Aggregator
Cruise giant Carnival confirms data breach affecting nearly 6 million people
Drupal security advisory (AV26-518)
Microsoft Slams Public Zero-Day Disclosures Amid GitHub Researcher Account Removal
Microsoft’s Copilot trust test: Zero findings, more models, wider oversight
Microsoft 365 Copilot and Copilot Chat (Copilot) have been recertified under ISO/IEC 42001:2023 by an independent auditor for the second consecutive year. Copilot first received ISO 42001 certification in March 2025. This year’s recertification recorded zero non-conformities and zero improvement observations, resulting in a second audit in a row. The certification evaluates the AI management system in areas including governance, risk assessment, data management, transparency, human oversight, and supplier management. Microsoft 365 Copilot is an … More →
The post Microsoft’s Copilot trust test: Zero findings, more models, wider oversight appeared first on Help Net Security.
“新型威胁智能防御”专题征稿
How Cloud Infrastructures Are Becoming Weapons of Attack
In our latest Cyber Insight report, we analyze a politically motivated DDoS attack on a defense contractor. This was a Layer 7 attack, rather than a classic volumetric flood at the network level: it involved targeted pressure on the application layer. Each request must be evaluated by the WAF, involving rate limiting, session tracking, and […]
The post How Cloud Infrastructures Are Becoming Weapons of Attack appeared first on Link11.
Microsoft’s stance on zero day exploits is a dumpster fire of their own making
Canadian man gets 33 years for using social media to coerce US children into sending sexual content
ThreatsDay Bulletin: Claude Security Plugin, Azure Priv-Esc, Kali365 MFA Bypass, FIFA Scams +15 More
CVE-2025-38619 | Linux Kernel up to 6.12.41/6.15.9/6.16.0 ti_csi2rx_start_dma denial of service (Nessus ID 276629 / WID-SEC-2025-1898)
CVE-2025-38620 | Linux Kernel up to 6.16.0 blk_mq_free_tag_set use after free (WID-SEC-2025-1898)
CVE-2025-38617 | Linux Kernel up to 6.16.0 packet_set_ring/packet_notifier race condition (Nessus ID 264665 / WID-SEC-2025-1898)
CVE-2025-38618 | Linux Kernel up to 6.17-rc1 vsock accept use after free (Nessus ID 260273 / WID-SEC-2025-1898)
CVE-2025-38616 | Linux Kernel up to 6.12.42/6.15.10/6.16.1/6.17-rc1 tls out-of-bounds (Nessus ID 266176 / WID-SEC-2025-1898)
CVE-2024-58239 | Linux Kernel up to 6.7.6 tls recv infinite loop (Nessus ID 265792 / WID-SEC-2025-1898)
Не смогли взломать удалённо — приехали лично. Спецслужбы описали самую наглую группировку года
Chinese-speaking fraud gang could be stealing millions from 2026 World Cup fans
Russia conducting daily attacks on UK 'from seabed to cyberspace,' spy chief warns
Social Engineering in the AI Age: How Offense Has Evolved and How to Defend
Social engineering has always worked because it targets the one component no firewall can patch, human judgment. What has changed […]
The post Social Engineering in the AI Age: How Offense Has Evolved and How to Defend appeared first on HawkEye.