FACTUALRISK Cyber Intelligence
Mise à jour : 29 May 2026 · 18:02
← Accueil
🗞 Briefing🛡 Dashboard💥 Attaques🔧 Patches🦠 Ransomware📡 Exploitation🌍 Géopolitique🕵️ Acteurs Supply Chain🎯 IOC Tracker📋 Compliance📰 News📈 Statistiques
← Retour FactualRisk
📰 Actualités Cyber — 40 articles · 7 derniers jours Collecte automatique
Charter Communications Data Breach Could Impact Nearly 5 Million
SecurityWeek
29 May 2026 · 14:49
The notorious ShinyHunters extortion group leaked over 42 million records allegedly stolen from Charter in April. The post Charter Communications Data Breach Could Impact Nearly 5 Million appeared first on SecurityWeek .
→ Lire l'article
Attackers Use LLM Agent for Post-Exploitation After Marimo CVE-2026-39987 Exploit
The Hacker News
29 May 2026 · 14:39
An unknown threat actor has been observed using a large language model (LLM) agent to conduct post-compromise actions after obtaining initial access following the exploitation of a publicly-accessible Marimo network using a recently disclosed vulnerability. "The attacker compromised an internet-reachable Marimo notebook via CVE-2026-39987, extracted two cloud credentials from the compromised
→ Lire l'article
MokN Raises $15 Million for Phish-Back Platform
SecurityWeek
29 May 2026 · 14:34
MokN's platform deploys realistic decoy access points to lure attackers into revealing compromised credentials, enabling organizations to respond before abuse occurs. The post MokN Raises $15 Million for Phish-Back Platform appeared first on SecurityWeek .
→ Lire l'article
From $5 Attacks to Botnet-Powered Platforms: Inside the DDoS-as-a- Service Market
BleepingComputer
29 May 2026 · 14:32
DDoS attacks are increasingly being sold like subscription services, complete with pricing tiers, support, and reseller programs. Flare explores how the DDoS-as-a-Service market has evolved from scattered tools into polished attack platforms. [...]
→ Lire l'article
Dutch govt disrupts malware botnet with 17 million infected devices
BleepingComputer
29 May 2026 · 14:26
Dutch authorities have taken offline a massive botnet of 17 million devices and seized more than 200 servers at a local provider that supported the operation. [...]
→ Lire l'article
Gogs Zero-Day Exposes Servers to Remote Code Execution
SecurityWeek
29 May 2026 · 12:59
The critical-severity issue, assigned a CVSS score of 9.4, is an argument injection flaw that can be exploited by authenticated attackers via pull requests with malicious branch names. The post Gogs Zero-Day Exposes Servers to Remote Code Execution appeared first on SecurityWeek .
→ Lire l'article
Google Chrome adds session cookie theft protection for all users
BleepingComputer
29 May 2026 · 12:08
Google says the Chrome Device Bound Session Credentials (DBSC) security feature is now generally available and is rolling out to all users to prevent account takeovers. [...]
→ Lire l'article
New Russian-Linked GREYVIBE Targets Ukraine with AI-Powered Cyberattacks
The Hacker News
29 May 2026 · 11:31
A previously undocumented threat actor dubbed GREYVIBE has been attributed to ongoing and persistent attacks targeting Ukraine and Ukraine-related entities since at least August 2025. GREYVIBE, per WithSecure, is assessed to be a Russian-speaking group operating broadly in the Russian time zone, with the activities aligning with Kremlin state interests, specifically when it comes to
→ Lire l'article
California Sues 23andMe, Alleging It Failed to Protect User Data in 2023 Breach
SecurityWeek
29 May 2026 · 11:12
Attorney General Rob Bonta filed the lawsuit against Chrome Holding Co., which 23andMe rebranded under after filing for bankruptcy last March. The post California Sues 23andMe, Alleging It Failed to Protect User Data in 2023 Breach appeared first on SecurityWeek .
→ Lire l'article
Man sent to prison for selling data of 7 millions elderly Americans
BleepingComputer
29 May 2026 · 11:07
A North Carolina man was sentenced to more than 10 years in prison for selling the personal information of over 7 million elderly Americans to Jamaican scammers. [...]
→ Lire l'article
What 2,000 Exposed Vibe-Coded Apps Reveal About the Limits of Most Security Stacks
The Hacker News
29 May 2026 · 10:30
Shadow AI used to mean employees pasting things they shouldn't into ChatGPT. It now means something bigger: employees building full applications with AI, wiring them into production systems, and publishing them on the open internet. Without Security or IT in the loop. The artifact moved from a prompt to a product. The risk surface moved with it. In The Shadow Builders report (get it here), a
→ Lire l'article
Chrome 148 Update Patches 151 Vulnerabilities
SecurityWeek
29 May 2026 · 10:17
The browser update resolves critical-severity security defects that could potentially lead to remote code execution. The post Chrome 148 Update Patches 151 Vulnerabilities appeared first on SecurityWeek .
