[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (61 articles)

|

// AI-powered summary generated at 12:01

> [webapps] Quick Playground for WordPress 1.3.1 - Unauthenticated Remote Code Execution
Quick Playground for WordPress 1.3.1 - Unauthenticated Remote Code Execution
> [webapps] Langflow 1.3.0 - Remote Code Execution
Langflow 1.3.0 - Remote Code Execution
> USN-8347-1: QT WebEngine vulnerability
It was discovered that the vendored LibTIFF in QT WebEngine incorrectly handled memory when parsing malformed TIFF image metadata. An attacker could possibly use this issue to cause a denial of service, obtain sensitive information, or execute arbitrary code.
> [webapps] Prodigy Commerce 3.3.0 - Local File Inclusion
Prodigy Commerce 3.3.0 - Local File Inclusion
> [webapps] MikroORM 7.0.13 - SQL Injection
MikroORM 7.0.13 - SQL Injection
> Why and how to migrate to a Transit Gateway-attached AWS Network Firewall
AWS Network Firewall now supports native attachment to AWS Transit Gateway. Customers commonly use Transit Gateway to route traffic from Amazon Virtual Private Cloud (Amazon VPC) networks to a centralized inspection VPC (a VPC dedicated to hosting firewall endpoints for traffic inspection) where the...
> [remote] Microsoft - NTLMv2 Hash Capture
Microsoft - NTLMv2 Hash Capture
> [dos] strongSwan 5.9.13 - DoS
strongSwan 5.9.13 - DoS
> USN-8346-1: Texmaker vulnerabilities
It was discovered that the vendored LibTIFF in Texmaker incorrectly handled memory when parsing malformed TIFF image metadata. An attacker could possibly use this issue to cause a denial of service, obtain sensitive information, or execute arbitrary code.
> [remote] strongSwan 5.9.13 - libsimaka EAP-SIM/AKA heap buffer overflow
strongSwan 5.9.13 - libsimaka EAP-SIM/AKA heap buffer overflow
> [webapps] CubeCart < 6.7.0 - Reflected Cross-Site Scripting (XSS) (Unauthenticated)
CubeCart < 6.7.0 - Reflected Cross-Site Scripting (XSS) (Unauthenticated)
> GreyVibe hackers use ChatGPT, Gemini to power cyberattacks
A likely Russian threat cluster tracked as GreyVibe has been targeting Ukrainian entities with AI-generated lures and a rich set of custom malware tools. [...]
> [remote] Wing FTP Server 8.1.3 - Authenticated Remote Code Execution
Wing FTP Server 8.1.3 - Authenticated Remote Code Execution
> USN-8345-1: GDAL vulnerability
It was discovered that the vendored LibTIFF in GDAL incorrectly handled memory when parsing malformed TIFF image metadata. An attacker could possibly use this issue to cause a denial of service, obtain sensitive information, or execute arbitrary code.
> Troops’ phones gave away location data to foreign adversaries
Lawmakers push DoD to tighten smartphone controls after adversaries exploited commercial tracking data
> BTMOB Android malware service generates custom phishing payloads
An Android remote access trojan named BTMOB is offered to cybercriminals with a builder interface for generating malware payloads tailored to phishing lures. [...]
> Disgruntled 0-day hunter 'humiliated' by Microsoft pledges 'bone shattering drop' as Redmond calls cops
Six 0-days, three under active exploitation, more to come on July 14?
> Charter - 4,851,517 breached accounts
In May 2026, the telecommunications company Charter Communications (the parent company behind the consumer broadband and cable brand Spectrum) was named by the ShinyHunters group in a "pay or leak" extortion campaign. The group later published the data, which exposed 4.9M unique email addresses alon...
> Snowflake buys Natoma to help freeze out rogue agents
It is the database titan’s sixth acquisition announcement since June 2025
> USN-8341-1: OpenJDK 26 vulnerabilities
Thomas Beckers discovered that the JAXP component of OpenJDK 26 did not correctly authenticate certain APIs. A remote unauthenticated attacker could possibly use this issue to gain unauthorized access to sensitive information. (CVE-2026-22016) It was discovered that the Networking component of Open...