Information Security
Статистика- Последний пост
- 14 авг.
- Последнее чтение
- 15 авг.
- Постов за неделю
- 31
- Всего постов
- 31
- Тип
- открытый
- Язык
- und
- Категория
- Новости и СМИ (по похожим)
- В каталоге с
- 13 авг.
- 1/24сутки в ленте
- 173
- 1/48двое суток
- 198
- 1/72трое суток
- 213
Медиана по постам, которые мы застали свежими и померили через сутки.
Посты
14,000 Trezor Customers Impacted by Data Breach at ShipMonk https://www.securityweek.com/14000-trezor-customers-impacted-by-data-breach-at-shipmonk/ Hackers stole the customers’ shipping information, including names, addresses, email addresses, and phone numbers. The post 14,000 Trezor Customers Impacted by Data Breach at ShipMonk (https://www.securityweek.com/14000-trezor-customers-impacted-by-data-breach-at-shipmonk/) appeared first on SecurityWeek (https://www.securityweek.com/).
Hackers Exploiting Unpatched GeoServer Zero-Day https://www.securityweek.com/hackers-exploiting-unpatched-geoserver-zero-day/ The security defect is described as an SQL injection that could allow attackers to achieve remote code execution. The post Hackers Exploiting Unpatched GeoServer Zero-Day (https://www.securityweek.com/hackers-exploiting-unpatched-geoserver-zero-day/) appeared first on SecurityWeek (https://www.securityweek.com/).
AmnesiaStealer macOS Malware Steals Data, Controls Browser Sessions https://www.securityweek.com/amnesiastealer-macos-malware-steals-data-controls-browser-sessions/ The Rust-based macOS infostealer harvests users’ passwords, keychain information, Chromium-based browser data, and Safari cookies. The post AmnesiaStealer macOS Malware Steals Data, Controls Browser Sessions (https://www.securityweek.com/amnesiastealer-macos-malware-steals-data-controls-browser-sessions/) appeared first on SecurityWeek (https://www.securityweek.com/).
Cybersecurity M&A Roundup: 21 Deals Announced in July 2026 https://www.securityweek.com/cybersecurity-ma-roundup-21-deals-announced-in-july-2026/ Significant cybersecurity M&A deals announced by Barracuda, CrowdStrike, Cyera, Okta, Palo Alto Networks, and Qualcomm. The post Cybersecurity M&A Roundup: 21 Deals Announced in July 2026 (https://www.securityweek.com/cybersecurity-ma-roundup-21-deals-announced-in-july-2026/) appeared first on SecurityWeek (https://www.securityweek.com/).
Adobe Commerce Bug Targeted Immediately After Disclosure https://www.securityweek.com/adobe-commerce-bug-targeted-immediately-after-disclosure/ The first exploitation attempts targeting CVE-2026-71362 were observed shortly after Adobe released patches. The post Adobe Commerce Bug Targeted Immediately After Disclosure (https://www.securityweek.com/adobe-commerce-bug-targeted-immediately-after-disclosure/) appeared first on SecurityWeek (https://www.securityweek.com/).
WordPress 7.0.4 Patches Remote Code Execution Vulnerability https://www.securityweek.com/wordpress-7-0-4-patches-remote-code-execution-vulnerability/ Attackers with Author-level user or higher permissions could exploit the flaw via malicious Postscript files. The post WordPress 7.0.4 Patches Remote Code Execution Vulnerability (https://www.securityweek.com/wordpress-7-0-4-patches-remote-code-execution-vulnerability/) appeared first on SecurityWeek (https://www.securityweek.com/).
Venture Firm Team8 Secures Additional $365 Million https://www.securityweek.com/venture-firm-team8-secures-additional-365-million/ The Israeli company has nearly $2 billion in total assets under management since 2014. The post Venture Firm Team8 Secures Additional $365 Million (https://www.securityweek.com/venture-firm-team8-secures-additional-365-million/) appeared first on SecurityWeek (https://www.securityweek.com/).
Fortinet Patches Authentication Flaws in FortiWeb and FortiManager https://www.securityweek.com/fortinet-patches-authentication-flaws-in-fortiweb-and-fortimanager/ The vulnerabilities could allow attackers to log in with random usernames and passwords or impersonate any FortiGate appliance. The post Fortinet Patches Authentication Flaws in FortiWeb and FortiManager (https://www.securityweek.com/fortinet-patches-authentication-flaws-in-fortiweb-and-fortimanager/) appeared first on SecurityWeek (https://www.securityweek.com/).
White House Mobilizes Security Firms for Operations Against Foreign Cybercrime Gangs https://www.securityweek.com/white-house-mobilizes-security-firms-for-operations-against-foreign-cybercrime-gangs/ Contracts may require a $1 million bond, which will be forfeited if a company fails to comply with operational requirements. The post White House Mobilizes Security Firms for Operations Against Foreign Cybercrime Gangs (https://www.securityweek.com/white-house-mobilizes-security-firms-for-operations-against-foreign-cybercrime-gangs/) appeared first on SecurityWeek (https://www.securityweek.com/).
