📰 Actualités Cyber — 40 articles · 7 derniers jours
Collecte automatique
Cosmos EVM Flaw Exploited After Cosmos Labs Knew Every Blockchain Running It Was Vulnerable
The Hacker News
28 Aug 2026 · 20:38
Cosmos Labs has warned that a critical balance-handling flaw in the shared Cosmos EVM module was exploited to drain funds from six blockchains between August 20 and August 25, 2026.
The vulnerability, designated GHSA-7g4w-cg88-2cq2, is rated Critical by Cosmos Labs and was published without a CVE identifier, a weakness classification, or a CVSS score.
Affected versions are < 0.6.2 and >=
PaperCut releases second emergency patch for exploited flaws
BleepingComputer
28 Aug 2026 · 19:08
PaperCut has released a second emergency security update for two actively exploited vulnerabilities in its PaperCut NG and MF print management software after researchers discovered multiple ways to bypass the initial fixes. [...]
Hundreds of OpenAI Agents Invaded Hugging Face Servers
Dark Reading
28 Aug 2026 · 18:19
The Hugging Face incident was bigger and worse than previously thought, with approximately 700 agents collaborating on a sophisticated, multistage attack.
GiveWP WordPress donation plugin flaw lets hackers execute server commands
BleepingComputer
28 Aug 2026 · 18:18
A maximum-severity vulnerability in the GiveWP plugin for WordPress allows an unauthenticated attacker to execute arbitrary commands on the hosting server. [...]
Attackers Chain Two PaperCut Flaws to Execute Code Without Authentication
The Hacker News
28 Aug 2026 · 17:12
Malicious actors are exploiting a newly patched security flaw in PaperCut NG and MF to execute arbitrary code on susceptible instances, as the company released a fresh emergency fix with additional hardening.
"This vulnerability gives an unauthenticated attacker remote control over PaperCut's trusted configuration, which could be used to execute arbitrary Java code inside the application's
68-year-old imprisoned after making $1.3 million by pirating IPTV services
BleepingComputer
28 Aug 2026 · 16:36
A 68-year-old has been sentenced in the U.K. to more than six years in prison for operating an illegal IPTV (Internet Protocol Television) service that generated £980,812 ($1.3 million) over three years. [...]
Offensive Security Investments Surge as AI Threats Increase
Dark Reading
28 Aug 2026 · 16:25
Omdia's Theresa Lanowitz talks with the Dark Reading News Desk about the potential — and risks — of using agentic AI for penetration testing, red teaming, and other practices.
Android 17 Adds OS-Wide ECH to Hide Website Visits From Network Providers
The Hacker News
28 Aug 2026 · 16:20
Google on Thursday announced new network security protections in Android 17 to bolster connection privacy, address cellular vulnerabilities, and safeguard the privacy of users' home networks.
Topping the list is support for Encrypted Client Hello (ECH), a privacy standard that prevents networks from eavesdropping on which websites a user is visiting.
"This new privacy standard works in tandem
ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body
The Hacker News
28 Aug 2026 · 15:56
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical security flaw impacting ownCloud to its Known Exploited Vulnerabilities (KEV) catalog following reports that a Chinese-speaking threat actor weaponized the vulnerability to target a nuclear research body in the Philippines.
The vulnerability, tracked as CVE-2023-49105 (CVSS score: 9.8), is a case of
In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions
SecurityWeek
28 Aug 2026 · 15:35
Noteworthy stories that might have slipped under the radar: Manchester Airports Group cyberattack, Carhartt breach data was partly fake, U.S. Bank responds to ransomware gang’s claims.
The post In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions appeared first on SecurityWeek .
19 Chrome and Edge Extensions Found With Wallet-Stealing and Crypto-Draining Code
The Hacker News
28 Aug 2026 · 15:27
Cybersecurity researchers have discovered a cluster of 18 Google Chrome and one Microsoft Edge extensions that were published over the last six months and harbored wallet secret stealing and cryptocurrency draining capabilities.
The extensions, per Socket security researcher Karlo Zanki, share similarities in code and tradecraft, with evidence indicating that the campaign may have been active
AI Is Accelerating Vulnerability Discovery. Can Defenders Keep Up?
BleepingComputer
28 Aug 2026 · 14:00
AI is accelerating vulnerability discovery, putting pressure on systems built to enrich, prioritize, and remediate flaws at a slower pace. Action1 explains why defenders increasingly need to correlate multiple intelligence sources and turn vulnerability data into faster remediation. [...]
ATF Confirms Cyber Incident After Ransomware Group Claims Attack
SecurityWeek
28 Aug 2026 · 13:59
The Bureau of Alcohol, Tobacco, Firearms and Explosives has described it as a ‘major incident’ and it’s conducting an investigation with the DOJ.
