[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (4 articles)

|

// AI-powered summary generated at 04:00

> Meet Fractal, an OS made for microarchitecture reverse engineering
Probing how a CPU isolates user code from kernel code is messy work. Researchers patch kernels, write drivers, or boot stripped-down bare-metal programs, and any of those choices change variables they were trying to hold still. Fractal, a new operating system from MIT CSAIL, was built to take that m...
> US and Canada arrest and charge suspected Kimwolf botnet admin
U.S. and Canadian authorities arrested and charged a Canadian man with operating the KimWolf distributed denial-of-service (DDoS) botnet, which infected nearly two million devices worldwide. [...]
> Identity as the primary attack surface: What modern breaches are really exploiting
The “retro” way “The thing about the old days is… they are the old days” – Slim Charles, The Wire Protecting a specified network perimeter was the main focus of enterprise security strategy for several decades. Businesses made significant investments in firewalls, intrus...
> Foul play: Fake FIFA websites target soccer fans looking for World Cup tickets, merchandise
Watch out for bogus World Cup websites that mimic official ticket and merchandise flows to steal money and personal data
> Kimwolf DDoS Botnet Operator Arrested in Canada Over DDoS-for-Hire Attacks
The U.S. Department of Justice (DoJ) on Thursday announced the arrest of a Canadian man in connection with allegedly operating a distributed denial-of-service (DDoS) botnet known as Kimwolf. In tandem, Jacob Butler (aka Dort), 23, Ottawa, Canada, has been charged with offenses related to the develo...
> CVE-2026-43303 mm/page_alloc: clear page->private in free_pages_prepare()
Information published.
> CVE-2026-43331 x86/kexec: Disable KCOV instrumentation after load_segments()
Information published.
> Forensic Focus Digest, May 22 2026
Discover what’s new on Forensic Focus – explore how digital forensics work affects investigators’ families, examine the cloud attachment problem in modern email investigations, hear how on-scene digital forensics can strengthen cases before they reach the lab, and more.
> CVE-2025-38340 firmware: cs_dsp: Fix OOB memory read access in KUnit test
Information published.
> CVE-2025-22113 ext4: avoid journaling sb update on error if journal is destroying
Information published.
> TrendAI Patches Apex One Zero-Day Exploited in the Wild
CVE-2026-34926 is a directory traversal flaw that can be exploited against the on-premise version of Apex One. The post TrendAI Patches Apex One Zero-Day Exploited in the Wild appeared first on SecurityWeek.
> CVE-2025-21927 nvme-tcp: fix potential memory corruption in nvme_tcp_recv_pdu()
Information published.
> CVE-2025-22124 md/md-bitmap: fix wrong bitmap_limit for clustermd when write sb
Information published.
> Thunderbird 151 est disponible : quelles sont les nouveautés ?
La fondation Mozilla a publié Thunderbird 151 : entre OAuth Thundermail et une meilleure prise en charge des comptes EWS, découvrez les nouveautés. Le post Thunderbird 151 est disponible : quelles sont les nouveautés ? a été publié sur IT-Connect.
> CVE-2026-45736 ws: Uninitialized memory disclosure
Information published.
> CVE-2025-21907 mm: memory-failure: update ttu flag inside unmap_poisoned_folio
Information published.
> Grafana Says Codebase and Other Data Stolen via TanStack Supply Chain Attack
Hackers accessed Grafana’s GitHub repositories after a token compromised in the TanStack attack was not rotated. The post Grafana Says Codebase and Other Data Stolen via TanStack Supply Chain Attack appeared first on SecurityWeek.
> CVE-2025-40102 KVM: arm64: Prevent access to vCPU events before init
Information published.
> CVE-2025-21714 RDMA/mlx5: Fix implicit ODP use after free
Information published.
> Google folds CodeMender into agent ecosystem amid push for AI-led AppSec
Google is expanding the role of its CodeMender security agent from autonomous vulnerability remediation toward a larger agentic development ecosystem, signalling a broader push toward AI-driven AppSec. Months after introducing CodeMender, an AI-powered agent designed to aut...