Toute l'actualité de la Cybersécurité


Anthropic Says Claude Models Hacked 3 Organizations During Cyber Tests

2026-07-31 20:01:51
Anthropic found Claude accessed systems at three real businesses after a testing error gave its AI models live internet access during cybersecurity evaluations.

Lire la suite »

OpenAI says its new GPT 5.6 models are becoming more cost-efficient

2026-07-31 18:52:44
OpenAI says it has reduced the price of two GPT-5.6 models, cutting Luna's API price by 80% and Terra's by 20% as it works to make its models more efficient. [...]

Lire la suite »

Suspected Chinese-Speaking Hackers Target Central Asian Governments With OctLurk and SilkLurk

2026-07-31 18:52:04
A Chinese-speaking threat actor is suspected to be behind a fresh wave of cyber attacks targeting government organizations mainly located in Central Asia, including Afghanistan, Kyrgyzstan, Tajikistan,...

Lire la suite »

CISA Issues Fresh SBOM Guidance. Did They Get It Right?

2026-07-31 18:13:11
A couple-dozen changes to SBOM fields will make them more comprehensive, but some argue that the framework lacks real risk-management improvements.

Lire la suite »

Hacker uses DeepSeek AI to autonomously attack vulnerable servers

2026-07-31 17:35:35
A Chinese-speaking threat actor is using the DeepSeek AI model and the open-source Hermes Agent to conduct autonomous cyberattacks on exposed servers with limited human involvement. [...]

Lire la suite »

Your Incident Response Plan Has a Dependency You Never Approved

2026-07-31 17:29:19
During the first publicly documented agent-driven intrusion, the defenders tried to analyze the attack with commercial AI models and were refused. The attacker was operating under no usage policy...

Lire la suite »

Incomplete fix for CVE-2025-4318 code injection in Amazon @aws-amplify/codegen-ui-react

2026-07-31 17:20:33
Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.

Lire la suite »

How Status Labs Helps Brands Get Cited in ChatGPT: The Data Behind AI Search Visibility

2026-07-31 16:56:31
Disclosure: This article was created in collaboration with Status Labs.

Lire la suite »

CISA warns of cyberattacks disrupting U.S. water utilities

2026-07-31 16:49:49
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning of a significant increase in attacks targeting internet-exposed programmable logic controllers (PLCs) in the water and wastewater...

Lire la suite »

HollowFrame Loader Deploys Matryoshka Backdoor in Spear-Phishing Attack on Law Firm

2026-07-31 16:39:31
Cybersecurity researchers have shed light on a previously undocumented Go-based loader framework called HollowFrame and a Rust-based malware family tracked as Matryoshka. According to Blackpoint Cyber,...

Lire la suite »

Keycloak Vulnerability Exposes User Names and Email Addresses Across Admin Boundaries

2026-07-31 16:31:30
Keycloak has addressed a broken access control vulnerability that could allow restricted administrators to access usernames, email addresses, and other profile information belonging to users outside their...

Lire la suite »

CyberStrike – AI-Powered Security Platform for Automated Penetration Testing

2026-07-31 16:22:14
A new open-source project called CyberStrike is positioning itself as the first AI agent built specifically for offensive security, turning any existing Claude, GPT, or LLM subscription into an autonomous...

Lire la suite »

Fake Fortnite rewards are stealing players’ accounts

2026-07-31 16:16:58
Scammers are using fake V-Bucks offers and locker value sites to hijack Fortnite accounts.

Lire la suite »

AI Act : clés et ressources pour se mettre en conformité

2026-07-31 16:13:15
Une nouvelle tranche de l'AI Act entre en application le 2 août 2026. Le point sur les obligations et sur les instruments de mise en conformité que l'UE y a adjoints. The post AI Act : clés et ressources...

Lire la suite »

Rocky Linux 9 java-25-openjdk Important Multiple Issues RLSA-2026-42899

2026-07-31 16:03:48
Rocky Linux 9 has released a critical update for java-25-openjdk, addressing multiple security vulnerabilities and improving package management and performance optimizations.

