[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (3 articles)

|

// AI-powered summary generated at 04:00

> Inspector general finds NIST mistakes have made vulnerability database ineffective
NIST’s National Vulnerability Database (NVD) backlog mushroomed from 13,000 unprocessed security vulnerabilities in February 2024 to more than 27,000 by the end of 2025, “undermining the NVD’s utility and public trust," according to an inspector general report.
> Urgent Resolution for rxrpc Vulnerabilities in Slackware 15.0 Kernel
New kernel packages are available for Slackware 15.0 and -current to fix security issues.
> Ubuntu 14.04 LTS Linux Kernel Important Packet Socket Risk USN-8361-1
The system could be compromised under certain conditions.
> Tina Peters, convicted in election-security breach, emerges defiant and vows legal fight
The former Colorado election clerk  struck an unrepentant pose in her first interview after her prison sentence was commuted by Colorado Governor Jared Polis. The post Tina Peters, convicted in election-security breach, emerges defiant and vows legal fight appeared first on CyberScoop.
> Election interlopers register 5K+ domains, hope to catch some voting phish
Hacking voting machines is so 2017. Phishing, impersonation pose the real election risks
> Hackers hijacked Instagram accounts by tricking Meta AI support chatbot into granting access
Several users on social media reported having their Instagram accounts hacked over the weekend. Meta's own support chatbot was blamed for allowing hackers to hijack accounts.
> NSA selects new leads for key cybersecurity posts
David Imbordino, an NSA senior executive who most recently led its cybersecurity directorate in an acting capacity, has been named as its new chief. Bruce Jones, a career NSA technical and operational leader, as the new head of its Cybersecurity Collaboration Center.
> Ubuntu 25.10 NNCP Important File Access Threat USN-8359-1
NNCP could allow unintended access to files.
> Ubuntu 26.04 LTS haveged Critical Exec Privilege Escalation USN-8358-1
haveged could be made to run programs as an administrator.
> WP Maps Pro Vulnerability Exploited to Take Over WordPress Sites
The security defect (CVE-2026-8732) allows unauthenticated attackers to create administrative accounts on the affected installations. The post WP Maps Pro Vulnerability Exploited to Take Over WordPress Sites appeared first on SecurityWeek.
> Ubuntu 26.04 LTS sslh Important File Overwrite Security Advisory USN-8360-1
sslh could be made to overwrite files.
> Dashlane password manager users locked out by brute force attacks
Multiple Dashlane users have been locked out of their accounts following brute-force attacks that attempted logins from distant locations and unknown devices. [...]
> Debian Trixie gst-plugins-good1.0 Critical DoS Code Exec DSA-6318-1
Multiple multiple vulnerabilities were discovered in plugins for the GStreamer media framework and its codecs and demuxers, which may result in denial of service or potentially the execution of arbitrary code if a malformed media file is opened. For the stable distribution (trixie), these problems h...
> Ubuntu 26.04 LTS sssd Important Denial of Service Vuln 2026-6245
SSSD could be made to crash if it received specially crafted input.
> Ubuntu 26.04 Exim Critical Information Disclosure Vulnerability USN-8353-1
Exim could be made to expose sensitive information over the network.
> Debian Symfony Important SQL Injection Denial Of Service Vuln DSA-6317-1
Multiple vulnerabilities have been found in the Symfony PHP framework which could lead to a bypass of security controls, cross-site scripting, denial of service, SQL injection, email header injection, information disclosure or code execution via PHP object deserialization. For the oldstable distribu...
> Ubuntu 26.04 LTS gsasl Important DoS Crash Advisory USN-8356-1
GNU SASL could be made to crash if it received specially crafted input.
> Ubuntu 26.04 LTS Nginx Serious DoS Remote Attack Vulnerabilities USN-8354-1
Several security issues were fixed in nginx.
> Oracle’s first monthly patch release fixes 35 flaws, including 11 rated ‘critical’
Oracle has released the first security fixes in its new monthly Critical Security Patch Update (CSPU) cycle, designed to address urgent vulnerabilities that can’t wait for the company’s quarterly patching. The initial batch addresses 35 flaws, including several for which explo...
> Ubuntu 26.04 LibreOffice Significant DoS Flaw USN-8352-1
LibreOffice could be made to crash or run programs as your login if it opened a specially crafted file.