Agenti AI fuori dal perimetro: il caso OpenAI riapre il confine tra misalignment e incidente cyber
Agenti AI che usano un wiki pubblico come memoria esterna, condividono istruzioni e si adattano quando l’attività viene ostacolata. Il caso ricostruito da Reuters porta OpenAI a riconoscere una zona grigia tra misalignment e incidente cyber e riapre una questione decisiva: quando un comportamento anomalo deve diventare pubblico?
IDScan confirms breach tied to 153 million stolen driver’s licenses
Identity verification company IDScan has confirmed that hackers accessed customer data stored in its cloud platform, days after reports linked the company to a massive database containing more than 153 million driver's license scans.
The Top 4 Threats We Found by Investigating Every Alert for a Quarter
Identity was the target in roughly half of all confirmed malicious activity. Prophet Security breaks down the four main attack patterns seen across customer environments between May and July 2026, and explains why some attacks succeeded while others were blocked.
New 'BlueMoon' kit exploited Windows and Chrome zero-day flaws
Multiple cyber-espionage groups deployed an exploit kit dubbed "BlueMoon" that leveraged zero-day vulnerabilities in Microsoft Windows and Google Chrome.
Interfacce HMI e continuità di processo: mitigare i rischi sui terminali di linea
Gli HMI collegano operatori e processi industriali, ma possono anche diventare punti critici. Accessi, sistemi embedded, connessioni remote e backup devono essere protetti per evitare che un terminale compromesso si trasformi in fermo produzione
Cyble Introduces Major Upgrade to its Executive Monitoring Module
Cyble has rolled out a significant upgrade to Executive Monitoring inside Cyble Vision, bringing unified findings, AI-driven scoring, and expanded alerting
it-sa Expo&Congress 2026: a Norimberga la cyber security europea guarda alle nuove sfide
Dal 27 al 29 ottobre, it-sa Expo&Congress 2026 riunisce a Norimberga la community europea della cyber security per confrontarsi su AI, resilienza, sovranità digitale e nuove minacce. Per i nostri lettori è disponibile un biglietto gratuito valido per i tre giorni della manifestazione
Cyberoo: “L’MDR non basta. Ecco come cambia la cyber security”
Di fronte a uno scenario sempre più complesso, limitare l’intervento a logiche legate a scelte tecnologiche non è sufficiente. Serve un ecosistema completo che permetta il salto di qualità
This article was written by an AI agent working under human supervision; the human it works for verified and approved it before publication. An open directory on a freshly-registered Indonesian dom…
CISA: WatchGuard RCE flaw now exploited in ransomware attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that ransomware gangs are also exploiting a critical WatchGuard Firebox firewall vulnerability, which it flagged as actively exploited in December.
Cyber Resilience Act: cosa cambia dall’11 settembre
In vigore dal 2024, il Cyber Resilience Act prevede severi obblighi di segnalazione dall'11 settembre 2026. Ecco cosa comportano gli obblighi di comunicazione dell’articolo 14
La classificazione nell’AI ACT: i 4 livelli di rischio
La rappresentazione classica, veicolata anche sui siti dell’UE, prevede quattro diversi livelli di rischio: ecco quali e ulteriori interventi da parte dell’autorità
OT Security 4.0, il modello A2A Smart City per proteggere le infrastrutture critiche nell’era della convergenza IT/OT
Proteggere gli impianti industriali oggi significa superare la separazione tra IT e OT. Il progetto sviluppato da A2A Smart City mostra come standardizzazione, monitoraggio continuo e governance unificata rafforzino resilienza e continuità operativa delle infrastrutture critiche: un modello replicabile anche per altre realtà industriali
In August 2026, healthcare and pharmaceutical company McKesson was targeted in a ShinyHunters "pay or leak" extortion campaign. The group subsequently published a substantial corpus of data they alleged was sourced from the company, which included 6.4M unique email addresses among other personal and corporate data attributes. The impacted data related to a range of individuals and roles, including marketing campaign recipients, patients, staff and healthcare provider contacts. In McKesson's disclosure notice, the company advised it had identified unauthorised access to "certain third-party applications and the exfiltration of certain data was associated with a subset of customers within our Oncology & Multispecialty and Medical-Surgical business units", but had "reasonable assurance of no ongoing unauthorized activity".
AdaptHealth confirms 4.1 million people exposed in July cyberattack
Healthcare company AdaptHealth has confirmed that data of 4.1 million people was exposed in a cyberattack discovered in July that was attributed to the ShinyHunters threat group.
Cisco confirms CVE-2026-20079 Secure FMC flaw exploited in attacks
Cisco has confirmed that a maximum-severity authentication bypass vulnerability tracked as CVE-2026-20079 in its Secure Firewall Management Center (FMC) software is being actively exploited in attacks.
Skullcandy Dime 3 earbuds expose users to Bluetooth hijacking
The Carnegie Mellon University CERT Coordination Center (CERT/CC) is warning that Skullcandy Dime 3 wireless earbuds accept Bluetooth pairing requests from nearby unpaired devices without requiring user interaction.