Sintesi riepilogativa delle campagne malevole nella settimana del 1 – 7 agosto
La fiera dell’est della supply chain
Controlli di filiera inadeguati o mancanti comportano una serie di rischi per l'organizzazione, nonché in alcuni casi una violazione di obblighi normativi cogenti. Considerate le minacce diffuse, però, la gestione dei fornitori è un elemento imprescindibile per la governance di sicurezza cyber
Real emails, hijacked payments: Two H1 2026 attack chains
Gen's H1 2026 Threat Report examines two separate attack chains. One used compromised business inboxes and browser manipulation in a banking-malware campaign, while the other used clipboard hijacking to redirect cryptocurrency payments.
Levi Strauss says hackers breached employee computers, accessed corporate data
North Carolina Ports confirms cyberattack disrupting operations
The North Carolina Ports Authority has confirmed that a cyberattack disrupted IT systems and slowed operations at Port of Wilmington, Port of Morehead City, and Charlotte Inland Port.
The Cyber Express Weekly Roundup: Ransomware Surge, Government Data Breaches, Logistics Disruptions, and Third-Party Security Risks
The Cyber Express latest weekly roundup covers this week's top cyber threats, including Qilin ransomware and third-party supply chain cyberattacks.
The Cyber Express Weekly Roundup: Ransomware Surge, Government Data Breaches, Logistics Disruptions, and Third-Party Security Risks
The Cyber Express latest weekly roundup covers this week's top cyber threats, including Qilin ransomware and third-party supply chain cyberattacks.
French rugby club Stade Français restores systems after cyberattack, probes data leak
Ransomware Threats in Europe H1 2026: A Deep Dive into Regional Attack Patterns and Dominant Threat Actors
Ransomware threats in Europe have escalated in 2026. Know the patterns and dominant actors behind it through Cyble's Research and Intelligences Labs' findings.
Career evolution per CIO e CISO: i dati dell’Empowerment Program 2026
Analisi sulla career evolution di CIO e CISO: dati, competenze, intelligenza artificiale e governance dei leader tecnologici.
Norton antivirus business: fino a 70 euro di sconto sul primo anno per proteggere l’azienda
Grazie a Norton e all'offerta dedicata all'antivirus Small Business si può risparmiare fino a 70 euro all'anno: ecco come fare.
NIS2, continuità operativa e disaster recovery: definire priorità, RTO e RPO
La continuità operativa non può essere ridotta alla presenza di backup o a un piano di ripristino tecnico. In ottica NIS2, resilienza significa sapere quali attività devono ripartire prima, quali asset le supportano, quali tempi di fermo sono accettabili e quanta perdita dati può essere tollerata
OVP Health targeted by Storm: ransomware group claims theft of 130 GB of healthcare data
Point72 Among Major Hedge Funds Targeted in Cyberattack on Wall Street Through Voice Phishing Campaign
Point72, Millennium, Citadel and Two Sigma were targeted in a cyberattack on Wall Street using voice phishing, though no client data was stolen.
Lo “shall” del GDPR: il dovere di protezione che obbliga a progettare il futuro
Dietro il verbo "shall” del GDPR c'è l'idea antica del dovere come debito. Un debito di protezione che la norma impone al titolare senza prescrivere una soluzione predefinita: spetta a lui tradurre principi e risultati obbligatori in misure adeguate, assumendosi la responsabilità di progettare il futuro
Updoc Data Breach Exposes Patient Contact Information Following Third-Party Security Incident
Updoc data breach exposed customer contact details via a third-party system. No health, payment, or financial information was compromised.
Building Scalable Bridges Between Systems Using The Latest Release of Our Ciaops Library
ciaops is Group-IB's open-source Python library for integrating Threat Intelligence, Digital Risk Protection, and Attack Surface Management APIs. Zero event loss, guarantee
Exact Sciences - 10,869,543 breached accounts
In July 2026, Exact Sciences (now owned by Abbott Laboratories) was the target of a ShinyHunters "pay or leak" extortion campaign. The group claimed to have obtained data from the company's cancer diagnostics business, which they later published publicly. The breach contained 10.9M unique email addresses belonging to customers, patients and healthcare providers, along with names, addresses, phone numbers and health records. Abbott subsequently published a public notice advising that "some of the impacted files contain personal information and/or personal health information" and that more specific information would follow once their review of the incident was complete. For context, Exact Sciences is the maker of the Cologuard at-home colorectal cancer screening test.
The Evolution of Phishing: A Brief History
Learn how phishing attacks evolved from early online scams to AI-powered threats, key milestones, common techniques, and practical ways to reduce risk.
OpenAI rolls out a major ChatGPT upgrade, even if you don’t pay for it
OpenAI is rolling out a more reliable version of ChatGPT GPT-5.6 Sol for Plus and Pro users, while Free users are getting unlimited text chats with GPT-5.6 Luna.
ClickFix attack pushes macOS infostealer for crypto theft attacks
A Go-based malware delivered in ClickFix attacks targeting macOS users is stealing cryptocurrency assets, browser-stored passwords, Apple Keychain data, and cached credentials.
State Department says Trump raised cyber scam compound issue with Xi
Beyond Cyber: How CTI Teams Are Solving Converged Threat Use Cases
In this post we explain how cyber threat intelligence teams are being expected to take on physical risk, how tradecraft overlaps, and how Flashpoint bridges the gap.
Hedge fund cyberattacks tied to BlackFile-linked UNC6671 extortion group
A recent wave of cyberattacks targeting hedge funds, private-equity firms, and other financial organizations has been linked to UNC6671, an extortion group reportedly associated with the BlackFile campaign extortion group.
Google says hackers are calling financial firm employees to hack and extort victims
Groups of hackers are breaking into large U.S. financial firms to steal sensitive data and extort victims, Google’s security researchers report.
Swiss government SharePoint breach compromised 200 accounts
Switzerland's federal IT office says hackers exploited vulnerabilities to breach its Microsoft SharePoint servers and compromised approximately 200 accounts.
New TONTOU CPU attack bypasses Spectre v2 fixes, leaks Linux password hashes
Researchers found a way to bypass recent mitigations for Spectre v2 speculative execution side-channel attacks and developed an exploit to leak secrets from Linux machines.
Why metaphor may dictate your security strategy
In this week's newsletter, Martin looks at how the metaphors we use to describe AI "escaping" its sandbox can completely change how we react to the threat.
Cyberattack on North Carolina Ports ‘contained’ as Coast Guard, state officials investigate
Canadian Man Pleads Guilty in Snowflake Extortions
A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded guilty to computer fraud and conspiracy to hack and extort more than 165 organizations that used the cloud data storage provider…