Mensuel Shaarli

Tous les liens d'un mois sur une page.

April, 2026

Copy Fail — CVE-2026-31431
thumbnail

Copy Fail (CVE-2026-31431): a 732-byte Linux LPE — straight-line, no race, no per-distro offsets. Same Python script roots Ubuntu, Amazon Linux, RHEL, SUSE since 2017. Page-cache write bypasses on-disk file-integrity tools and crosses container boundaries. Found by Xint Code.

Discord group accessed Anthropic’s Mythos

Anthropic is investigating unauthorized access to its Mythos cybersecurity model by a Discord group, raising fresh questions about control of powerful AI hacking tools.

Microsoft SharePoint Server 0-Day Vulnerability Actively Exploited in Attacks
thumbnail

A critical zero-day spoofing vulnerability in Microsoft SharePoint Server is being actively exploited in the wild, Microsoft confirmed on April 14, 2026, as part of its monthly security update cycle.

L'État français lâche Windows pour Linux et veut se désensibiliser des outils américains
thumbnail

Le gouvernement a tenu un séminaire interministériel pour accélérer la réduction des dépendances numériques extra-européennes. Il en ressort une migration de Microsoft vers Linux, et un plan d'action ministériel à rendre d'ici l'automne.

Cisco Patches 9.8 CVSS IMC and SSM Flaws Allowing Remote System Compromise
thumbnail

Cisco patches two 9.8 CVSS flaws (CVE-2026-20093, CVE-2026-20160), preventing authentication bypass and root access.

Notepad++ Vulnerability Allows Attackers to Crash Application, Leak Memory Data
thumbnail

A security vulnerability has been identified in Notepad++, one of the most widely used open-source text editors among developers and IT professionals.

The zero-days are numbered

AI security tools help Firefox uncover and fix hundreds of vulnerabilities, shifting the balance against zero-day exploits.

Vercel Breach Tied to Context AI Hack Exposes Limited Customer Credentials
thumbnail

Context.ai breach enabled Google Workspace takeover at Vercel, exposing limited customer credentials and prompting $2M data sale claim.

New PHP Composer Flaws Enable Arbitrary Command Execution — Patches Released
thumbnail

Two Composer flaws (CVE-2026-40176, CVE-2026-40261) allow command execution via Perforce configurations, prompting urgent updates.

BrowserGate

Microsoft is running one of the largest corporate espionage operations in modern history. Every time any of LinkedIn’s one billion users visits linkedin.com, hidden code searches their computer for installed software, collects the results, and transmits them to LinkedIn’s servers and to third-party companies including an American-Israeli cybersecurity firm. The user is never asked. Never told. LinkedIn’s privacy policy does not mention it. Because LinkedIn knows each user’s real name, employer, and job title, it is not searching anonymous visitors. It is searching identified people at identified companies. Millions of companies. Every day. All over the world.

Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal Credentials
thumbnail

766 hosts breached via CVE-2025-55182 in Next.js apps, enabling mass credential theft and targeted follow-on attacks.

GitHub RCE Vulnerability: CVE-2026-3854 Breakdown
thumbnail

A CVSS 8.7 vulnerability in GitHub Enterprise Server allows remote code execution. Read the threat brief and find vulnerable GHES instances from Wiz.

Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign
thumbnail

Bitwarden CLI 2026.4.0 was compromised via GitHub Actions in Checkmarx campaign, exposing secrets and distributing malicious npm code

Cerballiance confirme une cyberattaque massive et la fuite de données sensibles de laboratoires
ClickFix finds a new way to infect Macs
thumbnail

ClickFix campaigns have found a way around macOS Tahoe's warnings against pasting commands in the Terminal. They're using Script Editor instead.

Claude Mythos Preview \ red.anthropic.com
Researcher Released Windows Defender 0-Day Exploit Code, Allowing Attackers to Gain Full Access - IT Security News

A security researcher operating under the alias Chaotic Eclipse (@ChaoticEclipse0) has publicly dropped a working zero-day local privilege escalation (LPE) exploit for Windows, dubbed BlueHammer, along with full proof-of-concept (PoC) source code on GitHub. The disclosure was confirmed by vulnerability researcher Will Dormann, who…Read more →

Claude Code Source Leaked via npm Packaging Error, Anthropic Confirms
thumbnail

Claude Code 2.1.88 leak exposed 512,000 lines via npm error, fueling supply chain risks and typosquatting attacks.