www.secnews.physaphae.fr This is the RSS 2.0 feed from www.secnews.physaphae.fr. IT's a simple agragated flow of multiple articles soruces. Liste of sources, can be found on www.secnews.physaphae.fr. 2025-05-10T17:52:13+00:00 www.secnews.physaphae.fr Dark Reading - Informationweek Branch \\ 'Exploitable facilement \\' La vulnérabilité de Langflow nécessite un correctif immédiat<br>\\'Easily Exploitable\\' Langflow Vulnerability Requires Immediate Patching The vulnerability, which has a CVSS score of 9.8, is under attack and allows threat actors to remotely execute arbitrary commands on servers running the agentic AI builder.]]> 2025-05-06T20:26:35+00:00 https://www.darkreading.com/vulnerabilities-threats/easily-exploitable-langflow-vulnerability-patching www.secnews.physaphae.fr/article.php?IdArticle=8672451 False Vulnerability,Threat,Patching None 3.0000000000000000 Dark Reading - Informationweek Branch Orgs Scramble to Fix Actively Exploited Bug in Apache Struts 2 A newly discovered vulnerability, CVE-2024-53677, in the aging Apache framework is going to cause major headaches for IT teams, since patching isn\'t enough to fix it.]]> 2024-12-19T17:46:16+00:00 https://www.darkreading.com/application-security/actively-exploited-bug-struts-2 www.secnews.physaphae.fr/article.php?IdArticle=8627632 False Vulnerability,Patching None 2.0000000000000000 Dark Reading - Informationweek Branch Cleo MFT Zero-Day Exploits Are About Escalate, Analysts Warn Defenders running the Cleo managed file transfer are urged to be on the lookout for the Cleopatra backdoor and other indicators of an ongoing ransomware campaign, as patching details remain foggy, and no CVE has been issued.]]> 2024-12-13T21:56:35+00:00 https://www.darkreading.com/application-security/cleo-mft-zero-day-exploits-escalate-analysts-warn www.secnews.physaphae.fr/article.php?IdArticle=8624790 False Ransomware,Vulnerability,Threat,Patching None 2.0000000000000000 Dark Reading - Informationweek Branch Les fabricants se classent comme la plus grande cible de Ransomware \\<br>Manufacturers Rank as Ransomware\\'s Biggest Target Improvements in cybersecurity and basics like patching aren\'t keeping pace with the manufacturing sector\'s rapid growth.]]> 2024-10-02T13:00:00+00:00 https://www.darkreading.com/vulnerabilities-threats/manufacturers-ransomwares-biggest-target www.secnews.physaphae.fr/article.php?IdArticle=8590448 False Ransomware,Patching None 3.0000000000000000 Dark Reading - Informationweek Branch Zimbra rce vuln soumis à l'attaque nécessite des correctifs immédiats<br>Zimbra RCE Vuln Under Attack Needs Immediate Patching The bug gives attackers a way to run arbitrary code on affected servers and take control of them.]]> 2024-10-01T21:41:35+00:00 https://www.darkreading.com/cyberattacks-data-breaches/recent-zimbra-rce-under-attack-patch-now www.secnews.physaphae.fr/article.php?IdArticle=8589943 False Patching None 3.0000000000000000 Dark Reading - Informationweek Branch Critical, activement exploité Jenkins RCE Bug subit un décalage de patch<br>Critical, Actively Exploited Jenkins RCE Bug Suffers Patch Lag A 7-month-old bug in an OSS CI/CD server is still being actively exploited, thanks to spotty patching, CISA warns.]]> 2024-08-20T19:28:56+00:00 https://www.darkreading.com/vulnerabilities-threats/critical-actively-exploited-jenkins-rce-bug-patch-lag www.secnews.physaphae.fr/article.php?IdArticle=8562729 False Patching None 2.0000000000000000 Dark Reading - Informationweek Branch Les cyberattaques exploitent Microsoft SmartScreen Bug dans le voleur Campagne<br>Cyberattackers Exploit Microsoft SmartScreen Bug in Stealer Campaign The good news: Only organizations far behind on standard Windows patching have anything to worry about.]]