The post ATF Confirms Cyber Incident After Ransomware Group Claims Attack appeared first on SecurityWeek .
Over 8,300 Gitea servers vulnerable to code execution attacks
BleepingComputer
28 Aug 2026 · 12:58
Over 8,300 Internet-exposed Gitea instances are still unpatched against a critical security flaw exploited in ongoing remote code execution attacks, according to cybersecurity watchdog Shadowserver. [...]
OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems
SecurityWeek
28 Aug 2026 · 12:36
CISA has added the exploited flaw, CVE-2026-53362, to its KEV catalog, alongside a JFrog vulnerability exploited by OpenAI agents.
The post OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems appeared first on SecurityWeek .
Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth
The Hacker News
28 Aug 2026 · 12:07
Security researcher Olivier Laflamme has disclosed two independent root remote code execution (RCE) chains affecting the Unitree G1 EDU, including a Bluetooth Low Energy (BLE) path that can reach root on the robot's Locomotion PC.
The flaws are tracked as CVE-2026-76639 and CVE-2026-76640, with the first involving a network-adjacent path through chat_go and bashrunner and the
You Need Cyber Deception for OT
Dark Reading
28 Aug 2026 · 12:00
The frustrating reality after an OT cyberattack: no data, no trail, and no history.
Toy-making giant Hasbro disclose data breach affecting employees
BleepingComputer
28 Aug 2026 · 11:46
Hasbro, one of the world's largest toy and game companies, has disclosed that attackers have accessed the personal and financial information of an undisclosed number of employees. [...]
Key Reasons Why Identity Fabric Matters in 2026
The Hacker News
28 Aug 2026 · 11:30
An Identity Fabric knits fragmented identity systems into a coherent layer that observes how identities behave across applications, APIs, and infrastructure. As enterprise access spans more cloud services and automated workloads, identity security depends less on static configuration and more on runtime visibility. This article covers the architecture, the risks of unmanaged identities, and
Defining an AI Kill Switch Is Hard, but Necessary
Dark Reading
28 Aug 2026 · 11:30
Proposed legislation could mandate that companies be able to "throttle, suspend, or shut ... down" AI agents, but how and when to do that remain open questions.
Three CVSS 10.0 ServiceNow Flaws Could Let Unauthenticated Attackers Execute Code and SQL
The Hacker News
28 Aug 2026 · 11:20
ServiceNow has released patches for four security flaws impacting the ServiceNow AI Platform, three of them rated 10.0 on the CVSS scoring system and exploitable, in certain circumstances, by an unauthenticated attacker.
The company said it deployed a security update to hosted instances and provided the update to its partners and self-hosted customers, which leaves organizations that run their
Tech, Cybersecurity Giants Unite Behind OpenAI-Led Cyber Defense Pledge
SecurityWeek
28 Aug 2026 · 11:01
Nearly 130 tech and cybersecurity companies back a collective call to boost cyber defenses as AI-enabled attacks grow more sophisticated.
The post Tech, Cybersecurity Giants Unite Behind OpenAI-Led Cyber Defense Pledge appeared first on SecurityWeek .
The Vulnpocalypse Is Repricing the Bug Bounty Economy
Dark Reading
28 Aug 2026 · 11:00
The surge of AI-powered vulnerability reports is driving down bug bounty prices, and that could spell trouble for independent researchers.
China-Made ZBT Routers Ship With Two Implants Giving Unauthenticated Attackers Root Access
The Hacker News
28 Aug 2026 · 10:58
VulnCheck has disclosed two previously undocumented factory implants in firmware for routers built by Shenzhen Zhibotong Electronics (ZBT), each of which gives an unauthenticated remote attacker the ability to run commands as root on affected devices.
The implants, named SPEAKINGSTONE and DARKLANTERN by the company's zero-day research team, are tracked as CVE-2026-74232 and CVE-2026-74233.
Think You’ve Eliminated Chinese AI? Check the Model’s Lineage, Cisco Says
SecurityWeek
28 Aug 2026 · 10:30
New research shows that country-of-origin labels can obscure an AI model’s upstream dependencies, inherited behaviors and potential security risks.
The post Think You’ve Eliminated Chinese AI? Check the Model’s Lineage, Cisco Says appeared first on SecurityWeek .
ServiceNow warns of three max severity security vulnerabilities
BleepingComputer
28 Aug 2026 · 10:29
ServiceNow released security patches for three new maximum-severity AI Platform vulnerabilities that can be exploited in code injection, SQL injection, and privilege escalation attacks. [...]