Lire la suite »

I Launched Two Similar Job Boards: Google Indexed One and Rejected the Other

2026-07-31 16:00:00
I launched two similar job boards, but Google indexed one and rejected the other. Here is what I think went wrong and what I would do differently.

Lire la suite »

HackerNoon Projects of the Week: Data Horizon, Hub, and Deploy Humans

2026-07-31 16:00:00
Meet Data Horizon, Hub, and Deploy Humans, three projects solving problems in AI infrastructure, developer documentation and conversational analytics.

Lire la suite »

AI Features Are Easy to Demo. Reliability Is What Users Actually Pay For

2026-07-31 15:58:49
AI products will fail in ways normal software does not. Learn how failure UX, fallback paths, and honest uncertainty protect user trust.

Lire la suite »

openSUSE yq Important DoS Infinite Loop Vuln 2026-21500-1

2026-07-31 15:53:48
An important openSUSE security update for yq addresses two vulnerabilities, introduces several bug fixes, and enhances functionality while improving dependency management.

Lire la suite »

openSUSE Perl-Mojolicious Moderate CSRF Fix Vuln 2026-21496-1

2026-07-31 15:53:32
openSUSE has released a security update for perl-Mojolicious addressing a CSRF vulnerability and various bugs, enhancing security and functionality in version 9.480.0 for Leap 16.0.

Lire la suite »

openSUSE Tomcat 11 Important Security Fixes Vuln 2026-21490-1

2026-07-31 15:53:25
openSUSE has released a security update for tomcat11 addressing two vulnerabilities and offering bug fixes, specifically for openSUSE Leap 16.0, with instructions provided for installation.

Lire la suite »

openSUSE Leap 16.0 Security Advisory Important Bind Issues 2026-21489-1

2026-07-31 15:53:08
openSUSE released a security update for bind, addressing nine vulnerabilities and including bug fixes, requiring users to upgrade to version 9.20.26 for improved security.

Lire la suite »

openSUSE Leap 16.0 openvpn Important DoS Vulnerabilities 2026-21488-1

2026-07-31 15:53:04
openSUSE released a security update for openvpn, addressing two vulnerabilities related to denial of service, applicable to openSUSE Leap 16.0 with recommended installation methods provided.

Lire la suite »

openSUSE Leap 16.0 valkey Important RCE Threats Advisory 2026-21485-1

2026-07-31 15:52:51
openSUSE announces a security update for valkey addressing two critical vulnerabilities and includes bug fixes, affecting openSUSE Leap 16.0, encouraging users to install the patch.

Lire la suite »

openSUSE Ignition Important Privilege Escalation Vuln 2026-21482-1

2026-07-31 15:52:30
openSUSE released a security update addressing two vulnerabilities in ignition for Leap 16.0, enhancing security against potential exploitation and infinite loops in input handling.

Lire la suite »

openSUSE Leap 16.0 libpng16 Important Security Patch 2026-21479-1

2026-07-31 15:52:08
openSUSE has released a security update for libpng16, version 1.6.58, addressing various issues and recommending installation via YaST or zypper for affected users of openSUSE Leap 16.0.

Lire la suite »

openSUSE Leap 16.0 Advisory 2026-21477-1 OpenSSH Important Issues

2026-07-31 15:51:53
openSUSE released a security update for OpenSSH addressing eight vulnerabilities, including pre-authentication denial of service and improper file handling in SFTP, essential for users of openSUSE Leap...

Lire la suite »

openSUSE Leap 16.0 google-guest-agent Privilege Escalation and Loop Issues

2026-07-31 15:51:49
openSUSE has released a security update for google-guest-agent, addressing two vulnerabilities that could lead to privilege escalation and an infinite loop issue for openSUSE Leap 16.0.

Lire la suite »

Debian LTS Python-Authlib Remote Redirect Fix DLA-4708-1 CVE-2026-44681

2026-07-31 15:46:59
Debian LTS Advisory announces vulnerabilities in python-authlib for Debian 11 and 12, detailing fixes for multiple CVE issues, and urges users to upgrade their packages.

