Veille live
Veille CyberInfra — Veille cybersecurite : New Windows Defender zero-day blocks Microsoft antivirus updates Veille CyberInfra — Veille cybersecurite : WordPress Comment2Shell Flaw Can Turn Anonymous Comment XSS Into RCE via Admin Session Veille CyberInfra — Veille cybersecurite : DORA Year Two: Can Your SOC Actually See the Attack? Veille CyberInfra — Veille cybersecurite : WordPress Click2Shell flaw lets hackers execute PHP on the server Veille CyberInfra — Veille cybersecurite : One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor Veille CyberInfra — Veille cybersecurite : SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE Veille CyberInfra — Veille cybersecurite : New Windows Defender zero-day blocks Microsoft antivirus updates Veille CyberInfra — Veille cybersecurite : WordPress Comment2Shell Flaw Can Turn Anonymous Comment XSS Into RCE via Admin Session Veille CyberInfra — Veille cybersecurite : DORA Year Two: Can Your SOC Actually See the Attack? Veille CyberInfra — Veille cybersecurite : WordPress Click2Shell flaw lets hackers execute PHP on the server Veille CyberInfra — Veille cybersecurite : One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor Veille CyberInfra — Veille cybersecurite : SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE
Blog

Veille cybersécurité

Les dernières actualités et alertes de sécurité, décryptées pour les PME.

Veille cybersecurite : PaperCut Attacker Uses Hundreds of AI Agents to Compromise 440+ Instances

11/09/2026

Source : The Hacker News A suspected Russian-speaking cyber actor has been attributed to the use of artificial intelligence (AI) to devise exploits targeting a recently disclosed pair of security flaws in PaperCut NG/MF and break into hundreds of instances. According to independent reports from Blackpoint Cyber and GreyNoise, the activity originates from « 45.142.193[.]132, » an […]

Veille cybersecurite : PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws

11/09/2026

Source : The Hacker News PaperCut on Thursday released a new security maintenance release that replaces all previously published emergency patches that were pushed to address two security flaws that have come under active exploitation. The software development company said PaperCut NG/MF versions 26.0.5, 25.0.13 and 24.1.10 are now available for customers to download. « These […]

Veille cybersecurite : Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware

11/09/2026

Source : The Hacker News Cisco has revealed that three distinct threat clusters linked to ransomware and state-sponsored attacks have been exploiting two recently patched Secure Firewall Management Center (FMC) vulnerabilities. The attacks leverage CVE-2026-20079 (CVSS score: 10.0), an authentication bypass vulnerability in the web interface of FMC software that could allow an unauthenticated, remote […]

Veille cybersecurite : Webinar: Learn How to Answer “Are We Exposed?” Faster After a New CVE

10/09/2026

Source : The Hacker News A major vulnerability is disclosed. The alert lands immediately. Then comes the harder question: Are we actually exposed? For many security teams, answering that means jumping between vulnerability scanners, endpoint tools, cloud inventories, SBOMs, repositories, and application data to build enough context to act. As AI accelerates vulnerability discovery and […]

Veille cybersecurite : Infostealer Logs Expose Replayable AI Tokens That Can Bypass MFA

10/09/2026

Source : The Hacker News Cybercriminals are hijacking artificial intelligence (AI) user accounts via information stealer logs to create « stolen keys » that grant illicit access to tools from model providers like Google, Anthropic, and others.  Information stealers like Lumma Stealer or Vidar are equipped to harvest a wide range of data from compromised systems. This […]