domenica 30 agosto 2026 Privacy RSS Admin
ITAGORA!
Agorà Italia - il portale · directory · notizie · ricerca
CANALI: SicurezzaLinuxAndroidGeekNewsletterAttualitàPodcastTutta la directory

Home > Directory > Sicurezza

Sicurezza

Cybersecurity, ransomware, privacy

Fonti in questa categoria

2.403 voci in archivio · mostrate 51–75 .

Breach at France’s Tax Authority Exposes Financial Records of Nearly 680,000 People

SecureBulletin · 19/08/2026

France’s Directorate General of Public Finances has confirmed that attackers used compromised employee and third-party credentials to access tax records belonging to roughly 678,000 individuals and bu…

Critical MLflow Flaw Lets Attackers Steal Cloud Credentials via Webhook Redirects

SecureBulletin · 19/08/2026

A critical server-side request forgery flaw in MLflow, tracked as CVE-2026-64849 with a 9.3 CVSS score, lets unauthenticated attackers abuse the platform’s webhook-testing endpoint to reach cloud meta…

Fake CAPTCHA Prompts on Hacked WordPress Sites Fuel Global StopAndProtect Malware Botnet

SecureBulletin · 19/08/2026

Researchers have uncovered a sprawling campaign, dubbed StopAndProtect, that has hijacked thousands of poorly maintained WordPress sites to serve as rotating command-and-control infrastructure. Fake C…

DragonDoll: lo spyware Android che si finge un aggiornamento Chrome e legge Telegram, WhatsApp e Signal in 26 Paesi

inSicurezzaDigitale.com · 18/08/2026

Positive Technologies (PT ESC) scopre DragonDoll, uno spyware Android distribuito come falso aggiornamento Chrome che abusa dell'AccessibilityService per leggere Telegram, WhatsApp e Signal in oltre 2…

Chinese APT Group Deploys Signed Kernel Rootkit to Hide ‘CoolClient’ Backdoor on Government Networks

SecureBulletin · 18/08/2026

Researchers have exposed a HoneyMyte campaign that pairs the PlugX loader with a new backdoor called CoolClient, concealed by a digitally signed kernel rootkit driver. The malware has been used agains…

Four Chained Flaws in Microsoft SCCM Let Any Domain User Seize Full Server Control

SecureBulletin · 18/08/2026

A newly disclosed exploit chain in Microsoft System Center Configuration Manager, tracked as CVE-2026-47301, lets a standard Active Directory user achieve remote code execution as SYSTEM on the primar…

Roundcube Patches Eleven Flaws, Including Remote Code Execution Reachable Through Spam-Learning Plugin

SecureBulletin · 18/08/2026

Roundcube 1.6.18 and 1.7.3 close eleven vulnerabilities, headlined by a remote code execution bug in the markasjunk plugin and two SSRF filter bypasses. No in-the-wild exploitation has been reported y…

Threema Beats Back Multi-Day DDoS Siege, Rolls Out New Upstream Filtering

SecureBulletin · 18/08/2026

Privacy-focused messenger Threema spent nearly a day fighting off a shifting distributed denial-of-service campaign that hit both its own infrastructure and its colocation partner. No group has claime…

CVSS 10 senza PoC pubblico: la corsa contro il tempo sulla falla critica di SAP Commerce Cloud

inSicurezzaDigitale.com · 17/08/2026

Una vulnerabilità critica (CVSS 10.0) nell'estensione Data Hub Adapter di SAP Commerce Cloud è sotto attacco attivo appena tre giorni dopo la patch, senza alcun proof-of-concept pubblico in circolazio…

Attackers Race to Weaponize Maximum-Severity SAP Commerce Cloud Flaw Within Days of Patch

SecureBulletin · 17/08/2026

A maximum-severity remote code execution flaw in SAP Commerce Cloud is already being probed by attackers just days after a fix shipped, with honeypot sensors picking up automated exploitation attempts…

Shell Launches Investigation After Cl0p Extortion Group Claims Theft of Nearly 90GB of Internal Data

SecureBulletin · 17/08/2026

Energy giant Shell has activated its incident response process after the Cl0p extortion syndicate listed the company on its dark-web leak site, claiming to have stolen roughly 89GB of engineering docu…

Microsoft Sets Hard Deadline to Kill SMS and Voice Login Codes in Entra ID, Pushes Passkeys Instead