Lire la suite »

Auto-Mode Routing: What Stop Us From Sending "How to Center a Div" to Claude 3.5 Opus

2026-07-31 15:37:18
Learn how dynamic LLM routing cut AI API costs by 57% by matching prompt complexity to the right model instead of defaulting every request to premium AI.

Lire la suite »

The AMPED Architecture: An Enduring Blueprint for Efficient Web Servers from 1999

2026-07-31 15:13:12
How a 1999 paper defined the AMPED web server architecture. See how separating control flow from I/O shapes modern caching, performance & system design

Lire la suite »

USN-8620-4: Linux kernel (Intel IoTG) vulnerabilities

2026-07-31 15:00:56
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker could...

Lire la suite »

Anthropic révèle des intrusions réalisées par ses propres IA

2026-07-31 14:49:10
La société Anthropic a annoncé que plusieurs de ses modèles IA avaient réussi à accéder sans autorisation (...)

Lire la suite »

Cheap Android TV Boxes Pose as Phones and Turn Owners' Broadband Into Proxies

2026-07-31 14:45:01
Bitsight says some cheap Android TV boxes have shipped with apps that rewrite their hardware identity to mimic Samsung, Huawei, Xiaomi, or Vivo phones, then click ads on websites run by the same operators. Researchers...

Lire la suite »

Cyber actualités ZATAZ de la semaine du 27 juillet au 2 août 2026

2026-07-31 14:39:48
Cette semaine, les données personnelles restent au cœur des alertes cyber. L'Hacktivisme politique semble faire son retour en France... ou pas !

Lire la suite »

Un pirate revendique un accès au CRM d'ENI

2026-07-31 14:11:01
Un pirate revendique un accès au CRM français d'ENI et diffuse des factures de professionnels et grands comptes.

Lire la suite »

Critical JetBrains Flaw Allows Attackers to Execute Malicious Code Remotely – Update Now

2026-07-31 14:05:46
JetBrains has announced a critical vulnerability in TeamCity On-Premises, identified as CVE-2026-63077. This vulnerability allows attackers to bypass authentication and execute arbitrary commands remotely....

Lire la suite »

ESET tracks rise in malicious AI skills and adaptable malware

2026-07-31 14:01:11
Attackers are adapting established techniques to AI platforms, emerging technologies, and changing user behavior. ESET's new threat report examines the rise of malicious AI skills, AI-assisted malware,...

Lire la suite »

The TechBeat: The Voice Agent Latency Playbook: STT, Turn Detection, and the Tradeoffs Nobody Talks About (7/31/2026)

2026-07-31 14:00:55
7/31/2026: Trending stories on Hackernoon today!

Lire la suite »

Are You a Trustworthy Writer?

2026-07-31 14:00:06
Readers are tired of unsupported claims and borrowed authority. Here's how better sourcing, disclosure, and attribution can earn their trust.

Lire la suite »

82 Blog Posts To Learn About Firebase

2026-07-31 14:00:04
Learn everything you need to know about Firebase via these 82 free HackerNoon blog posts.

Lire la suite »

The Morning After We Pull a Root of Trust, Nobody Owns It

2026-07-31 14:00:00
The most valuable move any security team can make is building a certificate and key inventory.

Lire la suite »

Google AI Supercharges Chrome Security, Fixing 1,072 Bugs

2026-07-31 13:46:45
Google says AI found and helped fix 1,072 Chrome security bugs in two releases, dramatically accelerating vulnerability detection and patching Google’s Chrome Security team published a detailed...

Lire la suite »

Hacktivisme : une fuite « Macronleak » de 2017 contre Chat Control ressort du darkweb !

2026-07-31 13:41:31
Un hacktiviste exhume des données de 2017 pour attaquer Chat Control et justifier une fuite politique controversée.

Lire la suite »

Interpol Leverages Global System to Curtail Fraud Payments

2026-07-31 13:30:00
When a fraudulent transaction occurs, law enforcement agencies must work quickly to halt payments before cybercriminals cash out.

Lire la suite »

FBI And Allies Warn of North Korean IT Workers Using Stolen Identities

2026-07-31 13:27:25
The U.S. State Department, FBI, and allied governments including Japan, Canada, Germany, Australia, the United Kingdom, and the Republic of Korea have issued a joint alert warning companies worldwide...

