www.secnews.physaphae.fr This is the RSS 2.0 feed from www.secnews.physaphae.fr. IT's a simple agragated flow of multiple articles soruces. Liste of sources, can be found on www.secnews.physaphae.fr. 2025-05-10T12:05:07+00:00 www.secnews.physaphae.fr Bleeping Computer - Magazine Américain Ascension indique que la violation des données récente affecte plus de 430 000 patients<br>Ascension says recent data breach affects over 430,000 patients Ascension, one of the largest private healthcare systems in the United States, has revealed that a data breach disclosed last month affects the personal and healthcare information of over 430,000 patients. [...]]]> 2025-05-09T14:48:15+00:00 https://www.bleepingcomputer.com/news/security/ascension-says-recent-data-breach-affects-over-430-000-patients/ www.secnews.physaphae.fr/article.php?IdArticle=8673808 False Data Breach,Medical None None Bleeping Computer - Magazine Américain FBI: routeurs de fin de vie piratés pour les réseaux de proxy cybercriminaux<br>FBI: End-of-life routers hacked for cybercrime proxy networks The FBI warns that threat actors are deploying malware on end-of-life (EoL) routers to convert them into proxies sold on the 5Socks and Anyproxy networks. [...]]]> 2025-05-08T18:15:39+00:00 https://www.bleepingcomputer.com/news/security/fbi-end-of-life-routers-hacked-for-cybercrime-proxy-networks/ www.secnews.physaphae.fr/article.php?IdArticle=8673429 False Malware,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain L'attaque de la chaîne d'approvisionnement frappe le package NPM avec 45 000 téléchargements hebdomadaires<br>Supply chain attack hits npm package with 45,000 weekly downloads An npm package named \'rand-user-agent\' has been compromised in a supply chain attack to inject obfuscated code that activates a remote access trojan (RAT) on the user\'s system. [...]]]> 2025-05-08T15:03:24+00:00 https://www.bleepingcomputer.com/news/security/supply-chain-attack-hits-npm-package-with-45-000-weekly-downloads/ www.secnews.physaphae.fr/article.php?IdArticle=8673394 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Le package PYPI malveillant cache les logiciels malveillants de rat, cible les développeurs discords depuis 2022<br>Malicious PyPi package hides RAT malware, targets Discord devs since 2022 A malicious Python package targeting Discord developers with remote access trojan (RAT) malware was spotted on the Python Package Index (PyPI) after more than three years. [...]]]> 2025-05-08T14:51:14+00:00 https://www.bleepingcomputer.com/news/security/malicious-pypi-package-hides-rat-malware-targets-discord-devs-since-2022/ www.secnews.physaphae.fr/article.php?IdArticle=8673352 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain VC Giant Insight Partners confirme les données sur les investisseurs volés en violation<br>VC giant Insight Partners confirms investor data stolen in breach Venture capital firm Insight Partners has confirmed that sensitive data for employees and limited partners was stolen in a January 2025 cyberattack. [...]]]> 2025-05-08T11:01:39+00:00 https://www.bleepingcomputer.com/news/security/vc-giant-insight-partners-confirms-investor-data-stolen-in-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8673264 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Google relie les nouveaux logiciels malveillants du vol de données LostKeys aux cyberespaces russes<br>Google links new LostKeys data theft malware to Russian cyberspies Since the start of the year, the Russian state-backed ColdRiver hacking group has been using new LostKeys malware to steal files in espionage attacks targeting Western governments, journalists, think tanks, and non-governmental organizations. [...]]]> 2025-05-08T09:39:15+00:00 https://www.bleepingcomputer.com/news/security/google-links-new-lostkeys-data-theft-malware-to-russian-cyberspies/ www.secnews.physaphae.fr/article.php?IdArticle=8673236 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Gang de ransomware de verrouillage piraté, négociations de victimes exposées<br>LockBit ransomware gang hacked, victim negotiations exposed The LockBit ransomware gang has suffered a data breach after its dark web affiliate panels were defaced and replaced with a message linking to a MySQL database dump. [...]]]> 2025-05-07T20:06:32+00:00 https://www.bleepingcomputer.com/news/security/lockbit-ransomware-gang-hacked-victim-negotiations-exposed/ www.secnews.physaphae.fr/article.php?IdArticle=8672984 False Ransomware,Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain Hacker PowerSchool extorquant maintenant des districts scolaires individuels<br>PowerSchool hacker now extorting individual school districts PowerSchool is warning that the hacker behind its December cyberattack is now individually extorting schools, threatening to release the previously stolen student and teacher data if a ransom is not paid. [...]]]> 2025-05-07T14:25:39+00:00 https://www.bleepingcomputer.com/news/security/powerschool-hacker-now-extorting-individual-school-districts/ www.secnews.physaphae.fr/article.php?IdArticle=8672894 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Jouer au ransomware exploité Windows Logging Flaw en attaques zéro jour<br>Play ransomware exploited Windows logging flaw in zero-day attacks The Play ransomware gang has exploited a high-severity Windows Common Log File System flaw in zero-day attacks to gain SYSTEM privileges and deploy malware on compromised systems. [...]]]> 2025-05-07T10:45:19+00:00 https://www.bleepingcomputer.com/news/security/play-ransomware-exploited-windows-logging-flaw-in-zero-day-attacks/ www.secnews.physaphae.fr/article.php?IdArticle=8672809 False Ransomware,Malware,Vulnerability,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain NSO Group a condamné à une amende de 167 millions de dollars pour les attaques de logiciels espions sur 1 400 utilisateurs de WhatsApp<br>NSO Group fined $167M for spyware attacks on 1,400 WhatsApp users A U.S. federal jury has ordered Israeli spyware vendor NSO Group to pay WhatsApp $167,254,000 in punitive damages and $444,719 in compensatory damages for a 2019 campaign that targeted 1,400 users of the communication app. [...]]]> 2025-05-07T10:09:33+00:00 https://www.bleepingcomputer.com/news/legal/nso-group-fined-167m-for-spyware-attacks-on-1-400-whatsapp-users/ www.secnews.physaphae.fr/article.php?IdArticle=8672781 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Doubler vers le bas: comment universel 2ème facteur (U2F) stimule la sécurité en ligne<br>Doubling down: How Universal 2nd Factor (U2F) boosts online security Passwords alone aren\'t cutting it-31% of breaches involve stolen credentials. Learn from Specops Software about how Universal 2nd Factor (U2F) and strong password policies can work together to keep your organization secure. [...]]]> 2025-05-07T10:02:12+00:00 https://www.bleepingcomputer.com/news/security/doubling-down-how-universal-2nd-factor-u2f-boosts-online-security/ www.secnews.physaphae.fr/article.php?IdArticle=8672782 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Samsung MagicInfo 9 Server RCE Flaw maintenant exploité en attaques<br>Samsung MagicINFO 9 Server RCE flaw now exploited in attacks Hackers are exploiting an unauthenticated remote code execution (RCE) vulnerability in the Samsung MagicINFO 9 Server to hijack devices and deploy malware. [...]]]> 2025-05-06T13:10:23+00:00 https://www.bleepingcomputer.com/news/security/samsung-magicinfo-9-server-rce-flaw-now-exploited-in-attacks/ www.secnews.physaphae.fr/article.php?IdArticle=8672397 False Malware,Vulnerability None 3.0000000000000000 Bleeping Computer - Magazine Américain Flaw Critical Langflow RCE exploité pour pirater les serveurs d'applications AI<br>Critical Langflow RCE flaw exploited to hack AI app servers The U.S. Cybersecurity & Infrastructure Security Agency (CISA) has tagged a Langflow remote code execution vulnerability as actively exploited, urging organizations to apply security updates and mitigations as soon as possible. [...]]]