[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> Adversarial Exposure Validation Turns Security Visibility into Confident Prioritization
For security teams, the findings never stop, but confidence in knowing which ones matter is becoming harder to maintain. The problem is no longer visibility. It's validation. Security teams must decide which findings warrant action while operating under constant pressure and incomplete information....
> Fête des Pères 2026 : offrez une serrure connectée WELOCK à prix réduit
WELOCK célèbre la Fête des pères avec des codes promo exclusifs sur 3 serrures connectées. Livraison gratuite, garantie 2 ans et retour 30 jours. Le post Fête des Pères 2026 : offrez une serrure connectée WELOCK à prix réduit a été publié sur IT-Connect.
> Approval Phishing: From Just One Case to Full-Scale Disruption
Chain of Thought is our new expert-hosted webinar series, taking you behind the scenes of real investigations, emerging typologies and… The post Approval Phishing: From Just One Case to Full-Scale Disruption appeared first on Chainalysis.
> Microsoft confirms Office apps launch issues after June updates
Microsoft is investigating a new issue preventing third-party applications from launching Microsoft Office applications or opening documents on up-to-date Windows systems. [...]
> VelocityEHS uses QR codes to speed up incident reporting and risk response
VelocityEHS has announced the launch of QR Codes for Incident Management, a new feature designed to eliminate friction in safety reporting and help organizations surface incidents and near misses, identify risks, and take action. By enabling instant, mobile access to reporting tools through a simple...
> Google’s Vertex AI SDK could allow RCE through bucket squatting
A design flaw in the Vertex AI software development kit (SDK) for Python, Google Cloud’s managed platform for building, training, and deploying AI agents, could allow hijacking and poisoning of models outside of a developer’s own Google Cloud project. According to Unit 42 r...
> Introducing Easy Switch for Business: Ditch Google for private email and calendar
Your business data isn't safe in Gmail. Here's how to move your email, contacts, and calendar to Proton Mail.
> Rockwell Automation Patches Vulnerabilities in ICS Controllers and Software
The industrial automation giant has fixed security holes in Logix, CompactLogix, Flex, RSLinx, and FactoryTalk products. The post Rockwell Automation Patches Vulnerabilities in ICS Controllers and Software appeared first on SecurityWeek.
> Microsoft working on patch for RoguePlanet Defender zero-day (CVE-2026-50656)
Microsoft has acknowledged the local elevation of privilege issue in Microsoft Defender that can be triggered via the “RoguePlanet” exploit, and is “working to provide a high quality security update that addresses this vulnerability.” The vulnerability, which has been assigned the CVE-2026-50656 ide...
> New Rokarolla Android Trojan Targets 217 Banking and Crypto Apps
Rokarolla Android malware targets 217 banking and crypto apps, steals credentials, blocks bank calls, intercepts SMS, and disables Play Protect. Zimperium’s zLabs researchers have published a detailed analysis of Rokarolla, a new Android banking trojan named after its command-and-control infrastruct...
> AI Use by the US Government
On 14 April, the Trump administration quietly acknowledged the widespread use of AI to automate government processes. The office of management and budget (OMB) disclosed a staggering 3,611 active or planned use cases for AI across the federal government. The list has ballooned by 70% from the one pu...
> ESET PSA plugin Service Release 2.5 has been released
ESET PSA plugin Service Release 2.5 is now available after logging into the ESET PSA plugin portal.
> 24 billion stolen records found in giant data dump. Check if you’re affected
Researchers found an exposed collection of 24 billion stolen records, including usernames, passwords, and other sensitive account data.
> What’s new in Android 17? Anti-theft tools, scam detection, and parental controls
The Android 17 rollout has started for supported Pixel devices, delivering new security and privacy capabilities before expanding to other devices later this year. Security and privacy updates Google has improved location privacy features so users can choose to share their approximate location with...
> Microsoft Teams Relay Servers Abused in DragonForce Ransomware Attack
The attackers deployed a new Go-based backdoor that uses Microsoft Teams servers for command-and-control. The post Microsoft Teams Relay Servers Abused in DragonForce Ransomware Attack appeared first on SecurityWeek.
> Helpdesk scammers are making house calls to make their lies feel more real
15-year-old among six arrested after Dutch cops target suspected bank fraud call center
> Ubuntu 16.04 LTS Important Linux Kernel Local Escalation USN-8390-2
The system could be made to run programs as an administrator.
> Ubuntu 16.04 LTS USN-8361-3 Linux Kernel Critical Packet Socket Threat
The system could be compromised under certain conditions.
> USN-8390-2: Linux kernel vulnerability
It was discovered that the Linux kernel did not properly handle shared page fragments during socket buffer operations, collectively known as Dirty Frag. A logic flaw existed in the XFRM ESP-in-TCP subsystem and in the RxRPC networking subsystem when processing paged fragments. A local attacker could...
> Ubuntu 16.04 Kernel Critical Privilege Escalation Vuln USN-8441-1
Several security issues were fixed in the Linux kernel.