Lire la suite »

DROP Platform Lets Californians Reduce Digital Footprint

2026-07-31 13:19:36
The Delete Request and Opt-out Platform (DROP) launches Aug. 1 and hundreds of thousands of California residents already registered. Other states could follow if the process goes smoothly.

Lire la suite »

Pourquoi Microsoft prend ses distances avec OpenAI

2026-07-31 13:18:55
Après trois ans de dépendance quasi exclusive à OpenAI, Microsoft réoriente sa stratégie IA autour d'une doctrine : ne plus jamais dépendre d'un seul fournisseur. The post Pourquoi Microsoft prend...

Lire la suite »

Wordfence Finds Critical Backdoor in ARVE WordPress Plugin

2026-07-31 13:07:14
A backdoored ARVE WordPress Plugin release could grant attackers administrator access with one token, but WordPress.org blocked automatic distribution to WordPress sites.

Lire la suite »

Keycloak Flaw Exposes Users' Personal Data to Restricted Admins

2026-07-31 13:00:00
A broken access control vulnerability in Keycloak could allow unauthorized administrator accounts to access users’ personal information. This issue, tracked as CVE-2026-17059, affects the Keycloak...

Lire la suite »

USA Fencing Lunges Into the Hidden Identity Challenge in Amateur Sports

2026-07-31 13:00:00
The organization behind Team USA's Olympic/Paralympic fencing teams has automated identity verification to handle growing membership, cutting manual review time while ensuring athletes compete in the...

Lire la suite »

Three Recent Chrome Releases Fix 1,442 Flaws, More Than Prior 23 Updates Combined

2026-07-31 12:51:52
Google on Thursday announced that it fixed a whopping 1,072 security bugs in Chrome versions 149 and 150, surpassing the total number of flaws the company fixed across the prior 23 milestones combined. Both...

Lire la suite »

Google Uses AI Agents to Find and Fix 1,072 Chrome Security Vulnerabilities

2026-07-31 12:31:10
Google is expanding the use of artificial intelligence (AI) agents across the Chrome security lifecycle to identify source code weaknesses, test patches, and accelerate the delivery of security updates...

Lire la suite »

What an LLM Can Find: A Practical, Cheap Path to Code-level Threat Discovery

2026-07-31 12:22:25
An AI-assisted audit found 29 flaws in GlobaLeaks, showing LLMs make large-scale code reviews faster, cheaper, and accessible. GlobaLeaks, a mature whistleblowing platform that had already undergone six...

Lire la suite »

XRP Volatility Surges as Cybersecurity Threats and Market Changes Raise New Concerns

2026-07-31 12:11:43
XRP volatility drives faster crypto trading as AI tools gain traction, while phishing, exchange attacks and automation risks test digital asset safeguards.

Lire la suite »

North Korean EtherHiding Campaign Targets Crypto Wallets and Developer Credentials

2026-07-31 12:05:41
A North Korean-linked cyber campaign is using fake macOS update screens to trick victims into installing malware. The operation targets cryptocurrency wallets, browser data, and developer credentials,...

Lire la suite »

Researchers Report 84 Flaws in 4G and 5G Cores, Including a Session Hijacking Flaw

2026-07-31 11:55:00
An academic study has disclosed a "widespread class" of security vulnerabilities impacting 4G and 5G core networks that, if successfully exploited, could trigger denial-of-service (DoS) attacks and even...

Lire la suite »

Rapid7 at Black Hat USA 2026: See preemptive security in action

2026-07-31 11:53:26
Black Hat USA returns to Mandalay Bay in Las Vegas this August, bringing together security practitioners, researchers, and leaders from around the world. Rapid7 will be there in the Business Hall, with...

Lire la suite »

BlackTech APT Deploys BlueShell Linux Backdoor Against Japanese Organizations

2026-07-31 11:50:23
BlackTech has been linked to a newly examined Linux backdoor deployment against organizations in Japan, showing how a familiar remote-access tool can be reshaped for cyberespionage. The malware gives...

