Mensuel Shaarli

Tous les liens d'un mois sur une page.

December, 2023

Operation Triangulation: The last (hardware) mystery
thumbnail

Recent iPhone models have additional hardware-based security protection for sensitive regions of the kernel memory. We discovered that to bypass this hardware-based security protection, the attackers used another hardware feature of Apple-designed SoCs.

MongoDB says customer data was exposed in a cyberattack
thumbnail

MongoDB is warning that its corporate systems were breached and that customer data was exposed in a cyberattack that was detected by the company earlier this week.

WordPress Releases Update 6.4.2 to Address Critical Remote Attack Vulnerability
thumbnail

WordPress version 6.4.2 fixes a vulnerability that could allow attackers to execute arbitrary PHP code.

New Relic admits attack on staging systems, user accounts • The Register
thumbnail

Ongoing investigation found evidence of stolen employee creds and social engineering

Cyberattack – November 2023 — blender.org
thumbnail
Google Cloud Resolves Privilege Escalation Flaw Impacting Kubernetes Service
thumbnail

Google Cloud addresses medium-severity security flaw! Attackers with Kubernetes cluster access could escalate privileges.

État de la menace ciblant le secteur des télécommunications – CERT-FR
Intelligence artificielle : ce que contient le compromis "historique" sur lequel s'est accordée l'Union européenne
thumbnail

Les Etats-membres de l'UE et le Parlement européen se sont accordés sur un texte pour encadrer l'utilisation et le développement de l'intelligence artificielle. Une législation inédite à l'échelle mondiale.

Sellafield nuclear site hacked by groups linked to Russia and China
Les ministres français invités à désinstaller WhatsApp, Signal et Telegram
thumbnail

INFO LE POINT. À partir du 8 décembre, les membres du gouvernement devront utiliser les applications de messagerie françaises Tchap ou Olvid.

Title insurance giant First American offline after cyberattack
thumbnail

First American Financial Corporation, the second-largest title insurance company in the United States, took some of its systems offline today to contain the impact of a cyberattack.

ASSET Research Group: 5Ghoul
Attaque massive en cours provenant de Ledger – N'utilisez aucune application décentralisée crypto (dApp)
thumbnail

Une attaque d'ampleur massive a actuellement lieu et pourrait concerner toutes les applications décentralisées de l'écosytème.

SolarWinds and CISO face SEC scrutiny for misleading statements By Investing.com
thumbnail
Fake WordPress security advisory pushes backdoor plugin
thumbnail

WordPress administrators are being emailed fake WordPress security advisories for a fictitious vulnerability tracked as CVE-2023-45124 to infect sites with a malicious plugin.