Cellebrite said it cut off Russia, but Russia used is tools anyway
Security researchers found evidence that Russian authorities hacked the iPhone of a political opponent using a phone-unlocking device made by Cellebrite, even after the company said it would stop selling to Putin’s government.
Global cyber strike disrupts SocGholish, Amadey, and StealC malware networks – Coordinated actions take down criminal infrastructure; over EUR 41 million in criminal crypto assets seized | Europol
Europol together with partners from across the globe today announces a landmark blow to cybercriminal networks as part of Operation Endgame, a sweeping international operation targeting the criminal infrastructure behind ransomware and malware like SocGholish, Amadey, and StealC. In coordinated actions over the past two weeks, key components of these malicious toolkits were dismantled as part of a public-private effort.
Inside the 2026 SMB threat landscape: From phishing and scams to fake AI tools
Kaspersky researchers analyze the threat landscape for SMBs in 2026: the rise of attacks involving fake AI tools, phishing schemes, and data sold on the dark web.
Component Object Model (COM) is a fundamental Windows technology used by legitimate applications for object activation, inter-process communication, automation and language-independent component reuse. Those same qualities make it useful to threat actors.
Group-IB analyzes Millenium RAT version 4.*, a remote access trojan that has undergone an architectural shift from .NET to native C++, while continuing to leverage the Telegram Bot API for command and control, requiring no dedicated server infrastructure. This blog also profiles the developer “ShinyEnigma”, and threat actor cluster “Y2K Operators” responsible for active Millenium RAT exploitation campaigns. Over 62,000 compromised endpoints across more than 160 countries have been identified, with infections accelerating sharply in Q1 2026.
AI offensiva e sovranità digitale: la doppia sfida della cyber security europea
Il progetto europeo Vantage incorpora due idee che, insieme, descrivono la direzione in cui si sta muovendo la cyber security europea: il passaggio da una logica difensiva e reattiva a un approccio offensivo e proattivo; la necessità di costruire infrastrutture che non dipendano da fornitori extra-UE. Ecco la postura strategica dell’intera Ue
Gang criminali all’assalto dei corrieri: il boom del phishing contro GLS
Da maggio 2026 le campagne di phishing che impersonano GLS hanno registrato una crescita senza precedenti. L’analisi di D3Lab racconta il fenomeno, le modalità operative e le principali contromisure.
L’irrilevanza delle formule di stile: l’autorizzazione dell’interessato non solleva dall’accountability
Il Garante Privacy chiarisce che una formula di autorizzazione al trattamento non esime il titolare dall’applicare i principi del GDPR e,nel procedimento di accesso civico generalizzato, la pubblica amministrazione non può trasmettere ai controinteressati l’istanza inversione integrale se contiene dati personali non necessari
LLM, vulnerabilità e responsabilità: la cyber security corre più veloce del diritto
La convergenza tra ingegneria della sicurezza, ingegneria del software e disciplina giuridica della responsabilità costituirà il terreno di elaborazione anche per il dominio degli LLM. Le principali vulnerabilità sono note. La loro mappatura su un'architettura di responsabilità giuridicamente sostenibile rimane un compito aperto
Google releases new privacy controls for activity history, personalization
Google is rolling out new privacy controls for Search services and Google Play, giving you more control over saved history and personalized recommendations.
DraftKings hacker 'Snoopy' sentenced to 18 months in prison
A 21-year-old using the alias "Snoopy" was sentenced to 18 months in prison for his role in hacking DraftKings accounts in the November 2022 cyberattack.
New website names and shames companies that still don’t offer passkeys to users
According to a new site, 24% of the most popular websites in the world don't offer support for passkeys, which are considered the most secure way to log into apps and services.
Mandiant reveals how Cisco SD-WAN zero-day attacks gained root access
New details have been revealed on how hackers exploited a Cisco Catalyst SD-WAN vulnerability tracked as CVE-2026-20245 in zero-day attacks to create rogue root accounts on targeted devices.
Malicious Edge extension abuses Native Messaging as bridge to malware
A malicious Microsoft Edge extension dubbed 'Edgecution' has been used in a ransomware attack to escape the browser sandbox and deploy a Python-based backdoor.
KPI di sicurezza: come monitorare i fornitori esterni in modo continuativo
Definizione, misurazione e automazione dei KPI di sicurezza per il monitoraggio continuo dei partner commerciali: catalogo operativo, vendor scorecard e dashboard per il management
Amadey, StealC malware operations disrupted in Operation Endgame action
Microsoft, Europol, and international partners have disrupted infrastructure used by the Amadey and StealC malware operations as part of Operation Endgame, which targets cybercriminal services and ransomware gangs.
CISA warns of max severity Ubiquiti flaws exploited in attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning of hackers actively exploiting flaws in Ubiquity UniFi OS and Lantronix serial-to-ethernet servers.
ACN, maggio in chiaroscuro: troppe aziende vivono la cyber come notifica e non come governo del rischio
L'Operational summary di Acn registra a maggio 2026 ben 158 incidenti, in calo del 10% rispetto ad aprile, mentre la NIS2 fa emergere gli eventi. Ecco il report nei dettagli: ma non deve diventare il bollettino meteo della minaccia, perché è l'ora di costruire il tetto
Securing the service desk: Why social engineering attacks keep succeeding
Service desks have become a favored target for attackers seeking password resets, MFA changes, and access to corporate accounts. Specops Software breaks down how service desk social engineering attacks work and how organizations can defend against them.
Madison Square Garden Sports - 9,796,738 breached accounts
In June 2026, the sports and entertainment company Madison Square Garden Sports was the target of a ShinyHunters "pay or leak" extortion campaign. The group later published the alleged data, which included almost 10M unique email addresses spanning staff and customers, along with extensive personal, employment and customer relationship information.
L’economia dei token e il vero prezzo dell’intelligenza artificiale
Quanto sareste disposti a pagare per usare Claude e ChatGPT? Il passaggio dalle tariffe fisse a quelle a consumo ha fatto esplodere i budget aziendali e sta mostrando la fragilità del sistema AI (modificato)
L’economia dei token e il vero prezzo dell’intelligenza artificiale
Quanto sareste disposti a pagare per usare Claude e ChatGPT? Il passaggio dalle tariffe fisse a quelle a consumo ha fatto esplodere i budget aziendali e sta mostrando la fragilità del sistema AI (modificato)
L’economia dei token e il vero prezzo dell’intelligenza artificiale
Quanto sareste disposti a pagare per usare Claude e ChatGPT? Il passaggio dalle tariffe fisse a quelle a consumo ha fatto esplodere i budget aziendali e sta mostrando la fragilità del sistema AI (modificato)