[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> ETSI sets security requirements for AI data centers and cloud platforms
ETSI has published TS 104 033, a technical specification that defines security requirements for AI computing platforms. The specification establishes a security framework for platforms used to host AI applications in data center and edge computing environments, covering security functions, platform...
> ISC Stormcast For Thursday, June 4th, 2026 https://isc.sans.edu/podcastdetail/9958, (Thu, Jun 4th)
> Hole in GitHub’s browser-based VSCode editor could lead to stolen token
A vulnerability in GitHub’s browser-based VSCode editor could lead to the theft of a developer’s token under certain circumstances, says a researcher. The issue, revealed this week in a blog by Ammar Askar, has apparently been already addressed by GitHub owner Microsoft. Bu...
> Ubuntu Exim Security Advisory 8382-1 CVE-2023-51766 CVE-2026-40685
Several security issues were fixed in Exim.
> Debian Ceph Critical Privilege Escalation DoS Info Disclosure DSA-6321-1
Multiple vulnerabilities were discovered in Ceph, a distributed storage and file system, which may result in privilege escalation, denial of service or information disclosure. For the oldstable distribution (bookworm), these problems have been fixed in version 16.2.15+ds-0+deb12u2.
> Enterprise Spotlight: Rethinking cloud strategy in the age of AI
Cloud computing has reached a crossroads. The high cost and data sensitivity of AI workloads are raising the appeal of private clouds, even as neoclouds and sovereign clouds shake up the cloud provider landscape. New cyberthreats, shifting compute requirements, and management...
> You do surprise me.exe: An unexpected executable in Hola Browser
Following a certification test, Sophos X-Ops found an unexpected guest had hitched a rideCategories: Threat ResearchTags: Crypto mining, Supply chain
> Vulnérabilité dans les produits Cisco (04 juin 2026)
Une vulnérabilité a été découverte dans les produits Cisco. Elle permet à un attaquant de provoquer une falsification de requêtes côté serveur (SSRF).
> Multiples vulnérabilités dans les produits NetApp (04 juin 2026)
De multiples vulnérabilités ont été découvertes dans les produits NetApp. Elles permettent à un attaquant de provoquer un contournement de la politique de sécurité.
> Beyond automation: Why the surge in AI-driven security vulnerabilities demands human technical advocacy
Future historians will remember spring 2026 as the dawn of AI-driven security vulnerability reporting. On April 7, Anthropic announced a preview of its Claude Mythos AI model, made available to select companies as part of Project Glasswing. The initiative claimed it had discovered thousands of high...
> Multiples vulnérabilités dans Synology Chat Server pour DSM (04 juin 2026)
De multiples vulnérabilités ont été découvertes dans Synology Chat Server pour DSM. Certaines d'entre elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à la confidentialité des données et une atteinte à l'intégrité des données.
> Multiples vulnérabilités dans FreeRadius (04 juin 2026)
De multiples vulnérabilités ont été découvertes dans FreeRadius. Certaines d'entre elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à la confidentialité des données et un problème de sécurité non spécifié par l'éditeur.
> Karl Auto Group
Karl Auto Group, un détaillant automobile majeur de l'Iowa, a été victime d'une cyberattaque en avril qui a perturbé ses téléphones et ordinateurs. L'incident, dont l'accès non autorisé aux systèmes a eu lieu avant le 27 mars, pourrait avoir exposé des données sensibles de clients et d'employés, inc...
> Smashing Security podcast #470: This AI security flaw might be impossible to fix
A website called "UK visa portal" has been quietly collecting passport scans, selfies, and personal data from thousands of travellers who thought they were applying through official channels. They weren't. And when a journalist tried to warn the company, it was lawyers who responded. Meanwhile, a...
> DentaQuest - 2,553,599 breached accounts
In May 2026, the dental benefits administrator DentaQuest was the target of a ShinyHunters "pay or leak" extortion campaign that resulted in the group publicly publishing hundreds of gigabytes of data allegedly obtained from the company. The data included 2.6M unique email addresses along with names...
> Commvault says it's time to rethink resiliency as AI crooks leave victims in a 'dark, dead' state
Those backup plans need backup testing
> Slackware 15.0 Net-tools Urgent Buffer Overflow Resolution 2026-154-02
New net-tools packages are available for Slackware 15.0 and -current to fix a security issue.
> European authorities crack down on illegal streaming networks
Officials said they dismantled nine organized crime groups and removed more than 27,000 URLs hosting live sports and other copyrighted media during a seven-month operation. The post European authorities crack down on illegal streaming networks appeared first on CyberScoop.
> Slackware advises on ProFTPD - SSA-2026-154-03 SQL Vulnerability issue
New proftpd packages are available for Slackware 15.0 and -current to fix a security issue.
> Slackware 15.0 xorg-server Critical Buffer Overflow Issues Fix 2026-154-04
New xorg-server packages are available for Slackware 15.0 and -current to fix security issues.