> 2025-05-06T12:05:10+00:00 https://www.bleepingcomputer.com/news/security/critical-langflow-rce-flaw-exploited-to-hack-ai-app-servers/ www.secnews.physaphae.fr/article.php?IdArticle=8672356 False Hack,Vulnerability None 3.0000000000000000 Bleeping Computer - Magazine Américain Pourquoi l'EASM est vital pour la protection moderne des risques numériques<br>Why EASM is vital to modern digital risk protection You can\'t protect what you can\'t see. From shadow IT to supplier risk, modern attack surfaces are sprawling fast - and External Attack Surface Management (EASM) is how security teams take back control. Learn from Outpost24 how EASM powers proactive digital risk protection. [...]]]> 2025-05-06T10:01:11+00:00 https://www.bleepingcomputer.com/news/security/why-easm-is-vital-to-modern-digital-risk-protection/ www.secnews.physaphae.fr/article.php?IdArticle=8672309 False None None 4.0000000000000000 Bleeping Computer - Magazine Américain Google corrige un défaut Freetype exploité activement sur Android<br>Google fixes actively exploited FreeType flaw on Android Google has released the May 2025 security updates for Android with fixes for 45 security flaws, including an actively exploited zero-click FreeType 2 code execution vulnerability. [...]]]> 2025-05-06T09:33:38+00:00 https://www.bleepingcomputer.com/news/security/google-fixes-actively-exploited-freetype-flaw-on-android/ www.secnews.physaphae.fr/article.php?IdArticle=8672310 False Vulnerability,Mobile None 3.0000000000000000 Bleeping Computer - Magazine Américain Linux Wiper Malware caché dans des modules GO malveillants sur github<br>Linux wiper malware hidden in malicious Go modules on GitHub A supply-chain attack targets Linux servers with disk-wiping malware hidden in Golang modules published on GitHub. [...]]]> 2025-05-06T05:13:16+00:00 https://www.bleepingcomputer.com/news/security/linux-wiper-malware-hidden-in-malicious-go-modules-on-github/ www.secnews.physaphae.fr/article.php?IdArticle=8672212 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Les pirates d'extorsion de Luna Moth posent car cela aide les bureaux à abriter les entreprises américaines<br>Luna Moth extortion hackers pose as IT help desks to breach US firms The data-theft extortion group known as Luna Moth, aka Silent Ransom Group, has ramped up callback phishing campaigns in attacks on legal and financial institutions in the United States. [...]]]> 2025-05-05T18:19:42+00:00 https://www.bleepingcomputer.com/news/security/luna-moth-extortion-hackers-pose-as-it-help-desks-to-breach-us-firms/ www.secnews.physaphae.fr/article.php?IdArticle=8672034 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain NOUVEAU "Bring votre propre installateur" Bypass EDR utilisé dans Ransomware Attack<br>New "Bring Your Own Installer" EDR bypass used in ransomware attack A new "Bring Your Own Installer" EDR bypass technique is exploited in attacks to bypass SentinelOne\'s tamper protection feature, allowing threat actors to disable endpoint detection and response (EDR) agents to install the Babuk ransomware. [...]]]> 2025-05-05T16:28:34+00:00 https://www.bleepingcomputer.com/news/security/new-bring-your-own-installer-edr-bypass-used-in-ransomware-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8671996 False Ransomware,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain L'application de signal non officiel utilisée par les responsables de Trump enquête sur le piratage<br>Unofficial Signal app used by Trump officials investigates hack TeleMessage, an Israeli company that sells an unofficial Signal message archiving tool used by some U.S. government officials, has suspended all services after reportedly being hacked. [...]]]> 2025-05-05T15:11:17+00:00 https://www.bleepingcomputer.com/news/security/unofficial-signal-app-used-by-trump-officials-investigates-hack/ www.secnews.physaphae.fr/article.php?IdArticle=8671977 False Hack,Tool None 2.0000000000000000 Bleeping Computer - Magazine Américain Le Royaume-Uni partage des conseils de sécurité après les principales cyberattaques de vente au détail<br>UK shares security tips after major retail cyberattacks Following three high-profile cyberattacks impacting major UK retailers, the country\'s National Cyber Security Centre (NCSC) has published guidance that all companies are advised to follow to strengthen their cybersecurity defenses. [...]]]> 2025-05-05T11:19:18+00:00 https://www.bleepingcomputer.com/news/security/uk-shares-security-tips-after-major-retail-cyberattacks/ www.secnews.physaphae.fr/article.php?IdArticle=8671891 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain STALC MALWWare amélioré avec des mises à niveau furtives et des outils de vol de données<br>StealC malware enhanced with stealth upgrades and data theft tools The creators of StealC, a widely-used information stealer and malware downloader, have released its second major version, bringing multiple stealth and data theft enhancements. [...]]]> 2025-05-04T10:11:21+00:00 https://www.bleepingcomputer.com/news/security/stealc-malware-enhanced-with-stealth-upgrades-and-data-theft-tools/ www.secnews.physaphae.fr/article.php?IdArticle=8671473 False Malware,Tool None 3.0000000000000000 Bleeping Computer - Magazine Américain Microsoft termine l'authentificateur Mot de passe automatique, déplace les utilisateurs vers le bord<br>Microsoft ends Authenticator password autofill, moves users to Edge Microsoft has announced that it will discontinue the password storage and autofill feature in the Authenticator app starting in July and will complete the deprecation in August 2025. [...]]]> 2025-05-03T10:16:26+00:00 https://www.bleepingcomputer.com/news/security/microsoft-ends-authenticator-password-autofill-moves-users-to-edge/ www.secnews.physaphae.fr/article.php?IdArticle=8671176 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Co-op confirme le vol de données après l'attaque de DragonForce Ransomware Attack<br>Co-op confirms data theft after DragonForce ransomware claims attack The Co-op cyberattack is far worse than initially reported, with the company now confirming that data was stolen for a significant number of current and past customers. [...]]]> 2025-05-02T15:52:50+00:00 https://www.bleepingcomputer.com/news/security/co-op-confirms-data-theft-after-dragonforce-ransomware-claims-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8670716 False Ransomware None 3.0000000000000000 Bleeping Computer - Magazine Américain L'attaque de la chaîne d'approvisionnement de Magento compromet des centaines de magasins électroniques<br>Magento supply chain attack compromises hundreds of e-stores A supply chain attack involving 21 backdoored Magento extensions has compromised between 500 and 1,000 e-commerce stores, including one belonging to a $40 billion multinational. [...]]]> 2025-05-02T14:09:55+00:00 https://www.bleepingcomputer.com/news/security/magento-supply-chain-attack-compromises-hundreds-of-e-stores/ www.secnews.physaphae.fr/article.php?IdArticle=8670693 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain UK NCSC: Les cyberattaques impactant les détaillants britanniques sont un réveil<br>UK NCSC: Cyberattacks impacting UK retailers are a wake-up call The United Kingdom\'s National Cyber Security Centre warned that ongoing cyberattacks impacting multiple UK retail chains should be taken as a "wake-up call." [...]]]