[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> [webapps] Grav CMS 2.0.0-beta.2 - Remote Code Execution
Grav CMS 2.0.0-beta.2 - Remote Code Execution
> [webapps] Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service
Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service
> Catalyst Brands LLC
Catalyst Brands LLC experienced a cybersecurity incident around May 26, 2026, involving unauthorized access to third-party servers used for HR and payroll services. On August 5, 2026, it was determined that personal information was compromised. The exposed data varied by individual but included name...
> USN-8305-1: Linux kernel (Intel IoTG Real-time) vulnerabilities
It was discovered that the Linux kernel algif_aead module did not properly handle in-place cryptographic operations. This flaw is known as Copy Fail. A local attacker could use this to escalate privileges, or possibly escape a container. (CVE-2026-31431) Several security issues were discovered in t...
> Dutch authorities arrest men suspected of providing infrastructure for Russian cyber operations
Investigators seized more than 800 servers as they arrested two men suspected of violating European sanctions and assisting pro-Russian cyberattacks and disinformation campaigns.
> Kremlin appoints cyber executive with alleged GRU ties to Security Council role
Andrei Kozlov, the former head of a cybersecurity center within Russia’s state-owned defense conglomerate Rostec, was named an aide to Security Council Secretary Sergei Shoigu on Friday.
> Welcoming the Bhutanese Government to Have I Been Pwned
Presently sponsored by: Report URI: Guarding you from rogue JavaScript! Don’t get pwned; get real-time alerts & prevent breaches #SecureYourSiteToday, we welcome the 45th government onboarded to Have I Been Pwned’s free gov service: Bhutan. The Bhutan Computer Incident Response Team, BtCIRT, now...
> USN-8279-3: Linux kernel (NVIDIA Tegra IGX) vulnerabilities
It was discovered that the Linux kernel algif_aead module did not properly handle in-place cryptographic operations. This flaw is known as Copy Fail. A local attacker could use this to escalate privileges, or possibly escape a container. (CVE-2026-31431) Several security issues were discovered in t...
> Ubuntu 26.04 LTS Dotnet Critical Denial Service Issue USN-8298-1
.NET could be made to consume excessive resources if it received specially crafted network traffic.
> Ubuntu 26.04 NLTK Faces Significant Issues in 2026-0846 Release
Several security issues were fixed in NLTK.
> Ghost CMS flaw abused to push ClickFix attacks on hundreds of sites
Attackers are exploiting the patched Ghost CMS flaw CVE-2026-26980, compromising over 700 unpatched sites, including universities. Threat actors are actively exploiting a security flaw, tracked as CVE-2026-26980, in Ghost CMS that was fixed months ago in real attacks against unpatched websites. Acco...
> Ubuntu 26.04 Vim Critical Exec Code Denial of Service USN-8304-1
Several security issues were fixed in Vim.
> Ubuntu 22.04 LTS Kernel Important Escalation Flaws Fix USN-8305-1
Several security issues were fixed in the Linux kernel.
> USN-8304-1: Vim vulnerabilities
Joshua Rogers discovered that Vim incorrectly handled certain URL schemes in the netrw plugin. An attacker could possibly use this issue to execute arbitrary commands. (CVE-2026-42307) It was discovered that Vim incorrectly handled command-line completion for the :find command. An attacker could po...
> Ubuntu 22.04 8289-2 Linux-Nvidia Kernel Privilege Escalation Fix
Several security issues were fixed in the Linux kernel.
> Ubuntu 22.04 LTS Linux-Nvidia-Tegra-IGX Key Privilege Escalation USN-8279-3
Several security issues were fixed in the Linux kernel.
> USN-8289-2: Linux kernel (NVIDIA) vulnerabilities
It was discovered that the Linux kernel algif_aead module did not properly handle in-place cryptographic operations. This flaw is known as Copy Fail. A local attacker could use this to escalate privileges, or possibly escape a container. (CVE-2026-31431) Several security issues were discovered in t...
> 340 Million OnlyFans Profiles Allegedly Rebuilt from Leaks
A hacker is selling a 340M-strong OnlyFans-linked dataset built by correlating old breaches and public data, not by hacking OnlyFans directly. A threat actor is adverertising a purported database containing data of 340 million OnlyFans users, but the available evidence points to something less drama...
> Anthropic’s restricted Claude Mythos model may be coming to Claude Code
Anthropic appears to be preparing for the public rollout of the Mythos model, which was announced in April as a restricted model that poses major security risks to private and public software. [...]
> Ubuntu SimpleEval Significant Arbitrary Code Execution Flaw USN-8301-1
SimpleEval could be made to run programs if it received specially crafted input.