Toute l'actualité de la Cybersécurité


100+ Tech and Security Organizations Call for Global Cyber Defense Surge Against AI Attacks

2026-08-28 04:04:12
More than 100 technology, cybersecurity, and financial-services organizations have joined OpenAI in an open letter urging a global surge in cyber defense as artificial intelligence models grow more capable...

Lire la suite »

thingsboard v4.3.1.4

2026-08-28 03:44:35
Open-source IoT Platform - Device management, data collection, processing and visualization.

Lire la suite »

grype v0.118.0

2026-08-28 03:14:03
A vulnerability scanner for container images and filesystems

Lire la suite »

Hackers Abuse Active Directory SPN Misconfigurations for Stealthy Kerberoasting Attacks

2026-08-28 03:02:03
Threat actors are increasingly abusing overlooked Active Directory service principal name (SPN) misconfigurations to launch stealthier Kerberoasting attacks, turning ordinary user accounts into high-value...

Lire la suite »

Spring-Cloud-Function-SpEL

2026-08-28 02:43:39
Reproduction environment and proof-of-concept for Spring Cloud Function SpEL injection leading to remote code execution, with a runnable Java 11 demo and HTTP request example.

Lire la suite »

Critical cPanel Vulnerability Allows Attackers to Take Full Server Control

2026-08-28 02:17:01
A newly disclosed vulnerability in cPanel and WHM, the widely used web hosting control panel software, could let a low-privileged, authenticated user seize root-level control of an entire server. Tracked...

Lire la suite »

electroniz3r

2026-08-28 02:13:18
Take over macOS Electron apps' TCC permissions

Lire la suite »

Rockwell Automation/Allen-Bradley MicroLogix PLCs Attack

2026-08-28 01:47:13
What is the Attack? Cyber threat actors are targeting Internet-facing programmable logic controllers (PLCs) used by water and wastewater organizations,...

Lire la suite »

Siemens S7 Series PLCs and other Internet-exposed PLC Attack

2026-08-28 01:46:43
What is the Attack? U.S. cybersecurity agencies, including CISA, NSA, FBI, DOE, and EPA, have warned of an active cyber threat targeting Siemens S7...

Lire la suite »

msdt-follina

2026-08-28 01:42:57
Generates a malicious Microsoft Word document exploiting the MS-MSDT 'Follina' vulnerability to execute arbitrary commands or stage payloads via an HTTP server.

Lire la suite »

Fedora 43 rust-h2 Security Update Resolving RUSTSEC-2026-0258 Issue

2026-08-28 01:16:30
Update to version 0.4.17. This includes a fix for a low-severity security vulnerability designated RUSTSEC-2026-0258 / GHSA-q83h-524g-xf6h.

Lire la suite »

Learning-to-Detect

2026-08-28 01:12:35
Detects unknown jailbreak attacks in large vision-language models using hidden state analysis and autoencoders, with training and evaluation pipelines for robust safety monitoring.

Lire la suite »

qlcoder

2026-08-28 00:42:20
Agentic Framework for Synthesizing CodeQL Queries

Lire la suite »

openSUSE Wicked Important DHCP Out-of-Bounds Reads Vuln 2026-3839-1

2026-08-28 00:36:26
An update that solves two vulnerabilities can now be installed.

Lire la suite »

openSUSE Wicked Important Indirect Shell Command Injection Fix 2026-3840-1

2026-08-28 00:35:29
An update that solves three vulnerabilities and contains one feature can now be installed.

Lire la suite »

DNSRPC-BOF

2026-08-28 00:11:37
Beacon Object File (BOF) implementation of the dnscmd.exe functionality used to obtain remote code execution on an ADIDNS server by exploiting the ServerLevelPluginDll edge by using MS-DNSP.

Lire la suite »