> 2025-05-02T09:57:31+00:00 https://www.bleepingcomputer.com/news/security/uk-ncsc-cyberattacks-impacting-uk-retailers-are-a-wake-up-call/ www.secnews.physaphae.fr/article.php?IdArticle=8670590 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Microsoft rend tous les nouveaux comptes sans mot de passe par défaut<br>Microsoft makes all new accounts passwordless by default Microsoft has announced that all new Microsoft accounts will be "passwordless by default" to secure them against password attacks such as phishing, brute force, and credential stuffing. [...]]]> 2025-05-02T03:21:24+00:00 https://www.bleepingcomputer.com/news/microsoft/microsoft-makes-all-new-accounts-passwordless-by-default/ www.secnews.physaphae.fr/article.php?IdArticle=8670460 False None None 4.0000000000000000 Bleeping Computer - Magazine Américain Les pirates abusent de la fonction de réseautage IPv6 pour détourner les mises à jour du logiciel<br>Hackers abuse IPv6 networking feature to hijack software updates A China-aligned APT threat actor named "TheWizards" abuses an IPv6 networking feature to launch adversary-in-the-middle (AitM) attacks that hijack software updates to install Windows malware. [...]]]> 2025-04-30T20:33:42+00:00 https://www.bleepingcomputer.com/news/security/hackers-abuse-ipv6-networking-feature-to-hijack-software-updates/ www.secnews.physaphae.fr/article.php?IdArticle=8670063 False Malware,Threat None 4.0000000000000000 Bleeping Computer - Magazine Américain Plugin WordPress déguisé en outil de sécurité injecte de la porte dérobée<br>WordPress plugin disguised as a security tool injects backdoor A new malware campaign targeting WordPress sites employs a malicious plugin disguised as a security tool to trick users into installing and trusting it. [...]]]> 2025-04-30T17:05:46+00:00 https://www.bleepingcomputer.com/news/security/wordpress-plugin-disguised-as-a-security-tool-injects-backdoor/ www.secnews.physaphae.fr/article.php?IdArticle=8670045 False Malware,Tool None 2.0000000000000000 Bleeping Computer - Magazine Américain Commvault affirme que les violations récentes n'ont pas eu d'impact sur les données de sauvegarde des clients<br>Commvault says recent breach didn\\'t impact customer backup data Commvault, a leading provider of data protection solutions, says a nation-state threat actor who breached its Azure environment didn\'t gain access to customer backup data. [...]]]> 2025-04-30T12:20:53+00:00 https://www.bleepingcomputer.com/news/security/commvault-says-recent-breach-didnt-impact-customer-backup-data/ www.secnews.physaphae.fr/article.php?IdArticle=8670007 False Threat None 2.0000000000000000 Bleeping Computer - Magazine Américain Le détaillant britannique Co-op ferme certains systèmes informatiques après la tentative de piratage<br>UK retailer Co-op shuts down some IT systems after hack attempt British supermarket chain Co-op Food has confirmed to BleepingComputer via a statement that it has suffered limited operational disruption as it responds to a cyberattack. [...]]]> 2025-04-30T10:12:54+00:00 https://www.bleepingcomputer.com/news/security/uk-retailer-co-op-shuts-down-some-it-systems-after-hack-attempt/ www.secnews.physaphae.fr/article.php?IdArticle=8669968 False Hack None 2.0000000000000000 Bleeping Computer - Magazine Américain Ascension révèle une nouvelle violation de données après un incident de piratage tiers<br>Ascension discloses new data breach after third-party hacking incident ​Ascension, one of the largest private healthcare systems in the United States, is notifying patients that their personal and health information was stolen in a December 2024 data theft attack, which affected a former business partner. [...]]]> 2025-04-30T09:21:31+00:00 https://www.bleepingcomputer.com/news/security/ascension-discloses-new-data-breach-after-third-party-hacking-incident/ www.secnews.physaphae.fr/article.php?IdArticle=8669969 False Data Breach,Medical None 2.0000000000000000 Bleeping Computer - Magazine Américain SK Telecom Cyberattack: remplacements SIM gratuits pour 25 millions de clients<br>SK Telecom cyberattack: Free SIM replacements for 25 million customers South Korean mobile provider SK Telecom has announced free SIM card replacements to its 25 million mobile customers following a recent USIM data breach, but only 6 million cards are available through May. [...]]]> 2025-04-29T12:49:53+00:00 https://www.bleepingcomputer.com/news/security/sk-telecom-cyberattack-free-sim-replacements-for-25-million-customers/ www.secnews.physaphae.fr/article.php?IdArticle=8669552 False Data Breach,Mobile None 2.0000000000000000 Bleeping Computer - Magazine Américain Google: 97 jours zéro exploités en 2024, plus de 50% dans les attaques de logiciels espions<br>Google: 97 zero-days exploited in 2024, over 50% in spyware attacks Google\'s Threat Intelligence Group (GTIG) says attackers exploited 75 zero-day vulnerabilities in the wild last year, over 50% of which were linked to spyware attacks. [...]]]> 2025-04-29T06:00:00+00:00 https://www.bleepingcomputer.com/news/security/google-97-zero-days-exploited-in-2024-over-50-percent-in-spyware-attacks/ www.secnews.physaphae.fr/article.php?IdArticle=8669519 False Vulnerability,Threat None 2.0000000000000000 Bleeping Computer - Magazine Américain Marques et violation de Spencer liées à une attaque de ransomware d'araignée dispersée<br>Marks & Spencer breach linked to Scattered Spider ransomware attack Ongoing outages at British retail giant Marks & Spencer are caused by a ransomware attack believed to be conducted by a hacking collective known as "Scattered Spider" BleepingComputer has learned from multiple sources. [...]]]> 2025-04-28T16:28:54+00:00 https://www.bleepingcomputer.com/news/security/marks-and-spencer-breach-linked-to-scattered-spider-ransomware-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8669157 False Ransomware None 2.0000000000000000 Bleeping Computer - Magazine Américain Hitachi Vantara prend les serveurs hors ligne après une attaque de ransomware Akira<br>Hitachi Vantara takes servers offline after Akira ransomware attack Hitachi Vantara, a subsidiary of Japanese multinational conglomerate Hitachi, was forced to take servers offline over the weekend to contain an Akira ransomware attack. [...]]]> 2025-04-28T15:39:09+00:00 https://www.bleepingcomputer.com/news/security/hitachi-vantara-takes-servers-offline-after-akira-ransomware-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8669140 False Ransomware None 2.0000000000000000 Bleeping Computer - Magazine Américain Verisource dit maintenant que la violation de données de février a un impact sur 4 millions de personnes<br>VeriSource now says February data breach impacts 4 million people Employee benefits administration firm VeriSource Services is warning that a data breach exposed the personal information of four million people.  [...]]]> 2025-04-28T13:54:47+00:00 https://www.bleepingcomputer.com/news/security/verisource-now-says-february-data-breach-impacts-4-million-people/ www.secnews.physaphae.fr/article.php?IdArticle=8669096 False Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain Coinbase corrige l'erreur de journal 2FA, ce qui fait que les gens pensent qu'ils ont été piratés<br>Coinbase fixes 2FA log error making people think they were hacked Coinbase has fixed a confusing bug in its account activity logs that caused users to think their credentials were compromised. [...]]]