→ Lire l'article
US charges Google security engineer with Polymarket insider trading
BleepingComputer
29 May 2026 · 10:11
A Google security engineer was charged with insider trading after winning $1.2 million using confidential company data to place bets on the cryptocurrency-based Polymarket decentralized prediction market. [...]
→ Lire l'article
Malicious Sicoob NuGet Steals Banking Credentials as npm Packages Target Cloud Secrets
The Hacker News
29 May 2026 · 09:11
Cybersecurity researchers have discovered a malicious NuGet package that masquerades as a C# software development kit for Sicoob, one of Brazil's largest cooperative financial systems, to siphon client IDs and PFX certificates. According to Socket, versions 2.0.0 through 2.0.4 of "Sicoob.Sdk" contain functionality to exfiltrate sensitive information, including PFX certificates that are used to
→ Lire l'article
Charter Communications data breach affects 4.9 million accounts
BleepingComputer
29 May 2026 · 08:29
The ShinyHunters extortion gang stole personal information from 4.9 million accounts after hacking the U.S. telecom giant Charter Communications in early April, according to data breach notification service Have I Been Pwned. [...]
→ Lire l'article
Kimsuky Deploys HTTPSpy, Expands Arsenal with HelloDoor and VS Code Tunnels
The Hacker News
29 May 2026 · 05:57
The North Korean state-sponsored threat actor known as Kimsuky (aka Velvet Chollima) has been attributed to a fresh set of cyber attacks targeting South Korean military and corporate entities through March and April 2026. "Kimsuky employed a range of tailored social engineering tactics, such as spoofing security software installation pages and crafting a fake Webex meeting page that leveraged
→ Lire l'article
Anthropic confirms Claude Mythos-class models will roll out to the public
BleepingComputer
29 May 2026 · 00:21
Anthropic has confirmed that it plans to bring Mythos-class models to the general public after delaying the rollout due to security risks to public and private software. [...]
→ Lire l'article
Multiples vulnérabilités dans Centreon Web (29 mai 2026)
CERT-FR
29 May 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans Centreon Web. Elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance et un contournement de la politique de sécurité.
→ Lire l'article
Multiples vulnérabilités dans Elastic Kibana (29 mai 2026)
CERT-FR
29 May 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans Elastic Kibana. Certaines d'entre elles permettent à un attaquant de provoquer une élévation de privilèges, un déni de service à distance et une atteinte à la confidentialité des données.
→ Lire l'article
Multiples vulnérabilités dans le noyau Linux de SUSE (29 mai 2026)
CERT-FR
29 May 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un attaquant de provoquer une élévation de privilèges, une atteinte à la confidentialité des données et une atteinte à l'intégrité des données.
→ Lire l'article
Multiples vulnérabilités dans le noyau Linux d'Ubuntu (29 mai 2026)
CERT-FR
29 May 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans le noyau Linux d'Ubuntu. Certaines d'entre elles permettent à un attaquant de provoquer une élévation de privilèges, un déni de service à distance et une atteinte à la confidentialité des données.
→ Lire l'article
Multiples vulnérabilités dans les produits IBM (29 mai 2026)
CERT-FR
29 May 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation de privilèges et un déni de service à distance.
→ Lire l'article
Multiples vulnérabilités dans Oracle Database Server (29 mai 2026)
CERT-FR
29 May 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans Oracle Database Server. Elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance et un déni de service à distance.
→ Lire l'article
Multiples vulnérabilités dans le noyau Linux de Debian (29 mai 2026)
CERT-FR
29 May 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans le noyau Linux de Debian. Certaines d'entre elles permettent à un attaquant de provoquer une élévation de privilèges, une atteinte à la confidentialité des données et un déni de service.
→ Lire l'article
Multiples vulnérabilités dans le noyau Linux de Red Hat (29 mai 2026)
CERT-FR
29 May 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans le noyau Linux de Red Hat. Certaines d'entre elles permettent à un attaquant de provoquer une élévation de privilèges, une atteinte à la confidentialité des données et une atteinte à l'intégrité des données.
→ Lire l'article
Multiples vulnérabilités dans les produits Mattermost (29 mai 2026)
CERT-FR
29 May 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans les produits Mattermost. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.
→ Lire l'article
GreyVibe hackers use ChatGPT, Gemini to power cyberattacks
BleepingComputer
28 May 2026 · 22:24
A likely Russian threat cluster tracked as GreyVibe has been targeting Ukrainian entities with AI-generated lures and a rich set of custom malware tools. [...]
→ Lire l'article
BTMOB Android malware service generates custom phishing payloads
BleepingComputer
28 May 2026 · 21:10
An Android remote access trojan named BTMOB is offered to cybercriminals with a builder interface for generating malware payloads tailored to phishing lures. [...]
