Mondiali 2026, i cyber criminali non aspettano il fischio d’inizio: ecco come proteggersi
I Mondiali di calcio 2026 si svolgeranno dall’11 giugno al 19 luglio 2026, ma da uno studio emerge che ben il 36% fra sponsor ufficiali, fornitori, partner e sostenitori associati ha già esposto i dati del pubblico. Ecco come mitigare il rischio cyber
SilabRAT is an advanced Remote Access Trojan (RAT) sold as a Malware-as-a-Service (MaaS) on Darkweb forums. Developed by the threat actor "o1oo1," SilabRAT is heavily focused on financial gain through credential theft. It offers stability and is capable of bypassing existing security measures.
Difendere le identità digitali dagli attacchi AI è una sfida strategica
Proteggere utenti, dispositivi e macchine significa mettere al centro la gestione degli accessi, dei privilegi e delle identità digitali, adottando soluzioni integrate e sempre più automatizzate, capaci di sfruttare l’IA in chiave difensiva per individuare e contrastare le minacce
Ivanti: Max severity Sentry flaw allows code execution as root
Ivanti has patched two critical vulnerabilities in its Sentry secure mobile gateway solution, including a maximum-severity flaw that enables remote attackers to execute code with root privileges.
Microsoft today released software updates to plug nearly 200 security holes across its Windows operating systems and supported software, a record number of fixes for the company's monthly Patch Tuesday cycle. Nearly three dozen of those bugs earned Microsoft's most…
ServiceNow discloses security incident exposing customer data
ServiceNow is warning about a security incident after attackers exploited an unauthenticated access flaw through a vulnerable API endpoint, allowing them to query data from customer instances.
OpenClaw AI agent found falling for phishing attacks, spills user data
Phishing simulation on an OpenClaw email agent with various configuration profiles showed that it was susceptible to tactics commonly used to compromise human users.
SAP fixes critical flaws in NetWeaver and Commerce Cloud
SAP has released fixes for 15 vulnerabilities as part of its June 2026 Security Patch package, including four critical-severity flaws affecting SAP NetWeaver and SAP Commerce Cloud.
Microsoft releases Windows 10 KB5094127 extended security update
Microsoft has released the Windows 10 KB5094127 extended security update, which fixes the June 2026 Patch Tuesday vulnerabilities and adds new functionality to monitor the rollout of updated Secure Boot certificates that replace those expiring this month.
Windows 11 KB5094126 & KB5093998 cumulative updates released
Microsoft has released Windows 11 KB5094126 and KB5093998 cumulative updates for versions 25H2/24H2 and 23H2 to fix security vulnerabilities, bugs, and add new features.
XBOW tests Anthropic's Mythos Preview for offensive security
Anthropic's Mythos Preview was highly effective at finding vulnerability candidates, especially when analyzing source code. XBOW explores how the model performed across exploit discovery, reverse engineering, and live-site validation.
Vendor Risk Management: guida per mitigare i rischi della supply chain IT
Il Vendor Risk Management è oggi una disciplina strategica per qualsiasi organizzazione che operi in ambienti IT complessi. Questa guida illustra metodologie, framework normativi e strumenti pratici per valutare, monitorare e mitigare il rischio lungo tutta la catena di approvvigionamento IT
GitHub disables Microsoft repos pushing password-stealing malware
Microsoft removed 73 repositories across its Azure, microsoft, Azure-Samples, and MicrosoftDocs organizations on GitHub, disrupting continuous integration pipelines.