Critical cPanel Flaw Could Let One Hosting Customer Take Root Control of a Whole Server
The Hacker News
28 Aug 2026 · 09:45
cPanel has released patches for a security flaw affecting domain parking and addon domain functionality in cPanel and WebHost Manager (WHM), which could allow code execution as the root user.
The vulnerability, assigned the CVE identifier CVE-2026-65643, impacts all supported versions of cPanel & WHM.
cPanel described the issue as a critical security vulnerability and said that an
Windows 11 KB5120998 update released with 35 changes and fixes
BleepingComputer
28 Aug 2026 · 09:10
Microsoft released the KB5120998 preview cumulative update for Windows 11 versions 25H2 and 24H2, which comes with 35 changes, including improvements to the Start menu, taskbar, and Windows search. [...]
PaperCut Releases Emergency Patch for Exploited Zero-Day
SecurityWeek
28 Aug 2026 · 08:40
A CVE identifier has not yet been assigned, but PaperCut is urging NG/MF users to install patches and implement mitigations.
The post PaperCut Releases Emergency Patch for Exploited Zero-Day appeared first on SecurityWeek .
PaperCut Zero-Day Exploited in Attacks, Affecting All NG and MF Versions
The Hacker News
28 Aug 2026 · 08:25
PaperCut has alerted customers that bad actors are actively exploiting a vulnerability impacting all versions of its PaperCut NG and PaperCut MF print management software in zero-day attacks.
The company has released an emergency patch for v25 and v26 to address the issue. It said it's "aware of confirmed customer incidents and is treating this matter with the highest priority." An
APT28-Linked HOOKEDGE Backdoor Targets European Government and Diplomatic Organizations
The Hacker News
28 Aug 2026 · 08:20
Cybersecurity researchers have flagged a fresh set of campaigns targeting government and diplomatic organizations in Romania, Spain, and Türkiye between late September 2025 and early April 2026.
These campaigns, per Recorded Future Insikt Group, have led to the deployment of a previously undocumented backdoor dubbed HOOKEDGE, a lightweight Windows batch script that's distributed via
Multiples vulnérabilités dans le noyau Linux de Debian (28 août 2026)
CERT-FR
28 Aug 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans le noyau Linux de Debian. Elles permettent à un attaquant de provoquer une élévation de privilèges, une atteinte à la confidentialité des données et un déni de service.
Multiples vulnérabilités dans le noyau Linux de SUSE (28 août 2026)
CERT-FR
28 Aug 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un attaquant de provoquer une atteinte à la confidentialité des données, une atteinte à l'intégrité des données et un contournement de la politique de sécurité.
Multiples vulnérabilités dans Tenable Enclave Security (28 août 2026)
CERT-FR
28 Aug 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans Tenable Enclave Security. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.
Multiples vulnérabilités dans le noyau Linux de Red Hat (28 août 2026)
CERT-FR
28 Aug 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans le noyau Linux de Red Hat. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire, une élévation de privilèges et un déni de service à distance.
Multiples vulnérabilités dans les produits IBM (28 août 2026)
CERT-FR
28 Aug 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation de privilèges et un déni de service à distance.
Multiples vulnérabilités dans le noyau Linux d'Ubuntu (28 août 2026)
CERT-FR
28 Aug 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans le noyau Linux d'Ubuntu. Certaines d'entre elles permettent à un attaquant de provoquer une élévation de privilèges, une atteinte à la confidentialité des données et une atteinte à l'intégrité des données.
Multiples vulnérabilités dans Papercut (28 août 2026)
CERT-FR
28 Aug 2026 · 00:00
De multiples vulnérabilités ont été découvertes dans Papercut. Elles permettent à un attaquant de contourner l'authentification et d'exécuter du code arbitraire à distance. Papercut indique que ces vulnérabilités sont activement exploitées. L'éditeur explique que le correctif bloque les requêtes...
Nearly 700 rogue AI agents coordinated in the Hugging Face attack
BleepingComputer
27 Aug 2026 · 21:38
New details about the July attack on Hugging Face reveal that hundreds of AI agents driven by OpenAI's internal IM1 model coordinated the compromise through an unauthorized message board. [...]
OpenAI Says Reward Hacking Drove AI Agents to Exploit Zero-Days and Breach Hugging Face
The Hacker News
27 Aug 2026 · 18:36
OpenAI on Wednesday revealed that reward hacking was a key driver behind the artificial intelligence (AI)-powered hack of Hugging Face last month, adding that it found evidence of misaligned behavior as early as late May.
The incident, the company said, took place during cybersecurity evaluations of several OpenAI models, and that it was mainly fueled by what it described as a "highly capable