Sicurezza
Cybersecurity, ransomware, privacy
- inSicurezzaDigitale.com — Cybersecurity in italiano IT
- SecureBulletin — Cybersecurity news in English EN
- Ransomfeed Daily News — Daily cybersecurity news EN
2.415 voci in archivio · mostrate 1.101–1.125 .
Beware of sophisticated phishing attacks targeting hotel Bookings
Phishing attacks are a common form of cybercrime that involves attackers impersonating legitimate entities to trick victims into revealing sensitive information. One such attack targeting travelers re…
Unveiling UNC1860: Iran’s stealthy cyber threat
In the ever-evolving cybersecurity landscape, state-sponsored threat actors continue to pose significant risks to organizations worldwide. Among them is UNC1860, an Iranian-based cyber espionage group…
TeamTNT resurfaces: cybersecurity experts warn of new cloud server attacks
The notorious hacking group TeamTNT has returned with a new campaign targeting Virtual Private Server (VPS) infrastructures running on the CentOS operating system. This attack highlights the escalatin…
Raptor Train Botnet hacked 200,000+ devices worldwide
A botnet is a formidable network of compromised devices controlled by a central entity known as a bot herder. These devices, known as bots, are infected with malware and can be used to execute various…
Tor remains safe despite law enforcement infiltration
In response to recent reports alleging that German law enforcement agencies have breached the Tor network to identify criminals, the Tor Project maintains that its anonymity protections remain secure…
Russia’s Dr.Web disconnects servers to mitigate attack
In a recent cyberattack, the Russian cybersecurity firm Dr.Web (Dr.Web) was compelled to take immediate action to protect its infrastructure and users. This incident highlights the importance of robus…
Discord unveils End-to-End encryption for enhanced voice and video privacy
Discord, the popular voice and chat platform, has recently announced the rollout of end-to-end encryption (E2EE) for audio and video calls. This significant update marks a major step forward in the co…
ServiceNow instances expose sensitive corporate data
A recent study by AppOmni has uncovered a critical vulnerability in over 1,000 enterprise ServiceNow instances, resulting in the exposure of sensitive corporate data. Organizations relying on ServiceN…
SpyCloud reveals infostealer epidemic, emphasizing the urgency of enhanced cybersecurity
Recent research by SpyCloud, a leading provider of Cybercrime Analytics, has uncovered an alarming trend: infostealers, a type of malware designed to steal digital identity data, are increasingly beco…
Windows MiniFilter vulnerability: a threat to EDR security
Endpoint Detection and Response (EDR) solutions are essential for modern cybersecurity defenses. However, research has revealed a vulnerability in Windows MiniFilter drivers that can be exploited to p…
Ghostly cybercrime lair exposed: admin faces charges
In a groundbreaking triumph for law enforcement, the sophisticated encrypted communication platform Ghost has been dismantled in a worldwide operation known as “Kraken.” This international collaborati…
PRC-Linked cyber actors leveraging massive botnet for malicious activities
In a joint cybersecurity advisory, the FBI, Cyber National Mission Force (CNMF), and National Security Agency (NSA) have exposed a significant threat to Internet-connected devices. Chinese hackers hav…
Critical Windows kernel vulnerability disclosed
Microsoft has issued an urgent warning regarding a critical Windows kernel vulnerability (CVE-2024-37985) that could result in the disclosure of sensitive information. This vulnerability affects ARM-b…
Apple iOS 18 patches 32 security flaws
Apple has released iOS 18, a major software update that addresses a multitude of security vulnerabilities across its operating system. These vulnerabilities posed significant risks to user privacy and…
AI and cryptography: enhancing security with ChatGPT
Cybersecurity breaches are often the result of vulnerabilities in cryptographic implementations. Traditional static analysis tools often fall short in detecting these misuses. This article explores th…
Access Sports data breach: analysis
Access Sports Medicine & Orthopaedics has fallen victim to a significant data breach, compromising the sensitive information of over 88,000 users. This incident serves as a sobering reminder of the pe…
Critical macOS Calendar vulnerability: zero-click execution of malicious code
A severe zero-click vulnerability has been discovered within Apple’s macOS Calendar application, posing a significant threat to user security. This vulnerability enables attackers to compromise user d…
Fileless Remcos RAT: a threat to watch out for in weaponized Excel documents
Remcos, a Remote Access Trojan (RAT), has been actively used in cybercriminal campaigns since 2016. Recently, cybersecurity researchers have uncovered a new wave of malware operations involving Excel…
Malicious Google ads target mac users with fake AppleCare+ scam
A recent malicious campaign has been discovered targeting Mac users seeking support or extended warranty services through AppleCare+. These scams use deceptive tactics to lure victims into losing mone…
SAP employee data leak: a critical 888 threat
A recent Twitter post by DarkWebInformer has raised concerns about a potential data leak involving sensitive employee information belonging to SAP SE, a leading enterprise software provider. This alle…
Android malware on the rise: Ajina threatens mobile banking security
The cybersecurity landscape is constantly evolving, with malicious actors developing increasingly sophisticated malware to target users’ devices. Recent advancements in Android malware have taken a co…
Medusa ransomware exploits critical Fortinet vulnerability
The notorious Medusa ransomware group has once again demonstrated its advanced capabilities by exploiting a critical SQL injection vulnerability (CVE-2023-48788) in Fortinet’s FortiClient EMS software…
Port of Seattle hit by Rhysida ransomware attack
In a concerning development, the Port of Seattle has disclosed a cyberattack attributed to the notorious Rhysida ransomware group. The incident, which occurred on August 24, 2024, disrupted airport an…
1.3 Million Android TV boxes compromised by Android.Vo1d malware
Android TV boxes have become increasingly popular for streaming content, apps, and other online services. However, a recent discovery by cybersecurity analysts at Dr. Web reveals that a massive number…
Hadooken malware targeting Oracle WebLogic servers
Oracle WebLogic Server, a widely used application server for enterprise applications, has recently become a target of a new Linux malware known as Hadooken. This malicious program exploits weak admini…