Veille live
Veille CyberInfra — Veille cybersecurite : Ryuk ransomware member sentenced to 24 months in prison Veille CyberInfra — Veille cybersecurite : ShinyHunters Claims FBI Breach, Says It Stole Data on Agents and Job Applicants Veille CyberInfra — Veille cybersecurite : Critical Next.js ImageResponse Flaw Can Lead to Server Code Execution via Crafted SVG Input Veille CyberInfra — Veille cybersecurite : Exploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape Veille CyberInfra — Veille cybersecurite : ShinyHunters claims FBI hack, data theft in PeopleSoft zero-day breach Veille CyberInfra — Veille cybersecurite : Arista patches actively exploited VeloCloud Orchestrator zero-day Veille CyberInfra — Veille cybersecurite : Ryuk ransomware member sentenced to 24 months in prison Veille CyberInfra — Veille cybersecurite : ShinyHunters Claims FBI Breach, Says It Stole Data on Agents and Job Applicants Veille CyberInfra — Veille cybersecurite : Critical Next.js ImageResponse Flaw Can Lead to Server Code Execution via Crafted SVG Input Veille CyberInfra — Veille cybersecurite : Exploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape Veille CyberInfra — Veille cybersecurite : ShinyHunters claims FBI hack, data theft in PeopleSoft zero-day breach Veille CyberInfra — Veille cybersecurite : Arista patches actively exploited VeloCloud Orchestrator zero-day
Blog

Veille cybersécurité

Les dernières actualités et alertes de sécurité, décryptées pour les PME.

Veille cybersecurite : 16 Typosquatted RubyGems Packages Steal Browser Credentials and Crypto Wallets

19/08/2026

Source : The Hacker News Cybersecurity researchers have flagged a new typosquatting campaign targeting RubyGems users with a Windows-based information stealer. OpenSourceMalware, which discovered the activity on August 15, 2026, is tracking the threat under the moniker StubMaker. The complete list of packages published as part of the campaign is below – ubnuler ubnlder ri18nr […]

Veille cybersecurite : Clop created custom web shell for Windchill data theft attacks

19/08/2026

Source : BleepingComputer A custom Java web shell likely linked to the Clop ransomware gang was designed specifically for PTC Windchill and FlexPLM servers, with built-in features to decrypt credentials, enumerate file repositories, and steal files. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez […]

Veille cybersecurite : Attackers Exploit MLflow SSRF Flaw to Steal Cloud Credentials and Secrets

19/08/2026

Source : The Hacker News Two critical vulnerabilities impacting MLflow, an open-source artificial intelligence (AI) platform, and FUXA, an open-source, web-based SCADA / HMI software built for operational technology (OT) and industrial automation, are witnessing malicious scanning and exploitation efforts. According to independent reports from watchTowr and VulnCheck, the vulnerabilities in question are as follows […]

Veille cybersecurite : CISA: Windows Task Host flaw now exploited by ransomware gangs

19/08/2026

Source : BleepingComputer The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that ransomware gangs are also exploiting a high-severity Windows Task Host vulnerability that was flagged as actively exploited in April. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un appel decouverte […]

Veille cybersecurite : Philips and GE investigating Clop ransomware data theft claims

18/08/2026

Source : BleepingComputer Tech giants General Electric (GE) and Philips have also confirmed they’re investigating claims that the Clop ransomware gang breached their systems and stole data. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un appel decouverte gratuit.

Veille cybersecurite : Pokémon Center data breach exposes customer info, cancels some orders

18/08/2026

Source : BleepingComputer Pokémon Center is notifying customers in the United Kingdom and Germany that it suffered a third-party data breach after hackers stole customer personal and order information from third-party logistics provider CEVA Logistics. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un […]

Veille cybersecurite : Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects

18/08/2026

Source : The Hacker News GitLab has released security updates to address a critical vulnerability impacting its Community Edition (CE) and Enterprise Edition (EE) software that, under certain conditions, could allow an unauthenticated attacker to remotely modify or delete public projects and user data. The flaw, tracked as CVE-2026-19478, has been rated Critical by GitLab […]