The French Computer Emergency Response Team (CERT-FR) has notified users of targeted spyware attacks via Apple on August 13, 2026. Affected individuals are urged to contact CERT-FR immediately. Additionally, CERT-FR warns of multiple vulnerabilities in Keycloak software versions prior to 26.7.2, which could allow attackers to bypass security policies and exploit unspecified issues. A specific vulnerability, CVE-2026-18963, enables unauthenticated attackers to compromise accounts if they know the username. Red Hat recommends disabling the ‘Forgot password’ feature as a temporary fix if updates are not immediately applied. Users are advised to consult Keycloak’s security bulletin for patches. Details are available at https://www.keycloak.org/2026/08/keycloak-2672-released and linked CVE records.
Summary of content from
Made by AI. If you spot anything of concern write us at contact@cybach.com. We’ll promptly correct irregularities.