Sicurezza
Cybersecurity, ransomware, privacy
- inSicurezzaDigitale.com — Cybersecurity in italiano IT
- SecureBulletin — Cybersecurity news in English EN
- Ransomfeed Daily News — Daily cybersecurity news EN
2.415 voci in archivio · mostrate 976–1.000 .
Black Basta and CACTUS ransomware: shared BackConnect module signals affiliate transition
Recent analysis has revealed a significant overlap in the tactics, techniques, and procedures (TTPs) employed by the Black Basta and CACTUS ransomware groups. Specifically, researchers have uncovered…
Black Basta: sulle tracce di Tramp, il leader nell’ombra e i suoi legami oscuri
Un leak di dati interni al gruppo ransomware Black Basta ha movimentato la comunità di cyber intelligence settimana scorsa, rivelando dettagli inediti sull’organizzazione e sui suoi membri chiave. Tra…
Anubis: new ransomware threat
A new player has emerged in the ransomware landscape: Anubis. This group, first observed in December 2024, is quickly making a name for itself through a multi-faceted extortion model that goes beyond…
Lazarus group’s Billion-Dollar Bybit heist: a cyber forensics analysis
The Lazarus Group, a notorious North Korean state-sponsored hacking collective, has once again demonstrated its sophistication and audacity with a staggering $1.5 billion cryptocurrency heist targetin…
Streamjacking scams target CS2 gamers during major esports events
The thrill of victory, the roar of the crowd, the allure of valuable in-game skins – these are the emotions that fuel the Counter-Strike 2 (CS2) esports scene. However, lurking in the shadows of these…
Ghost Ransomware: an analysis of tactics, targets, and techniques
A joint advisory from CISA, the FBI, and the MS-ISAC sheds light on the activities of the Ghost ransomware gang, a cybercriminal group that has been actively targeting organizations across the globe s…
Russia-Aligned actors intensify targeting of Signal Messenger
Recent reporting from Google’s Threat Intelligence Group (GTIG) highlights a surge in activity from Russian state-aligned threat actors targeting Signal Messenger accounts. This campaign, likely drive…
Critical Palo Alto Firewall flaw under active attack: Patch NOW!
Security teams, take note: A critical vulnerability (CVE-2025-0108) in Palo Alto Networks’ PAN-OS is under active exploitation in the wild. Both CISA and security researchers are urging immediate patc…
Pegasus spyware detected on 11 of 18,000 devices during one month of testing
Recent findings from iVerify have raised alarms about the pervasive threat of Pegasus spyware, traditionally associated with high-profile targets, now extending its reach to ordinary users. The securi…
Oh Ship! Steam game “PirateFi” caught red-handed dropping password-stealing malware
Ahoy, gamers! Hope you weren’t sailing the high seas of Steam with a recently released free-to-play game called PirateFi. Turns out, this seemingly innocent survival title was caught hoisting the Joll…
Fog ransomware: a deep dive into its tactics and targets
Okay, I can do that! Here’s a short, discursive article about Fog Ransomware based on the provided document, written in English and suitable for online publication: Fog Ransomware emerged in April 202…
RedMike (Salt Typhoon) continues global Telecom attacks
Despite widespread awareness and U.S. sanctions, the Chinese state-sponsored threat group RedMike (also known as Salt Typhoon) remains a persistent danger to telecommunications providers worldwide. Re…
Lexipol Leak: diffuse importanti quantità di dati sulle policy della polizia
Un gruppo di hacker, autodefinitosi “puppygirl hacker polycule”, ha recentemente violato i sistemi di Lexipol, una società con sede in Texas che sviluppa manuali di policy, materiali di formazione e s…
Scambio di prigionieri tra USA e Russia: il cyber criminale russo Vinnik verrà liberato
Il recente scambio di prigionieri tra Stati Uniti e Russia, che ha visto la liberazione del cittadino russo Alexander Vinnik in cambio dell’insegnante americano Marc Fogel, rappresenta un evento signi…
Students are suing to stop access to sensitive financial aid databases by Department of Government Efficiency members
A recent lawsuit filed by the University of California Student Association against the U.S. Department of Education highlights significant cybersecurity and privacy concerns surrounding data access by…
LLMjacking: the exploitation of API keys in DeepSeek and beyond
The rise of LLMjacking, a sophisticated cyberattack targeting large language models (LLMs), has sparked growing concerns among enterprises relying on AI-driven cloud services. This technique, which in…
Canadian national faces charges in $65M crypto-hacking spree
A Canadian man is facing charges related to a series of cryptocurrency hacks that siphoned off an estimated $65 million, according to recent reports. While details are still emerging, this case highli…
The rising threat of ADFS spoofing attacks
In a recent alarming development, hackers have launched a sophisticated phishing campaign targeting Microsoft Active Directory Federation Services (ADFS) to steal user credentials and bypass multi-fac…
Silent Lynx: a new threat actor in central Asia’s cyber landscape
In recent weeks, cybersecurity experts have identified a previously undocumented threat actor known as Silent Lynx, which has been linked to a series of sophisticated cyber attacks targeting entities…
Cracked & Nulled: il Sequestro dei giganti del cybercrime
Il 30 gennaio 2025 registra un nuovo colpo alle infrastrutture del cybercrime: l’FBI, insieme alle autorità europee, ha sequestrato i domini di Cracked e Nulled, due tra i più grandi forum di hacking…
Critical vulnerabilities in Netgear routers demand immediate attention
On February 4, 2025, Netgear issued a crucial alert regarding two significant vulnerabilities impacting several of its WiFi router models. These security flaws, which allow unauthenticated attackers t…
Grubhub confirmed data breach from unauthorized access to third-party service provider
In a recent cybersecurity incident, Grubhub revealed that hackers accessed sensitive personal data from customers through a breach involving a third-party service provider. The company disclosed that…
A critical race condition vulnerability (CVE-2025-24118) in Apple’s macOS kernel has been discovered
A critical vulnerability has been identified in the macOS kernel (XNU), designated as CVE-2025-24118, which poses significant risks for users of Apple’s operating systems. With a CVSS score of 9.8, th…
Malicious scripts on the CASIO e-shop stole credit card and personal customer details
On February 3, 2025, the Casio UK online store fell victim to a significant cyberattack, leading to the unauthorized access and theft of customer credit card information. This breach highlights the on…
Meta’s recent disclosure on ZeroClick WhatsApp spyware campaign
Meta-owned WhatsApp confirmed the disruption of a sophisticated spyware campaign targeting journalists and civil society members. This revelation underscores the ongoing challenges in cybersecurity an…