[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> CVE-2026-46296 spi: s3c64xx: fix NULL-deref on driver unbind
Information published.
> CVE-2026-46274 io-wq: check that the predecessor is hashed in io_wq_remove_pending()
Information published.
> Protéger ses cryptoactifs : adoptez les bons réflexes
Vous êtes détenteur d’un portefeuille Crypto et vous vous rendez fréquemment sur des sites de trading : attention, un peu d'hygiène informatique s'impose ! Le post Protéger ses cryptoactifs : adoptez les bons réflexes a été publié sur IT-Connect.
> CVE-2026-46291 crypto: caam - guard HMAC key hex dumps in hash_digest_key
Information published.
> CVE-2026-46293 clk: microchip: mpfs-ccc: fix out of bounds access during output registration
Information published.
> Microsoft Fixes 200 CVEs in June Patch Tuesday
Microsoft has patched 200 vulnerabilities including three zero-days
> CVE-2026-46275 Bluetooth: hci_uart: fix UAFs and race conditions in close and init paths
Information published.
> CVE-2026-46285 mtd: docg3: fix use-after-free in docg3_release()
Information published.
> ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact
In addition, Rockwell Automation announced some enhancements to its SecureOT cybersecurity solution for OT. The post ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact appeared first on SecurityWeek.
> CVE-2026-46289 lib/scatterlist: fix length calculations in extract_kvec_to_sg
Information published.
> CVE-2026-46307 wifi: ath5k: do not access array OOB
Information published.
> Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards
On June 9, Anthropic released Claude Fable 5, the most capable model it has ever made, generally available. It also did something unusual: it shipped one model as two products, split not by capability but by a layer of safety classifiers. Fable 5 goes to the public. Its twin, Claude Mythos 5, the s...
> CVE-2026-46292 pmdomain: core: Fix detach procedure for virtual devices in genpd
Information published.
> GitHub a bloqué 73 dépôts officiels de Microsoft pour protéger les entreprises
73, c'est le nombre de dépôts désactivés par GitHub au sein de ses organisations officielles de Microsoft sur GitHub pour prévenir la propagation d'un ver. Le post GitHub a bloqué 73 dépôts officiels de Microsoft pour protéger les entreprises a été publié sur IT-Connect.
> A human in control
There seems to be a fair amount of people in either extremes in the current AI landscape. At one side we see the “vibe coders” who use agents and allow them to merge code without any person even looking at the source, while on the other side of the field there are people who are … Continue reading A...
> ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances
ServiceNow has warned about a security incident in which unknown threat actors exploited a flaw to obtain deeper unauthorized access to susceptible instances. "On June 5, 2026, ServiceNow applied a security update to hosted customer instances," the company revealed in an advisory that requires cust...
> USN-8417-1: Tomcat vulnerabilities
It was discovered that Tomcat did not properly limit the size of WebDAV LOCK and PROPFIND request bodies. A remote attacker could use this issue to cause Tomcat to consume excessive memory, resulting in a denial of service. (CVE-2026-41284) It was discovered that Tomcat incorrectly validated HTTP/2...
> No Patch Planned for Exploited Arista EOS Vulnerability
Organizations are advised to apply vendor-supplied mitigations or discontinue the vulnerable devices. The post No Patch Planned for Exploited Arista EOS Vulnerability appeared first on SecurityWeek.
> Ivanti: Max severity Sentry flaw allows code execution as root
Ivanti has patched two critical vulnerabilities in its Sentry secure mobile gateway solution, including a maximum-severity flaw that enables remote attackers to execute code with root privileges. [...]
> The security in smartphones is helping send them to landfills
Billions of working smartphones reach the end of their service lives each year and move into drawers, recycling streams, and waste piles. The WEEE Forum estimated that 5.3 billion mobile phones became electronic waste in 2022. Many of these devices still function. The average smartphone stays in use...