UK cyber pledge draws only a handful of top firms despite ministerial appeal
Webinar tomorrow: Why modern email attacks require a new approach to defense
Tomorrow's webinar explores how behavioral AI can help organizations detect sophisticated phishing, business email compromise, and account takeover attacks while reducing alert fatigue through automated investigation and response workflows.
New Januscape Linux flaw allows VM escape on Intel, AMD devices
A 16-year-old Linux kernel vulnerability, dubbed Januscape, allows attackers to escape a virtual machine and execute arbitrary code on the host.
Threat landscape for industrial automation systems. Q1 2026
This report contains industrial threat statistics for Q1 2026, including industrial threat distribution by type, source, region and industry.
UAT-7810 continues building ORB networks using new malware
Talos’ latest findings on UAT-7810 indicate that the threat actor continues to develop their custom-made malware.
16-30 June 2026 Cyber Attacks Timeline
16–30 June 2026 cyber attacks timeline: 96 incidents — ransomware, supply-chain attacks, and nation-state espionage analyzed.
Microsoft to enable Windows settings backup by default for orgs
Microsoft says the Windows settings backup and restore tool will be enabled by default on Microsoft Entra-joined or Microsoft Entra hybrid-joined enterprise systems after upgrading to Windows 11 26H2.
Connecting Scattered Spider: Defining A Cybercrime Collective Through Shared TTPs
This blog covers Group-IB’s overview of Scattered Spider, backed by Group-IB’s proprietary intelligence, providing additional information to what has already been reported publicly, with added clarification on 0ktapus and how it is related to Scattered Spider.
BeyondTrust warns of critical flaws in remote access software
BeyondTrust warned customers to patch two critical security flaws in its Remote Support (RS) and Privileged Remote Access (PRA) software that could allow attackers to bypass authentication.
Microsoft testing new Cloud Rebuild Windows 11 recovery feature
Microsoft has begun testing the Cloud Rebuild recovery feature in the latest Windows 11 Insider Preview builds released for users in the Experimental channel.
Cyber Resilience Act – Part II
La resilienza non si scrive una volta sola: il vero problema è il riesame continuo
La resilienza, infatti, non è uno stato stabile ma una capacità dinamica che deve evolvere insieme ad altri fattori. Ecco il ruolo strategico del riesame continuo, degli aggiornamenti periodici, delle esercitazioni e degli audit, per evitare che un piano non aggiornato si trasformi in fattore di rischio
Canadian spy agency reports hacking three criminal groups in 2025
Attackers vote themselves $20 million in BONK cryptocurrency
Fake IT support calls on Microsoft Teams push EtherRAT malware
Threat actors are abusing Microsoft Teams voice calls by impersonating corporate IT support staff to trick employees into installing the EtherRAT malware, giving attackers initial access to corporate networks.
Phishing poses as big-brand job interview to steal Google accounts
A phishing campaign is impersonating more than 30 well-known brands, including Adobe, Netflix, Coca-Cola, and OpenAI, in fake job interviews to steal Google account credentials from marketing professionals.
Vietnam arrests suspects behind HiAnime anime piracy service
Vietnamese authorities have arrested and are prosecuting seven suspects believed to have run HiAnime, the largest anime piracy streaming service before its shutdown in June.
Major medical device manufacturer notifies nearly 4 million of breach
Fable, Claude, and Mythos Ban: 117 Malicious Domains Registered in Brand Impersonation Campaign
117 domains were registered exploiting the Fable 5 and Mythos 5 ban – targeting Claude, Fable, and Mythos brands via phishing, crypto scams, and fake legal recruitment. See BforeAI's full threat breakdown.
Japanese teen arrested over cyberattack that disrupted anime streaming service
I cyber criminali non cercano più solo vulnerabilità: cercano chi autorizza un bonifico
Le PMI investono sempre di più in firewall, antivirus e protezione degli accessi, ma trascurano i processi che regolano i pagamenti. Tra Business Email Compromise, deepfake e AI generativa, la cyber security si sposta dall’infrastruttura IT alla governance finanziaria
Gestione del fattore umano nel SOC: dinamiche di lavoro e prevenzione dello stress operativo
Prevenzione dello stress e dinamiche di burnout nei Security Operations Center: strategie organizzative, tecnologia SOAR, KPI di benessere e cultura della resilienza psicologica
AI, il nuovo fronte della sicurezza: il red teaming diventa indispensabile
L’intelligenza artificiale sta entrando nelle aziende con una velocità che non ha precedenti, ma la sua diffusione sta facendo emergere una realtà che molti responsabili della sicurezza stanno iniziando a sperimentare direttamente: i tradizionali strumenti di difesa non sono stati progettati per proteggere sistemi che ragionano attraverso il linguaggio naturale. Firewall, Web Application Firewall e …
Software Is Now Written at the Speed of Thought. Security Isn't.
Every evolution in software development has reduced the friction between an idea and a deployable application. AI may remove the final barrier, but it also removes many of the moments where security decisions have traditionally taken place.
Ukrainian media outlets now among 'priority targets' for Russian hackers
Max severity Adobe ColdFusion flaw now exploited in attacks
Attackers are now exploiting a maximum-severity Adobe ColdFusion vulnerability tracked as CVE-2026-48282, the Canadian Center for Cyber Security (CCCS) warned on Thursday.
Mid-Year Threat Trends: What H1 2026 Signals for the Rest of the Year
Explore 2026 threat intelligence trends, ransomware growth, AI attacks, and identity risks shaping the cyber risk outlook and threat landscape.
Sconto del 30% + buono amazon da 50 euro sulla VPN per aziende: ci pensa Kaspersky small business
VPN per aziende: ci pensa Kaspersky small business a offrire la soluzione migliore per chi cerca una rete virtuale privata sicura.
Voice cloning, le nuove frontiere delle truffe aziendali
Bastano 10 secondi di audio per ricostruire la voce di una persona. Il voice cloning aiuta chi vuole mettere a segno la classica "truffa del Ceo" ma non solo, perché le ricadute invadono anche la sfera della privacy
When checking the URL isn’t enough: a Device Code Phishing attack via a Microsoft website
The OAuth 2.0 Device Authorization Grant specification was designed to streamline authentication for Smart TVs, IoT devices, and printers. Today, threat actors are weaponizing it.