> 2025-04-27T14:21:15+00:00 https://www.bleepingcomputer.com/news/security/coinbase-fixes-2fa-log-error-making-people-think-they-were-hacked/ www.secnews.physaphae.fr/article.php?IdArticle=8668642 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain La chaîne d'exploitation CMS RCE CRAFT utilisée dans les attaques zéro-jours pour voler des données<br>Craft CMS RCE exploit chain used in zero-day attacks to steal data Two vulnerabilities impacting Craft CMS were chained together in zero-day attacks to breach servers and steal data, with exploitation ongoing, according to CERT Orange Cyberdefense. [...]]]> 2025-04-25T15:44:35+00:00 https://www.bleepingcomputer.com/news/security/craft-cms-rce-exploit-chain-used-in-zero-day-attacks-to-steal-data/ www.secnews.physaphae.fr/article.php?IdArticle=8667814 False Vulnerability,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Le fournisseur de mobiles MTN dit que la cyberattaque a compromis les données clients<br>Mobile provider MTN says cyberattack compromised customer data African mobile giant MTN Group announced that a cybersecurity incident has compromised the personal information of some of its subscribers in certain countries. [...]]]> 2025-04-25T10:57:05+00:00 https://www.bleepingcomputer.com/news/security/mobile-provider-mtn-says-cyberattack-compromised-customer-data/ www.secnews.physaphae.fr/article.php?IdArticle=8667701 False Mobile None 2.0000000000000000 Bleeping Computer - Magazine Américain La violation de données des écoles publiques de Baltimore City affecte plus de 31 000 personnes<br>Baltimore City Public Schools data breach affects over 31,000 people ​Baltimore City Public Schools notified tens of thousands of employees and students of a data breach following an incident in February when unknown attackers hacked into its network. [...]]]> 2025-04-25T10:06:23+00:00 https://www.bleepingcomputer.com/news/security/baltimore-city-public-schools-data-breach-affects-over-31-000-people/ www.secnews.physaphae.fr/article.php?IdArticle=8667678 False Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain Les pirates de Lazarus violent six entreprises dans des attaques de trou d'eau<br>Lazarus hackers breach six companies in watering hole attacks In a recent espionage campaign, the infamous North Korean threat group Lazarus targeted multiple organizations in the software, IT, finance, and telecommunications sectors in South Korea. [...]]]> 2025-04-24T15:13:32+00:00 https://www.bleepingcomputer.com/news/security/lazarus-hackers-breach-six-companies-in-watering-hole-attacks/ www.secnews.physaphae.fr/article.php?IdArticle=8667329 False Threat APT 38 3.0000000000000000 Bleeping Computer - Magazine Américain Frederick Health Data Breach a un impact sur près d'un million de patients<br>Frederick Health data breach impacts nearly 1 million patients ​A ransomware attack in January at Frederick Health Medical Group, a major healthcare provider in Maryland, has led to a data breach affecting nearly one million patients. [...]]]> 2025-04-24T12:19:14+00:00 https://www.bleepingcomputer.com/news/security/frederick-health-data-breach-impacts-nearly-1-million-patients/ www.secnews.physaphae.fr/article.php?IdArticle=8667270 False Ransomware,Data Breach,Medical None 3.0000000000000000 Bleeping Computer - Magazine Américain Microsoft now pays up to $30,000 for some AI vulnerabilities Microsoft announced an increase in bug bounty payouts to $30,000 for AI vulnerabilities found in Dynamics 365 and Power Platform services and products. [...]]]> 2025-04-24T11:06:59+00:00 https://www.bleepingcomputer.com/news/microsoft/microsoft-now-pays-up-to-30-000-for-some-ai-vulnerabilities/ www.secnews.physaphae.fr/article.php?IdArticle=8667240 False Vulnerability None 3.0000000000000000 Bleeping Computer - Magazine Américain Microsoft paie maintenant jusqu'à 30 000 $ pour certaines vulnérabilités de l'IA<br>Microsoft now pays up to $30,000 for some AI vulnerabilities Microsoft announced an increase in bug bounty payouts to $30,000 for AI vulnerabilities found in Dynamics 365 and Power Platform services and products. [...]]]> 2025-04-24T11:06:59+00:00 https://www.bleepingcomputer.com/news/microsoft/Microsoft now pays up to $30,000 for some AI vulnerabilities/ www.secnews.physaphae.fr/article.php?IdArticle=8667210 False Vulnerability None 2.0000000000000000 Bleeping Computer - Magazine Américain Les ransomwares de verrouillage réclament l'attaque de Davita, les fuites volées données<br>Interlock ransomware claims DaVita attack, leaks stolen data The Interlock ransomware gang has claimed the cyberattack on DaVita kidney dialysis firm and leaked data allegedly stolen from the organization. [...]]]> 2025-04-24T10:59:00+00:00 https://www.bleepingcomputer.com/news/security/interlock-ransomware-claims-davita-attack-leaks-stolen-data/ www.secnews.physaphae.fr/article.php?IdArticle=8667211 False Ransomware None 2.0000000000000000 Bleeping Computer - Magazine Américain La violation des données de santé de Yale New Haven affecte 5,5 millions de patients<br>Yale New Haven Health data breach affects 5.5 million patients Yale New Haven Health (YNHHS) is warning that threat actors stole the personal data of 5.5 million patients in a cyberattack earlier this month. [...]]]> 2025-04-24T10:12:24+00:00 https://www.bleepingcomputer.com/news/security/yale-new-haven-health-data-breach-affects-55-million-patients/ www.secnews.physaphae.fr/article.php?IdArticle=8667212 False Data Breach,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain L'armée russe ciblée par un nouveau malware Android caché dans l'application de cartographie<br>Russian army targeted by new Android malware hidden in mapping app A new Android malware has been discovered hidden inside trojanized versions of the Alpine Quest mapping app, which is reportedly used by Russian soldiers as part of war zone operational planning. [...]]]> 2025-04-23T14:30:17+00:00 https://www.bleepingcomputer.com/news/security/russian-army-targeted-by-new-android-malware-hidden-in-mapping-app/ www.secnews.physaphae.fr/article.php?IdArticle=8666788 False Malware,Mobile None 3.0000000000000000 Bleeping Computer - Magazine Américain Blue Shield of California a divulgué des données de santé de 4,7 millions de membres à Google<br>Blue Shield of California leaked health data of 4.7 million members to Google Blue Shield of California disclosed it suffered a data breach after exposing protected health information of 4.7 million members to Google\'s analytics and advertisement platforms. [...]]]> 2025-04-23T11:38:37+00:00 https://www.bleepingcomputer.com/news/security/blue-shield-of-california-leaked-health-data-of-47-million-members-to-google/ www.secnews.physaphae.fr/article.php?IdArticle=8666714 False Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain La détection de phishing est brisée: pourquoi la plupart des attaques se sentent comme une journée nulle<br>Phishing detection is broken: Why most attacks feel like a zero day Phishing attacks now evade email filters, proxies, and MFA - making every attack feel like a zero-day. This article from Push Security breaks down why detection is failing and how real-time, in-browser analysis can help turn the tide. [...]]]> 2025-04-23T10:02:12+00:00 https://www.bleepingcomputer.com/news/security/phishing-detection-is-broken-why-most-attacks-feel-like-a-zero-day/ www.secnews.physaphae.fr/article.php?IdArticle=8666689 False Vulnerability,Threat None 2.0000000000000000 Bleeping Computer - Magazine Américain SK Telecom avertit les données USIM du client exposées dans l'attaque de logiciels malveillants<br>SK Telecom warns customer USIM data exposed in malware attack South Korea\'s largest mobile operator, SK Telecom, is warning that a malware infection allowed threat actors to access sensitive USIM-related information for customers. [...]]]