Nyhetsnavet

Samlar nyheter från utvalda källor. Logga in för att spara urval och skapa profiler.

Uppdaterad 2026-10-06 22:03 Nästa om --:-- Försenad
14 av 14 källor 10 per källa

IT-säkerhet och cybersäkerhet i realtid — CVE-varningar, sårbarhetsrapporter, incidenter och hotinformation från NVD, CISA, BleepingComputer och fler SOC-källor.

Snabbfilter
Toppnyheter Säkerhet
Säkerhet 30 artiklar
BleepingComputer ikon
BleepingComputer
Atlassian warns of critical file-access flaw in Jira, Confluence

Atlassian is warning customers of a critical vulnerability, tracked as CVE-2026-21589, that can be exploited for arbitrary file-access in multiple self-hosted Data Center products, including Confluence, Jira, and...

BleepingComputer ikon BleepingComputer
BleepingComputer ikon
BleepingComputer
ASOS confirms data breach after “HACKED” in-app notifications

UK fashion retailer ASOS confirmed a data breach Tuesday after hackers sent unauthorized push notifications through its mobile app while claiming to have stolen customer data from the company's Snowflake environment....

BleepingComputer ikon BleepingComputer
GitHub Security Advisories ikon
GitHub Security Advisories
CVE-2026-105852: Payload relationship-query authorization bypass

## Impact A readable collection could expose information about protected documents in a related collection. **You are affected if:** - You expose a readable collection with a relationship to a collection protected by...

GitHub Security Advisories ikon GitHub Security Advisories
GitHub Security Advisories ikon
GitHub Security Advisories
CVE-2026-105848: Payload: Insufficient Access Control in Stripe REST Proxy

## Impact An authenticated user could perform unintended Stripe operations through the optional Stripe REST proxy. **You are affected if ALL of these are true:** - Your application uses `@payloadcms/plugin-stripe`. -...

GitHub Security Advisories ikon GitHub Security Advisories
GitHub Security Advisories ikon
GitHub Security Advisories
CVE-2026-105806: Payload: Improper access control for MCP API keys

### Impact Under certain conditions, an authenticated user could manage MCP API keys outside their intended account allowing an attacker to escalate privileges through account takeover. Applications that do not use...

GitHub Security Advisories ikon GitHub Security Advisories
BleepingComputer ikon
BleepingComputer
Fake ChatGPT, Gemini Sites steal advertising accounts, MFA codes

A new campaign targeting ad account managers uses fake ChatGPT, Gemini, Claude, and Perplexity sites that steal login credentials and multi-factor authentication (MFA) codes through browser-in-browser attacks. [...]

BleepingComputer ikon BleepingComputer
SecurityWeek Vulnerabilities ikon
SecurityWeek Vulnerabilities
FBI Blames Contractor’s Missed Patch for ShinyHunters Breach

The FBI has removed an Accenture contractor over a data breach that exposed personal information of thousands of bureau employees. The post FBI Blames Contractor’s Missed Patch for ShinyHunters Breach appeared first...

SecurityWeek Vulnerabilities ikon SecurityWeek Vulnerabilities
BleepingComputer ikon
BleepingComputer
How to secure RMM software: 8 controls MSPs should test

RMM platforms give MSPs privileged access across customer environments, making their security controls critical to limiting risk. Acronis outlines eight controls MSPs should test when evaluating RMM software, from...

BleepingComputer ikon BleepingComputer
1 fler källor
Microsoft MSRC CVE-2026-68894 Windows Error Reporting Elevation of Privilege Vulnerability 2026-10-06 16:00
1 fler källor
Microsoft MSRC CVE-2026-72999 Windows USB Hub Driver Elevation of Privilege Vulnerability 2026-10-06 16:00
Microsoft MSRC CVE-2026-61927 Windows Bind Filter Driver Elevation of Privilege Vulnerability 2026-10-06 16:00
SecurityWeek Vulnerabilities ikon
SecurityWeek Vulnerabilities
FBI Arrests ‘Most Wanted’ Developer of Ploutus ATM Malware

An alleged leader of Tren de Aragua’s ATM jackpotting activities, Canelon Aguirre was on the FBI’s top 10 most wanted list since March 2026. The post FBI Arrests ‘Most Wanted’ Developer of Ploutus ATM Malware appeared...

SecurityWeek Vulnerabilities ikon SecurityWeek Vulnerabilities
Ladda fler
Visar 30 av 140 artiklar