Russian businesses erase Durov-linked products after 'terrorist' designation
Varonis Agent IBAC keeps AI agents within their intended boundaries
AI agents need broad access to be useful, but traditional access controls cannot determine whether an action aligns with a user's intent. Varonis explains how Agent IBAC detects intent drift and enforces real-time guardrails to keep agents within their intended boundaries.
Apple launches new legal challenge against UK over iCloud access
Cybersecurity360 Awards 2026: le sfide della leadership antifragile
Analisi della leadership antifragile: come trasformare crisi, attacchi informatici e incertezza in valore per le aziende.
Swiss IT agency hacked, 200 accounts compromised, SharePoint vulns suspected
Top Hack e violazioni di dati: ecco la classifica del 2018
L'anno 2018 è ormai un lontano ricordo, eppure ha stabilito un record per quanto riguarda le attività di hacking e di violazioni di dati, le più importanti degli ultimi anni.
Revenge Porn, quando i ricatti si fanno in rete
Il Revenge Porn è la pubblicazione sul web di immagini o video che ritraggono le parti intime di una persona, senza il suo consenso, per vendetta.
How legitimate cloud platforms enable phishers to bypass MFA
We cover a cloud-based AitM attack scenario leveraging service workers and Ultraviolet, and provide detailed phishing hosting statistics across platforms like Cloudflare Workers, Vercel, Netlify, GitHub Pages, and IPFS.
Retelit, operatore cloud e di telecomunicazioni, ha subito un attacco informatico. E non lo dice
Tra i suoi clienti ci sono aziende strategiche, gestori di identità digitali e pubbliche amministrazioni. Migliaia i documenti già disponibili online. Dietro l’attacco Qilin, gruppo cybercriminale attivo almeno dal 2022 che ruba password e accessi
Fail securely: perché la vera sicurezza si misura quando i sistemi falliscono
Nessun sistema è immune dai guasti. Il principio del fail secure insegna a progettare applicazioni e infrastrutture che, in caso di errore, proteggano dati e asset critici senza amplificare il rischio. Un approccio che cambia il modo di concepire sicurezza, resilienza e continuità operativa
Phishing a tema “multe” sfrutta il nome della Polizia di Stato e di pagoPA
PNLD Data Breach Exposes Police and Government Contact Details on Dark Web
PNLD data breach exposed police and government contact details, while Ask the Police users were also affected. Investigation is ongoing.
Liechtenstein Cyberattack Exposes Data From Beneficial Ownership Register
A Liechtenstein cyberattack exposed data from 31,000 legal entities in the VwbP register, prompting a probe and temporary service suspension.
“Keep going, bro. You’ve got this!” A data-driven look at how adversaries are weaponizing AI
Talos has collected prompt logs from threat actor endpoints running various applications, such as Claude Code, CodeX, Cursor, or Gemini. This blog is an analysis of the ways we've seen bad actors leveraging cloud-based AI.
Proton VPN, Proton taglia il prezzo del 70%: 2 anni a 2,99 euro al mese
Proton VPN con la sua nuova offerta permette di ottenere un risparmio del 70% per 2 anni: ecco come funziona la promo e quali sono i costi.
NIS2, asset e servizi IT: come costruire un inventario realmente utile alla gestione del rischio
L’inventario degli asset non dovrebbe essere una semplice lista tecnica di server, applicazioni, dispositivi e servizi cloud. In ottica NIS2, deve diventare una mappa ragionata di ciò che sostiene le attività dell’organizzazione, evidenziando criticità, dipendenze, owner, fornitori e impatti sul business
When Device Facts meet Behavioural Analytics
Major Cyber Attacks in July 2026: US and EU Organizations Hit by Phishing, RATs, and Stealers
Explore the major cyber attacks of July 2026, the risks they created across the US and Europe, and the steps security leaders can take to reduce exposure.
Pipeleek v1 Release
Categorizzazione NIS 2: da adempimento a strumento di governo della sicurezza
La categorizzazione NIS2, che non è finita il 30 giugno, entra in una nuova fase: infatti apre il percorso, ma non lo conclude. Ecco perché il valore del lavoro svolto non dipenderà dalla qualità formale di ciò che è stato trasmesso, bensì dall’uso che ogni organizzazione deciderà di farne
Hotel Wi-Fi attacks use custom malware to breach Microsoft 365 accounts
Microsoft has linked a global campaign targeting hospitality Wi-Fi networks to the Russian threat actor Midnight Blizzard, also known as APT29.
New Pass-ta-key attacks let malware hijack Google-synced passkeys
Security researchers have discovered three attacks that allow malware on already-compromised Windows devices to abuse Google Password Manager's synced passkeys to take over accounts, bypass user verification, and extract passkey private keys.
Apple challenges UK government’s latest demand for iCloud backdoor: report
Apple has appealed a new legal demand by the U.K. government, which critics say could threaten the privacy rights of users all over the world.
Who’s legally to blame for Anthropic and OpenAI’s autonomous AI hacks? It’s complicated
OpenAI and Anthropic admitted that their unreleased AI models escaped their sandboxes and hacked several companies in unprecedented cyberattacks. Who is legally to blame? Should prosecutors charge the two AI frontier labs? Can victims sue them? We spoke to lawyers who specialize in computer hacking laws to find out.
Quanto costa davvero il rischio cyber
Managed Detection & Response services (MDR) 24/7 for network, endpoint, cloud, SaaS and OT, against every type of cyber attack
Fake Xeno Roblox Cheats Deliver Powerful Java Stealer Through Discord and Forums
A malware campaign disguised as an “undetected” version of the Xeno Roblox script executor is directly affecting players
Apple challenges UK government’s latest demand for iCloud backdoor: report
Apple has appealed a new legal demand by the U.K. government, which critics say could threaten the privacy rights of users all over the world.
Who’s legally to blame for Anthropic and OpenAI’s autonomous AI hacks? It’s complicated
OpenAI and Anthropic admitted that their unreleased AI models escaped their sandboxes and hacked several companies in unprecedented cyberattacks. Who is legally to blame? Should prosecutors charge the two AI frontier labs? Can victims sue them? We spoke to lawyers who specialize in computer hacking laws to find out.
Apple challenges UK government’s latest demand for iCloud backdoor: report
Apple has appealed a new legal demand by the U.K. government, which critics say could threaten the privacy rights of users all over the world.
Quanto costa davvero il rischio cyber
Managed Detection & Response services (MDR) 24/7 for network, endpoint, cloud, SaaS and OT, against every type of cyber attack