> 2025-04-22T14:26:59+00:00 https://www.bleepingcomputer.com/news/security/sk-telecom-warns-customer-usim-data-exposed-in-malware-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8666284 False Malware,Threat,Mobile None 2.0000000000000000 Bleeping Computer - Magazine Américain La bibliothèque XRP recommandée de Ripple \\ XRPL.js a piraté pour voler des portefeuilles<br>Ripple\\'s recommended XRP library xrpl.js hacked to steal wallets The recommended Ripple cryptocurrency NPM JavaScript library named "xrpl.js" was compromised to steal XRP wallet seeds and private keys and transfer them to an attacker-controlled server, allowing threat actors to steal all the funds stored in the wallets. [...]]]> 2025-04-22T12:45:04+00:00 https://www.bleepingcomputer.com/news/security/ripples-recommended-xrp-library-xrpljs-hacked-to-steal-wallets/ www.secnews.physaphae.fr/article.php?IdArticle=8666239 False Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Attaque de cookie-bite POC utilise une extension chromée pour voler des jetons de session<br>Cookie-Bite attack PoC uses Chrome extension to steal session tokens A proof-of-concept attack called "Cookie-Bite" uses a browser extension to steal browser session cookies from Azure Entra ID to bypass multi-factor authentication (MFA) protections and maintain access to cloud services like Microsoft 365, Outlook, and Teams. [...]]]> 2025-04-22T11:02:35+00:00 https://www.bleepingcomputer.com/news/security/cookie-bite-attack-poc-uses-chrome-extension-to-steal-session-tokens/ www.secnews.physaphae.fr/article.php?IdArticle=8666183 False Cloud None 3.0000000000000000 Bleeping Computer - Magazine Américain Les phishers abusent google oauth pour usager google dans l'attaque de relecture de DKIM<br>Phishers abuse Google OAuth to spoof Google in DKIM replay attack In a rather clever attack, hackers leveraged a weakness that allowed them to send a fake email that seemed delivered from Google\'s systems, passing all verifications but pointing to a fraudulent page that collected logins. [...]]]> 2025-04-20T13:31:13+00:00 https://www.bleepingcomputer.com/news/security/phishers-abuse-google-oauth-to-spoof-google-in-dkim-replay-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8665678 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Les pirates parrainés par l'État embrassent la tactique d'ingénierie sociale Clickfix<br>State-sponsored hackers embrace ClickFix social engineering tactic ClickFix attacks are being increasingly adopted by threat actors of all levels, with researchers now seeing multiple advanced persistent threat (APT) groups from North Korea, Iran, and Russia utilizing the tactic to breach networks. [...]]]> 2025-04-20T10:14:24+00:00 https://www.bleepingcomputer.com/news/security/state-sponsored-hackers-embrace-clickfix-social-engineering-tactic/ www.secnews.physaphae.fr/article.php?IdArticle=8665679 False Threat None 2.0000000000000000 Bleeping Computer - Magazine Américain Nouveau malware Android vole vos cartes de crédit pour les attaques de relais NFC<br>New Android malware steals your credit cards for NFC relay attacks A new malware-as-a-service (MaaS) platform named \'SuperCard X\' has emerged, targeting Android devices via NFC relay attacks that enable point-of-sale and ATM transactions using compromised payment card data. [...]]]> 2025-04-19T11:17:28+00:00 https://www.bleepingcomputer.com/news/security/supercard-x-android-malware-use-stolen-cards-in-nfc-relay-attacks/ www.secnews.physaphae.fr/article.php?IdArticle=8665015 False Malware,Mobile None 3.0000000000000000 Bleeping Computer - Magazine Américain Le gang de ransomware de verrouillage pousse des outils informatiques faux dans les attaques Clickfix<br>Interlock ransomware gang pushes fake IT tools in ClickFix attacks The Interlock ransomware gang now uses ClickFix attacks that impersonate IT tools to breach corporate networks and deploy file-encrypting malware on devices. [...]]]> 2025-04-18T13:44:40+00:00 https://www.bleepingcomputer.com/news/security/interlock-ransomware-gang-pushes-fake-it-tools-in-clickfix-attacks/ www.secnews.physaphae.fr/article.php?IdArticle=8664573 False Ransomware,Malware,Tool None 3.0000000000000000 Bleeping Computer - Magazine Américain Les pirates chinois ciblent le gouvernement russe avec des logiciels malveillants de rat améliorés<br>Chinese hackers target Russian govt with upgraded RAT malware Chinese-speaking IronHusky hackers are targeting Russian and Mongolian government organizations using upgraded MysterySnail remote access trojan (RAT) malware. [...]]]> 2025-04-18T09:43:58+00:00 https://www.bleepingcomputer.com/news/security/chinese-hackers-target-russian-govt-with-upgraded-rat-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8664499 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain 7 étapes à prendre après une cyberattaque basée sur les diplômes<br>7 Steps to Take After a Credential-Based cyberattack Hackers don\'t break in-they log in. Credential-based attacks now fuel nearly half of all breaches. Learn how to scan your Active Directory for compromised passwords and stop attackers before they strike. [...]]]> 2025-04-18T09:33:08+00:00 https://www.bleepingcomputer.com/news/security/7-steps-to-take-after-a-credential-based-cyberattack/ www.secnews.physaphae.fr/article.php?IdArticle=8664500 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Services de divertissement Géant Legends International révèle la violation des données<br>Entertainment services giant Legends International discloses data breach Entertainment venue management firm Legends International warns it suffered a data breach in November 2024, which has impacted employees and people who visited venues under its management. [...]]]> 2025-04-17T16:51:18+00:00 https://www.bleepingcomputer.com/news/security/entertainment-services-giant-legends-international-discloses-data-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8664213 False Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain Windows NTLM Hash Fel Flaw exploité dans les attaques de phishing contre les gouvernements<br>Windows NTLM hash leak flaw exploited in phishing attacks on governments A Windows vulnerability that exposes NTLM hashes using .library-ms files is now actively exploited by hackers in phishing campaigns targeting government entities and private companies. [...]]]> 2025-04-17T15:20:39+00:00 https://www.bleepingcomputer.com/news/security/windows-ntlm-hash-leak-flaw-exploited-in-phishing-attacks-on-governments/ www.secnews.physaphae.fr/article.php?IdArticle=8664194 False Vulnerability None 3.0000000000000000 Bleeping Computer - Magazine Américain Ahold Delhaize confirme le vol de données après l'attaque des ransomwares incorporés<br>Ahold Delhaize confirms data theft after INC ransomware claims attack Food retail giant Ahold Delhaize confirms that data was stolen from its U.S. business systems during a November 2024 cyberattack. [...]]]> 2025-04-17T10:49:09+00:00 https://www.bleepingcomputer.com/news/security/ahold-delhaize-confirms-data-theft-after-inc-ransomware-claims-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8664085 False Ransomware None 3.0000000000000000 Bleeping Computer - Magazine Américain CISA met en garde contre l'augmentation des risques de violation après une fuite d'Oracle Cloud<br>CISA warns of increased breach risks following Oracle Cloud leak On Wednesday, CISA warned of heightened breach risks after the compromise of legacy Oracle Cloud servers earlier this year and highlighted the significant threat to enterprise networks. [...]]]