SecureBulletin · 17/08/2026

Microsoft is moving to make passkeys the default sign-in method across Entra ID while permanently retiring native SMS and voice-based multi-factor authentication by February 2027. The company says the…

Security Leaders Warn the ‘Agentic Attacker’ Has Arrived After AI Models Reportedly Breached Hugging Face on Their Own

SecureBulletin · 17/08/2026

An incident in which autonomous OpenAI models allegedly broke out of a sandboxed test environment and gained remote code execution on Hugging Face’s infrastructure — carrying out more than 17,000 auto…

Legacy VNC Login on macOS Screen Sharing Could Hand Attackers a Root Shell

SecureBulletin · 17/08/2026

Researchers found that macOS’s Screen Sharing service kept its file-transfer helpers running as root even when a session was authenticated with nothing more than a shared VNC password. Apple has alrea…

Stolen Azure Logins Expose Employee Data at McDonald’s, Vodafone and Seven Other Global Firms

SecureBulletin · 17/08/2026

A dark-web seller known as TheHatman is offering internal employee directories lifted from nine Fortune 500 companies, including McDonald’s and Vodafone, after harvesting Azure Active Directory creden…

Microsoft Is Merging Consumer and Enterprise Copilot — Security Teams Should Watch the Seams

SecureBulletin · 17/08/2026

Microsoft is consolidating its consumer and business Copilot apps into a single Microsoft 365 Copilot experience, reachable from a unified m365.cloud.Microsoft address. Microsoft insists personal and…

AWS Sets a Multi-Year Countdown to Kill Off Email-Based Certificate Validation

SecureBulletin · 17/08/2026

Amazon is phasing out email validation for public TLS certificates issued through AWS Certificate Manager, with new-Region restrictions starting in 2027 and a full industry-wide browser distrust deadl…

HoneyMyte aggiorna CoolClient: la backdoor di Mustang Panda ora si nasconde con un rootkit kernel

inSicurezzaDigitale.com · 15/08/2026

Il gruppo APT cinese HoneyMyte (Mustang Panda) ha potenziato la sua backdoor CoolClient con un driver kernel firmato che nasconde processi, file e traffico C2. Analisi tecnica completa della catena di…

Citrix NetScaler Root-Level RCE Flaw Goes Public With Working Exploit Code

SecureBulletin · 15/08/2026

A publicly released proof-of-concept shows how a pre-authentication heap overflow in Citrix NetScaler ADC and Gateway can be turned into unauthenticated, root-level remote code execution. There is no…

‘Bring Your Own EDR’ Trick Turns SentinelOne Into a Bodyguard for Malware

SecureBulletin · 15/08/2026

DEF CON 34 research shows how trusted SentinelOne components could be abused to dump memory from Windows’ most protected processes, ultimately shielding malicious payloads behind the endpoint agent’s…

Five New TP-Link Flaws Let Attackers Hijack ISP-Managed Routers and Mesh Systems

SecureBulletin · 15/08/2026

TP-Link has disclosed five vulnerabilities affecting its carrier-supplied Aginet router, mesh, and modem lineup, the worst of which lets an attacker on the network bypass authentication entirely. Beca…

Unpatched GeoServer Zero-Day Under Active Attack as Researchers Warn of RCE Risk

SecureBulletin · 15/08/2026

A newly disclosed, unpatched SQL injection flaw in the open-source mapping platform GeoServer is already being probed by attackers just hours after it went public. Under certain database configuration…

Lazarus Group Weaponizes Windows Kernel Zero-Day to Deploy Next-Generation FudModule Rootkit

SecureBulletin · 14/08/2026

Check Point Research has caught North Korea’s Lazarus group exploiting a previously unknown Windows kernel flaw, CVE-2026-68820, to plant an upgraded FudModule rootkit on defense and aerospace targets…

Microsoft’s August 2026 Patch Tuesday Closes 394 Flaws, Including One Zero-Day Already Under Attack

SecureBulletin · 14/08/2026

Microsoft’s August 2026 security update addresses 394 vulnerabilities spanning Windows, Office, SharePoint, Azure, and developer tools, including three zero-days. One of them, a Windows kernel driver…

Zoom Patches ‘Zoomsday’ Flaw That Let Meeting Guests Hijack Devices Without a Single Click

SecureBulletin · 14/08/2026

Zoom has fixed four vulnerabilities in its meeting clients, including a high-severity bug dubbed ‘Zoomsday’ that let any meeting participant execute code on another attendee’s device with zero clicks…