Parce que… c’est l’épisode 0x693!
Shameless plug
25 et 26 février 2026 - SéQCure 2026
CfP
31 mars au 2 avril 2026 - Forum INCYBER - Europe 2026
14 au 17 avril 2026 - Botconf 2026
28 et 29 avril 2026 - Cybereco Cyberconférence 2026
9 au 17 mai 2026 - NorthSec 2026
3 au 5 juin 2026 - SSTIC 2026
19 septembre 2026 - Bsides MontréalNotes
IA
Grok / juvénile
Grok Is Pushing AI ‘Undressing’ Mainstream
Grok assumes users seeking images of underage girls have “good intent”
Dems pressure Google, Apple to drop X app as international regulators turn up heat
Tim Cook and Sundar Pichai are cowards
MCP
The 5 Knights of the MCP Apocalypse 😱
MCP is a fad
VSCode IDE forks expose users to “recommended extension” attacks
Are Copilot prompt injection flaws vulnerabilities or AI limits?
OpenAI patches déjà vu prompt injection vuln in ChatGPT
Devs doubt AI-written code, but don’t always check it
Code is a liability (not an asset) from Cory Doctorow
Eurostar AI vulnerability: when a chatbot goes off the rails
Max severity Ni8mare flaw lets hackers hijack n8n servers
Red
Trusted
Hackers Exploited Routing Scenarios and Misconfigurtions to Effectively Spoof Organizations
Google Cloud phishing bypasses email filters
MatheuZSecurity/Singularity: Stealthy Linux Kernel Rootkit for modern kernels (6x)
Kernel bugs hide for 2 years on average. Some hide for 20.
ClickFix attack uses fake Windows BSOD screens to push malware
Telegram héberge le plus grand marché noir de l’histoire (et tout le monde s’en fout)
La clé magique qui déverrouille tous les scooters Äike
Lack of MFA Is Common Thread in Vast Cloud Credential Heist
Phishers Exploit Office 365 Users Who Let Their Guard Down
The Story of a Perfect Exploit Chain: Six Bugs That Looked Harmless Until They Became Pre-Auth RCE in a Security Appliance
Blue
Email
Microsoft cancels plans to rate limit Exchange Online bulk emails
Everything You Need to Know About Email Encryption in 2026
Email security needs more seatbelts: Why click rate is the wrong metric
Microsoft to enforce MFA for Microsoft 365 admin center sign-ins
Privacy
The nation’s strictest privacy law just took effect, to data brokers’ chagrin
Why Most Websites Don’t Need Cookie Consent Banners
Palantir - L’histoire secrète de l’œil numérique qui voit tout
Souveraineté
Cloudflare pours cold water on Venezuela attack BGP theory
Fact Sheet: President Donald J. Trump Withdraws the United States from International Organizations that Are Contrary to the Interests of the United States
French-U.K. Starlink rival pitches Canada on ‘sovereign’ satellite service for Arctic military operations
Brussels plots open source push to pry Europe off Big Tech
Divers
Justice
French Court Orders Google DNS to Block Pirate Sites, Dismisses ‘Cloudflare-First’ Defense
Italy Fines Cloudflare €14 Million for Refusing to Filter Pirate Sites on Public 1.1.1.1 DNS
Iran
[Iran Goes Dark as Government Cuts Itself Off from Internet
Kentik](https://www.kentik.com/analysis/iran-goes-dark-as-government-cuts-itself-off-from-internet/)
[As Iranian regime shuts down internet, even Starlink seemingly being jammed
The Times of Israel](https://www.timesofisrael.com/iran-appears-to-jam-starlink-after-shutting-down-comms-networks/)
How Hackers Are Fighting Back Against ICE
Instagram Data Leak Exposes Sensitive Info of 17.5M Accounts
2025 in retrospect & happy new year 2026! – Gentoo Linux
Collaborateurs
Nicolas-Loïc FortinCrédits
Montage par Intrasecure inc
Locaux réels par Intrasecure inc