> 2024-07-24T18:50:04+00:00 https://www.darkreading.com/vulnerabilities-threats/cyberattackers-exploit-microsoft-smartscreen-bug-in-stealer-campaign www.secnews.physaphae.fr/article.php?IdArticle=8543615 False Threat,Patching None 3.0000000000000000 Dark Reading - Informationweek Branch GPT-4 peut exploiter la plupart des vulnes simplement en lisant les avis de menace<br>GPT-4 Can Exploit Most Vulns Just by Reading Threat Advisories Existing AI technology can allow hackers to automate exploits for public vulnerabilities in minutes flat. Very soon, diligent patching will no longer be optional.]]> 2024-04-18T20:23:46+00:00 https://www.darkreading.com/threat-intelligence/gpt-4-can-exploit-most-vulns-just-by-reading-threat-advisories www.secnews.physaphae.fr/article.php?IdArticle=8484931 False Vulnerability,Threat,Patching None 2.0000000000000000 Dark Reading - Informationweek Branch Les bogues IOS de Cisco permettent des attaques DOS non authentifiées et distantes<br>Cisco IOS Bugs Allow Unauthenticated, Remote DoS Attacks Several Cisco products, including IOS, IOS XE, and AP software, need patching against various high-risk security vulnerabilities.]]> 2024-03-28T21:15:17+00:00 https://www.darkreading.com/application-security/cisco-ios-bugs-unauthenticated-remote-dos-attacks www.secnews.physaphae.fr/article.php?IdArticle=8472251 False Vulnerability,Patching None 2.0000000000000000 Dark Reading - Informationweek Branch Les émirats arabes unis sont des faces de cyber-risque intensifiés<br>United Arab Emirates Faces Intensified Cyber-Risk The UAE leads the Middle East in digital-transformation efforts, but slow patching and legacy technology continue to thwart its security posture.]]> 2024-03-21T05:00:00+00:00 https://www.darkreading.com/cyber-risk/united-arab-emirates-faces-intensified-cyber-risk www.secnews.physaphae.fr/article.php?IdArticle=8467690 False Patching None 3.0000000000000000 Dark Reading - Informationweek Branch Ivanti obtient de mauvaises notes pour la réponse aux incidents cyber-incidents<br>Ivanti Gets Poor Marks for Cyber Incident Response Cascading critical CVEs, cyberattacks, and delayed patching are plaguing Ivanti VPNs, and forcing cybersecurity teams to scramble for solutions. Researchers are unimpressed.]]> 2024-02-13T16:28:37+00:00 https://www.darkreading.com/cloud-security/ivanti-poor-marks-cyber-incident-response www.secnews.physaphae.fr/article.php?IdArticle=8449637 False Patching None 3.0000000000000000 Dark Reading - Informationweek Branch Les entreprises nigérianes sont confrontées à un ransomware croissant en tant que commerce<br>Nigerian Businesses Face Growing Ransomware-as-a-Service Trade Infosec advocacy group warns that poor patching practices and reliance on cracked software increases risk.]]> 2024-01-19T11:00:00+00:00 https://www.darkreading.com/cyberattacks-data-breaches/nigerian-businesses-face-growing-ransomware-as-a-service-trade www.secnews.physaphae.fr/article.php?IdArticle=8440601 False Patching None 3.0000000000000000 Dark Reading - Informationweek Branch L'Afrique, le Moyen-Orient dirige les pairs en cybersécurité, mais lame à l'échelle mondiale<br>Africa, Middle East Lead Peers in Cybersecurity, But Lag Globally Both regions score above average compared to similar sized economies, but investing in updated technologies and patching processes would help cyber resilience globally.]]