[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (61 articles)

|

// AI-powered summary generated at 12:01

> USN-8332-1: CRaC JDK 17 vulnerabilities
Thomas Beckers discovered that the JAXP component of CRaC JDK 17 did not correctly authenticate certain APIs. A remote unauthenticated attacker could possibly use this issue to gain unauthorized access to sensitive information. (CVE-2026-22016) It was discovered that the Networking component of CRa...
> USN-8331-1: OpenJDK 11 vulnerabilities
Thomas Beckers discovered that the JAXP component of OpenJDK 11 did not correctly authenticate certain APIs. A remote unauthenticated attacker could possibly use this issue to gain unauthorized access to sensitive information. (CVE-2026-22016) It was discovered that the Networking component of Open...
> You can now use your Gmail account in Proton Mail
Switch from Gmail to Proton Mail and send and receive emails in one place. No more toggling between inboxes.
> Comment fonctionne le kit de phishing Tycoon 2FA
Les techniques de phishing Tycoon 2FA permettent aux attaquants de contourner entièrement le processus de connexion. Bloquer ce type d’attaques adversaire-au-milieu (AiTM) reste difficile, mais pas impossible. Une stratégie d’authentification multifacteur soigneusement mise en œuvre, associée à des...
> USN-8330-1: OpenJDK 8 vulnerabilities
Thomas Beckers discovered that the JAXP component of OpenJDK 8 did not correctly authenticate certain APIs. A remote unauthenticated attacker could possibly use this issue to gain unauthorized access to sensitive information. (CVE-2026-22016) It was discovered that the JSSE component of OpenJDK 8 d...
> IPTV pirate : les paiements trahissent les abonnés
IPTV pirate : identification de centaines d'abonnés via la banque en ligne Revolut.
> New AI Usage Report: Enterprise AI Risk Is Heavily Concentrated Among a Small Group of AI "Power users"
State of AI Usage Report 2026 (full report here) by LayerX Security reveals the extent of the enterprise AI visibility gap and why most organizations still don't understand where their AI exposure is actually coming from. The research shows that enterprise AI risk is not distributed evenly across us...
> New Threat Actor Jinx-0164 Targets Crypto Developers on macOS
New actor Jinx-0164 hit crypto developers with fake recruiter lures and macOS malware
> Gitea Vulnerability Exposed 30,000 Deployments to Attacks
The security flaw allowed attackers to pull private container images, exposing source code, credentials, and infrastructure. The post Gitea Vulnerability Exposed 30,000 Deployments to Attacks appeared first on SecurityWeek.
> Raising the Cybersecurity Stakes: Ante up for the Agentic Era
CISOs are now facing machine-speed attacks and asking, “How do I agent?” The industry must provide remediation at scale. The post Raising the Cybersecurity Stakes: Ante up for the Agentic Era appeared first on SecurityWeek.
> Your Windows PC has a security deadline in June 2026
Windows is replacing old Secure Boot certificates, and some older PCs could miss future security protections if the update fails.
> InfoSec News Nuggets – 05/28/2026
FBI Warns Silent Ransom Group Is Walking Into Law Firm Offices to Steal Data The FBI issued a fresh flash alert warning that Silent Ransom Group — also known as Luna Moth, Chatty Spider, and UNC3753 — has escalated its campaign against U.S. law firms by physically sending operatives into offices pos...
> Vol de voitures de luxe : la faille invisible qui débute sur Internet
Vol de voitures de luxe : le mouse jacking qui débute sur Internet.
> Carnival Cruise confirms data breach affecting nearly 6 million people
Carnival Corporation, the world's largest cruise line operator, has confirmed a data breach affecting nearly 6 million people claimed by the ShinyHunters extortion gang in April 2026. [...]
> A Fake UK Visa Site Left 100,000 Passports Wide Open
A third-party UK visa site exposed passports and selfies on a public AWS server. It’s not official GOV.UK and affected at least 100,000 documents. UK Visa Portal is not run by the British government. It’s a third-party service, apparently operated by a UAE-registered company called Active Leadgen LL...
> Cryptoarnaque : la banque n’a pas à alerter
Cryptoarnaque : la banque n’est pas responsable des virements validés par ses clients au profit d’escrocs.
> Fake ChatGPT download site infects Windows and Mac users with malware
Searching for ChatGPT? This fake download site serves malware to both Windows and Mac users, using separate payloads tailored to each platform.
> From Seizure To Investigation In Minutes: What’s New In ADF Pro v6.3
Rich Frawley, Digital Forensic Specialist and law enforcement veteran, explores the game-changing features of ADF Tools – MDI and ADF Pro – Version 6.3.0!
> The AI governance imperative you can’t afford to ignore
CIOs rushing to roll out AI agents without real visibility into their decision-making processes are flirting with disaster. According to AI experts, deploying agents without observability processes and tools creates a ticking time bomb with the potential for huge negative c...
> When Familiar Tools Fail, MSAB XRY Pro Gets The Data
Stop choosing the tool you know — choose MSAB XRY Pro, built to get the data from the devices that matter now.