Andy Belin
Flux mis à jour automatiquement

Veille cybersécurité.

Mon flux d'actualité en sécurité informatique, agrégé automatiquement depuis les sources spécialisées que je suis au quotidien. Mise à jour toutes les heures.

Actualité
24 août 2026

Unpatched Calix flaw lets hackers bypass NAT to expose internal devices

An unpatched vulnerability in Calix GS7 XGS (GS5239XG) residential routers used by multiple U.S. broadband providers allows remote, unauthenticated attackers to create port-forward…

Source : Bleeping ComputerLire
Actualité
24 août 2026

Hackers target WordPress sites in miniOrange auth bypass attacks

Hackers are attempting to exploit two critical authentication bypass vulnerabilities in the miniOrange SAML 2.0 Single Sign On plugin for WordPress that can be used to forge SAML r…

Source : Bleeping ComputerLire
Actualité
24 août 2026

TikTok reaches $400M settlement with US over COPPA violations

The U.S. Department of Justice announced a $400 million settlement with TikTok, ByteDance, and affiliated companies over allegations that they violated the Children's Online Privac…

Source : Bleeping ComputerLire
International
24 août 2026

Shipping More AI Code Than You Can Secure? Watch How to Control Remediation Debt

If your developers are using AI coding tools, you are probably already seeing the upside: faster development, more code, and less time spent on routine work. The harder part is wh…

Source : The Hacker NewsLire
International
24 août 2026

Weedhack Malware Spreads via Fake Minecraft Clients and SEO Poisoning

Cybersecurity researchers have found that several websites are still actively distributing a malware family known as Weedhack to gamers by masquerading as Minecraft clients. McAfe…

Source : The Hacker NewsLire
Actualité
24 août 2026

ReliaQuest confirms failed data-theft attack after ShinyHunters breach

Cybersecurity company ReliaQuest has confirmed that one of its employees was targeted in a social engineering attack after hackers impersonated a member of the security team. [...]

Source : Bleeping ComputerLire
International
24 août 2026

⚡ Weekly Recap: AI-Powered PLC Attacks, GitLab Attacks, Stripe Key Leaks and More

A package gets installed. A login prompt opens. A box sits exposed to the internet. Nothing looks unusual yet. That’s roughly the mood this week. Trusted tools turn hostile, old w…

Source : The Hacker NewsLire
Actualité
24 août 2026

Microsoft Teams now lets admins block external bots from meetings

Microsoft is rolling out a new Teams meeting protection policy that allows administrators to automatically block all identified external bots from joining Teams meetings. [...]

Source : Bleeping ComputerLire
International
24 août 2026

WordlistLoader Delivers Amatera via ClickFix, SynkLoader Phishes Windows Passwords

Cybersecurity researchers have flagged two new malware families called WordlistLoader and SynkLoader that's used to deliver next-stage payloads and likely sell access to ransomwar…

Source : The Hacker NewsLire
International
24 août 2026

Critical Keycloak Password Reset Flaw Could Let Unauthenticated Attackers Take Over Any Account

Red Hat and the Keycloak project have released patches to address a critical security flaw in the open-source identity and access management server that could allow an unauthentica…

Source : The Hacker NewsLire
FR
23 août 2026

84 000 élèves visés par une fraude aux frais scolaires

Aix-Marseille alerte 84 000 étudiants après une fraude réclamant 450 € sous couvert de frais scolaires. Explication de l'attaque !

Source : ZATAZLire
FR
22 août 2026

Cyber actualités ZATAZ de la semaine du 17 au 23 août 2026

Cyber actualités ZATAZ de la semaine du 17 au 23 août 2026. Un mois d'août trés... hot !

Source : ZATAZLire
FR
22 août 2026

ShinyHunters menace Logitech et Streamlabs

ShinyHunters revendique un piratage de Logitech et Streamlabs. Les streameurs en danger ?

Source : ZATAZLire
FR
22 août 2026

Rentrée scolaire 2026 : les arnaques à surveiller

Rentrée 2026 : faux paiements, fournitures, aides, licences et stages deviennent des vecteurs privilégiés d’arnaques cyber.

Source : ZATAZLire
FR
22 août 2026

Une chemise à 10 € et le piège se referme

Une chemise vendue 10 € sur Vinted devait être une formalité. En quelques appels, une famille voit pourtant ses comptes basculer dans une mécanique d’escroquerie redoutable. Une ad…

Source : ZATAZLire
Avis & Alertes
19 août 2026

Multiples vulnérabilités dans Synacor Zimbra Collaboration (19 août 2026)

De multiples vulnérabilités ont été découvertes dans Synacor Zimbra Collaboration. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à…

Source : CERT-FRLire
Avis & Alertes
18 août 2026

Multiples vulnérabilités dans les produits Apple (18 août 2026)

De multiples vulnérabilités ont été découvertes dans les produits Apple. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire, une élévat…

Source : CERT-FRLire
Avis & Alertes
17 août 2026

Vulnérabilité dans SPIP (17 août 2026)

Une vulnérabilité a été découverte dans SPIP. Elle permet à un attaquant de provoquer une exécution de code arbitraire à distance.

Source : CERT-FRLire
Enquête
14 août 2026

Who’s Tracking You? Use This New Service to Find Out

It can be daunting to determine who's responsible for showing ads on the websites we visit, or who's harvesting data from the mobile apps we use every day. That information is alre…

Source : Krebs on SecurityLire
Enquête
11 août 2026

Microsoft Plugs Nearly 400 Security Holes

Microsoft today released updates to remedy at least 398 security vulnerabilities in its Windows operating systems and supported software, including one weakness that is already bei…

Source : Krebs on SecurityLire
Avis & Alertes
11 août 2026

Multiples vulnérabilités dans SPIP (11 août 2026)

De multiples vulnérabilités ont été découvertes dans SPIP. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une injection…

Source : CERT-FRLire
Enquête
06 août 2026

Canadian Man Pleads Guilty in Snowflake Extortions

A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded guilty to computer fraud and conspiracy to hack and extort m…

Source : Krebs on SecurityLire
Enquête
30 juil. 2026

Read This Before You Buy That TV Streaming Stick

Security experts have been sounding the alarm for years about the risks of using generic TV boxes that promise unlimited content streaming for a one-time fee, warning that they sec…

Source : Krebs on SecurityLire
Enquête
22 juil. 2026

LG to Ban Residential Proxies from Smart TV Apps

The home appliance giant LG Electronics USA said this week it plans to suspend any apps built for its smart TVs that turn one's television into an always-on residential proxy node.…

Source : Krebs on SecurityLire

24 articles agrégés depuis les flux RSS publics. Mise à jour automatique via ISR (revalidation toutes les heures).