> 2024-01-16T18:00:00+00:00 https://www.darkreading.com/application-security/africa-middle-east-lead-peers-cybersecurity-lag-globally www.secnews.physaphae.fr/article.php?IdArticle=8439623 False Patching None 2.0000000000000000 Dark Reading - Informationweek Branch Google libère le huitième patch zéro-jour de 2023 pour Chrome<br>Google Releases Eighth Zero-Day Patch of 2023 for Chrome CVE-2023-7024, exploited in the wild prior to patching, is a Chrome vulnerability that allows remote code execution within the browser\'s WebRTC component.]]> 2023-12-22T18:00:00+00:00 https://www.darkreading.com/cloud-security/google-eighth-zero-day-patch-2023-chrome www.secnews.physaphae.fr/article.php?IdArticle=8427494 False Vulnerability,Threat,Patching None 3.0000000000000000 Dark Reading - Informationweek Branch Dangereux exploit activemq apache permet de contourner EDR furtif<br>Dangerous Apache ActiveMQ Exploit Allows Stealthy EDR Bypass There\'s no time to waste: For organizations on the fence about patching the critical bug in ActiveMQ, the new proof-of-concept exploit should push them towards action.]]> 2023-11-16T22:45:00+00:00 https://www.darkreading.com/application-security/dangerous-apache-activemq-exploit-edr-bypass www.secnews.physaphae.fr/article.php?IdArticle=8413104 False Threat,Patching None 2.0000000000000000 Dark Reading - Informationweek Branch CVSS 4.0 offre beaucoup plus de contexte de correction<br>CVSS 4.0 Offers Significantly More Patching Context The latest vulnerability severity scoring system addresses gaps in the previous version; here\'s how to get the most out of it.]]> 2023-11-07T20:40:00+00:00 https://www.darkreading.com/operations/mileage-orgs-will-get-from-cvss-4-0-will-vary www.secnews.physaphae.fr/article.php?IdArticle=8407463 False Vulnerability,Patching None 3.0000000000000000 Dark Reading - Informationweek Branch Exploit de bogues atlassian critique maintenant disponible;Patchage immédiat nécessaire<br>Critical Atlassian Bug Exploit Now Available; Immediate Patching Needed In-the-wild exploit activity from dozens of cyberattacker networks is ramping up for the security vulnerability in Confluence, tracked as CVE-2023-22518.]]> 2023-11-03T21:51:00+00:00 https://www.darkreading.com/attacks-breaches/critical-atlassian-bug-exploit-immediate-patching www.secnews.physaphae.fr/article.php?IdArticle=8405538 False Vulnerability,Threat,Patching None 2.0000000000000000 Dark Reading - Informationweek Branch Microsoft fait ses débuts sur le programme BUG Bounty, offre 15 000 $<br>Microsoft Debuts AI Bug-Bounty Program, Offers $15K The goal of the program is to uncover critical or important vulnerabilities within the AI-powered Bing program.]]> 2023-10-13T17:20:00+00:00 https://www.darkreading.com/vulnerabilities-threats/microsoft-debuts-ai-bug-bounty-program-offers-15k www.secnews.physaphae.fr/article.php?IdArticle=8395223 False Vulnerability,Patching None 3.0000000000000000 Dark Reading - Informationweek Branch NSA: Black Lotus Bootkit Patching n'empêchera pas les compromis<br>NSA: BlackLotus BootKit Patching Won\\'t Prevent Compromise It\'s unclear why the NSA issued in-depth mitigation guidance for the software boot threat now, but orgs should take steps to harden their environments.]]