Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

31742 bookmarks
Custom sorting
Microsoft: Anti-spam bug blocks links in Exchange Online, Teams
Microsoft: Anti-spam bug blocks links in Exchange Online, Teams
​Microsoft is working to resolve a known issue that causes an anti-spam service to mistakenly block Exchange Online and Microsoft Teams users from opening URLs and quarantine some of their emails.
·bleepingcomputer.com·
Microsoft: Anti-spam bug blocks links in Exchange Online, Teams
SAP fixes maximum severity NetWeaver command execution flaw
SAP fixes maximum severity NetWeaver command execution flaw
SAP has addressed 21 new vulnerabilities affecting its products, including three critical severity issues impacting the NetWeaver software solution.
·bleepingcomputer.com·
SAP fixes maximum severity NetWeaver command execution flaw
Après un coup de pression, ce site de streaming sportif pirate arrête toutes ses activités
Après un coup de pression, ce site de streaming sportif pirate arrête toutes ses activités
Certaines opérations de lutte contre le piratage sont plus faciles à mener que d'autres. Celle qui consistait à en finir avec la plateforme Calcio a été simple à mener : un coup de pression a suffi, en somme, à en croire l'alliance mondiale anti-piratage. Calcio. Pour les fans de football, c'est le surnom que l'on
·numerama.com·
Après un coup de pression, ce site de streaming sportif pirate arrête toutes ses activités
« L’usurpation d’identité de professionnels de santé » provoque des fuites de données dans plusieurs régions de France
« L’usurpation d’identité de professionnels de santé » provoque des fuites de données dans plusieurs régions de France
Au moins trois agences régionales de santé (ARS) seraient touchées par une cyberattaque en France. Selon les premiers communiqués, publiés le 8 septembre, l'attaque viserait un opérateur accompagnant les ARS dans leurs projets numériques. Le communiqué de l’ARS Pays de la Loire, publié le 8 septembre, souligne
·numerama.com·
« L’usurpation d’identité de professionnels de santé » provoque des fuites de données dans plusieurs régions de France
Microsoft testing new AI features in Windows 11 File Explorer
Microsoft testing new AI features in Windows 11 File Explorer
Microsoft is testing new File Explorer AI-powered features that will enable Windows 11 users to work with images and documents without needing to open the files.
·bleepingcomputer.com·
Microsoft testing new AI features in Windows 11 File Explorer
Chinese Cyber Espionage Campaign Impersonates US Congressman
Chinese Cyber Espionage Campaign Impersonates US Congressman
A House select committee said Chinese actors impersonated Representative John Moolenaar to steal information that could be used to influence trade talks
·infosecurity-magazine.com·
Chinese Cyber Espionage Campaign Impersonates US Congressman
New Cryptanalysis of the Fiat-Shamir Protocol - Schneier on Security
New Cryptanalysis of the Fiat-Shamir Protocol - Schneier on Security
A couple of months ago, a new paper demonstrated some new attacks against the Fiat-Shamir transformation. Quanta published a good article that explains the results. This is a pretty exciting paper from a theoretical perspective, but I don’t see it leading to any practical real-world cryptanalysis. The fact that there are some weird circumstances that result in Fiat-Shamir insecurities isn’t new—many dozens of papers have been published about it since 1986. What this new result does is extend this known problem to slightly less weird (but still highly contrived) situations. But it’s a completely different matter to extend these sorts of attacks to “natural” situations...
·schneier.com·
New Cryptanalysis of the Fiat-Shamir Protocol - Schneier on Security
Plex annonce un piratage et appelle ses utilisateurs à prendre plusieurs mesures
Plex annonce un piratage et appelle ses utilisateurs à prendre plusieurs mesures
Le logiciel de gestion multimédia Plex a annoncé le 8 septembre 2025 avoir été victime d'un incident de sécurité. Les pirates responsables de l’attaque auraient eu accès à de nombreuses données clients. Dans un mail adressé aux personnes concernées, l’entreprise américaine invite ses utilisateurs à prendre plusieurs
·numerama.com·
Plex annonce un piratage et appelle ses utilisateurs à prendre plusieurs mesures
How Leading CISOs are Getting Budget Approval
How Leading CISOs are Getting Budget Approval
88% of boards see cybersecurity as business risk; continuous validation proves ROI and prevents $5M losses.
·thehackernews.com·
How Leading CISOs are Getting Budget Approval
« L’IA ne comprend pas la désescalade » : des chercheurs alertent sur le risque de guerre nucléaire
« L’IA ne comprend pas la désescalade » : des chercheurs alertent sur le risque de guerre nucléaire
Des chercheurs alertent sur les risques d’une intégration croissante de l’intelligence artificielle dans la chaîne de commandement militaire. Testés en simulation, les modèles d’IA privilégieraient quasi systématiquement l’escalade, jusqu’au scénario d’un conflit nucléaire. Vers un scénario apocalyptique ? Des
·numerama.com·
« L’IA ne comprend pas la désescalade » : des chercheurs alertent sur le risque de guerre nucléaire
Hardening Microsoft Windows 10 workstations | Cyber.gov.au
Hardening Microsoft Windows 10 workstations | Cyber.gov.au
This publication provides recommendations on hardening workstations using Enterprise and Education editions of Microsoft Windows 10. While this publication refers to workstations, most recommendations are equally applicable to servers (with the exception of Domain Controllers) using Microsoft Windows Server. Security features discussed in this publication, along with the names and locations of Group Policy settings, are taken from Microsoft Windows 10 version 22H2.
·cyber.gov.au·
Hardening Microsoft Windows 10 workstations | Cyber.gov.au
Hardening Microsoft Windows 11 workstations | Cyber.gov.au
Hardening Microsoft Windows 11 workstations | Cyber.gov.au
This publication provides recommendations on hardening workstations using Enterprise and Education editions of Microsoft Windows 11. While this publication refers to workstations, most recommendations are equally applicable to servers (with the exception of Domain Controllers) using Microsoft Windows Server. Security features discussed in this publication, along with the names and locations of Group Policy settings, are taken from Microsoft Windows 11 version 24H2.
·cyber.gov.au·
Hardening Microsoft Windows 11 workstations | Cyber.gov.au
A Shared Vision of Software Bill of Materials (SBOM) for Cybersecurity | Cyber.gov.au
A Shared Vision of Software Bill of Materials (SBOM) for Cybersecurity | Cyber.gov.au
This guidance, authored by the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and international partners, presents a shared vision of Software Bill of Materials (SBOM) and the value that increased software component and supply chain transparency can offer to the global community.
·cyber.gov.au·
A Shared Vision of Software Bill of Materials (SBOM) for Cybersecurity | Cyber.gov.au
Plex tells users to reset passwords after new data breach
Plex tells users to reset passwords after new data breach
Media streaming platform Plex is warning customers to reset passwords after suffering a data breach in which a hacker was able to steal customer authentication data from one of its databases.
·bleepingcomputer.com·
Plex tells users to reset passwords after new data breach
18 Popular Code Packages Hacked, Rigged to Steal Crypto
18 Popular Code Packages Hacked, Rigged to Steal Crypto
At least 18 popular JavaScript code packages that are collectively downloaded more than two billion times each week were briefly compromised with malicious software today, after a developer involved in maintaining the projects was phished. The attack appears to have…
·krebsonsecurity.com·
18 Popular Code Packages Hacked, Rigged to Steal Crypto