Found 33710 bookmarks
Newest
7-Eleven - 185,256 breached accounts
7-Eleven - 185,256 breached accounts
In April 2026, 7-Eleven was the victim of a "pay or leak" extortion campaign by ShinyHunters, with the data later published that month. The incident exposed 185k unique email addresses, along with names, physical addresses, dates of birth and phone numbers. A small number of records also contained additional exposed data fields. The company later advised the breach was limited to "certain 7-Eleven systems used to store franchisee documents", a statement consistent with the exposed data.
·haveibeenpwned.com·
7-Eleven - 185,256 breached accounts
Laravel Lang packages hijacked to deploy credential-stealing malware
Laravel Lang packages hijacked to deploy credential-stealing malware
A supply chain attack targeting the Laravel Lang localization packages has exposed developers to a sophisticated credential-stealing malware campaign after attackers abused GitHub version tags to distribute malicious code through Composer packages.
·bleepingcomputer.com·
Laravel Lang packages hijacked to deploy credential-stealing malware
These special phone and app features can help protect you from spyware
These special phone and app features can help protect you from spyware
Apple, Meta, and Google offer special security modes that provide your devices more secure against targeted spyware attacks. Here are how those modes work, what they do, and how to switch them on.
·techcrunch.com·
These special phone and app features can help protect you from spyware
Italy disrupts CINEMAGOAL piracy app that stole streaming auth codes
Italy disrupts CINEMAGOAL piracy app that stole streaming auth codes
Italian authorities have dismantled a piracy ecosystem centered around the CINEMAGOAL app that provided access to various streaming platforms, including Netflix, Disney+, and Spotify.
·bleepingcomputer.com·
Italy disrupts CINEMAGOAL piracy app that stole streaming auth codes
Netherlands seizes 800 servers of hosting firm enabling cyberattacks
Netherlands seizes 800 servers of hosting firm enabling cyberattacks
Financial crime investigators in the Netherlands (FIOD) arrested two men and seized 800 servers linked to a web hosting company that enabled cyberattacks, interference operations, and disinformation campaigns.
·bleepingcomputer.com·
Netherlands seizes 800 servers of hosting firm enabling cyberattacks
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
Lawmakers in both houses of Congress are demanding answers from the U.S. Cybersecurity & Infrastructure Security Agency (CISA) after KrebsOnSecurity reported this week that a CISA contractor intentionally published AWS GovCloud keys and a vast trove of other agency secrets…
·krebsonsecurity.com·
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
Giochiamo insieme #1
Giochiamo insieme #1
Premessa Ho pensato di proporre, su LinkedIn, delle piccole challenge dedicate alla sicurezza offensiva: semplici scenari di attacco che prendo dal mondo vero (cose che a tutti i PenTester sono suc…
·roccosicilia.com·
Giochiamo insieme #1
Former US execs plead guilty to aiding tech support scammers
Former US execs plead guilty to aiding tech support scammers
Two former executives of a call-tracking and analytics company pleaded guilty to concealing a years-long tech support fraud scheme that victimized individuals worldwide.
·bleepingcomputer.com·
Former US execs plead guilty to aiding tech support scammers
L’attacco cyber non è come il morbillo!
L’attacco cyber non è come il morbillo!
L'erronea convinzione che essere stati vittima di un attacco cyber, o più in generale di una violazione, faccia diminuire la probabilità che questa si ripeta in futuro non solo è profondamente erronea, ma espone ancor più le organizzazioni a subire nuovi disastri cyber
·cybersecurity360.it·
L’attacco cyber non è come il morbillo!
Trend Micro warns of Apex One zero-day exploited in the wild
Trend Micro warns of Apex One zero-day exploited in the wild
Japanese cybersecurity software company Trend Micro has addressed an Apex One zero-day vulnerability exploited in attacks targeting Windows systems.
·bleepingcomputer.com·
Trend Micro warns of Apex One zero-day exploited in the wild
Password in chiaro e disclosure ritardate: ecco perché il Garante sanziona Ambrosetti
Password in chiaro e disclosure ritardate: ecco perché il Garante sanziona Ambrosetti
Il provvedimento del Garante Privacy nei confronti di The European House – Ambrosetti nasce da una violazione di dati personali notificata dalla società nell’aprile 2024 a seguito di un accesso non autorizzato ai propri sistemi, ma è di natura più culturale che meramente tecnica. Ecco i motivi della sanzione
·cybersecurity360.it·
Password in chiaro e disclosure ritardate: ecco perché il Garante sanziona Ambrosetti
Why Chargebacks are Just One Piece of the Fraud Puzzle
Why Chargebacks are Just One Piece of the Fraud Puzzle
Fraud losses don't stop at chargebacks. False declines, account takeovers, and abuse also damage revenue and trust. IPQS breaks down why fraud teams need broader visibility into risk and customer impact.
·bleepingcomputer.com·
Why Chargebacks are Just One Piece of the Fraud Puzzle
Ubiquiti patches three max severity UniFi OS vulnerabilities
Ubiquiti patches three max severity UniFi OS vulnerabilities
Ubiquiti has released security updates to patch three maximum severity vulnerabilities in Unify OS that can be exploited by remote attackers without privileges.
·bleepingcomputer.com·
Ubiquiti patches three max severity UniFi OS vulnerabilities