[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (1 articles)

|

// AI-powered summary generated at 04:00

> Chrome is now shipping updates every 2 weeks as AI changes the security landscape
Google is speeding up Chrome’s release schedule to ship security patches and new features faster.
> How S21 VisionX Helps Investigators Look For The Victim Behind The Category Label
Categorisation tells investigators what they’re looking at, but victim identification depends on seeing the details, patterns and connections beyond the label. Discover how Semantics 21 is helping investigative teams look further.
> How to secure hybrid meeting rooms without sacrificing user experience
SPONSORED FEATURE: With regulators tightening rules and attack surfaces widening, meeting-room kit must bake in security without pushing users toward workarounds
> SAP Patches Critical Extended Passport Processing Vulnerability
Affecting the SAP kernel code, the flaw allows unauthenticated, remote attackers to run arbitrary commands, recover secrets, and modify data. The post SAP Patches Critical Extended Passport Processing Vulnerability appeared first on SecurityWeek.
> SAP warns of maximum severity 'OVERPASS' kernel vulnerability
SAP has addressed 20 vulnerabilities across multiple products in its September 2026 security updates, including a maximum-severity memory corruption flaw in the SAP Kernel code. [...]
> Liquid Hackers Return 3,400 Bitcoin Taken via Elements Bug, Still Holding $47M in BTC
Whoever took nearly 4,000 bitcoin from the Liquid Network on Sunday, September 6, returned 3,400 of it the next day, Bitcoin's public record shows. About 598.5 bitcoin has not come back. Liquid is a Bitcoin sidechain that holds real bitcoin to back a token called L-BTC. The network is still paused,...
> Ubuntu HSQLDB Important File Overwrite Issue CVE-2023-1183 USN-8735-1
HSQLDB could be made to overwrite files.
> Reflectiz Launches Agentic Pentesting for Websites: Up to 10x Coverage vs Conventional Pentests
Specialized team of AI agents that discover, attack, and validate web vulnerabilities, leveraging pre-existing site context to eliminate noise and speed remediation.  Reflectiz, the continuous web exposure management company, today launched a multi-agent penetration testing...
> OpenAI says GPT-6 Astra can find zero-days, but is also harder to monitor
OpenAI confirmed that GPT-6 Astra is the first model it has broadly deployed to reach the "Critical level" for cybersecurity capabilities. [...]
> France Establishes New Government-Focused Cyber Incident Response Unit
After a major cyber-attack targeted France's national tax authority, the Prime Minister called for the establishment of a new dedicated cyber incident response capability
> USN-8736-1: Perl vulnerabilities
It was discovered that Perl incorrectly handled certain large inputs during regular expression matching. An attacker could possibly use this issue to trigger out-of-bounds heap reads or writes, resulting in a denial of service or arbitrary code execution. (CVE-2026-15534) It was discovered that Per...
> ChatGPT Flaw Let a Planted Prompt Send a Victim's Gmail Data to Another Account
Check Point Research said in a report published today that a single instruction planted in a ChatGPT conversation could cause ChatGPT to quietly work for an attacker while answering the user's question as usual. In the company's proof of concept, that hidden work read data from the user's connected...
> LG accused of 'egregious invasion of privacy' over TV data collection
Claims follow scrutiny over monitors installing adware without user consent
> A hacker stole $340M in a crypto heist, then returned most of it
The latest heist is one of the largest thefts of cryptocurrency to date.
> Where the backlash against Flock Safety is having the biggest impact
Two populous states and two large cities are among the U.S. jurisdictions where leaders have taken direct action to address criticisms of automated license plate readers (ALPRs).
> CVE-2026-62804 Microsoft Word Remote Code Execution Vulnerability
External control of file name or path in Microsoft Office Word allows an unauthorized attacker to execute code locally.
> CVE-2026-66307 Skype for Business and Lync Denial of Service Vulnerability
Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service over a network.
> CVE-2026-66303 Skype for Business and Lync Denial of Service Vulnerability
Null pointer dereference in Skype for Business allows an authorized attacker to deny service over a network.
> CVE-2026-84003 Microsoft Authentication Library (MSAL) for Node.js Spoofing Vulnerability
Authentication bypass by capture-replay in Microsoft Authentication Library (MSAL) for Node.js allows an unauthorized attacker to perform spoofing over a network.
> CVE-2026-83498 Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability
Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to elevate privileges locally.