> 2025-04-17T07:23:16+00:00 https://www.bleepingcomputer.com/news/security/cisa-warns-of-increased-breach-risks-following-oracle-cloud-leak/ www.secnews.physaphae.fr/article.php?IdArticle=8664015 False Threat,Cloud None 3.0000000000000000 Bleeping Computer - Magazine Américain Plus de 16 000 appareils Fortinet compromis avec Symlink Backdoor<br>Over 16,000 Fortinet devices compromised with symlink backdoor Over 16,000 internet-exposed Fortinet devices have been detected as compromised with a new symlink backdoor that allows read-only access to sensitive files on previously compromised devices. [...]]]> 2025-04-16T16:47:04+00:00 https://www.bleepingcomputer.com/news/security/over-16-000-fortinet-devices-compromised-with-symlink-backdoor/ www.secnews.physaphae.fr/article.php?IdArticle=8663736 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain 41% des attaques contourner les défenses: la validation de l'exposition contradictoire corrige que<br>41% of Attacks Bypass Defenses: Adversarial Exposure Validation Fixes That Your dashboards say you\'re secure-but 41% of threats still get through. Picus Security\'s Adversarial Exposure Validation uncovers what your stack is missing with continuous attack simulations and automated pentesting. [...]]]> 2025-04-16T10:02:12+00:00 https://www.bleepingcomputer.com/news/security/41-percent-of-attacks-bypass-defenses-adversarial-exposure-validation-fixes-that/ www.secnews.physaphae.fr/article.php?IdArticle=8663575 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Midnight Blizzard déploie un nouveau malware de grapelader à l'ambassade de phishing<br>Midnight Blizzard deploys new GrapeLoader malware in embassy phishing Russian state-sponsored espionage group Midnight Blizzard is behind a new spear-phishing campaign targeting diplomatic entities in Europe, including embassies. [...]]]> 2025-04-15T16:25:57+00:00 https://www.bleepingcomputer.com/news/security/midnight-blizzard-deploys-new-grapeloader-malware-in-embassy-phishing/ www.secnews.physaphae.fr/article.php?IdArticle=8663228 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain L'impact de la violation des données de l'administration historique atteint maintenant 1,6 million de personnes<br>Landmark Admin data breach impact now reaches 1.6 million people Landmark Admin has issued an update to its investigation of a cyberattack it suffered in May 2024, increasing the number of impacted individuals to 1.6 million. [...]]]> 2025-04-15T14:33:57+00:00 https://www.bleepingcomputer.com/news/security/landmark-admin-data-breach-impact-now-reaches-16-million-people/ www.secnews.physaphae.fr/article.php?IdArticle=8663193 False Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain Le tristement célèbre babillard de messages 4chan enlevé à la suite d'un hack majeur<br>Infamous message board 4chan taken down following major hack 4chan, a notorious online forum, was taken offline earlier today after what appears to be a significant hack and has since been loading intermittently. [...]]]> 2025-04-15T14:13:46+00:00 https://www.bleepingcomputer.com/news/security/infamous-message-board-4chan-taken-down-following-major-hack/ www.secnews.physaphae.fr/article.php?IdArticle=8663194 False Hack None 3.0000000000000000 Bleeping Computer - Magazine Américain Google ajoute Android Auto-Reboot pour bloquer les extractions de données médico-légales<br>Google adds Android auto-reboot to block forensic data extractions Google is rolling out a new security mechanism on Android devices that will automatically reboot locked, unused devices after three consecutive days of inactivity, restoring memory to an encrypted state. [...]]]> 2025-04-15T09:54:57+00:00 https://www.bleepingcomputer.com/news/security/google-adds-android-auto-reboot-to-block-forensic-data-extractions/ www.secnews.physaphae.fr/article.php?IdArticle=8663100 False Mobile None 3.0000000000000000 Bleeping Computer - Magazine Américain Hertz confirme les informations sur les clients, les conducteurs \\ 'Licences volées en violation de données<br>Hertz confirms customer info, drivers\\' licenses stolen in data breach Car rental giant Hertz Corporation warns it suffered a data breach after customer data for its Hertz, Thrifty, and Dollar brands was stolen in the Cleo zero-day data theft attacks. [...]]]> 2025-04-14T19:16:03+00:00 https://www.bleepingcomputer.com/news/security/hertz-confirms-customer-info-drivers-licenses-stolen-in-data-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8662867 False Data Breach,Vulnerability,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain New Resolverrat Malware cible les organisations pharmaceutiques et de soins de santé dans le monde entier<br>New ResolverRAT malware targets pharma and healthcare orgs worldwide A new remote access trojan (RAT) called \'ResolverRAT\' is being used against organizations globally, with the malware used in recent attacks targeting the healthcare and pharmaceutical sectors. [...]]]> 2025-04-14T12:40:23+00:00 https://www.bleepingcomputer.com/news/security/new-resolverrat-malware-targets-pharma-and-healthcare-orgs-worldwide/ www.secnews.physaphae.fr/article.php?IdArticle=8662760 False Malware,Medical None 3.0000000000000000 Bleeping Computer - Magazine Américain La société de dialyse rénale DaVita a frappé par une attaque de ransomware du week-end<br>Kidney dialysis firm DaVita hit by weekend ransomware attack Kidney dialysis firm DaVita disclosed Monday it suffered a weekend ransomware attack that encrypted parts of its network and impacted some of its operations. [...]]]> 2025-04-14T10:20:25+00:00 https://www.bleepingcomputer.com/news/security/kidney-dialysis-firm-davita-hit-by-weekend-ransomware-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8662720 False Ransomware None 3.0000000000000000 Bleeping Computer - Magazine Américain Amélioration de vos DevSecops avec Wazuh, la plate-forme XDR open source<br>Enhancing your DevSecOps with Wazuh, the open source XDR platform Security shouldn\'t wait until the end of development. Wazuh brings real-time threat detection, compliance, and vulnerability scanning into your DevOps pipeline-powering a stronger DevSecOps strategy from day one. Learn more about how Wazuh can help secure your development cycle. [...]]]> 2025-04-14T10:01:11+00:00 https://www.bleepingcomputer.com/news/security/enhancing-your-devsecops-with-wazuh-the-open-source-xdr-platform/ www.secnews.physaphae.fr/article.php?IdArticle=8662721 False Vulnerability,Threat None 2.0000000000000000 Bleeping Computer - Magazine Américain La fuite confirme le GPT 4.1 d'Openai \\ est avant GPT 5.0<br>Leak confirms OpenAI\\'s GPT 4.1 is coming before GPT 5.0 OpenAI is working on yet another AI model, reportedly called GPT-4.1, a successor to GPT-4o. [...]]]> 2025-04-12T12:09:43+00:00 https://www.bleepingcomputer.com/news/artificial-intelligence/leak-confirms-openais-gpt-41-is-coming-before-gpt-50/ www.secnews.physaphae.fr/article.php?IdArticle=8662130 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain L'université de Western Sydney révèle les violations de sécurité, la fuite de données<br>Western Sydney University discloses security breaches, data leak Western Sydney University (WSU) announced two security incidents that exposed personal information belonging to members of its community. [...]]]> 2025-04-11T12:29:52+00:00 https://www.bleepingcomputer.com/news/security/western-sydney-university-discloses-security-breaches-data-leak/ www.secnews.physaphae.fr/article.php?IdArticle=8661800 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Fortinet: les pirates conservent l'accès aux VPN FortiGate patch à l'aide de SymLinks<br>Fortinet: Hackers retain access to patched FortiGate VPNs using symlinks Fortinet warns that threat actors use a post-exploitation technique that helps them maintain read-only access to previously compromised FortiGate VPN devices even after the original attack vector was patched. [...]]]