Sicurezza
Cybersecurity, ransomware, privacy
- inSicurezzaDigitale.com — Cybersecurity in italiano IT
- SecureBulletin — Cybersecurity news in English EN
- Ransomfeed Daily News — Daily cybersecurity news EN
2.415 voci in archivio · mostrate 1.201–1.225 .
Analysis of NetSupport RAT campaigns by Cisco Talos
In recent months, Cisco Talos has heightened its monitoring efforts concerning malicious campaigns centered around the NetSupport Remote Access Trojan (RAT). The emergence of these campaigns signifies…
A vulnerability unveiled: the 0.0.0.0 threats to browser security
A recent study by Oligo Security has revealed a critical vulnerability impacting the world’s leading web browsers for the past 18 years. Dubbed the “0.0.0.0 Day” vulnerability, this issue arises from…
Regulatory action against advanced: a case study in data security breaches
In an intensive examination of data security practices, British regulators have levied a preliminary fine of £6.09 million on Advanced, a prominent service provider for the National Health Service (NH…
Alert: beware of deceptive WinRar impersonation website
SonicWall has issued a critical cybersecurity alert regarding a fraudulent website, win-rar.co, which closely imitates the legitimate WinRar site (win-rar.com). This deceptive site exploits a common t…
NVIDIA’s controversial use of copyrighted content for AI training
Recent internal communications revealed that NVIDIA has utilized videos from platforms such as YouTube and Netflix to train its AI models, particularly as part of a project known as Cosmos. This initi…
Apple enhances privacy with new macOS Sequoia security strategy
Apple is taking significant strides in its commitment to privacy and security with the upcoming macOS Sequoia release. A notable feature of this update involves a new approach to permissions for third…
Urgent security update: vulnerabilities addressed in Apache Linkis
Apache Linkis, a vital middleware for connecting applications to various data processing engines, has recently patched two significant security vulnerabilities affecting versions 1.3.2 to 1.5.0. These…
BlankBot: a rising threat in Android banking trojans
A new Android banking trojan, identified as “BlankBot,” has emerged as a critical threat for mobile users, particularly targeting those in Turkey. Unveiled by Intel 471 Malware Intelligence researcher…
The evolving landscape of Proton ransomware: a focus on the Zola variant
Since its emergence in March 2023, the Proton ransomware family has shown a remarkable capacity for evolution, with the latest variant, Zola, highlighting significant advancements in its attack method…
Mint Stealer: a deep dive into Malware-as-a-Service
Cyfirma’s recent report has shed light on Mint Stealer, a sophisticated malware operating within the Malware-as-a-Service (MaaS) framework. This advanced threat targets a wide array of sensitive data…
End of Life for Linux Kernel 6.9: time to upgrade
As of May 2024, the Linux Kernel 6.9 series has officially reached its end of life (EOL) with the release of version 6.9.12. Users are now faced with critical security risks as the EOL status indicate…
Evasive Panda’s infiltration of ISP systems
In mid-2023, a security report from Volexity unveiled a significant cyber espionage campaign orchestrated by the Chinese hacking group known as StormBamboo, or Evasive Panda. This group managed to com…
The rise and fall of Cryptonator: a cautionary tale of unlicensed cryptocurrency exchanges
The U.S. Department of Justice (DOJ) has officially charged Roman Pikulev with the creation and operation of Cryptonator, an unlicensed cryptocurrency exchange implicated in processing over $235 milli…
Understanding the “Sitting Ducks” attack: a growing threat to domain security
Recent research highlights a critical vulnerability in domain security, termed the “Sitting Ducks” attack, which has enabled cybercriminals to seize over 35,000 registered domains. This method bypasse…
Twilio discontinues Authy desktop service amidst investor pressures
Twilio has officially terminated its Authy desktop service, a move that will impact users who previously relied on the desktop application for multi-factor authentication. As of August 1, individuals…
Chinese hackers accused of executing a cyberattack
On July 31, Germany publicly accused Chinese hackers of executing a cyberattack against its Federal Agency for Cartography and Geodesy (BKG) in 2021. This assertion followed a meeting where German aut…
Sophisticated Android malware campaign exposes over 107,000 devices
A recent report from Zimperium’s zLabs has uncovered a widespread and highly sophisticated Android malware campaign that has compromised more than 107,000 devices across 113 countries since February 2…
Reddit’s exclusive partnership with Google: a game changer in content licensing
In a significant move, Reddit has opted to restrict access to its content exclusively to Google, effectively banning all other search engines, including Bing and DuckDuckGo. This decision stems from a…
Microsoft expands Microsoft 365 subscription benefits with Defender VPN
Microsoft has recently enhanced its Microsoft 365 Personal and Family subscriptions by introducing the Microsoft Defender VPN service, now available for free to users in the United States, the United…
Increasing phishing threats targeting Microsoft OneDrive users
In an emerging and sophisticated phishing campaign identified by the Trellix Advanced Research Center, Microsoft OneDrive users are facing a new wave of cyber threats. This campaign employs social eng…
Vulnerability in OAuth, XSS for millions of websites
A critical vulnerability within the OAuth authentication standard poses a substantial risk to millions of websites and their users, potentially leading to account hijacking and data theft. Cybersecuri…
RansomHub ransomware: a new threat in the cybercrime landscape
Cybersecurity researchers at Lab52 have highlighted the rise of the RansomHub ransomware gang, which employs a mix of old and new tactics to breach systems. Using tools like Advanced Port Scanner and…
Ongoing exploitation of VMware ESXi vulnerability CVE-2024-37085
A vulnerability in VMware’s ESXi virtualization platform, identified as CVE-2024-37085, continues to leave thousands of servers susceptible to ransomware attacks. Despite ongoing exploitation by cyber…
Leveraging AI/ML to improve MDR efficiency and reduce false positives
Key Findings from the 2023 MDR Analysis Report: AI/ML in Incident Detection: Challenges and Solutions: Balancing Detection and False Positives: Performance and Monitoring: Conclusion:
EchoSpoofing campaign exploits Proofpoint vulnerability
An unknown attacker exploited a vulnerability in Proofpoint’s email routing settings to send mass fraudulent messages impersonating well-known companies such as Best Buy, IBM, Nike, and Walt Disney. T…