Lire la suite »

6 Reasons Why Device Code Phishing is the Fastest-Growing Threat of 2026

2026-07-31 11:24:59
Device code phishing - the abuse of the OAuth 2.0 device authorization grant to steal access tokens - has evolved from a niche red-team technique to an industrial-scale threat in under six months. Designed...

Lire la suite »

Chinese Hacker Commands DeepSeek via Telegram to Launch Autonomous Attacks

2026-07-31 11:21:27
Palo Alto Networks' Unit 42 says a Chinese-speaking threat actor used DeepSeek through the open-source Hermes Agent framework to launch attacks autonomously. After an initial Telegram instruction, the...

Lire la suite »

Ransomware Killers Overwrite Security Process Memory Without Terminating Applications

2026-07-31 11:17:21
Ransomware operators are increasingly deploying “ransomware killers” that surgically overwrite the memory of security processes instead of simply terminating them, allowing encryption to proceed....

Lire la suite »

Le RSSI ne décide pas du risque que l'entreprise accepte

2026-07-31 11:09:19
{ Tribune Expert } - Le rôle du RSSI n'est pas d'assumer seul le risque cyber de l'organisation, mais de fournir à la direction la visibilité nécessaire pour prendre des décisions éclairées. The...

Lire la suite »

Fake Flash Player installs AtlasRAT

2026-07-31 11:03:29
Researchers have uncovered a new campaign that spreads the AtlasRAT remote access Trojan by disguising it as a Flash Player installer.

Lire la suite »

AWS, Azure, Google Cloud : l'IA accélère leur croissance et relance la compétition

2026-07-31 10:48:20
Les résultats trimestriels publiés par Amazon, Microsoft et Alphabet confirment un changement de cycle dans le cloud. Ils investissent à une échelle sans précédent pour répondre à une demande...

Lire la suite »

Critical JetBrains TeamCity Flaw Enables Unauthenticated Remote Code Execution

2026-07-31 10:47:38
JetBrains has revealed a critical security vulnerability in TeamCity On-Premises that enables unauthenticated remote code execution (RCE) on affected servers. This poses a significant risk to CI/CD environments...

Lire la suite »

Google Uses AI to Fix 1,072 Chrome Security Vulnerabilities

2026-07-31 10:18:47
Google has announced that its AI-assisted security workflows have helped Chrome fix 10,721 security vulnerabilities across Chrome Stable milestones 149 and 150. This number exceeds the total number of...

Lire la suite »

CMMC Phase II Is Paused, But Contractors' Data-Security Obligations Are Not

2026-07-31 10:00:49
By John Grancarich, EVP, Head of Defense & Intelligence, Fortra The recent pause affecting the implementation of Cybersecurity Maturity Model Certification (CMMC) Phase II has understandably...

Lire la suite »

Network Anomaly Detection in KATA

2026-07-31 10:00:25
An analysis of how Network Anomaly Detection (NAD) rules work within Kaspersky Anti Targeted Attack, using Kerberoasting and DNS tunneling attacks as examples.

Lire la suite »

The Xcode Assassin Returns: A Deep Dive Into the Latest XCSSET Version

2026-07-31 10:00:18
Analysis of XCSSET v40 reveals a macOS malware targeting developers via Xcode. Unit 42 used advanced pattern matching and AI to decode its logic. The post The Xcode Assassin Returns: A Deep Dive Into...

Lire la suite »

ClickFix Campaign Uses EtherHiding to Hide Malware and Exposes DPRK Wallet Trail

2026-07-31 09:52:09
ClickFix-style fake macOS updates are now being weaponized with EtherHiding-backed command‑and‑control and a DPRK-linked crypto laundering network, turning a routine search click into a full-stack...

Lire la suite »

How AI Powered Developer Tools Are Transforming Software Engineering Productivity

2026-07-31 09:49:09
Discover how AI-powered developer tools are boosting coding speed, quality, and engineering productivity.

Lire la suite »

USN-8620-3: Linux kernel (Intel IoTG) vulnerabilities

2026-07-31 09:40:09
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker could...

