maintained by Cisco’s Talos group. The project released two patch versions, 1.5.3 and 1.4.5, carrying fixes fo...
> [webapps] Joomla Extension 4.1.4 - PHP Object injection
Joomla Extension 4.1.4 - PHP Object injection
> Slackware Mutt Significant Buffer Overflow Patch 2026-186-01
New mutt packages are available for Slackware 15.0 and -current to fix a security issue.
> Debian Update DSA-6381-1 Linux Important Privilege Escalation DoS
Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks. For the stable distribution (trixie), these problems have been fixed in version 6.12.95-1.
> Debian MediaWiki Important Code Execution Info Issues DSA-6380-1
Multiple security issues were discovered in MediaWiki, a website engine for collaborative work, which could result in information disclosure, code execution via unsafe deserialisation or cross-site scripting. For the stable distribution (trixie), these problems have been fixed in version 1:1.43.9+df...
> Medtronic Notifies 3.8 Million After ShinyHunters Data Breach
Medtronic says a ShinyHunters attack exposed the personal and medical data of over 3.8 million people. Products and operations were unaffected. Medtronic is notifying 3,834,294 individuals after a cyberattack by the ShinyHunters extortion group exposed personal and medical information. In April 2026...
> SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 104
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Hijacked npm Packages Use Novel VSCode Autorun and Blockchain Dead Drops to Deploy a Credential/Crypto Stealer   Building a CI/CD pipeline for Sigm...
> MFA-optional banks leave safe doors (and accounts) wide open for thieves to pillage
Financial institutions are putting their clients at risk in the name of convenience.
> Flipper Zero firmware development continues with community help
Flipper Devices says development of the Flipper Zero firmware will continue, albeit with a smaller internal team and greater reliance on community contributions. [...]