Agregátor RSS

Webinar tomorrow: Inside real-world Google Workspace breaches

Bleeping Computer - 22 Září, 2026 - 14:57
Tomorrow's webinar examines real Google Workspace breaches involving social engineering and malicious OAuth applications, from initial access through the critical first hours of incident response. Learn which security controls and response decisions can make the greatest difference. [...]
Kategorie: Hacking & Security

D-Link warns of max severity zero-day bug in DIR-822A routers

Bleeping Computer - 22 Září, 2026 - 14:48
D-Link warned customers of a maximum-severity vulnerability (CVE-2026-86296) with public proof-of-concept (PoC) exploit code and no patch, affecting legacy DIR-822A dual-band Wi-Fi routers. [...]
Kategorie: Hacking & Security

Googlebooky míří na trh. ChromeOS mizí, nahradí ho desktopový Android. Cena zatím není nízká

Živě.cz - 22 Září, 2026 - 14:45
Google představil prvních pět oficiálních Googlebooků. Acer, Dell, Asus, Lenovo a HP uvedou po jednom modelu nového typu notebooků. Googlebooky mají nahradit Chromebooky a (podobně jako současné Chromebooky) nabídnou plnohodnotný prohlížeč Chrome spolu s podporou aplikací pro Android. Googlebooky ...
Kategorie: IT News

AI Agents Are Rewriting the Rules of Lateral Movement

The Hacker News - 22 Září, 2026 - 14:30
Security teams have spent decades asking whether an identity has too much access. AI agents raise a harder question: how can we determine which paths an autonomous system can discover, given the access it already has? A person may try several ways to complete a task. A deterministic application follows the flow its developer wrote. But an AI agent is relentless in its pursuit of done. In May [email protected]
Kategorie: Hacking & Security

New CVSS 10.0 VeloCloud Orchestrator Flaw Actively Exploited in Certificate-Based Setups

The Hacker News - 22 Září, 2026 - 14:29
Attackers are exploiting a new flaw in on-premises VeloCloud Orchestrator (VCO), the server that manages the Edge devices in a VeloCloud SD-WAN, Arista said on September 22. The flaw, tracked as CVE-2026-93952, may allow a remote attacker with no login access to privilege internal functions and affect the VCO host. Only orchestrators set up to authenticate their Edges with certificates are Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

DORA Year Two: Can Your SOC Actually See the Attack?

The Hacker News - 22 Září, 2026 - 13:45
When the Digital Operational Resilience Act (DORA) became enforceable across the European Union in January 2025, it triggered an administrative sprint. Financial entities spent the first year establishing risk governance, assessing third-party service providers, updating contract clauses, and documenting incident escalation workflows. Now in its second year, the harder part of DORA is [email protected]
Kategorie: Hacking & Security

New Linux Kernel Flaw Gives ARM64 KVM Guests Read-Write Access to Host Memory

The Hacker News - 22 Září, 2026 - 13:38
A new flaw in the Linux kernel's KVM virtualization code for ARM64 processors can leave a freed piece of host memory exposed to a guest virtual machine on hosts with nested virtualization enabled. The bug, tracked as CVE-2026-89775, allows a guest to read and write host kernel memory, and the researcher who found it says it can be used to escape the guest and run code on the host machine. Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE

The Hacker News - 22 Září, 2026 - 13:17
A SharePoint Server vulnerability that Microsoft initially classified as a spoofing flaw with a CVSS score of 6.5 actually enables authenticated remote code execution, according to full technical details published today by Viettel Cyber Security researcher Dinh Ho Anh Khoa. The flaw, CVE-2026-65660, affects SharePoint Server 2016, 2019, and Subscription Edition. Patches have been Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Ergonomická myš od Alzy nabídne skoro totéž co vzor od Logitechu, ale stojí jen 374 Kč

Živě.cz - 22 Září, 2026 - 12:41
Eternico MSB550B připomíná Logitech MX Master, ale stojí pouze zlomek ceny. • Zlevnila o čtvrtinu na 374 Kč a je na ni tříletá záruka. • Myš má ergonomický tvar, tichá tlačítka, kovové kolečko a lze ji spárovat se třemi PC najednou.
Kategorie: IT News

Poláci začali stavět nové superletiště. Megastavba za 737 miliard korun má být hotová v šibeničním termínu (video)

Živě.cz - 22 Září, 2026 - 12:17
Před devíti lety se Polsko rozhodlo, že chce být středoevropskou Dubají, a tamní vláda proto schválila ambiciózní plán výstavby nového obřího letiště na půli cesty mezi Varšavou a Lodží. Port Polska, jak se celý projekt nového národního dopravního hubu jmenuje, počítá také se stavbou ...
Kategorie: IT News

New Windows Defender zero-day blocks Microsoft antivirus updates

Bleeping Computer - 22 Září, 2026 - 11:55
Over the weekend, security researcher Abdelhamid Naceri (also known as Nightmare Eclipse) released another Microsoft Defender zero-day exploit that blocks antivirus updates. [...]
Kategorie: Hacking & Security

Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal

The Hacker News - 22 Září, 2026 - 11:38
A malicious npm package named "indexed-btree" has been observed hiding its malicious behavior within application code rather than using lifecycle scripts, indicating that threat actors are likely shifting tactics in response to recent security controls. "Indexed-btree is a malicious npm package mimicking the legit sorted-btree package, an ordinary B-tree/indexing utility," Checkmarx said. "Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

HDMI 2.2 přichází. Kabely ale nemáte k čemu připojit, navíc Ultra96 nemusí znamenat 96 Gb/s

Živě.cz - 22 Září, 2026 - 11:15
HDMI 2.2 se začíná pomalu přesouvat z technické specifikace do skutečných obchodů. První certifikované kabely Ultra96se už začínají prodávat prodeje a zvládnou přenos až 96 Gb/s, tedy dvojnásobek proti současnému HDMI 2.1.
Kategorie: IT News

CISA orders feds to patch Zyxel flaw exploited for data theft

Bleeping Computer - 22 Září, 2026 - 10:53
​Attackers are now actively exploiting a high-severity vulnerability in Zyxel GS1900 series switches, according to the U.S. Cybersecurity and Infrastructure Security Agency (CISA). [...]
Kategorie: Hacking & Security

Od absolutních zákazů ke každodennímu využití. Rozhovor s propagátorem AI ve vzdělávání Markem Dědičem

Živě.cz - 22 Září, 2026 - 10:45
Umělá inteligence se během několika let stala běžnou součástí školního života. Jak se mění role učitelů, proč už nestačí studentům AI zakazovat a jak děti naučit, aby chatbotům bezmezně nevěřily? A nahradí AI jednou kantory?
Kategorie: IT News

AMD historicky poprvé překonala hodnotu $1 bilionu

CD-R server - 22 Září, 2026 - 10:00
Vůbec poprvé AMD dosáhla hodnotou (vyjádřenou jako tržní kapitalizace) $1 bilion, což znamená, že její celková hodnota na burze překonává ARM, Dell a MediaTek. Dohromady…
Kategorie: IT News

SideCopy Broadens India Targeting to Academia With ReverseRAT Spear-Phishing

The Hacker News - 22 Září, 2026 - 09:52
The threat actor known as SideCopy has been observed using spear-phishing lures to target academic institutions in India, expanding their strategic focus beyond government entities. "SideCopy campaign operations typically initiate through spear-phishing campaigns that leverage the abuse of mshta.exe to execute malicious scripts and circumvent standard security protocols," Trellix researchers Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security
Syndikovat obsah