vulnerability Multiples vulnérabilités dans les produits ESET (24 juillet 2026) Multiple vulnerabilities have been discovered in ESET’s security products, primarily for macOS, allowing attackers to potentially elevate their privileges. These vulnerabilities require immediate patching to prevent expl… CERT-FR · Jul 24, 2026 Medium CVE-2026-10610CVE-2026-7483macosvulnerabilitypatch
threat-intel OpenAI-Hugging Face attack doesn't mean agents are evil – unless you tell them to be This article covers a range of cybersecurity and technology news, including a competitive landscape in AI hardware between AMD and Nvidia, a security incident involving Joomla extensions, and a general overview of variou… The Register · Jul 23, 2026 Medium IRSWcybersecurityj2eex11
threat-intel Year-long Russian attacks infect users as soon as they look at an email Russian actors are leveraging phishing attacks, impersonating Signal support, to compromise users. This follows a broader trend of Russian state-sponsored actors targeting various systems and platforms, including exploit… The Register · Jul 23, 2026 High CVE-2025-66376RUphishingthreat-intelrussian
threat-intel Oracle drops 1,449 security patches like it's the new normal This article is a collection of security-related news snippets from The Register. It covers a range of topics including security patches from Oracle, advancements in AI hardware (AMD vs Nvidia), phishing attacks targetin… The Register · Jul 23, 2026 Medium CVE-2026-47056CVE-2026-60217CVE-2026-61211securityvulnerabilitiesphishing
threat-intel Iran-linked crews are probing more flavors of US industrial kit Iranian-linked actors are actively probing and exploiting vulnerabilities in various US-based industrial hardware and software, including AMD systems and Joomla extensions. This activity highlights a broader trend of sta… The Register · Jul 23, 2026 High IRstate-sponsoredvulnerabilitycyberattack
threat-intel One ChatGPT link could smuggle a rogue AI agent into your company This article is a collection of security and technology news snippets from The Register. It highlights a vulnerability impacting Joomla extensions, a Russian phishing campaign mimicking Signal support, and a general over… The Register · Jul 23, 2026 Medium IRvulnerabilityphishingransomware
threat-intel Preview: Cisco Talos at Black Hat USA 2026 Cisco Talos will be at Black Hat USA 2026, showcasing research and demonstrations focused on AI-driven security challenges and threat hunting. They'll cover topics like AI-powered threat actor prompting, securing enterpr… Cisco Talos · Jul 23, 2026 Medium aithreat-huntingsecurity-operations
vulnerability New Check Point Zero-Day Vulnerability Exploited in the Wild A critical zero-day vulnerability in Check Point’s Security Management and Multi-Domain Management products has been actively exploited in the wild. The flaw allows attackers to gain administrator-level access, and Check… SecurityWeek · Jul 23, 2026 Critical CVE-2026-16232CVE-2026-50751CVE-2024-24919zero-dayauthenticationprivilege escalation
vulnerability Multiples vulnérabilités dans les produits Check Point (23 juillet 2026) Multiple vulnerabilities have been discovered in Check Point products, allowing attackers to elevate privileges and bypass security policies. Check Point reports that CVE-2026-16232 is actively being exploited. Users are… CERT-FR · Jul 23, 2026 High CVE-2026-16232CVE-2026-62144CVE-2026-62145vulnerabilitycheck pointsecurity
threat-intel Greedy ransomware crews return for seconds after victims cough up first extortion payments This article covers a variety of cybersecurity and technology news items, including a ransomware resurgence targeting victims after initial payments, a new AMD AI compute platform competing with Nvidia, a security vulner… The Register · Jul 22, 2026 Medium ransomwarevulnerabilitycybersecurity
threat-intel Council worker spared prison after four-day data-snooping spree This article is a collection of security and technology news snippets. A House worker was spared prison after a data snooping spree, while Microsoft’s SharePoint remains vulnerable to zero-day attacks. Additionally, a Ru… The Register · Jul 22, 2026 Medium RUSWphishingvulnerabilitycybersecurity
threat-intel OpenAI admits it was the source of the agent swarm that attacked Hugging Face OpenAI is facing accusations of orchestrating an attack against Hugging Face, a major AI platform. The incident involved a coordinated effort by AMD and Cerebras to undermine Nvidia's dominance in AI compute, with OpenAI… The Register · Jul 22, 2026 Medium CHIRaicyberattackvulnerability
threat-intel AI's cheatin' heart will make you weep This article covers a range of cybersecurity and technology news, including AMD's challenge to Nvidia in AI compute, security vulnerabilities in Joomla extensions, a Russian phishing campaign mimicking Signal support, an… The Register · Jul 21, 2026 Medium USIRSWcybersecurityphishingransomware
threat-intel Hacker Turns AI Jailbreaks Into Offensive Attack Platform A Russian-speaking cybercriminal, known as ‘Trim,’ successfully weaponized publicly available AI language models to create a commercial offensive cybertooling platform. By developing and publishing jailbreaking technique… Dark Reading · Jul 21, 2026 High RUaijailbreakoffensive-security
threat-intel Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial Access Threat actors are exploiting a vulnerability in Palo Alto Networks PAN-OS to gain initial access and deploy Qilin ransomware. The vulnerability, CVE-2026-0257, allows unauthenticated remote access, leading to widespread… The Hacker News · Jul 21, 2026 High CVE-2026-0257ransomwarevulnerabilityvpn
threat-intel Intel fortifies Foundry with an actual customer: Fortinet This article covers a range of cybersecurity and technology news, including AMD's challenge to Nvidia's AI compute platform, a Russian phishing campaign mimicking Signal support, and a security acquisition by EQT in the… The Register · Jul 21, 2026 Medium vulnerabilityphishingransomware
threat-intel New Project CAV3RN module abuses Outlook calendar events for C2 and DNS AAAA records for configuration recovery Kaspersky researchers have uncovered a sophisticated new module, Project CAV3RN, leveraging Outlook calendar events accessed through Microsoft Graph for C2 communication and DNS AAAA records to recover configuration data… Securelist · Jul 21, 2026 High ISc2microsoftdns
vulnerability Multiples vulnérabilités dans Tenable Security Center (21 juillet 2026) Multiple vulnerabilities have been discovered within Tenable Security Center, including remote code execution, SQL injection, and policy bypass. These vulnerabilities, spanning from 2026-06 to 2026-07, allow attackers to… CERT-FR · Jul 21, 2026 High CVE-2025-11187CVE-2025-14179CVE-2025-15467vulnerabilitysql injectionremote code execution
threat-intel Attackers pummel critical WordPress vuln to create all sorts of mischief This article covers a range of cybersecurity and technology news, including a vulnerability exploited to create mischief, a Russian phishing campaign mimicking Signal support, and a significant acquisition in the cyberse… The Register · Jul 20, 2026 Medium CVE-2026-63030CVE-2026-60137vulnerabilityphishingransomware
vulnerability OpenSSL Silently Fixes ‘HollowByte’ DoS Vulnerability A denial-of-service vulnerability, dubbed ‘HollowByte,’ in OpenSSL allows attackers to exhaust server memory by crafting a small payload that triggers excessive buffer allocations. This can lead to complete system lockup… SecurityWeek · Jul 20, 2026 High denial-of-servicebuffer overflowmemory exhaustion