Critical VMware vCenter Vulnerability in Attackers’ Crosshairs https://www.securityweek.com/critical-vmware-vcenter-vulnerability-in-attackers-crosshairs/ Tracked as CVE-2026–59310, the directory traversal bug allows remote attackers to execute arbitrary code. The post Critical VMware vCenter Vulnerability in Attackers’ Crosshairs (https://www.securityweek.com/critical-vmware-vcenter-vulnerability-in-attackers-crosshairs/) appeared first on SecurityWeek (https://www.securityweek.com/).
Nightmare Eclipse Drops Windows Zero-Day Exploit ‘ShieldBreak’ https://www.securityweek.com/nightmare-eclipse-drops-windows-zero-day-exploit-shieldbreak/ Dropped on Patch Tuesday, the exploit allows any user to spawn a shell with System privileges. The post Nightmare Eclipse Drops Windows Zero-Day Exploit ‘ShieldBreak’ (https://www.securityweek.com/nightmare-eclipse-drops-windows-zero-day-exploit-shieldbreak/) appeared first on SecurityWeek (https://www.securityweek.com/).
SharePoint Vulnerability Exploited Shortly After PoC Release https://www.securityweek.com/sharepoint-vulnerability-exploited-shortly-after-poc-release/ The vulnerability was patched by Microsoft in July and CISA warned that it could end up being exploited in the wild. The post SharePoint Vulnerability Exploited Shortly After PoC Release (https://www.securityweek.com/sharepoint-vulnerability-exploited-shortly-after-poc-release/) appeared first on SecurityWeek (https://www.securityweek.com/).
Mindgard Raises $30 Million to Protect AI Systems https://www.securityweek.com/mindgard-raises-30-million-to-protect-ai-systems/ The cybersecurity startup will use the fresh investment to scale its product, engineering, sales, and marketing teams. The post Mindgard Raises $30 Million to Protect AI Systems (https://www.securityweek.com/mindgard-raises-30-million-to-protect-ai-systems/) appeared first on SecurityWeek (https://www.securityweek.com/).
Stealthy ‘City-Forum’ Attacks Target Salesforce and ServiceNow With Custom Toolset https://www.securityweek.com/stealthy-city-forum-attacks-target-salesforce-and-servicenow-with-custom-toolset/ Researchers observed the novel campaign exploiting unauthenticated guest access to quietly enumerate and exfiltrate exposed data from both platforms. The post Stealthy ‘City-Forum’ Attacks Target Salesforce and ServiceNow With Custom Toolset (https://www.securityweek.com/stealthy-city-forum-attacks-target-salesforce-and-servicenow-with-custom-toolset/) appeared first on SecurityWeek (https://www.securityweek.com/).
WhatsApp Unveils New Scam Alert Feature https://www.securityweek.com/whatsapp-unveils-new-scam-alert-feature/ Signal has also made a security announcement: an automatic key verification feature to complement its safety number system. The post WhatsApp Unveils New Scam Alert Feature (https://www.securityweek.com/whatsapp-unveils-new-scam-alert-feature/) appeared first on SecurityWeek (https://www.securityweek.com/).
Ceva Logistics Operations Disrupted by Cyberattack https://www.securityweek.com/ceva-logistics-operations-disrupted-by-cyberattack/ Affecting European contract logistics operations at eight Ceva warehouses, the incident caused shipment delays for multiple customers. The post Ceva Logistics Operations Disrupted by Cyberattack (https://www.securityweek.com/ceva-logistics-operations-disrupted-by-cyberattack/) appeared first on SecurityWeek (https://www.securityweek.com/).
SonicWall Patches Critical Vulnerabilities in Discontinued GMS Platform https://www.securityweek.com/sonicwall-patches-critical-vulnerabilities-in-discontinued-gms-platform/ The security defects could allow unauthenticated attackers to execute arbitrary code remotely and read sensitive data. The post SonicWall Patches Critical Vulnerabilities in Discontinued GMS Platform (https://www.securityweek.com/sonicwall-patches-critical-vulnerabilities-in-discontinued-gms-platform/) appeared first on SecurityWeek (https://www.securityweek.com/).
Cisco Patches Firewall Zero-Day Exploited for DoS Attacks https://www.securityweek.com/cisco-patches-firewall-zero-day-exploited-for-dos-attacks/ CVE-2026-20349 can be exploited remotely without authentication against Secure Firewall ASA and FTD devices. The post Cisco Patches Firewall Zero-Day Exploited for DoS Attacks (https://www.securityweek.com/cisco-patches-firewall-zero-day-exploited-for-dos-attacks/) appeared first on SecurityWeek (https://www.securityweek.com/).
August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day https://www.securityweek.com/august-2026-patch-tuesday-microsoft-fixes-421-cves-one-exploited-zero-day/ A use-after-free in the afd.sys Windows kernel-mode driver has been exploited to gain SYSTEM privileges. The post August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day (https://www.securityweek.com/august-2026-patch-tuesday-microsoft-fixes-421-cves-one-exploited-zero-day/) appeared first on SecurityWeek (https://www.securityweek.com/).
Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws https://www.securityweek.com/adobe-urges-immediate-patching-of-critical-coldfusion-campaign-classic-flaws/ The security defects could be exploited for arbitrary code execution and denial-of-service. The post Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws (https://www.securityweek.com/adobe-urges-immediate-patching-of-critical-coldfusion-campaign-classic-flaws/) appeared first on SecurityWeek (https://www.securityweek.com/).