[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (1 articles)

|

// AI-powered summary generated at 08:00

> Ukraine Says Russian Intelligence Used Fake Support Texts to Steal Messaging Credentials
The Security Service of Ukraine (SSU) said it, together with the U.S. Federal Bureau of Investigation (FBI), uncovered a long-running campaign orchestrated by Russian intelligence services to break into the messaging accounts of government officials, military personnel, politicians, and activists in...
> New FBI Alert: Russian Intelligence Uses Signal Recovery Keys to Access Messages
FBI warns Russian spies now target Signal Backup Recovery Keys, enabling access to message history and long-term account takeover. The FBI and CISA updated their March 2026 warning about Russian intelligence phishing campaigns, and the new advisory adds a detail that wasn’t in the original: the oper...
> Hospitality Sector Hit by Phishing Campaign Using Fake Guest Complaint Emails
Microsoft warns of a phishing campaign targeting the hospitality sector with fake guest emails that install TonRAT using resilient persistence. Microsoft Threat Intelligence published a detailed analysis on an ongoing hacking campaign against hospitality organizations that has been running since Apr...
> Clean GitHub repo tricks AI coding agents into running malware
An agentic coding tool tasked with cloning and setting up a seemingly benign GitHub repository could execute a malicious payload that remains invisible to security scanners, AI agents, and human reviewers. [...]
> OpenAI Previews GPT-5.6 Sol With Restricted Access and Stronger Cyber Safeguards
OpenAI on Friday released three versions of GPT-5.6, called Sol, Terra, and Luna, as a limited preview to a small number of companies as part of an ongoing engagement with the U.S. government. While Sol is the latest flagship model and the most powerful, Terra strikes a balance between efficiency a...
> Chinese Framework Powers 200,000 Scam Sites
Threat actors are selling investment scam templates created using the legitimate DCloud Uni-App toolkit. The post Chinese Framework Powers 200,000 Scam Sites appeared first on SecurityWeek.
> Security News This Week: LastPass Users Had Their Data Stolen—Again
Plus: Former national security advisor John Bolton pleads guilty in classified-materials case, Microsoft helps take down major infostealer infrastructure, and more.
> Debian xorg-server Critical Privilege Escalation Vulnerability DSA-6370-1
Several vulnerabilities were discovered in the Xorg X server, which may result in privilege escalation if the X server is running privileged. For the stable distribution (trixie), these problems have been fixed in version 2:21.1.16-1.3+deb13u3. We recommend that you upgrade your xorg-server packages...
> DirtyClone: Fourth Linux Kernel Flaw in Six Weeks Escalates to Root
DirtyClone: a Linux kernel privilege escalation that silently rewrites executables in memory, leaving no disk trace. Patch now. JFrog Security Research published a working exploit walkthrough on June 25 for CVE-2026-43503 (CVSS score of 8.8), a Linux kernel privilege escalation they call DirtyClone....
> Cyber actualités ZATAZ de la semaine du 28 juin 2026
Bonjour à toutes et tous,  Cette semaine cyber est marquée par de nouvelles fuites revendiquées, des intrusions sensibles et des opérations judiciaires d’ampleur. Akaolife, Bet365, Tripadvisor, Zalando Australia, Autosur, la Carte Jeune Occitanie, la RATP et l’identité notariale apparaissent dans de...
> It's looking like a hot, messy summer for security teams as AI finds countless previously hidden vulns
Time to start praying to the goddess of wisdom and war
> Oracle Linux 9 Golang Moderate Enhancement Bug Fix Advisory ELSA-2026-29981
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 9 Thunderbird Important Security Update ELSA-2026-29940
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Chromium: CVE-2026-13023 Uninitialized Use in GPU
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.
> Oracle Linux 9 libxml2 Low Risk Security Advisory ELSA-2026-28254
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 9 nginx-1.26 Important Denial of Service CVE-2026-9256
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Chromium: CVE-2026-13029 Use after free in Web Authentication
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.
> Oracle Linux 9 Advisory ELSA-2026-28247 Python3.14 Important Security Fix
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 9 libpng Moderate Security Vulnerabilities ELSA-2026-28255
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Chromium: CVE-2026-13035 Use after free in Bluetooth
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.