Lire la suite »

SSH Bot Profiles Linux CPU, GPU and RAM Before Deploying Cryptocurrency Miner

2026-07-31 09:38:27
A new SSH bot has been caught quietly logging into Linux systems, profiling their CPU, GPU, and memory, and then walking away without dropping any visible payload. The behavior looks harmless at first...

Lire la suite »

Alerte avant le Q-Day : Claude Mythos a trouvé en 60 heures la faille d'un futur bouclier contre le quantique

2026-07-31 09:35:51
L'informatique quantique n'est plus la seule menace qui plane sur la sécurité de nos données. Une intelligence artificielle vient de mettre en évidence une faille dans un algorithme prometteur...

Lire la suite »

Submergé par les failles de Chrome, Google double la cadence des mises à jour

2026-07-31 09:14:26
Google révèle que l'IA a permis de débusquer 1 072 vulnérabilités dans le code de Chrome. Ces failles ont été corrigées lors de deux mises à jour majeures. Face à l'afflux des failles découvertes,...

Lire la suite »

BlackTech APT Uses New BlueShell Linux Backdoor in Attacks on Japanese Organizations

2026-07-31 08:58:43
BlackTech, a long-running China-aligned APT group, has adopted a new Linux backdoor built on the BlueShell open-source RAT to conduct post-intrusion operations against Japanese organizations, signaling...

Lire la suite »

Anthropic Finds Claude Breached Real Companies During Security Evaluations

2026-07-31 08:55:09
Anthropic says a misconfigured test let Claude access three real organizations, prompting tighter AI evaluation and monitoring controls. Anthropic disclosed that Claude models had accessed the real production...

Lire la suite »

Critical Adobe Campaign Flaw Lets Attackers Execute Arbitrary Code

2026-07-31 08:50:20
Adobe has released a critical security update for Adobe Campaign Classic to address multiple high-severity vulnerabilities that could allow attackers to execute arbitrary code and access sensitive data...

Lire la suite »

BCON Collective uncovers shared phishing infrastructure linked to ShinyHunters

2026-07-31 08:48:48
Bridewell’s BCON Collective has uncovered an active phishing infrastructure spanning more than 100 malicious domains after investigating what initially appeared to be a routine blocked vishing attempt...

Lire la suite »

Critical SolarWinds Web Help Desk Flaw Lets Attackers Bypass SAML Authentication

2026-07-31 08:10:06
SolarWinds has released Web Help Desk (WHD) version 2026.2.1 to address a critical authentication bypass vulnerability. This flaw could allow attackers to gain unauthorized access to affected systems...

Lire la suite »

Recon-Only SSH Attack Leaves No Malware but Signals a Second-Stage Intrusion

2026-07-31 07:35:43
Recon-only activity on SSH is not harmless background noise. A recent honeypot session shows an automated Go-based bot logging in as root, exhaustively grading host hardware for cryptomining suitability,...

Lire la suite »

Anthropic révèle que Claude a piraté 3 entreprises, l'IA était hors de contrôle

2026-07-31 07:32:11
Après OpenAI, c'est au tour d'Anthropic d'admettre l'impensable. La start-up révèle avoir perdu le contrôle de trois versions de Claude au cours d'un test de cybersécurité. Les trois IA se sont...

Lire la suite »

SilverFox Targets Japanese Manufacturer With Advanced ValleyRAT Campaign

2026-07-31 07:18:06
SilverFox targeted a Japanese manufacturer with new DLL sideloading techniques, kernel drivers, and resilient ValleyRAT persistence mechanisms. Cato CTRL documented a new SilverFox campaign targeting...

Lire la suite »

Why the Best Acquisition Strategy Is Forgetting About the Acquisition

2026-07-31 07:10:13
The best acquisition targets are built for profitability, resilience, strong culture, and long-term growth—not simply for a future exit.

Lire la suite »

Anatomy of a Silent 502: How Four HAProxy Characters Exposed a K8s Upload Failure

2026-07-31 07:07:47
A production file-upload incident returned HAProxy 502 errors while ingress-nginx, APISIX, and application logs stayed empty. H

Lire la suite »

I Scored a Perfect 996 on Anthropic's Claude Certified Architect Professional Exam

2026-07-31 07:07:22
How I scored a perfect 996 (100% in all 7 domains) on Anthropic's Claude Certified Architect Professional exam, and the architect mindset it rewards.

