Parce que… c’est l’épisode 0x655!
Shameless plug
4 et 5 novembre 2025 - FAIRCON 2025
8 et 9 novembre 2025 - DEATHcon
17 au 20 novembre 2025 - European Cyber Week
25 et 26 février 2026 - SéQCure 2026
14 au 17 avril 2026 - Botconf 2026
28 et 29 avril 2026 - Cybereco Cyberconférence 2026
9 au 17 mai 2026 - NorthSec 2026
3 au 5 juin 2025 - SSTIC 2026Notes
Résilience du cloud
Microsoft: DNS outage impacts Azure and Microsoft 365 services
Kevin Beaumont: “Yep, just did some testing - A…” - Cyberplace
Kevin Beaumont: “If you’re wondering what prote…” - Cyberplace
Microsoft Services Experience Global Outage Due to Faulty Cloud Configuration
Microsoft Azure challenges AWS for downtime crown
Kevin Beaumont: “If you’re wondering the AWS an…” - Cyberplace
IA
The glaring security risks with AI browser agents
OpenAI’s Atlas browser — and others — can be tricked by manipulated web content
New Agent-Aware Cloaking Leverages OpenAI ChatGPT Atlas Browser to Deliver Fake Content
Ex-CISA chief says AI could mean the end of cybersecurity
AI-Generated Code Poses Security, Bloat Challenges
AI Trust Paradox: Overcome Fear Auto Cyber Remediation
Anthropic’s Claude convinced to exfiltrate private data
OpenAI unleashes Aardvark security agent in private beta
Red
New EDR-Redir Tool Breaks EDR Exploiting Bind Filter and Cloud Filter Driver
New EDR-Redir V2 Blinds Windows Defender on Windows 11 With Fake Program Files
Hackers Exploiting Microsoft WSUS Vulnerability In The Wild - 2800 Instances Exposed Online
oss-sec: Questionable CVE’s reported against dnsmasq
81% Router Usres Have Not Changed Default Admin Passwords, Exposing Devices to Hackers
Sweden’s power grid operator confirms data breach claimed by ransomware gang
What Is Bring Your Own Vulnerable Driver (BYOVD)?
High-Severity OpenVPN Flaw (CVE-2025-10680) Allows Script Injection on Linux/macOS via Malicious DNS Server
Beware of Free Video Game Cheats That Delivers Infostealer Malwares
New Atroposia malware comes with a local vulnerability scanner
New Android Trojan ‘Herodotus’ Outsmarts Anti-Fraud Systems by Typing Like a Human
Next-gen firewalls, VPNs can increase security risks: At-Bay
Tata Motors Data Leak - 70+ TB of Sensitive Info and Test Drive Data Exposed via AWS Keys
9 in 10 Exchange servers in Germany are out of support
Cyberpunks mess with Canada’s water, energy, farm systems
Multiple Jenkins Vulnerability SAML Authentication Bypass And MCP Server Plugin Permissions
Blue
Mozilla to Require Data-Collection Disclosure in All New Firefox Extensions
CISOs Finally Get a Seat at the Board’s Table
Ransomware Profits Drop As Victims Stop Paying Hackers
Making A Virtual Machine Look Like Real Hardware To Malware
Open-Source Firewall IPFire 2.29 With New Reporting For Intrusion Prevention System
Agent Fatigue Is Real and Your Security Stack Is to Blame
ATT&CK v18: The Detection Overhaul You’ve Been Waiting For
How Threat Intelligence Feeds Help Organizations Quickly Mitigate Malware Attacks
Passkeys: they’re not perfect but they’re getting better
Google Unveils Guide for Defenders to Monitor Privileged User Accounts
Google Chrome Will Finally Default To Secure HTTPS Connections Starting in April
CISA Releases Best Security Practices Guide for Hardening Microsoft Exchange Server
Russia arrests three suspected Meduza infostealer devs
Privacy
What brain privacy will look like in the age of neurotech
Proton 2025 autumn/winter roadmaps
[New Release: Tor Browser 15.0
The Tor Project](https://blog.torproject.org/new-release-tor-browser-150/)
Divers
EU sovereignty plan accused of helping US cloud giants
Red lights flashing at CISPE over Broadcom licensing antics
France signs up to the Matrix.org Foundation
US declines to join more than 70 countries in signing UN cybercrime treaty
International Criminal Court To Ditch Microsoft Office For European Open Source Alternative
Everyone Wants to Hack — No One Wants to Think
Collaborateurs
Nicolas-Loïc FortinCrédits
Montage par Intrasecure inc
Locaux réels par Intrasecure inc