> 2023-06-23T20:44:00+00:00 https://www.darkreading.com/vulnerabilities-threats/nsa-blacklotus-bootkit-patchings-prevent-compromise www.secnews.physaphae.fr/article.php?IdArticle=8348650 False Threat,Patching None 2.0000000000000000 Dark Reading - Informationweek Branch Ce que les RSR d'Apple \\ révèlent sur la gestion des patchs Mac<br>What Apple\\'s RSRs Reveal About Mac Patch Management Apple\'s Rapid Security Response updates are designed to patch critical security vulnerabilities, but how much good can they do when patching is a weeks-long process?]]> 2023-05-31T19:00:00+00:00 https://www.darkreading.com/endpoint/what-apple-rsrs-reveal-about-mac-patch-management www.secnews.physaphae.fr/article.php?IdArticle=8340985 False Patching None 2.0000000000000000 Dark Reading - Informationweek Branch Patching & Passwords Lead the Problem Pack for Cyber-Teams 2023-02-06T19:18:00+00:00 https://www.darkreading.com/cloud/patching-passwords-problem-pack-cyber-teams www.secnews.physaphae.fr/article.php?IdArticle=8307625 False Patching None 3.0000000000000000 Dark Reading - Informationweek Branch Rackspace Ransomware Incident Highlights Risks of Relying on Mitigation Alone 2023-01-09T20:33:00+00:00 https://www.darkreading.com/vulnerabilities-threats/rackspace-ransomware-incident-highlights-risks-mitigation-alone www.secnews.physaphae.fr/article.php?IdArticle=8299318 False Ransomware,Patching None 2.0000000000000000 Dark Reading - Informationweek Branch Aunalytics Launches Security Patching Platform as a Service 2022-09-29T23:56:38+00:00 https://www.darkreading.com/vulnerabilities-threats/aunalytics-launches-security-patching-platform-as-a-service www.secnews.physaphae.fr/article.php?IdArticle=7211273 False Patching None None Dark Reading - Informationweek Branch Popular IoT Cameras Need Patching to Fend Off Catastrophic Attacks 2022-09-15T19:00:00+00:00 https://www.darkreading.com/attacks-breaches/popular-iot-cameras-patching-catastrophic-attacks www.secnews.physaphae.fr/article.php?IdArticle=6914239 False Patching None None Dark Reading - Informationweek Branch Skyrocketing IoT Bug Disclosures Put Pressure on Security Teams 2022-09-01T19:49:52+00:00 https://www.darkreading.com/iot/iot-bug-disclosure-security-teams www.secnews.physaphae.fr/article.php?IdArticle=6670139 False Vulnerability,Patching None None Dark Reading - Informationweek Branch Getting Up and Running with Windows Autopatch 2022-07-13T00:33:43+00:00 https://www.darkreading.com/dr-tech/getting-up-and-running-with-windows-autopatch www.secnews.physaphae.fr/article.php?IdArticle=5692677 False Patching None None Dark Reading - Informationweek Branch Why We\'re Getting Vulnerability Management Wrong 2022-06-24T21:32:18+00:00 https://www.darkreading.com/vulnerabilities-threats/why-we-re-getting-vulnerability-management-wrong www.secnews.physaphae.fr/article.php?IdArticle=5486318 False Vulnerability,Patching None None Dark Reading - Informationweek Branch Patching Poses Security Problems with Move to More Remote Work 2020-03-31T13:45:00+00:00 https://www.darkreading.com/vulnerabilities---threats/vulnerability-management/patching-poses-security-problems-with-move-to-more-remote-work/d/d-id/1337451?_mc=rss_x_drr_edt_aud_dr_x_x-rss-simple www.secnews.physaphae.fr/article.php?IdArticle=1630605 False Patching None None Dark Reading - Informationweek Branch 20 Vulnerabilities to Prioritize Patching Before 2020 2019-12-23T10:00:00+00:00 https://www.darkreading.com/threat-intelligence/20-vulnerabilities-to-prioritize-patching-before-2020/d/d-id/1336691?_mc=rss_x_drr_edt_aud_dr_x_x-rss-simple www.secnews.physaphae.fr/article.php?IdArticle=1494713 False Patching None None