Vue normale

Il y a de nouveaux articles disponibles, cliquez pour rafraîchir la page.
Aujourd’hui — 16 septembre 2026Flux principal

Lenovo’s agentic AI SOC cuts threat detection time by 87.5%

Par : IT News
15 septembre 2026 à 23:43
Lenovo’s agentic AI SOC cuts threat detection time by 87.5%
Lenovo says its agentic AI-powered security operations center reduced threat-detection time by 87.5% across an internal network of more than 140,000 devices. The deployment also delivered a reported 20-fold improvement in detection accuracy, giving administrators a large-scale example of how AI agents can automate SOC work without removing human oversight.

Source

Cisco brings Splunk AI on premises and adds real-time token cost tracking

Par : IT News
15 septembre 2026 à 23:43
Cisco brings Splunk AI on premises and adds real-time token cost tracking
Cisco is extending Splunk AI to self-managed, private-cloud, and air-gapped environments while giving IT teams real-time visibility into agent behavior and token spending. The updates also add runtime guardrails, network-aware troubleshooting, and broader deployment options for Splunk Agent Observability.

Source

Windows 11 23H2 Enterprise and Education have 60 days left

Par : IT News
15 septembre 2026 à 23:42
Windows 11 23H2 Enterprise and Education have 60 days left
Microsoft has given organizations still running Windows 11 23H2 Enterprise or Education roughly two months to begin upgrading before support ends on November 10, 2026. The November security update will be the final one for these editions; afterward, affected devices will no longer receive monthly security, quality, or preview updates.

Source

Java 27 ships hybrid post-quantum TLS and a new default GC

Par : IT News
15 septembre 2026 à 18:49
Java 27 ships hybrid post-quantum TLS and a new default GC
Java 27 is now available with hybrid post-quantum key exchange for TLS 1.3, giving Java teams a migration path toward quantum-resistant communications without abandoning current cryptography. The release also makes G1 the default garbage collector in every environment and adds performance and productivity improvements aimed at AI-heavy workloads.

Source

One Copilot license unlocks SharePoint Advanced Management—but not all controls

Par : IT News
15 septembre 2026 à 18:49
One Copilot license unlocks SharePoint Advanced Management—but not all controls
Microsoft 365 Copilot licensing now effectively unlocks key SharePoint Advanced Management capabilities for the whole tenant, changing how organizations should plan Copilot readiness. The entitlement helps administrators find overshared, stale, and ownerless content, but advanced Purview protections still require Microsoft 365 E5 or equivalent licensing.

Source

OpenAI backs first federal plan for third-party AI safety assessments

Par : IT News
15 septembre 2026 à 18:22
OpenAI backs first federal plan for third-party AI safety assessments
OpenAI is endorsing a specific federal mandate for third-party safety assessments of the most powerful AI models, marking a significant shift from voluntary safeguards to legally required oversight. A bipartisan group of six House lawmakers is proposing that the Department of Commerce accredit independent auditors and appoint an official to supervise AI security compliance.

Source

Hier — 15 septembre 2026Flux principal

Ransomware gangs join attacks on critical VMware vCenter flaw

Par : IT News
15 septembre 2026 à 15:25
Ransomware gangs join attacks on critical VMware vCenter flaw
CISA now says ransomware gangs are exploiting CVE-2026-59310, the critical VMware vCenter flaw that had already compromised vCenter systems in attacks. Broadcom patched the unauthenticated directory-traversal vulnerability in July, but more than 450 vCenter servers remain exposed online, increasing the urgency for organizations that have not completed remediation.

Source

What Zero-Day Response Should Be in the Post-Mythos Era

15 septembre 2026 à 15:45
AI is shrinking the time between vulnerability disclosure and exploitation, leaving defenders less time to wait for patches or public exploits. Picus Security explains how exploitability validation, security control testing, and autonomous pentesting can help teams close exposure gaps before attackers arrive. [...]

Splunk takes AI on-prem with Nvidia while deepening its AWS security pact

Par : IT News
15 septembre 2026 à 12:06
Splunk takes AI on-prem with Nvidia while deepening its AWS security pact
Splunk is expanding in two directions at once: bringing AI-driven operations closer to sensitive on-premises data with Cisco and Nvidia, while moving beyond AWS integrations toward jointly designed, agent-based security products. The strategy positions Splunk as a full-stack observability and security platform spanning cloud, data center, and edge environments.

Source

BlueMoon chain puts Chrome users at risk from GRIMWEDGE

Par : IT News
15 septembre 2026 à 12:05
BlueMoon chain puts Chrome users at risk from GRIMWEDGE
A campaign used the BlueMoon Chrome-Windows exploit chain, delivering the GRIMWEDGE JavaScript backdoor through a compromised university website. The operation adds a UTA0560 campaign and a new payload to the BlueMoon exploit kit spreading across espionage campaigns, increasing the urgency for administrators to update both Chrome and Windows.

Source

Cisco Secure Email Gateway zero-day gets patches after root-level attacks

Par : IT News
15 septembre 2026 à 12:05
Cisco Secure Email Gateway zero-day gets patches after root-level attacks
Cisco has patched CVE-2026-76461, a critical Cisco Secure Email Gateway zero-day that attackers are exploiting to run commands as root through specially crafted email messages. CISA has added the flaw to its Known Exploited Vulnerabilities catalog and ordered federal agencies to patch by September 17.

Source

Windows 11 KB5124008 breaks domain trust; Machine Identity Isolation may be the key

Par : IT News
15 septembre 2026 à 12:05
Windows 11 KB5124008 breaks domain trust; Machine Identity Isolation may be the key
Windows administrators are reporting that Windows 11 security update KB5124008 can break domain authentication by destroying the computer’s Netlogon secure channel. The failure has been reproduced across multiple systems and appears on networks using Windows Server 2019 and Server 2022 domain controllers, while Microsoft has not yet confirmed the issue or provided a permanent fix.

Source

❌
❌