Veille live
Veille CyberInfra — Veille cybersecurite : Ryuk ransomware member sentenced to 24 months in prison Veille CyberInfra — Veille cybersecurite : ShinyHunters Claims FBI Breach, Says It Stole Data on Agents and Job Applicants Veille CyberInfra — Veille cybersecurite : Critical Next.js ImageResponse Flaw Can Lead to Server Code Execution via Crafted SVG Input Veille CyberInfra — Veille cybersecurite : Exploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape Veille CyberInfra — Veille cybersecurite : ShinyHunters claims FBI hack, data theft in PeopleSoft zero-day breach Veille CyberInfra — Veille cybersecurite : Arista patches actively exploited VeloCloud Orchestrator zero-day Veille CyberInfra — Veille cybersecurite : Ryuk ransomware member sentenced to 24 months in prison Veille CyberInfra — Veille cybersecurite : ShinyHunters Claims FBI Breach, Says It Stole Data on Agents and Job Applicants Veille CyberInfra — Veille cybersecurite : Critical Next.js ImageResponse Flaw Can Lead to Server Code Execution via Crafted SVG Input Veille CyberInfra — Veille cybersecurite : Exploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape Veille CyberInfra — Veille cybersecurite : ShinyHunters claims FBI hack, data theft in PeopleSoft zero-day breach Veille CyberInfra — Veille cybersecurite : Arista patches actively exploited VeloCloud Orchestrator zero-day
Blog

Veille cybersécurité

Les dernières actualités et alertes de sécurité, décryptées pour les PME.

Veille cybersecurite : PaperCut releases second emergency patch for exploited flaws

28/08/2026

Source : BleepingComputer PaperCut has released a second emergency security update for two actively exploited vulnerabilities in its PaperCut NG and MF print management software after researchers discovered multiple ways to bypass the initial fixes. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un […]

Veille cybersecurite : China-Made ZBT Routers Ship With Two Implants Giving Unauthenticated Attackers Root Access

28/08/2026

Source : The Hacker News VulnCheck has disclosed two previously undocumented factory implants in firmware for routers built by Shenzhen Zhibotong Electronics (ZBT), each of which gives an unauthenticated remote attacker the ability to run commands as root on affected devices. The implants, named SPEAKINGSTONE and DARKLANTERN by the company’s zero-day research team, are tracked […]

Veille cybersecurite : ServiceNow warns of three max severity security vulnerabilities

28/08/2026

Source : BleepingComputer ServiceNow released security patches for three new maximum-severity AI Platform vulnerabilities that can be exploited in code injection, SQL injection, and privilege escalation attacks. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un appel decouverte gratuit.

Veille cybersecurite : Over 8,300 Gitea servers vulnerable to code execution attacks

28/08/2026

Source : BleepingComputer Over 8,300 Internet-exposed Gitea instances are still unpatched against a critical security flaw exploited in ongoing remote code execution attacks, according to cybersecurity watchdog Shadowserver. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un appel decouverte gratuit.

Veille cybersecurite : ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body

28/08/2026

Source : The Hacker News The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical security flaw impacting ownCloud to its Known Exploited Vulnerabilities (KEV) catalog following reports that a Chinese-speaking threat actor weaponized the vulnerability to target a nuclear research body in the Philippines. The vulnerability, tracked as CVE-2023-49105 (CVSS score: […]

Veille cybersecurite : Attackers Chain Two PaperCut Flaws to Execute Code Without Authentication

28/08/2026

Source : The Hacker News Malicious actors are exploiting a newly patched security flaw in PaperCut NG and MF to execute arbitrary code on susceptible instances, as the company released a fresh emergency fix with additional hardening. « This vulnerability gives an unauthenticated attacker remote control over PaperCut’s trusted configuration, which could be used to execute […]

Veille cybersecurite : Amazon Kiro Prompt Injection Can Exfiltrate Sensitive Data Through Kiro Powers

27/08/2026

Source : The Hacker News Cybersecurity researchers have disclosed details of a vulnerability in Amazon Kiro, an artificial intelligence (AI)-powered, agentic integrated development environment (IDE), that could facilitate data exfiltration via prompt injection and Kiro Powers. The security flaw, which does not have a CVE identifier, works against Kiro IDE 0.7.45 on Windows, according to […]

Veille cybersecurite : Carhartt data breach exposes information of 12.9 million accounts

27/08/2026

Source : BleepingComputer The ShinyHunters extortion group has published sensitive data from nearly 13 million accounts stolen from clothing retailer giant Carhartt earlier this month, according to data breach notification service Have I Been Pwned. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un […]