> TODAY'S SUMMARY (34 articles)
Today's cybersecurity landscape highlights several critical threats and trends. A significant zero-day vulnerability (CVE-2026-88) in Citrix NetScaler has been actively exploited, prompting urgent updates for affected systems. Similarly, the Rejetto HFS flaw (CVE-2026-61500) is being targeted, allowing attackers to gain administrative access and execute remote code. In the realm of healthcare, a bipartisan bill has been passed to strengthen cybersecurity measures, following over 730 breaches affecting hundreds of millions of Americans last year. On the AI front, Google has paused its open-source bug bounty program due to a surge in invalid, AI-generated vulnerability reports. Additionally, recent arrests connected to cybercrime groups like ShinyHunters signal ongoing efforts to combat organized hacking networks.
|
// AI-powered summary generated at 12:00
poppler could be made to crash or run programs if it opened a specially crafted file.
The code WIRED identified is gone from the latest version of Meta AI, the companion app for the company’s smart glasses. Meta won’t say why or whether it’s coming back.
Elliott Childre discovered that strongSwan incorrectly handled the cloning
of certain identities. A remote attacker could use this issue to cause
strongSwan to crash, resulting in a denial of service, or possibly execute
arbitrary code.
libjxl could be made to crash or run programs if it opened a specially crafted file.
nginx could be made to consume excessive resources if it received specially crafted network traffic.
L'autorité italienne sanctionne un hôpital pour des dossiers médicaux manuscrits illisibles, jugeant que l'obligation de compréhensibilité des données de santé inclut l'identification claire des professionnels de santé auteurs de chaque annotation.Faits et contexteL'autorité italienne de protection...
L'Agence Espagnole de Protection des Données (AEPD) a sanctionné un transporteur pour ne pas avoir formalisé de contrat de sous-traitance avec une société exploitant des casiers de livraison, considérant que cette dernière agissait en qualité de sous-traitant et non de responsable de traitement conj...
The company founded by Yossi Torati, Omer Gull, and Yuval Itzchakov has emerged from stealth mode.
The post A Security Raises $37 Million for Autonomous Offensive Security Platform appeared first on SecurityWeek.
Un sous-traitant qui, pour répondre à un exercice du droit d'opposition, crée et gère une liste d'exclusion applicable à l'ensemble de ses clients (responsables du traitement) agit en qualité de responsable du traitement pour cette finalité propre et doit disposer d'une base juridique distincte et v...
The company said it spotted a spearphishing campaign linked to the Israeli spyware maker targeting WhatsApp users, despite a court order prohibiting it.
The post Meta accuses NSO Group of defying spyware injunction, files contempt of court complaint appeared first on CyberScoop.
Scumbags, including a Qilin ransomware affiliate, began hitting this hole May 7
Pashinyan's Civil Contract party won nearly 50% of Sunday's vote, defeating the pro-Russian Strong Armenia party led by Russian-Armenian billionaire Samvel Karapetyan, which received around 23% of the vote.
Meta on Monday said it detected and blocked spear-phishing attempts linked to Israeli spyware vendor NSO Group.
In addition, the tech giant said it's filing a federal court contempt order against the company for violating a permanent injunction that barred it from targeting WhatsApp and its users....
This diary continues the Internet Storm Center&#;x26;#;39;s tracking of the TeamPCP supply chain campaign, first documented in the SANS white paper When the Security Scanner Became the Weapon and most recently in the handler diary Activity Through 2026-05-24. Since that update, the story moved i...
If you’re a user—owner?—of this cryptocurrency, this is important:
On May 29, the security researcher Taylor Hornby found a critical vulnerability in Zcash Orchard privacy pool using Claude Opus 4.8. The Zcash team hired Hornby specifically to look for this kind of issue. He found one fast enough to...
L'Agence Espagnole de Protection des Données (AEPD) a publié des orientations sur l'utilisation de caméras vidéo au domicile de personnes âgées afin de concilier les impératifs de soins et le respect de la vie privée.En collaboration avec la Plateforme des Personnes Âgées et Retraités (PMP), l'autor...
Multiple security vulnerabilities have been discovered in Tomcat 11, a Java based web server, servlet and JSP engine which may result in a denial of service, authentication bypass or the disclosure of sensitive information. Although we are not aware of any problems, new upstream versions may introdu...
Cet article explique comment utiliser PowerBgInfo pour afficher l'état du système sur le fond d'écran des machines Windows et Windows Server via PowerShell.
Le post PowerBgInfo : personnalisez le fond d’écran des serveurs avec PowerShell a été publié sur IT-Connect.
Multiple security vulnerabilities have been discovered in Tomcat 10, a Java based web server, servlet and JSP engine which may result in a denial of service, authentication bypass or the disclosure of sensitive information. Although we are not aware of any problems, new upstream versions may introdu...
WhatsApp said it is filing a federal court contempt order against NSO for violating a permanent injunction that bars it from mounting attacks against its users.