Lire la suite »

Defining Community Open Source Is Harder Than It Looks

2026-07-31 07:00:01
Exemptions sound relatively simple until you try to make them fair.

Lire la suite »

PHP Patches 3 Security Flaws Enabling SQL Injection, Memory Corruption and DoS Attacks

2026-07-31 06:53:39
PHP maintainers have released security updates to address three vulnerabilities affecting the PostgreSQL, BCMath, and Phar extensions. These vulnerabilities could potentially lead to SQL injection attacks,...

Lire la suite »

Anthropic Says Claude Mistook the Open Internet for a CTF and Breached Three Organizations

2026-07-31 06:41:44
Anthropic on Thursday became the latest artificial intelligence (AI) company to reveal that three of its models, including Claude Opus 4.7, Mythos 5, and an unnamed research model, had breached three...

Lire la suite »

Quatre jeux cyber pour stimuler vos vacances

2026-07-31 01:22:55
Quatre jeux cyber ZATAZ pour décoder, enquêter, communiquer et tester sa logique pendant les vacances.

Lire la suite »

Anthropic's Claude breached 3 orgs, uploaded PyPI malware during tests

2026-07-31 00:57:25
One of Anthropic's Claude models built and uploaded a malicious Python package to PyPI during a botched security evaluation, where it ran on 15 real systems and stole credentials from a security vendor....

Lire la suite »

List of 22 new domains

2026-07-31 00:00:00
.fr airabreeze[.fr] (registrar: Hosting Concepts B.V. d/b/a Openprovider) amunra-france[.fr] (registrar: Hosting Concepts B.V. d/b/a Openprovider) amunrafrance[.fr] (registrar: Hosting Concepts B.V. d/b/a...

Lire la suite »

Multiples vulnérabilités dans Progress MOVEit Transfer (31 juillet 2026)

31/07/2026
De multiples vulnérabilités ont été découvertes dans Progress MOVEit Transfer. Elles permettent à un attaquant de provoquer une injection de code indirecte à distance (XSS) et un contournement...

Lire la suite »

Multiples vulnérabilités dans PHP (31 juillet 2026)

31/07/2026
De multiples vulnérabilités ont été découvertes dans PHP. Certaines d'entre elles permettent à un attaquant de provoquer une injection SQL (SQLi), un déni de service et un problème de sécurité...

Lire la suite »

Vulnérabilité dans Microsoft Azure (31 juillet 2026)

31/07/2026
Une vulnérabilité a été découverte dans Microsoft Azure. Elle permet à un attaquant de provoquer une exécution de code arbitraire à distance.

Lire la suite »

Multiples vulnérabilités dans le noyau Linux d'Ubuntu (31 juillet 2026)

31/07/2026
De multiples vulnérabilités ont été découvertes dans le noyau Linux d'Ubuntu. Certaines d'entre elles permettent à un attaquant de provoquer une élévation de privilèges, une atteinte à la confidentialité...

Lire la suite »

Multiples vulnérabilités dans le noyau Linux de Red Hat (31 juillet 2026)

31/07/2026
De multiples vulnérabilités ont été découvertes dans le noyau Linux de Red Hat. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une...

Lire la suite »

Multiples vulnérabilités dans le noyau Linux de SUSE (31 juillet 2026)

31/07/2026
De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un attaquant de provoquer une atteinte à la confidentialité des données, une...

Lire la suite »

Multiples vulnérabilités dans le noyau Linux de Debian LTS (31 juillet 2026)

31/07/2026
De multiples vulnérabilités ont été découvertes dans le noyau Linux de Debian LTS. Certaines d'entre elles permettent à un attaquant de provoquer une élévation de privilèges, une atteinte à...

Lire la suite »

Multiples vulnérabilités dans les produits IBM (31 juillet 2026)

31/07/2026
De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation...

Lire la suite »