Veille live
Veille CyberInfra — Veille cybersecurite : Microsoft: September updates break File History backup feature Veille CyberInfra — Veille cybersecurite : ClickFix Lures Deploy ChainScript RAT Using Polygon to Rotate C2 Infrastructure Veille CyberInfra — Veille cybersecurite : Microsoft reminds admins to migrate Entra ID users to passkeys Veille CyberInfra — Veille cybersecurite : Malicious npm packages evade install-script defenses at runtime Veille CyberInfra — Veille cybersecurite : Jade Sleet Linked to Indian IT Provider Breach With FLATROOF and ROOFDECK Backdoors Veille CyberInfra — Veille cybersecurite : Viral AI actress’ hotline face-scans every caller, watches their mood Veille CyberInfra — Veille cybersecurite : Microsoft: September updates break File History backup feature Veille CyberInfra — Veille cybersecurite : ClickFix Lures Deploy ChainScript RAT Using Polygon to Rotate C2 Infrastructure Veille CyberInfra — Veille cybersecurite : Microsoft reminds admins to migrate Entra ID users to passkeys Veille CyberInfra — Veille cybersecurite : Malicious npm packages evade install-script defenses at runtime Veille CyberInfra — Veille cybersecurite : Jade Sleet Linked to Indian IT Provider Breach With FLATROOF and ROOFDECK Backdoors Veille CyberInfra — Veille cybersecurite : Viral AI actress’ hotline face-scans every caller, watches their mood

Veille cybersecurite : Microsoft: September updates break File History backup feature

21/09/2026

Source : BleepingComputer Microsoft warned that the built-in File History backup feature in Windows may stop working on some systems after installing the September 2026 security updates. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un appel decouverte gratuit.

Veille cybersecurite : Microsoft reminds admins to migrate Entra ID users to passkeys

21/09/2026

Source : BleepingComputer Microsoft has reminded admins to migrate Entra ID users to phishing-resistant authentication methods to avoid sign-in disruptions after it retires SMS first-factor sign-in starting in February 2027. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un appel decouverte gratuit.

Veille cybersecurite : ClickFix Lures Deploy ChainScript RAT Using Polygon to Rotate C2 Infrastructure

21/09/2026

Source : The Hacker News Threat actors are leveraging ClickFix-like lures to deliver a previously undocumented remote access trojan (RAT) called ChainScript. « ChainScript has appeared under multiple build names, including ComponentTask33, UpdateDigital, HostShared, and OrchidViolet66, while presenting itself as Spotify, Zoom Workplace, and Microsoft Teams software, » Blackpoint Adversary Pursuit Group (APG) Lire l’article original Vous […]

Veille cybersecurite : Jade Sleet Linked to Indian IT Provider Breach With FLATROOF and ROOFDECK Backdoors

21/09/2026

Source : The Hacker News The North Korean threat actor known as Jade Sleet has been attributed to the compromise of an India-based « much smaller organization » in the information technology (IT) services industry, once again highlighting how the adversary continues to target developers to breach target networks. Cybersecurity company SentinelOne, which disclosed details of the […]

Veille cybersecurite : Malicious npm packages evade install-script defenses at runtime

21/09/2026

Source : BleepingComputer An ongoing npm malware campaign involving the ‘indexed-btree’ package shows how threat actors bypass supply chain defenses by hiding malicious code in a package’s normal runtime behavior rather than in installation scripts. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un […]

Veille cybersecurite : North Korean WaterPlum hackers infected 30,000 devices worldwide

20/09/2026

Source : BleepingComputer A joint law enforcement advisory warns that the North Korean hacking group WaterPlum compromised at least 30,000 devices worldwide from December 2025 through July 2026 and transferred more than $10.7 million in stolen cryptocurrency to North Korea. […] Lire l’article original Vous vous demandez si votre entreprise est exposee a ce type […]

Veille cybersecurite : BragJack attacks hijack AI browser agents through malicious extensions

20/09/2026

Source : BleepingComputer BragJack, a proof-of-concept attack from Forever Security’s Gal Weizman, hijacks the AI assistants in Chrome, Edge, Opera Neon, Perplexity Comet, and Claude in Chrome using one malicious extension. The Prompt Forcing technique earned over $20,000 in bounties and two CVEs. […] Lire l’article original Vous vous demandez si votre entreprise est exposee […]