Huawei zero-day attack behind last year’s crash of Luxembourg's entire telecoms network
Massive npm Supply Chain Attack Hits AntV Ecosystem; Hundreds of JavaScript Packages Compromised
A major software supply chain attack has compromised hundreds of widely used npm packages tied to the AntV ecosystem, exposing developers and organizations to
UK regulator to require tech firms to tackle deepfakes, non-consensual intimate images
Microsoft disrupts Fox Tempest malware-signing-as-a-service platform tied to ransomware gangs
Microsoft plans to improve Windows 11 driver quality in 2026
Microsoft plans to raise the quality bar of Windows 11 drivers, as drivers "sit at the heart of every Windows experience" and connect the OS to the "silicon, components, and peripherals."
Hackers have compromised dozens of popular open source packages in an ongoing supply chain attack
The attacks are part of a wider campaign known as Mini Shai-Hulud, which has already compromised several open source projects and, in turn, developers and companies that use them.
OpenAI co-founder Andrej Karpathy joins Anthropic’s pre-training team
Andrej Karpathy has joined Anthropic to work on pre-training. He previously co-founded and worked at OpenAI and led computer vision and AI at Tesla.
Microsoft blames undismissible Teams location prompts on macOS update
Microsoft has confirmed user reports that the Teams team collaboration app is displaying non-dismissible location prompts on some macOS systems.
TP-Link, Photoshop, OpenVPN, Norton VPN vulnerabilities
Cisco Talos’ Vulnerability Discovery & Research team recently disclosed eight vulnerabilities in TP-Link, and one each in Adobe Photoshop, OpenVPN, and Gen Digital's Norton VPN.
The vulnerabilities mentioned in this blog post have been patched by their respective vendors, in adherence to Cisco’s third-party vulnerability disclosure policy, except the Norton VPN vulnerability, which was discovered in-use before a patch was available.
For Snort coverage that can detect the exploitation of these
JobStealer colpisce macOS e Windows e ruba dati personali con falsi colloqui di lavoro online
È stata identificata una nuova campagna malware che sta prendendo di mira sia utenti macOS sia utenti Windows con il trojan JobStealer nascosto in piattaforme fraudolente che imitano servizi professionali utilizzati per colloqui di lavoro da remoto. L’obiettivo è rubare dati personali. Tutti i dettagli
Ecco come Microsoft ha smantellato il gruppo Fox Tempest
Microsoft ha annunciato il takedown di Fox Tempest, gruppo di cyber criminali che offriva un servizio malware signing as a service capace di fare apparire come legittimi dei software malevoli
New Shai-Hulud malware wave compromises 600 npm packages
Threat actors earlier today published more than 600 malicious packages to the Node Package Manager (npm) index as part of a new Shai-Hulud supply-chain campaign.
Critical Microsoft Vulnerabilities Doubled: From Exposure to Escalation
Microsoft's total vulnerability count stayed steady in 2025, but critical flaws surged year over year. BeyondTrust breaks down why attackers are increasingly focused on privilege escalation and identity abuse.
7-Eleven confirms data breach claimed by the ShinyHunters gang
Convenience store chain giant 7-Eleven confirmed that its systems were breached in a cyberattack claimed by the ShinyHunters extortion group last month.
Guida ai migliori browser con VPN 2026: soluzioni integrate Vs. estensioni Premium
VPN integrata nel browser o software dedicato? Scopri i limiti dei proxy web, i pericoli di WebRTC leak e come validare la sicurezza.
Guida ai browser con VPN 2026: soluzioni integrate Vs. estensioni Premium
VPN integrata nel browser o software dedicato? Scopri i limiti dei proxy web, i pericoli di WebRTC leak e come validare la sicurezza.
Cyble Named a Challenger in the Inaugural 2026 Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies
We are proud to announce that Cyble has been named a Challenger in the first-ever Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies.
Microsoft’s MSHTA Legacy Tool Still Powers Malware Campaigns on Windows
Attackers still abuse Microsoft’s legacy MSHTA utility on Windows to execute malicious VBScript and JavaScript payloads.
Webinar: The hidden bottlenecks in network incident response
IT teams are increasingly overwhelmed by alerts from disconnected systems, forcing responders to manually coordinate investigations during network incidents. This webinar explores how automation and AI-assisted workflows can help reduce response delays and improve operational coordination.
Microsoft confirms patching issues in restricted Windows networks
Microsoft says customers in restricted network environments may encounter Windows Update failures after installing the January 2026 optional non-security preview updates.
Top 5 Phishing-Driven Social Engineering Attacks on Companies in 2026
Explore 5 phishing-driven social engineering attacks targeting companies in 2026 and learn how CISOs can close SOC visibility gaps with ANY.RUN.
When Filenames Become Attack Surfaces: Weaponizing NASA's CFITSIO Extended Filename Syntax
When Filenames Become Attack Surfaces: Weaponizing NASA's CFITSIO Extended Filename Syntax
From PDB strings to MaaS: Tracking a commodity BadIIS ecosystem used by Chinese-speaking threat
Cisco Talos has uncovered a BadIIS variant — identifiable by its embedded "demo.pdb" strings — that functions as commodity malware, likely sold or shared among multiple Chinese-speaking cyber crime groups operating under a malware-as-a-service (MaaS) model for continuous monetization.
L’Iran minaccia dazi sui cavi sottomarini: a rischio la connettività digitale mondiale
I cavi sottomarini rappresentano la spina dorsale dell'economia digitale. La minaccia dell'Iran a mettere dazi sui cavi sottomarini che attraversano lo Stretto di Hormuz significa mettere in pericolo l'integrità di infrastrutture critiche per la connettività digitale mondiale
Is Fraud Distorting Your iGaming Growth Numbers?
We sat with Sarah Psaila (Group-IB Europe) to discuss why iGaming operators are measuring the wrong fraud signals and seeing bloated success metrics and what intelligence-driven protection against fraud looks like in 2026.
Cyble Named a Challenger in the Inaugural 2026 Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies
We are proud to announce that Cyble has been named a Challenger in the first-ever Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies.
Austria Blocks Eurovision Cyberattack During Contest Week
Austria stopped 500 Eurovision cyberattack attempts targeting the Song Contest in Vienna amid protests and heightened security.
Global Banks Scramble After AI Tool Exposes Cyber Weaknesses
Banks rush to tackle AI-driven cyber risks as new vulnerabilities raise concerns across the global financial sector.
Critical NGINX Vulnerability CVE-2026-42945 Now Under Active Attack
Attackers are exploiting NGINX vulnerability CVE-2026-42945, also called NGINX Rift, exposing millions of servers to attacks.
FAQ ACN NIS2 sui fornitori rilevanti: cosa cambia con le nuove FRN.8 e FRN.9
Le nuove FAQ ACN sui fornitori rilevanti NIS (FRN.8 e FRN.9) chiariscono i casi di subfornitore e fornitore infragruppo. Ecco come cambiano le regole e cosa devono fare concretamente le aziende per la compliance NIS2 entro il 31 maggio 2026