Vue normale

Il y a de nouveaux articles disponibles, cliquez pour rafraîchir la page.
Hier — 17 juin 2026Flux principal

Microsoft patches critical Copilot vulnerabilities that enabled silent data exfiltration

Par : IT News
17 juin 2026 à 17:24
Microsoft patches critical Copilot vulnerabilities that enabled silent data exfiltration
Security researchers recently identified critical vulnerabilities in Microsoft 365 Copilot that allowed attackers to exfiltrate sensitive organizational data. These exploits, known as SearchLeak and EchoLeak, utilized prompt injection techniques to bypass standard security boundaries without requiring user interaction. The flaws targeted the enterprise tier of the service, potentially exposing any information the AI could access within a tenant's environment.

Source

Cloudflare One stack uses AI agents to automate Zero Trust migrations

Par : IT News
17 juin 2026 à 17:24
Cloudflare One stack uses AI agents to automate Zero Trust migrations
Cloudflare has introduced the Cloudflare One stack to simplify the transition to Zero Trust network architectures. This toolkit provides specialized skills for AI agents to automate the configuration, deployment, and management of security environments. It aims to reduce the manual effort required to decode complex network topologies and existing vendor policies.

Source

Cisco expands max-severity SD-WAN advisory as exploitation continues

Par : IT News
17 juin 2026 à 17:24
Cisco expands max-severity SD-WAN advisory as exploitation continues
Cisco has updated a critical security advisory to include the Catalyst SD-WAN Validator, formerly known as vBond, as a product vulnerable to a maximum-severity flaw. This vulnerability, tracked as CVE-2026-20127, involves an improper authentication issue that allows attackers to gain administrative rights and reconfigure the SD-WAN fabric. When combined with a secondary path traversal bug, unauthorized actors can achieve persistent root access to affected networking instances.

Source

AMD removes memory encryption from consumer Ryzen CPUs via firmware update

Par : IT News
17 juin 2026 à 15:23
AMD removes memory encryption from consumer Ryzen CPUs via firmware update
AMD has reportedly disabled Transparent Secure Memory Encryption (TSME) on consumer-grade Ryzen processors through recent firmware updates. TSME is a hardware-level feature that automatically encrypts data stored in system RAM to protect against physical attacks, such as cold-boot exploits or memory snooping. While previously available on standard Ryzen chips, the functionality now appears restricted to the more expensive Ryzen Pro and EPYC product lines.

Source

Cybersecurity leaders urge US to lift restrictions on Anthropic AI models

Par : IT News
17 juin 2026 à 11:49
Cybersecurity leaders urge US to lift restrictions on Anthropic AI models
More than 100 cybersecurity executives and researchers are calling on the Trump administration to reverse export controls placed on Anthropic’s advanced AI models. The government recently ordered the company to suspend access to its Fable 5 and Mythos 5 models for foreign nationals due to national security concerns. Experts argue these restrictions hinder the ability of defenders to identify and patch software vulnerabilities at a critical time.

Source

Government restrictions drive record business adoption for Anthropic AI models

Par : IT News
17 juin 2026 à 11:45
Government restrictions drive record business adoption for Anthropic AI models
The Trump administration has issued an export control directive banning foreign entities and individuals from accessing Anthropic’s most advanced AI models, Fable 5 and Mythos 5. This mandate follows reports that users successfully bypassed safety guardrails on Fable 5 to access the more restricted capabilities of the Mythos system. Anthropic has responded by dispatching technical staff to Washington to negotiate a resolution while effectively pulling the affected models from the market.

Source

Apple to move Hide My Email to a dedicated subdomain

Par : IT News
17 juin 2026 à 11:45
Apple to move Hide My Email to a dedicated subdomain
Apple is planning to modify its Hide My Email service by transitioning generated addresses to a new dedicated subdomain. Currently, these anonymous addresses use the standard @icloud.com domain, making them indistinguishable from primary user accounts. In the coming weeks, the service will shift to using @private.icloud.com for all newly created aliases.

Source

HPE integrates Juniper technology to launch self-driving AI networking

Par : IT News
17 juin 2026 à 11:00
HPE integrates Juniper technology to launch self-driving AI networking
HPE has unveiled a major expansion of its networking strategy at Discover 2026, positioning the network as the primary control plane for artificial intelligence. Following the $14 billion acquisition of Juniper Networks, the company is integrating specialized hardware like QFX switches to support AI training and inference. This shift aims to address the performance gap between rapidly advancing compute power and traditional networking infrastructure.

Source

HPE expands self-driving networking and agentic AI infrastructure

Par : IT News
16 juin 2026 à 22:18
HPE expands self-driving networking and agentic AI infrastructure
HPE has unveiled a comprehensive update to its networking and AI infrastructure to support the deployment of autonomous AI agents. The strategy focuses on "self-driving" networks that integrate Juniper and Aruba technologies to automate operations across data centers and the edge. New hardware including the QFX5140 and QFX5250 switches aims to eliminate bottlenecks in AI inference clusters and rack-scale platforms.

Source

US denies G7 allies access to Anthropic AI models over security risks

Par : IT News
16 juin 2026 à 20:12
US denies G7 allies access to Anthropic AI models over security risks
The Trump administration has rejected requests from G7 allies, including the United Kingdom, for exemptions from a ban on Anthropic’s most advanced artificial intelligence models. Prime Minister Keir Starmer sought a "carve-out" for British companies to access the Fable 5 and Mythos 5 systems, but US officials labeled such an exemption as illogical. The administration maintains that these frontier models must remain restricted to ensure the technology is fully protected from any foreign exploitation or national security threats.

Source

DragonForce ransomware hides command and control traffic within Microsoft Teams

Par : IT News
16 juin 2026 à 19:26
DragonForce ransomware hides command and control traffic within Microsoft Teams
Attackers deploying DragonForce ransomware have developed a sophisticated method to disguise malicious command-and-control traffic as legitimate Microsoft Teams activity. The intrusion involves a custom Go-based backdoor that allows attackers to maintain persistent access to compromised networks for extended periods. By routing communications through official Microsoft infrastructure, the malware evades detection from standard network monitoring tools.

Source

Microsoft: Threat actors exploit AI brand hype to deliver malware and steal credentials

Par : IT News
16 juin 2026 à 19:26
Microsoft: Threat actors exploit AI brand hype to deliver malware and steal credentials
Threat actors are increasingly using popular AI brands like ChatGPT, Claude, and DeepSeek as lures in sophisticated social engineering campaigns. These attacks utilize phishing, malvertising, and SEO manipulation to trick users into downloading malware or revealing sensitive financial information. While the themes are modern, the campaigns rely on established tactics such as urgency-driven messaging and multi-stage redirection to bypass security filters.

Source

❌
❌