[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (101 articles)

|

// AI-powered summary generated at 16:00

> CVE-2026-46033 crypto: authencesn - reject short ahash digests during instance creation
Information published.
> CVE-2026-46089 zram: do not forget to endio for partial discard requests
Information published.
> ESET Server Security for Microsoft Windows Server version 13 feature update
A feature update of ESET Server Security for Microsoft Windows Server version 13.0.12005.0 has been released.
> CVE-2026-44898 Mistune TOC Anchor Injection XSS
Information published.
> CVE-2026-44899 Mistune Image Directive CSS Injection Vulnerability
Information published.
> JINX-0164 Targets Cryptocurrency Firms with Fake Recruiter Lures and macOS Malware
A new campaign orchestrated by a previously undocumented threat actor has targeted cryptocurrency organizations with an aim to facilitate digital asset theft using recruitment-themed social engineering and bespoke macOS malware. "These campaigns leveraged sophisticated social engineering techniques...
> CVE-2026-45846 bareudp: fix NULL pointer dereference in bareudp_fill_metadata_dst()
Information published.
> CVE-2026-45958 drm/exynos: vidi: fix to avoid directly dereferencing user pointer
Information published.
> Supply Chain : le botnet Glassworm ciblant GitHub et VS Code a été démantelé !
L'infrastructure du botnet Glassworm a été démantelée grâce à une action menée conjointement par CrowdStrike, Google et The Shadowserver Foundation. Le post Supply Chain : le botnet Glassworm ciblant GitHub et VS Code a été démantelé ! a été publié sur IT-Connect.
> CVE-2026-46091 media: rc: igorplugusb: heed coherency rules
Information published.
> CVE-2026-44896 Mistune: XSS via unescaped figclass/figwidth in Figure directive
Information published.
> 19.6 Billion Files Are Sitting Open on the Internet. No Password Required
19.6 Billion files are exposed in misconfigured cloud buckets, including 685K credential files and nearly 1M database dumps. There’s a comfortable myth most people carry around: that the data they hand to companies is locked somewhere safe. Researchers at Mysterium VPN just ran the numbers, and the...
> CVE-2026-46053 net: rds: fix MR cleanup on copy error
Information published.
> CVE-2026-46088 ALSA: control: Validate buf_len before strnlen() in snd_ctl_elem_init_enum_names()
Information published.
> Ketch brings multi-agent AI orchestration to enterprise privacy programs
Ketch has unveiled its vision for agentic privacy with the Ketch Agent Network, a multi-agent orchestration layer for enterprise privacy programs. The platform is designed to continuously reason across legal obligations, internal policies, and operational realities within a unified AI-driven system....
> CVE-2026-46051 md/raid5: fix soft lockup in retry_aligned_read()
Information published.
> CVE-2026-46018 ALSA: usb-audio: stop parsing UAC2 rates at MAX_NR_RATES
Information published.
> Kemper - 269,299 breached accounts
In April 2026, the American insurance holding company Kemper Corporation was named by the ShinyHunters ransomware group in a "pay or leak" extortion campaign. The attackers allegedly accessed Kemper's Salesforce environment via social engineering as part of a broader campaign targeting hundreds of o...
> CVE-2026-45835 Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_new_connection_cb()
Information published.
> CVE-2026-45834 Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_state_change_cb()
Information published.