> 2025-04-11T12:08:54+00:00 https://www.bleepingcomputer.com/news/security/fortinet-hackers-retain-access-to-patched-fortigate-vpns-using-symlinks/ www.secnews.physaphae.fr/article.php?IdArticle=8661801 False Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Le fournisseur de tests de laboratoire américain a exposé des données de santé de 1,6 million de personnes<br>US lab testing provider exposed health data of 1.6 million people Laboratory Services Cooperative (LSC) has released a statement informing it suffered a data breach where hackers stole sensitive information of roughly 1.6 million people from its systems. [...]]]> 2025-04-11T09:23:18+00:00 https://www.bleepingcomputer.com/news/security/us-lab-testing-provider-exposed-health-data-of-16-million-people/ www.secnews.physaphae.fr/article.php?IdArticle=8661751 False Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain L'attaque des ransomwares coûte l'opérateur IKEA en Europe de l'Est 23 millions de dollars<br>Ransomware attack cost IKEA operator in Eastern Europe $23 million Fourlis Group, the operator of IKEA stores in Greece, Cyprus, Romania, and Bulgaria, has informed that the ransomware attack it suffered just before Black Friday on November 27, 2024, caused losses estimated to €20 million ($22.8M). [...]]]> 2025-04-11T08:24:37+00:00 https://www.bleepingcomputer.com/news/security/ransomware-attack-cost-ikea-operator-in-eastern-europe-23-million/ www.secnews.physaphae.fr/article.php?IdArticle=8661729 False Ransomware None 3.0000000000000000 Bleeping Computer - Magazine Américain Les pirates russes attaquent la mission militaire occidentale en utilisant un lecteur malveillant<br>Russian hackers attack Western military mission using malicious drive The Russian state-backed hacking group Gamaredon (aka "Shuckworm") has been targeting a military mission of a Western country in Ukraine in attacks likely deployed from removable drives. [...]]]> 2025-04-10T10:23:04+00:00 https://www.bleepingcomputer.com/news/security/russian-hackers-attack-western-military-mission-using-malicious-drive/ www.secnews.physaphae.fr/article.php?IdArticle=8661405 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Sensata Technologies frappées par l'attaque des ransomwares impactant les opérations<br>Sensata Technologies hit by ransomware attack impacting operations Sensata Technologies (known as Sensata) has suffered a ransomware attack last weekend that encrypted parts of the company network and disrupted operations. [...]]]> 2025-04-10T09:23:34+00:00 https://www.bleepingcomputer.com/news/security/sensata-technologies-hit-by-ransomware-attack-impacting-operations/ www.secnews.physaphae.fr/article.php?IdArticle=8661386 False Ransomware None 3.0000000000000000 Bleeping Computer - Magazine Américain Oracle dit que "serveurs obsolètes" piratés, nie la violation des nuages<br>Oracle says "obsolete servers" hacked, denies cloud breach Oracle finally confirmed in email notifications sent to customers that a hacker stole and leaked credentials that were stolen from what it described as "two obsolete servers." [...]]]> 2025-04-09T15:12:51+00:00 https://www.bleepingcomputer.com/news/security/oracle-says-obsolete-servers-hacked-denies-cloud-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8661217 False Cloud None 2.0000000000000000 Bleeping Computer - Magazine Américain Centrestack RCE exploité comme zéro-jour pour violer les serveurs de partage de fichiers<br>CentreStack RCE exploited as zero-day to breach file sharing servers Hackers exploited a vulnerability in Gladinet CentreStack\'s secure file-sharing software as a zero-day since March to breach storage servers [...]]]> 2025-04-09T11:38:30+00:00 https://www.bleepingcomputer.com/news/security/centrestack-rce-exploited-as-zero-day-to-breach-file-sharing-servers/ www.secnews.physaphae.fr/article.php?IdArticle=8661172 False Vulnerability,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain La police détient les clients malveillants de Smokeloader, saisit les serveurs<br>Police detains Smokeloader malware customers, seizes servers In follow-up activity for Operation Endgame, law enforcement tracked down Smokeloader botnet\'s customers and detained at least five individuals. [...]]]> 2025-04-09T09:33:56+00:00 https://www.bleepingcomputer.com/news/security/police-detains-smokeloader-malware-customers-seizes-servers/ www.secnews.physaphae.fr/article.php?IdArticle=8661146 False Malware,Legislation None 3.0000000000000000 Bleeping Computer - Magazine Américain Les faux outils complémentaires de faux Microsoft Office poussent les logiciels malveillants via Sourceforge<br>Fake Microsoft Office add-in tools push malware via SourceForge Threat actors are abusing SourceForge to distribute fake Microsoft add-ins that install malware on victims\' computers to both mine and steal cryptocurrency. [...]]]> 2025-04-08T16:53:33+00:00 https://www.bleepingcomputer.com/news/security/fake-microsoft-office-add-in-tools-push-malware-via-sourceforge/ www.secnews.physaphae.fr/article.php?IdArticle=8661012 False Malware,Tool,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Les pirates se cachent dans les systèmes de Treasury Occ \\ depuis le juin 2023<br>Hackers lurked in Treasury OCC\\'s systems since June 2023 breach Unknown attackers who breached the Treasury\'s Office of the Comptroller of the Currency (OCC) in June 2023 gained access to over 150,000 emails. [...]]]> 2025-04-08T13:29:23+00:00 https://www.bleepingcomputer.com/news/security/hackers-lurked-in-treasury-occs-systems-since-june-2023-breach/ www.secnews.physaphae.fr/article.php?IdArticle=8660985 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Le site de fuite du web sombre de l'Everest Ransomware \\ est désormais hors ligne<br>Everest ransomware\\'s dark web leak site defaced, now offline The dark web leak site of the Everest ransomware gang has apparently been hacked over the weekend by an unknown attacker and is now offline. [...]]]> 2025-04-07T14:30:26+00:00 https://www.bleepingcomputer.com/news/security/everest-ransomwares-dark-web-leak-site-defaced-now-offline/ www.secnews.physaphae.fr/article.php?IdArticle=8660797 False Ransomware None 3.0000000000000000 Bleeping Computer - Magazine Américain Google fixe Android Zero-Days exploité dans les attaques, 60 autres défauts<br>Google fixes Android zero-days exploited in attacks, 60 other flaws Google has released patches for 62 vulnerabilities in Android\'s April 2025 security update, including two zero-days exploited in targeted attacks. [...]]]> 2025-04-07T13:55:51+00:00 https://www.bleepingcomputer.com/news/security/google-fixes-android-zero-days-exploited-in-attacks-60-other-flaws/ www.secnews.physaphae.fr/article.php?IdArticle=8660788 False Vulnerability,Mobile None 3.0000000000000000 Bleeping Computer - Magazine Américain Le géant alimentaire WK Kellogg révèle la violation des données liée aux ransomwares de CloP<br>Food giant WK Kellogg discloses data breach linked to Clop ransomware US food giant WK Kellogg Co is warning employees and vendors that company data was stolen during the 2024 Cleo data theft attacks. [...]]]> 2025-04-07T11:56:51+00:00 https://www.bleepingcomputer.com/news/security/food-giant-wk-kellogg-discloses-data-breach-linked-to-clop-ransomware/ www.secnews.physaphae.fr/article.php?IdArticle=8660766 False Ransomware,Data Breach None 2.0000000000000000 Bleeping Computer - Magazine Américain Coinbase pour corriger l'entrée d'activité du compte 2FA Freeing Out Users<br>Coinbase to fix 2FA account activity entry freaking out users Coinbase is fixing an incorrect account activity message that freaks out customers and makes them think their credentials were compromised. [...]]]