Aggregator
Please support the site operations by clicking ads.
CVE-2026-67332 | better-auth up to 1.7.0-beta.3 improper authorization (EUVD-2026-51836)
Google security advisory (AV26-904)
US Government Accuses Chinese AI Firms of Distilling Frontier Models
CVE-2026-87619 | Google Chrome up to 152.0.7977.82 Prefetch cross-domain policy (Nessus ID 344269)
CVE-2026-87554 | Google Chrome up to 152.0.7977.82 Chromoting race condition (Nessus ID 344270)
CVE-2026-87567 | Google Chrome up to 152.0.7977.82 UrlFormatting clickjacking (Nessus ID 344272)
CVE-2026-87658 | Google Chrome up to 152.0.7977.82 Extensions information disclosure (Nessus ID 344271)
AdvaCare Dataset Claimed on Forum, 20,734 Timesheet Entries and 39 Staff Accounts
苹果第一台折叠 iPhone,15999 元起
Check Point security advisory (AV26-902)
N-able security advisory (AV26-885) – Update 2
FTC rescinds policy statement requiring health apps to notify customers after a breach
The policy, passed under the Biden administration, forced health apps to disclose when users’ personal health records were exposed in a breach or shared without authorization.
The post FTC rescinds policy statement requiring health apps to notify customers after a breach appeared first on CyberScoop.
Lawmakers call on Commerce to sanction hackers-for-hire
The groups have allegedly targeted American citizens and companies, including the wife of GOP Senate candidate Mike Rogers, a former representative running in a Michigan swing race.
The post Lawmakers call on Commerce to sanction hackers-for-hire appeared first on CyberScoop.
Можно ли украсть нейросеть через её ответы? США говорят, что Китай делает это массово
U.S. Disrupts Xinbi Guarantee Scam Marketplace, Freezes $52.8 Million in Crypto
US Agencies Warn Chinese AI Firms Are Extracting Advanced AI Models
Grindr settles privacy lawsuit tied to disclosure of users’ HIV statuses for $35 million
За Нептуном нашли капсулу времени возрастом 4 млрд лет
Passkey-themed social engineering leads to identity and cloud compromise
Passkey-themed social engineering is being used to compromise identities and enable broader cloud attacks. Learn how threat actors establish MFA persistence, abuse Microsoft Graph for reconnaissance, and access SharePoint, OneDrive, and email data, along with key detection and mitigation guidance.
The post Passkey-themed social engineering leads to identity and cloud compromise appeared first on Microsoft Security Blog.