> TODAY'S SUMMARY (11 articles)
Today's cybersecurity landscape highlights several significant threats and trends. Notably, the Warlock ransomware group continues to exploit year-old SharePoint vulnerabilities to target critical infrastructure, affecting essential services globally. Meanwhile, the ShinyHunters group faces increased scrutiny, with a suspect detained in Jordan cooperating with the FBI to identify other members. Additionally, a new China-aligned cyber espionage group, TA419, is actively targeting U.S. AI policy experts through sophisticated phishing campaigns. In the realm of artificial intelligence, former National Intelligence Director Jay Clayton is set to lead a new federal task force aimed at addressing AI-related security challenges. These developments underscore the ongoing risks posed by ransomware, cyber espionage, and the evolving landscape of AI security.
|
// AI-powered summary generated at 16:00
Ce bulletin d'actualité du CERT-FR revient sur les vulnérabilités significatives de la semaine passée pour souligner leurs criticités. Il ne remplace pas l'analyse de l'ensemble des avis et alertes publiés par le CERT-FR dans le cadre d'une analyse de risques pour prioriser l'application des...
Poland has warned that Ghostwriter, the Belarus-linked hacker group, has expanded its phishing operations to target personal Gmail accounts belonging to senior public figures and their relatives.
This is a current list of where and when I am scheduled to speak:
I’m giving a keynote at Cybernation 2026 in Berlin, Germany, on June 24, 2026.
I’m speaking at the Potsdam Conference on National Cybersecurity at the Hasso Plattner Institut in Potsdam, Germany. The event runs June 24–25, 2026, and...
In a coordinated effort, the FBI, working with Google and Black Lotus Labs, has dismantled a massive Chinese phishing-as-a-service operation called Outsider Enterprise with thousands of phishing websites used to steal credit card data and passwords. [...]
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter IronWorm: Shai-Hulud’s rustier cousin Trojanized ai-sdk-ollama Delivers Miasma, a Self-Replicating npm Worm via binding.gyp Inside the Cross-Platf...
A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press. Washington Pulled the Plug on Anthropic ‘s Fable...
From Java tests to Shai-Hulud, bots keep proving they'll swallow anything you feed them
CFake : un Français poursuivi après la diffusion massive de deepfakes sexuels visant 14 000 victimes.
Les actualités cyber de la semaine : sécurité informatique, identité numérique, piratage et actions de la justice.
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: DockSec: Open-source AI-powered Docker security scanner DockSec is an OWASP Incubator Project that combines three container security scanners with a language-model layer for explanation and remediation....
Ukrainian national Oleksii Lytvynenko pleaded guilty in the U.S. for his role in Conti ransomware attacks targeting victims worldwide. Oleksii Oleksiyovych Lytvynenko (44), a Ukrainian national extradited from Ireland to the U.S., has pleaded guilty to conspiracy to commit wire fraud for his involve...
Une cyberattaque a affecté MIP Holdings, un fournisseur de services tiers pour plusieurs assureurs sud-africains, compromettant des informations personnelles de clients. L'attaque, attribuée au groupe de rançongiciels « The Gentlemen », a eu lieu en juin. Bien que l'assureur Hollard ait rejeté toute...
Sapporo Holdings Corporation a annoncé qu'elle avait détecté des accès non autorisés à deux de ses filiales étrangères, POKKA PTE. LTD. et SLEEMAN BREWERIES LTD. Ces accès ont été détectés suite à des journaux de communication suspects. Les deux filiales ont isolé les systèmes concernés et mènent un...
Une fuite revendiquée vise 7 729 comptes notariaux et pourrait faciliter hameçonnage ciblé et usurpation.
Après Tchap, un pirate revendique des intrusions visant Nantes, Lyon, Bobigny, Paris et Smartbox.
A former  IT employee at an Iowa school district was sentenced to 21 months in prison after conducting a prolonged cyberattack against the former employer that disrupted classroom operations, deleted accounts, and caused tens of thousands of dollars in damages. [...]
Amazon CEO Andy Jassy may have been the source of security concerns that led Anthropic to cut off worldwide access to two models on Friday.
The Commerce Department’s expert control decree led to the company shutting off access to Fable 5 and Mythos 5 worldwide, drawing sharp criticism from researchers and industry analysts.
The post Anthropic disables new models after government calls them a national security concern appeared first on C...
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For the oldstable distribution (bookworm), these problems have been fixed in version 149.0.7827.114-1~deb12u1.
La plus haute juridiction administrative finlandaise a confirmé une amende de 792 639 € à l'encontre d'un commerçant en ligne pour ne pas avoir défini de durée de conservation pour les données des comptes clients, reportant cette responsabilité sur les clients eux-mêmes.Faits et contexteLa Cour admi...