[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> Manage machine identities: The hidden privileged access layer you need to manage
Why are machine identities becoming the majority of “things with access”? Every automation, integration, and workload needs a way to authenticate and the right permissions to act. That quiet requirement has created a massive population of machine identities, also called non-human identities (NHIs):...
> Cybersecurity jobs available right now: May 26, 2026
Application Security Engineer IG Group | India | Hybrid – View job details As an Application Security Engineer, you will assess the security of web, mobile, and cloud applications through penetration testing, secure code reviews, threat modeling, and architecture reviews. Responsibilities also inclu...
> Security experts caution MFA alone can no longer stop threat actors
Cybersecurity experts are warning enterprise admins about an increasing number of phishing campaigns aimed at stealing Microsoft 365 (M365) access tokens to bypass multifactor authentication login protection. Phishing kits aimed at capturing M365 tokens aren’t new; some rep...
> ISC Stormcast For Tuesday, May 26th, 2026 https://isc.sans.edu/podcastdetail/9944, (Tue, May 26th)
> Press safety at risk: US journalists’ personal data leaked on the dark web
Top US media saw 116,000+ leaks of sensitive data in the past five years, according to research from Proton. What does this mean for press freedom?
> Project Glasswing has uncovered 10,000 vulnerabilities: Anthropic
Anthropic says it and upwards of 50 partners involved in Project Glasswing have uncovered an estimated 10,000 critical or high-severity vulnerabilities in their software offerings. The company launched the cybersecurity initiative, which is built around Claude Mythos Previe...
> Oracle Linux 8 ELSA-2026-19666 Important Kernel Update Denial of Service
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 8 Firefox Critical Security Notification ELSA-2026-19588
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
> Possible ACR Stealer From Page Impersonating Claude, (Tue, May 26th)
Introduction
> Cornerstone Behavioral Healthcare
Cornerstone Behavioral Healthcare, un fournisseur de soins de santé comportementaux basé dans le Maine, a subi une cyberattaque par ransomware le 26 mai 2026. L'incident a affecté environ 14 830 personnes. L'enquête initiale a révélé que les informations de santé protégées et personnelles de 2 830 i...
> Vulnérabilité dans CPython (26 mai 2026)
Une vulnérabilité a été découverte dans CPython. Elle permet à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.
> Multiples vulnérabilités dans Roundcube (26 mai 2026)
De multiples vulnérabilités ont été découvertes dans Roundcube. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une atteinte à la confidentialité des données et une atteinte à l'intégrité des données.
> [hardware] D-Link DSL2600U - 'rom-0' Admin Password Disclosure
D-Link DSL2600U - 'rom-0' Admin Password Disclosure
> Vulnérabilité dans Nginx (26 mai 2026)
Une vulnérabilité a été découverte dans Nginx. Elle permet à un attaquant de provoquer une exécution de code arbitraire à distance et un déni de service à distance.
> Vulnérabilité dans Spring AI (26 mai 2026)
Une vulnérabilité a été découverte dans Spring AI. Elle permet à un attaquant de provoquer une atteinte à l'intégrité des données.
> [webapps] Wordpress Temporary Login Plugin 1.0.0 - 'temp-login-token' Authentication Bypass to Account Takeover
Wordpress Temporary Login Plugin 1.0.0 - 'temp-login-token' Authentication Bypass to Account Takeover
> Vulnérabilité dans Firefox pour iOS (26 mai 2026)
Une vulnérabilité a été découverte dans Firefox pour iOS. Elle permet à un attaquant de provoquer un contournement de la politique de sécurité.
> [webapps] cPanel - CRLF Injection
cPanel - CRLF Injection
> [local] Linux Kernel 6.8 - Local Privilege Escalation
Linux Kernel 6.8 - Local Privilege Escalation
> Bulletin d'actualité CERTFR-2026-ACT-023 (26 mai 2026)
Ce bulletin d'actualité du CERT-FR revient sur les vulnérabilités significatives de la semaine passée pour souligner leurs criticités. Il ne remplace pas l'analyse de l'ensemble des avis et alertes publiés par le CERT-FR dans le cadre d'une analyse de risques pour prioriser l'application des...