JadePuffer agentic AI attacks target Azure, destroy cloud resources
The JadePuffer ransomware operator is targeting Azure tenants with agent-driven attacks that conduct reconnaissance, steal credentials, and destroy core components.
AI, migliaia di incidenti cyber: è difficile governare sistemi sempre più autonomi
Le società di intelligenza artificiale sono travolte da uno tsunami AI di incidenti di sicurezza. Sarebbero decine di migliaia. Ecco cosa qual è l'impatto e cosa significa per la cyber security di tutti
Tutto al DPO? L’AI Act riapre il problema della governance nelle aziende
Un’indagine della CNIL sul ruolo del DPO e dell’impatto dell’intelligenza artificiale e dell’AI Act mostrano il crescente coinvolgimento di questa figura nella governance AI, a fronte di assetti organizzativi ancora poco definiti. Un quadro che consente di interrogarsi su un ruolo ai confini tra privacy, AI compliance e funzioni di controllo
80,000+ Organizations Had AI Logins Stolen: From Shadow AI to LLMjacking
Infostealer logs exposed AI account credentials and sessions tied to more than 80,000 corporate domains, creating risks ranging from stolen conversations to LLMjacking. SOCRadar examines the growing market for stolen AI logins and how organizations can identify their exposure.
Account WhatsApp compromessi su iPhone con iOS 16: l’attacco 0click che bypassa i dispositivi collegati - Forenser Srl
Un weekend tranquillo, di fine maggio: il tempo passa senza problemi fino a quando non iniziano ad arrivare messaggi ambigui sull’applicazione di WhatsApp
Continuous compliance: perché la conformità cyber deve passare dalla fotografia al processo
NIS2 e gli altri framework di sicurezza rendono sempre meno efficace una compliance basata su assessment periodici, fogli Excel ed evidenze raccolte manualmente. Ecco la soluzione per collegare governance e sistemi IT e trasformare la conformità da fotografia statica a processo continuo, verificabile e orientato al rischio
Attack Surface Management in 2026: Why Point-in-Time Scans Can’t Keep Up With Cloud Sprawl
Cloud assets change hourly, but most attack surface management run quarterly. See why continuous ASM with Cyble Odin closes the months-long exposure gaps.
From BlackCat to Panda Workshop: Inside the Evolving C2 Panel Behind RATHat
Cleafy's TIR team analyzed the operator infrastructure behind RATHat, an Android banking trojan that abuses Accessibility Services to enable wireless debugging on the victim's phone, obtain a shell, and deploy a hidden native service outside the app. The investigation recovered three generations of the Chinese-language control panel, consistent with a Malware-as-a-Service model.
Bitget resumes Bitcoin withdrawals after $387.5 million crypto heist
Cryptocurrency exchange Bitget has resumed Bitcoin withdrawals suspended after suspected North Korean hackers breached its systems last week and stole over $350 million.
Gestione dei rischi cyber degli agenti IA: i 4 limiti delle regole europee
Sistemi agentici, durante i test di valutazione condotti dalle stesse aziende, sono usciti dagli ambienti chiusi in cui erano confinati e hanno toccato infrastrutture reali, appartenenti a terzi ignari. Ecco cosa succede quando un algoritmo esce dalla gabbia e svanisce la soglia tra simulazione controllata ed esecuzione ostile
US soldier gets 70 months in prison for extorting 10 tech, telecom firms
A former U.S. Army soldier has been sentenced to 70 months in prison for hacking and extorting at least 10 U.S. technology and telecommunications companies between April 2023 and December 2024.
CISA orders feds to patch exploited Citrix flaws by Wednesday
The Cybersecurity and Infrastructure Security Agency (CISA) has ordered U.S. government agencies over the weekend to secure their systems against attacks exploiting two critical Citrix NetScaler vulnerabilities.
Threat Hunting and Defending #2: concepts, framework, Threat Model (p4)
Intro Devo un po’ accelerare con lo studio anche perché mi si è sovrapposta un’altra certificazione :-) Chiuso il giro su questa parte con il Threat Modeling, argomento che ricorre in d…
Citrix admins warned to shut down NetScalers over 2 exploited zero-days
Two unpatched Citrix NetScaler zero-day vulnerabilities are reportedly being exploited in attacks, with cybersecurity agencies, security researchers, and IT providers privately warning organizations about the flaws ahead of patches expected next week.
Cloudflare fixes Containers cross-tenant flaw exposing customer data
Cloudflare has fixed a vulnerability in Containers and Sandboxes that allowed customers with a Workers Paid account to recover residual data from other customers' containers on the same physical host.
Anthropic turns Claude into an AI marketplace with 2,000+ plugins and connectors
Anthropic has just announced a new Claude Marketplace, and it brings all AI-related tools into one place, including plugins, connectors, agents, and more.
Dall’Estonia a Singapore, fino all’India: in un’epoca di attacchi informatici, guerre e crisi geopolitiche, ecco come gli Stati mettono al sicuro i propri dati.
ShinyHunters uses WAF bypass trick in Oracle PeopleSoft attacks
The ShinyHunters extortion gang is using a URL-encoding trick to bypass web application firewall rules that mitigate the Oracle PeopleSoft CVE-2026-35273 flaw, allowing the threat actors to resume widespread exploitation of a flaw on vulnerable servers.
Claude Opus 5.5 uses 95% fewer em dashes, but its answers are getting longer
Anthropic's Claude Opus 5.5 appears to be changing how it writes, with new analysis showing fewer obvious AI writing patterns, shorter sentences, and simpler wording compared with Opus 5.