threat-intel Pro-Russian Hackers Claim Responsibility for Major Cyberattack on Norway’s Public Digital Services A pro-Russian hacker group, Server Killers, claimed responsibility for a sustained cyberattack targeting multiple Norwegian government digital services. The attack, initiated following Norway’s increased security cooperation with Ukraine, aimed to disrupt services and spread discord within Norwegian society. Norwegian… SecurityWeek · 3d ago High NORUDEcyberattackrussiacyberwar
vulnerability Multiples vulnérabilités dans les produits Microsoft (21 août 2026) Multiple vulnerabilities have been discovered in Microsoft products, allowing attackers to bypass security policies and cause denial-of-service conditions. Microsoft has released security bulletins detailing the issues a… CERT-FR · Aug 21, 2026 Medium CVE-2026-55013CVE-2026-55015microsoftvulnerabilitysecurity
vulnerability Multiples vulnérabilités dans les produits Citrix (20 août 2026) Multiple vulnerabilities have been discovered in Citrix products, including NetScaler ADC and NetScaler Gateway. These flaws could allow attackers to cause a denial-of-service, bypass security policies, and create an uns… CERT-FR · Aug 20, 2026 Medium CVE-2026-19489CVE-2026-19490citrixvulnerabilitysecurity
vulnerability Vulnérabilité dans les produits Moxa (19 août 2026) A vulnerability has been identified in Moxa products, allowing an attacker to trigger a denial-of-service attack remotely. This affects several Moxa devices and requires immediate attention to mitigate the risk. CERT-FR · Aug 19, 2026 Medium CVE-2011-1473moxavulnerabilitydenial-of-service
vulnerability Vulnérabilité dans OpenSSL (14 août 2026) A vulnerability has been identified in OpenSSL, potentially leading to a denial-of-service attack. Affected versions of the software require immediate patching to prevent exploitation. The vulnerability is currently unpa… CERT-FR · Aug 14, 2026 Medium CVE-2026-14456opensslvulnerabilitydenial-of-service
vulnerability Multiples vulnérabilités dans Wireshark (13 août 2026) Multiple vulnerabilities have been discovered in Wireshark, allowing an attacker to cause a denial-of-service. These vulnerabilities affect Wireshark versions 4.4.x prior to 4.4.18 and 4.6.x prior to 4.6.8. Users are adv… CERT-FR · Aug 13, 2026 Medium vulnerabilitydenial-of-servicenetwork analysis
vulnerability Vulnérabilité dans CPython (11 août 2026) A denial-of-service vulnerability has been identified in CPython, allowing an attacker to disrupt remote systems. The vulnerability stems from a lack of recent security updates and requires immediate patching to prevent… CERT-FR · Aug 11, 2026 Medium CVE-2026-18503pythondenial-of-servicevulnerability
vulnerability Vulnérabilité dans SonicWall Global VPN Client (10 août 2026) A vulnerability in SonicWall Global VPN Client allows an attacker to cause a denial-of-service. SonicWall has released a security bulletin and a corresponding CVE to address this issue. CERT-FR · Aug 10, 2026 Medium CVE-2026-66151vpnvulnerabilitydenial-of-service
threat-intel Truck Brake Controller’s Safety Recall Doubled as Hidden Security Fix A 2024 safety recall for Bendix’s EC80 heavy-truck brake controller, initially issued to address memory corruption issues, has been revealed to contain a significant set of vulnerabilities, including a remotely accessibl… SecurityWeek · Aug 7, 2026 High USCAvulnerabilityremote-code-executiondenial-of-service
vulnerability MZ Automation GmbH libiec61850 CISA has issued an advisory regarding multiple vulnerabilities in MZ Automation GmbH’s libiec61850 software, specifically version <1.6.2. These vulnerabilities, all related to out-of-bounds reads, can lead to denial-of-s… CISA Advisories · Jul 30, 2026 High CVE-2026-66720CVE-2026-66369CVE-2026-63550vulnerabilityout-of-bounds readdenial-of-service