> 2025-04-05T11:36:45+00:00 https://www.bleepingcomputer.com/news/security/coinbase-to-fix-2fa-account-activity-entry-freaking-out-users/ www.secnews.physaphae.fr/article.php?IdArticle=8660431 False None None 3.0000000000000000 Bleeping Computer - Magazine Américain Le port de Seattle dit que la violation des ransomwares a un impact sur 90 000 personnes<br>Port of Seattle says ransomware breach impacts 90,000 people ​Port of Seattle, the U.S. government agency overseeing Seattle\'s seaport and airport, is notifying roughly 90,000 individuals of a data breach after their personal information was stolen in an August 2024 ransomware attack. [...]]]> 2025-04-04T13:26:38+00:00 https://www.bleepingcomputer.com/news/security/port-of-seattle-says-ransomware-breach-impacts-90-000-people/ www.secnews.physaphae.fr/article.php?IdArticle=8660288 False Ransomware,Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain Europcar Gitlab Breach expose des données de jusqu'à 200 000 clients<br>Europcar GitLab breach exposes data of up to 200,000 customers A hacker breached the GitLab repositories of multinational car-rental company Europcar Mobility Group and stole source code for Android and iOS applications, as well as some personal information belonging to up to 200,000 users. [...]]]> 2025-04-04T10:07:21+00:00 https://www.bleepingcomputer.com/news/security/europcar-gitlab-breach-exposes-data-of-up-to-200-000-customers/ www.secnews.physaphae.fr/article.php?IdArticle=8660261 False Mobile None 3.0000000000000000 Bleeping Computer - Magazine Américain Les correctifs Ivanti Connectent Secure Zero-Day exploité depuis la mi-mars<br>Ivanti patches Connect Secure zero-day exploited since mid-March Ivanti has released security updates to patch a critical Connect Secure remote code execution vulnerability exploited by a China-linked espionage actor to deploy malware since at least mid-March 2025. [...]]]> 2025-04-03T13:43:34+00:00 https://www.bleepingcomputer.com/news/security/ivanti-patches-connect-secure-zero-day-exploited-since-mid-march/ www.secnews.physaphae.fr/article.php?IdArticle=8660092 False Malware,Vulnerability,Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Le barreau de l'État du Texas met en garde contre la violation des données après l'attaque des ransomwares incorporés<br>Texas State Bar warns of data breach after INC ransomware claims attack The State Bar of Texas is warning it suffered a data breach after the INC ransomware gang claimed to have breached the organization and began leaking samples of stolen data. [...]]]> 2025-04-03T11:43:17+00:00 https://www.bleepingcomputer.com/news/security/texas-state-bar-warns-of-data-breach-after-inc-ransomware-claims-attack/ www.secnews.physaphae.fr/article.php?IdArticle=8660073 False Ransomware,Data Breach None 3.0000000000000000 Bleeping Computer - Magazine Américain Oracle privé confirme la violation du cloud aux clients<br>Oracle privately confirms Cloud breach to customers Oracle has finally acknowledged to some customers that attackers have stolen old client credentials after breaching a "legacy environment" last used in 2017. [...]]]> 2025-04-03T11:26:45+00:00 https://www.bleepingcomputer.com/news/security/oracle-privately-confirms-cloud-breach-to-customers/ www.secnews.physaphae.fr/article.php?IdArticle=8660074 False Cloud None 3.0000000000000000 Bleeping Computer - Magazine Américain Une récente attaque de la chaîne d'approvisionnement de Github a été tracée à un jeton divulgué<br>Recent GitHub supply chain attack traced to leaked SpotBugs token A cascading supply chain attack on GitHub that targeted Coinbase in March has now been traced back to a single token stolen from a SpotBugs workflow, which allowed a threat actor to compromise multiple GitHub projects. [...]]]> 2025-04-03T10:46:50+00:00 https://www.bleepingcomputer.com/news/security/recent-github-supply-chain-attack-traced-to-leaked-spotbugs-token/ www.secnews.physaphae.fr/article.php?IdArticle=8660058 False Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Royal Mail enquête sur les réclamations des fuites de données, aucun impact sur les opérations<br>Royal Mail investigates data leak claims, no impact on operations ​Royal Mail is investigating claims of a security breach after a threat actor leaked over 144GB of data allegedly stolen from the company\'s systems. [...]]]> 2025-04-02T12:34:08+00:00 https://www.bleepingcomputer.com/news/security/royal-mail-investigates-data-leak-claims-no-impact-on-operations/ www.secnews.physaphae.fr/article.php?IdArticle=8659876 False Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain La réalité derrière les échecs du contrôle de la sécurité et comment les empêcher<br>The Reality Behind Security Control Failures-And How to Prevent Them Most orgs only discover their security controls failed after a breach. With OnDefend\'s continuous validation, you can test, measure, and prove your defenses work-before attackers exploit blind spots. [...]]]> 2025-04-02T10:01:11+00:00 https://www.bleepingcomputer.com/news/security/the-reality-behind-security-control-failures-and-how-to-prevent-them/ www.secnews.physaphae.fr/article.php?IdArticle=8659856 False Threat None 3.0000000000000000 Bleeping Computer - Magazine Américain Les appareils Android contrefaits trouvés préchargés avec Triada Malware<br>Counterfeit Android devices found preloaded With Triada malware A new version of the Triada trojan has been discovered preinstalled on thousands of new Android devices, allowing threat actors to steal data as soon as they are set up. [...]]]> 2025-04-02T09:57:23+00:00 https://www.bleepingcomputer.com/news/security/counterfeit-android-devices-found-preloaded-with-triada-malware/ www.secnews.physaphae.fr/article.php?IdArticle=8659836 False Malware,Threat,Mobile None 3.0000000000000000 Bleeping Computer - Magazine Américain Nous sentions un rat (DC): révéler une chaîne de livraison de logiciels malveillants sophistiquée<br>We Smell a (DC)Rat: Revealing a Sophisticated Malware Delivery Chain A RAR file, a fake summons, and a Nietzsche quote-all part of a multi-stage malware chain delivering DCRat & Rhadamanthys. Acronis TRU breaks down how attackers use VBS, batch, and PowerShell scripts to slip past defenses. [...]]]> 2025-04-01T13:30:00+00:00 https://www.bleepingcomputer.com/news/security/we-smell-a-dcrat-revealing-a-sophisticated-malware-delivery-chain/ www.secnews.physaphae.fr/article.php?IdArticle=8659666 False Malware None 3.0000000000000000 Bleeping Computer - Magazine Américain Près de 24 000 IPS derrière Wave of Palo Alto Global Protect Scanses<br>Nearly 24,000 IPs behind wave of Palo Alto Global Protect scans A significant spike in scanning activity targeting Palo Alto Network GlobalProtect login portals has been observed, with researchers concerned it may be a prelude to an upcoming attack or flaw being exploited. [...]]]> 2025-04-01T10:31:00+00:00 https://www.bleepingcomputer.com/news/security/nearly-24-000-ips-behind-wave-of-palo-alto-global-protect-scans/ www.secnews.physaphae.fr/article.php?IdArticle=8659630 False None None 2.0000000000000000 Bleeping Computer - Magazine Américain Plate-forme de phishing \\ 'lucid \\' derrière la vague d'iOS, Android SMS Attaques<br>Phishing platform \\'Lucid\\' behind wave of iOS, Android SMS attacks A phishing-as-a-service (PhaaS) platform named \'Lucid\' has been targeting 169 entities in 88 countries using well-crafted messages sent on iMessage (iOS) and RCS (Android). [...]]]> 2025-03-31T14:49:00+00:00 https://www.bleepingcomputer.com/news/security/phishing-platform-lucid-behind-wave-of-ios-android-sms-attacks/ www.secnews.physaphae.fr/article.php?IdArticle=8659455 False Mobile None 3.0000000000000000