→ Lire l'article
FBI warns of fake FIFA websites running World Cup fraud schemes
BleepingComputer
28 May 2026 · 19:08
The FBI is warning of fake websites impersonating FIFA ahead of the 2026 World Cup, to steal personal and financial information, sell fake tickets and hospitality packages, and push other fraud related to the event. [...]
→ Lire l'article
Russia-Linked ‘GreyVibe’ Attackers Use AI to Supercharge Cyberattacks
SecurityWeek
28 May 2026 · 18:50
Researchers warn GreyVibe’s extensive use of ChatGPT, Gemini, and other AI tools offers a glimpse into how future cybercriminal and state-aligned groups will operate. The post Russia-Linked ‘GreyVibe’ Attackers Use AI to Supercharge Cyberattacks appeared first on SecurityWeek .
→ Lire l'article
Hackers exploit FortiClient EMS flaw to push infostealer malware
BleepingComputer
28 May 2026 · 17:25
Hackers are exploiting an authentication bypass vulnerability (CVE-2026-35616) in FortiClient Enterprise Management Server (EMS) to deliver an undocumented credential stealer called EKZ. [...]
→ Lire l'article
Critical Gogs RCE Vulnerability Lets Any Authenticated User Execute Arbitrary Code
The Hacker News
28 May 2026 · 17:24
A critical security vulnerability has been disclosed in Gogs, a popular open-source self-hosted Git service, that allows an authenticated user to execute arbitrary code under certain conditions. The security flaw, per Rapid7, is rated 9.4 on the CVSS scoring system. It does not have a CVE identifier. "The vulnerability allows any authenticated user to achieve remote code execution (RCE) on
→ Lire l'article
Geordie Raises $30 Million for AI Security and Governance Platform
SecurityWeek
28 May 2026 · 17:07
The funding round was led by Balderton Capital, with additional support from Crosspoint Capital and previous investors General Catalyst and Ten Eleven Ventures. The post Geordie Raises $30 Million for AI Security and Governance Platform appeared first on SecurityWeek .
→ Lire l'article
Less panic patching, more precision
Cisco Talos
28 May 2026 · 16:00
In this newsletter, Thor breaks down why you should stop relying solely on CVSS and start using EPSS and GCVE to focus your patching efforts on the threats that actually matter.
→ Lire l'article
Threat Actors Exploit Critical FortiClient EMS Flaw to Deploy Credential Stealer
The Hacker News
28 May 2026 · 15:26
Threat actors are continuing to exploit a critical, now-patched security flaw impacting FortiClient Endpoint Management Server (EMS) deployments to deliver credential-stealing malware. "The campaign abused trusted endpoint management infrastructure to deliver malware across managed endpoints," Arctic Wolf said. "Threat actors disguised the credential stealer payload as a Fortinet endpoint
→ Lire l'article
Carnival Data Breach Exposed 6 Million People
SecurityWeek
28 May 2026 · 14:45
Data breach leaves nearly 6 million Carnival customers navigating identity theft risks. The post Carnival Data Breach Exposed 6 Million People appeared first on SecurityWeek .
→ Lire l'article
New Gogs zero-day flaw lets hackers get remote code execution
BleepingComputer
28 May 2026 · 14:25
An unpatched zero-day vulnerability in the Gogs self-hosted Git service can allow attackers to gain remote code execution (RCE) on Internet-facing instances. [...]
→ Lire l'article
How SIEM helps MSPs reduce noise and stop threats faster
BleepingComputer
28 May 2026 · 14:01
MSPs don't lack security data. They struggle to separate real threats from alert noise. Kaseya explains how SIEM helps MSPs improve visibility, reduce fatigue, and respond faster. [...]
→ Lire l'article
Microsoft Slams Public Zero-Day Disclosures Amid GitHub Researcher Account Removal
The Hacker News
28 May 2026 · 13:53
Microsoft has come out strongly in favor of Coordinated Vulnerability Disclosure (CVD), urging the research community to share their findings and give affected vendors an opportunity to better understand the impact and address them before they are publicly disclosed. The development comes after a researcher named Chaotic Eclipse (aka Nightmare-Eclipse) disclosed details of multiple zero-day
→ Lire l'article
ThreatsDay Bulletin: Claude Security Plugin, Azure Priv-Esc, Kali365 MFA Bypass, FIFA Scams +15 More
The Hacker News
28 May 2026 · 13:33
Every time you think the industry has finally stopped doing some reckless, low-effort crap, somebody spins up a fresh box full of sketchy loaders, fake installers, recycled social-engineering bait, and enough exposed infrastructure to make you wonder if prod is just a public beta now - meanwhile some researcher casually drops a technique that turns a "minor" foothold into total account
→ Lire l'article
Sources surveillées
BleepingComputerThe Hacker NewsKrebs on SecurityCERT-FRCisco TalosSecurityWeekDark Reading