vulnerability Vulnérabilité dans CPython (30 juillet 2026) A denial-of-service vulnerability has been identified in CPython, allowing an attacker to disrupt remote systems. Applying the latest security patch from the Python project is crucial to mitigate this risk. CERT-FR · Jul 30, 2026 Medium CVE-2026-6879pythondenial-of-servicevulnerability
vulnerability Vulnérabilité dans Apache Tomcat (29 juillet 2026) A critical vulnerability has been identified in Apache Tomcat, allowing attackers to cause a denial-of-service attack. This affects older versions of the web server, requiring immediate patching to prevent exploitation. CERT-FR · Jul 29, 2026 Critical CVE-2026-66299apachetomcatvulnerability
vulnerability Rockwell Automation 1734 POINT I/O Rockwell Automation’s 1734 POINT I/O module is vulnerable to a denial-of-service attack due to improper handling of crafted CIP messages, potentially causing a system fault and requiring a restart. CISA urges organizatio… CISA Advisories · Jul 21, 2026 Medium CVE-2026-10573USvulnerabilitydenial-of-servicecontrol systems
vulnerability Rockwell Automation 1718-AENTR/1719-AENTR Rockwell Automation has issued a security advisory regarding a denial-of-service vulnerability in its 1718-AENTR and 1719-AENTR products. Exploitation could lead to a denial-of-service condition, requiring a power cycle… CISA Advisories · Jul 21, 2026 High CVE-2026-9140USdenial-of-servicecontrol systemsrockwell automation
vulnerability OpenSSL Silently Fixes ‘HollowByte’ DoS Vulnerability A denial-of-service vulnerability, dubbed ‘HollowByte,’ in OpenSSL allows attackers to exhaust server memory by crafting a small payload that triggers excessive buffer allocations. This can lead to complete system lockup… SecurityWeek · Jul 20, 2026 High denial-of-servicebuffer overflowmemory exhaustion
vulnerability Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution A critical vulnerability (CVE-2026-42533) in NGINX allows unauthenticated remote code execution, potentially due to a heap buffer overflow triggered by a specific configuration involving regex-based maps. The vulnerabili… The Hacker News · Jul 19, 2026 High CVE-2026-42533CVE-2026-42945CVE-2026-9256heap-overflowregexremote-code-execution
vulnerability Rockwell Automation CompactLogix, ControlLogix, Compact GuardLogix and GuardLogix Several vulnerabilities exist in Rockwell Automation's CompactLogix, ControlLogix, Compact GuardLogix, and GuardLogix controllers. Successful exploitation could lead to a denial-of-service condition due to an invalid pro… CISA Advisories · Jul 16, 2026 High CVE-2025-12011CVE-2025-12012CVE-2025-11698firmwarecontrol-systemdenial-of-service
vulnerability Rockwell Automation Flex 5000 Adapter Rockwell Automation has released a security advisory regarding a denial-of-service vulnerability in its Flex 5000 Adapter software. Exploitation could lead to a denial-of-service condition, and Rockwell recommends upgrad… CISA Advisories · Jul 16, 2026 High CVE-2026-12659vulnerabilitydenial-of-servicecontrol systems
vulnerability Vulnérabilité dans les produits ESET (16 juillet 2026) A denial-of-service vulnerability has been identified in ESET’s endpoint and server security products. Specifically, versions 12.0.x through 12.0.14.0, 12.1.x through 12.1.2.0, 12.2.x through 12.2.9.0, 13.0.x through 13.… CERT-FR · Jul 16, 2026 Medium CVE-2026-6424denial-of-servicevulnerabilityeset
vulnerability Multiples vulnérabilités dans Roundcube (06 juillet 2026) Multiple vulnerabilities have been discovered in Roundcube Webmail, impacting versions 1.6.x (prior to 1.6.17) and 1.7.x (prior to 1.7.2). These vulnerabilities include denial-of-service attacks, server-side request forg… CERT-FR · Jul 6, 2026 Medium CVE-2026-54432CVE-2026-54433CVE-2026-62641webmailvulnerabilityssrf