21/09/2026
Source : BleepingComputer Microsoft warned that the built-in File History backup feature in Windows may stop working on some systems after installing the September 2026 security updates. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un appel decouverte gratuit.
21/09/2026
Source : BleepingComputer Microsoft has reminded admins to migrate Entra ID users to phishing-resistant authentication methods to avoid sign-in disruptions after it retires SMS first-factor sign-in starting in February 2027. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un appel decouverte gratuit.
21/09/2026
Source : The Hacker News Threat actors are leveraging ClickFix-like lures to deliver a previously undocumented remote access trojan (RAT) called ChainScript. « ChainScript has appeared under multiple build names, including ComponentTask33, UpdateDigital, HostShared, and OrchidViolet66, while presenting itself as Spotify, Zoom Workplace, and Microsoft Teams software, » Blackpoint Adversary Pursuit Group (APG) Lire l’article original Vous […]
21/09/2026
Source : The Hacker News The North Korean threat actor known as Jade Sleet has been attributed to the compromise of an India-based « much smaller organization » in the information technology (IT) services industry, once again highlighting how the adversary continues to target developers to breach target networks. Cybersecurity company SentinelOne, which disclosed details of the […]
21/09/2026
Source : BleepingComputer An ongoing npm malware campaign involving the ‘indexed-btree’ package shows how threat actors bypass supply chain defenses by hiding malicious code in a package’s normal runtime behavior rather than in installation scripts. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un […]
20/09/2026
Source : BleepingComputer A joint law enforcement advisory warns that the North Korean hacking group WaterPlum compromised at least 30,000 devices worldwide from December 2025 through July 2026 and transferred more than $10.7 million in stolen cryptocurrency to North Korea. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type […]
20/09/2026
Source : BleepingComputer BragJack, a proof-of-concept attack from Forever Security’s Gal Weizman, hijacks the AI assistants in Chrome, Edge, Opera Neon, Perplexity Comet, and Claude in Chrome using one malicious extension. The Prompt Forcing technique earned over $20,000 in bounties and two CVEs. […] Lire l’article original Vous vous demandez si votre entreprise est exposee […]
20/09/2026
Source : BleepingComputer Researchers escaped OpenAI’s Codex sandbox two ways, one running commands on a developer’s machine from its most locked-down mode. OpenAI has patched both. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un appel decouverte gratuit.
20/09/2026
Source : BleepingComputer AI actress Tilly Norwood went viral after glitching into Chinese on Piers Morgan Uncensored last night. Her « Talking Tilly » video call service face-scans every caller for an 18+ age check, senses callers’ moods during calls, and shuts down permanently on September 27. We tried it and read the fine print. […] Lire […]
20/09/2026
Source : The Hacker News A new CVE drops. Your scanner finds it. The severity score looks ugly. But that still does not answer the question that matters: Can it actually be exploited in your environment? Mythos-class AI is compressing the time between disclosure and working exploitation, while many security programs still validate risk on […]