Toute l'actualité de la Cybersécurité


Patch Tuesday décembre 2025 : une faille critique exploitée à corriger rapidement

2025-12-10 10:33:26
Les administrateurs système et les équipes sécurité ont encore un peu de travail pour ce mois décembre avec le traditionnel (...)

Lire la suite »

Ukrainian Woman in US Custody for Aiding Russian NoName057 Hacker Group

2025-12-10 10:10:59
Ukrainian national Victoria Dubranova is in U.S. custody, accused of supporting Russian hacker group NoName057 in cyberattacks on critical infrastructure. She has pleaded not guilty.

Lire la suite »

FortiSandbox OS command injection Vulnerability Let Attackers execute Malicious code

2025-12-10 10:07:03
Fortinet has released a critical security update for its FortiSandbox analysis appliances to fix a dangerous vulnerability. If left unpatched, this flaw could allow attackers to take control of the underlying...

Lire la suite »

Windows PowerShell 0-Day Vulnerability Let Attackers Execute Malicious Code

2025-12-10 09:48:52
Security update addressing a dangerous Windows PowerShell vulnerability that allows attackers to execute malicious code on affected systems. The vulnerability, tracked as CVE-2025-54100, was publicly...

Lire la suite »

U.S. CISA adds Microsoft Windows and WinRAR flaws to its Known Exploited Vulnerabilities catalog

2025-12-10 09:33:51
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Microsoft Windows and WinRAR flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security...

Lire la suite »

CISA Warns of WinRAR 0-Day RCE Vulnerability Exploited in Attacks

2025-12-10 08:59:30
A high-priority warning regarding a critical security flaw in WinRAR, the popular file compression tool used by millions of Windows users. The vulnerability, tracked as CVE-2025-6218, is currently being...

Lire la suite »

Les profils en IA, data et cybersécurité sont durs à recruter

2025-12-10 08:55:34
Les informaticiens et informaticiennes, notamment ceux et celles avec des compétences pointues et spécialisées en data, IA ou cybersécurité (...)

Lire la suite »

Microsoft Issues Security Fixes for 56 Flaws, Including Active Exploit and Two Zero-Days

2025-12-10 08:50:00
Microsoft closed out 2025 with patches for 56 security flaws in various products across the Windows platform, including one vulnerability that has been actively exploited in the wild. Of the 56 flaws,...

Lire la suite »

Microsoft Patch Tuesday security updates for December 2025 fixed an actively exploited zero-day

2025-12-10 08:47:02
Microsoft Patch Tuesday security updates for December 2025 address 57 vulnerabilities, including three critical flaws. Microsoft Patch Tuesday security updates for December 2025 addressed 57 vulnerabilities...

Lire la suite »

Gemini Zero-Click Vulnerability Let Attackers Access Gmail, Calendar, and Docs

2025-12-10 08:01:05
A critical zero-click vulnerability dubbed “GeminiJack” in Google Gemini Enterprise and previously Vertex AI Search that let attackers steal sensitive corporate data from Gmail, Calendar,...

Lire la suite »

New Portuguese Law Shields Ethical Hackers from Prosecution

2025-12-10 08:00:25
Portugal updates its cybercrime law (Decree Law 125/2025) to grant ethical hackers a 'safe harbour' from prosecution. Learn the strict rules researchers must follow, including immediate disclosure to...

Lire la suite »

Patch Tuesday - December 2025

2025-12-10 07:50:42
Microsoft is publishing a relatively light 54 new vulnerabilities this December 2025 Patch Tuesday, which is significantly lower than we have come to expect over the past couple of years. Today's list...

Lire la suite »

Fortinet, Ivanti, and SAP Issue Urgent Patches for Authentication and Code Execution Flaws

2025-12-10 04:50:00
Fortinet, Ivanti, and SAP have moved to address critical security flaws in their products that, if successfully exploited, could result in an authentication bypass and code execution. The Fortinet vulnerabilities...

Lire la suite »

Microsoft 365 Services Disruption in Australia: Users Face Access Issues in Accessing Services

2025-12-10 03:53:47
Users across Australia are currently grappling with significant disruptions to critical business tools as Microsoft 365 services experience a widespread outage. The incident, which began on the morning...

Lire la suite »

Windows Cloud Files Mini Filter Driver 0-Day Vulnerability Exploited in the Wild

2025-12-10 03:06:37
Microsoft has released urgent security updates to address a zero-day vulnerability in the Windows Cloud Files Mini Filter Driver (cldflt.sys) that is currently being exploited in the wild. Assigned the...

Lire la suite »

Fedora 43: python3.14 Critical Update Addresses Quadratic Complexity Bug

2025-12-10 01:34:15
This is the second maintenance release of Python 3.14

Lire la suite »

Fedora 43: python3-docs Update 2025-e235793f10 - Maintenance Release

2025-12-10 01:34:15
This is the second maintenance release of Python 3.14

Lire la suite »

Fedora 43: lunasvg Critical Update for Various Flaws 2025-58c0baba42

2025-12-10 01:34:09
Unbundle plutovg from lunasvg, this avoids shipping a duplicate library with conflicting files. Update lunasvg to consume the plutovg version already available in the repositories and to fix various CVEs....

Lire la suite »

Fedora 43: imhex Security Advisory for lunasvg CVE Updates 2025-58c0baba42

2025-12-10 01:34:09
Unbundle plutovg from lunasvg, this avoids shipping a duplicate library with conflicting files. Update lunasvg to consume the plutovg version already available in the repositories and to fix various CVEs....

Lire la suite »

Fedora 42: lunasvg Important Library Conflict Fix FEDORA-2025-9b6b49071f

2025-12-10 00:48:30
Unbundle plutovg from lunasvg, this avoids shipping a duplicate library with conflicting files. Update lunasvg to consume the plutovg version already available in the repositories and to fix various CVEs....

Lire la suite »

Fedora 42: Imhex Security Enhancements for Library Conflicts and CVE Fixes

2025-12-10 00:48:29
Unbundle plutovg from lunasvg, this avoids shipping a duplicate library with conflicting files. Update lunasvg to consume the plutovg version already available in the repositories and to fix various CVEs....

Lire la suite »

Japanese Firms Suffer Long Tail of Ransomware Damage

2025-12-10 00:00:00
Ransomware actors have targeted manufacturers, retailers, and the Japanese government, with many organizations requiring months to recover.

Lire la suite »