Sicurezza
Cybersecurity, ransomware, privacy
- inSicurezzaDigitale.com — Cybersecurity in italiano IT
- SecureBulletin — Cybersecurity news in English EN
- Ransomfeed Daily News — Daily cybersecurity news EN
2.415 voci in archivio · mostrate 1.126–1.150 .
Teenage suspect arrested in major cyberattack on London Transport
In a significant development, the National Crime Agency (NCA) has arrested a 17-year-old teenager from Walsall in connection with the recent cyberattack that targeted Transport for London (TfL).Ongoin…
Fortinet suffers data breach via compromised third-party file-sharing service
Fortinet, a leading cybersecurity provider, has disclosed a data breach incident involving unauthorized access to a third-party cloud-based file-sharing service used by the company. The breach reporte…
Cybercriminals exploit legitimate software for insidious attacks
Cybercriminals are evolving their tactics, leveraging legitimate software to evade detection and compromise systems. By blending into normal network traffic, these actors render traditional security m…
Kawasaki Europe hit by cyberattack, RansomHub group demands ransom
Kawasaki Motors Europe (KME) has confirmed a cyberattack in early September that resulted in disruptions to its operations. While the attack was initially reported as “unsuccessful,” the company isola…
Critical Cisco vulnerability threatens Web-Based management interfaces
Cisco has recently disclosed a severe vulnerability (CVE-2024-20381) impacting the JSON-RPC API feature used by various web-based management interfaces in its products. This flaw poses a significant r…
Mastercard bolsters cybersecurity defenses with Recorded Future acquisition
Mastercard has made a significant stride in its cybersecurity services with the announcement of its acquisition of Recorded Future, a renowned global threat intelligence company. This strategic move…
Criminal IP and IPLocation.io collaborate for enhanced IP solutions
Criminal IP, a leading cyber threat intelligence (CTI) search engine, has integrated its IP risk detection data with IPLocation.io, a renowned IP address geolocation tracker. This collaboration elevat…
Cybersecurity alert for Small and Mid-sized Businesses: CosmicBeetle threat actor on the rise
Small and mid-sized businesses (SMBs) are increasingly becoming targets of cybercriminals due to weaker security measures and lack of cybersecurity awareness. Cyberattackers often exploit vulnerabilit…
Kali Linux 2024.3: elevating cybersecurity with enhanced features
Kali Linux, the ubiquitous penetration testing and ethical hacking distribution, has unveiled its latest iteration, version 2024.3. This comprehensive update introduces a plethora of new features, inc…
Urgent: GitLab warns of critical vulnerability, advises immediate patching
GitLab, a popular DevOps platform, has recently released a critical security update to address several high-severity vulnerabilities. Organizations using GitLab must prioritize upgrading to the latest…
Protecting critical data with Google Cloud’s Air-Gapped backup vaults
In a bid to combat the growing threat of ransomware and data manipulation, Google Cloud has introduced air-gapped backup vaults as part of its enhanced Backup and Disaster Recovery service.Enhanced Da…
Android banking malware: TrickMo threatens login credentials
Banking malware is a growing menace, targeting financial institutions and their customers. Android banking malware, in particular, has seen a significant surge, exploiting vulnerabilities in the Andro…
Lazarus’s Shadow: identifying six north korean threat groups
Lazarus Group, a notorious Advanced Persistent Threat (APT) group, has been linked to the North Korean government and its intelligence agency. This group has engaged in a wide range of cybercriminal a…
Phishing attacks get smarter: attackers exploit HTTP response headers
Cybersecurity researchers at Unit 42 have uncovered a sophisticated new phishing technique that leverages HTTP response headers to deliver malicious webpages. This technique poses a significant threat…
Critical Active Directory certificate services vulnerabilities: implications and mitigation strategies
Microsoft’s Active Directory Certificate Services (AD CS), a PKI implementation in Active Directory environments, has been found to contain critical vulnerabilities that can enable attackers to gain l…
Ransomware group breaches major chinese bank in London
The Hunters International ransomware group has allegedly compromised the London branch of the Industrial and Commercial Bank of China (ICBC). This alarming breach highlights the escalating threats fac…
Critical vulnerability compromises the security of .MOBI top-level domain
A recent vulnerability discovery has exposed a glaring security flaw in the .MOBI domain name ecosystem. This vulnerability, stemming from an expired WHOIS server domain, has allowed a group of resear…
Threat landscape: EV charging infrastructure under attack
As electric vehicles (EVs) gain traction, their reliance on interconnected systems and widespread public charging infrastructure introduces significant cybersecurity risks. Vulnerabilities inherent in…
Browser-based credential theft: a growing threat
In the evolving cybersecurity landscape, web browsers have become a primary target for cybercriminals seeking to steal users’ credentials. This shift has significant implications for individuals and o…
RansomHub’s malicious use of TDSSKiller to bypass endpoint detection and response (EDR)
Kaspersky Lab’s TDSSKiller is a widely used free utility for detecting and removing rootkits. However, a recent cyberattack campaign by the RansomHub ransomware gang has leveraged TDSSKiller to disabl…
Critical Zero-Day vulnerability in Microsoft’s App Control
Microsoft has released a critical security update to address an actively exploited zero-day vulnerability affecting its Windows Smart App Control (SAC) and SmartScreen security features. This vulnerab…
Microsoft september 2024 Patch Tuesday: mitigating critical vulnerabilities
The latest Microsoft Patch Tuesday, released in September 2024, addresses a substantial number of security vulnerabilities, including four critical zero-day exploits. Organizations and individual user…
Flipper Zero firmware milestone: version 1.0 arrives after three years of evolution
As cybersecurity enthusiasts rejoice, Flipper Zero has finally unveiled its highly anticipated firmware version 1.0, marking the culmination of three years of development. This major release brings a…
Data breach at payment gateway Slim CD: 1.7 million users impacted
Slim CD, Inc., a prominent payment processing platform for US and Canadian merchants, has recently disclosed a significant data breach that has potentially compromised the sensitive information of app…
Chinese hackers leverage open-source tools for cyber attacks
Cybersecurity researchers have uncovered that Chinese state-sponsored threat groups are actively exploiting open-source tools like Nmap to facilitate cyber attacks. These groups, including APT41, APT1…