Falsa sextortion ShinyHunters: le email arrivano per la prima volta in Italia
Gestione del data breach: i protocolli operativi di segnalazione e notifica alle autorità
Dalla scoperta dell'incidente alla chiusura del caso: la guida operativa alle 72 ore, alla notifica telematica al Garante e agli obblighi di comunicazione verso gli interessati previsti dal GDPR
Aziende e PMI sotto attacco (simulato): la cyber security in azienda si allena così
Il Cyber Arena Tour di WINDTRE Business coinvolge aziende e PMI italiane in simulazioni realistiche di attacchi cyber: gamification, decisioni sotto pressione e competenze specialistiche per trasformare la sicurezza informatica da tema tecnico a priorità strategica d'impresa
Demystifying The Com and Nihilistic Violent Extremism: What You Need To Know
In our latest webinar, we explore the rise of Nihilistic Violent Extremism and unpack the digital-to-physical threat landscape of The Com.
India’s Bank of Baroda confirms cyber incident after hackers claim data theft
Is Your SSO Protected Against Modern Credential Attacks?
A compromised SSO login can provide attackers with access to multiple enterprise applications and services. Specops Software explains how stronger passwords, phishing-resistant MFA, and identity hardening help secure modern SSO environments and the applications they protect.
PEC malevola e crypto wallet
Managed Detection & Response services (MDR) 24/7 for network, endpoint, cloud, SaaS and OT, against every type of cyber attack
Cyber Resilience Act, con le nuove linee guida la conformità ha finalmente una mappa
La Commissione europea pubblica le linee guida attuative del Cyber Resilience Act: chiarimenti su ambito applicativo, software open source, modifiche sostanziali e obblighi di segnalazione. Una guida non vincolante, ma strategica in vista delle scadenze di settembre 2026 e dicembre 2027
Over 24,000 exposed server BMCs leak password hash via decades-old flaw
More than 24,000 internet-exposed servers are leaking authentication password hashes due to a 20-year-old vulnerability in their Baseboard Management Controller (BMC) interface.
Tanaka Dominates Data Leak Landscape With 25 Leak Posts
Cyble researchers break down why Tanaka became H1 2026's most active data leak broker, targeting BFSI, government, and technology sectors worldwide.
FBI, LinkedIn Warn Job Seekers of Employment Scams and Exploitation
Employment scams are targeting job seekers, with the FBI and LinkedIn warning about money mule schemes, stolen PII, and forced labor.
Sistemi aperti o chiusi? Il falso dilemma della sicurezza
Open source o sistemi proprietari? Il dibattito tra architetture aperte e chiuse rischia di semplificare eccessivamente il problema. La sicurezza informatica nasce da progettazione, governance e strategie di difesa multilivello, non dalla sola trasparenza o segretezza del codice
Phishing ai danni de “Il Portale dell’Automobilista” indicizzato tra i primi risultati Google
Hermes AI Agent Used in Cyberattack Targeting Thailand Finance Ministry
A Hermes AI agent was used in an attack targeting Thailand's Ministry of Finance, where researchers also identified a Hades implant.
Telefonate spam, Incogni sconta i piani annuali fino al 50%: come funziona il servizio per rimuovere i dati dal web
Stop alle telefonate spam con Incogni: ecco come ottenere uno sconto del 50% e tutti i vantaggi inclusi nell'offerta del gruppo.
IR Trends Q2 2026: Phishing and weaponized remote management tools drive attack chains
Talos IR's Q2 report highlights a significant surge in phishing-based initial access and the weaponization of legitimate remote management tools. Learn how to sharpen your defenses.
TotalAV, offerta VPN a 1,59 euro al mese: cosa comprende la promozione con antivirus e Adblock inclusi
Per chi cerca un'offerta vantaggiosa per la VPN, TotalAV propone la VPN con antivirus integrato a soli 1,59 euro al mese per 1 anno.
Data breach at medical billing firm MCBS affects 1.26 million people
Healthcare billing company Medical Computer Business Services (MCBS) has disclosed that a 2025 network breach exposed the sensitive information of more than 1.2 million people.
Origin Energy Data Breach Affects 900,000 Current and Former Customers
Origin Energy data breach exposes details of 900,000 customers after unauthorized access. Frank Calabria warns of scams as investigations continue.
Building Resilience Against AiTM Phishing: What SOC Leaders Should Know
Learn how SOC teams can detect, investigate, and respond to modern AiTM phishing with browser-level visibility and threat intelligence.
Multi-Model Behavioural Analytics: Understanding the User and the Fraudster
Sicurezza 4.0 nei cantieri navali: quando l’AI può contribuire a salvare vite umane
Il modello della sicurezza del cantiere navale dimostra che l'intelligenza artificiale può rafforzare in modo decisivo la prevenzione degli infortuni. Però la tecnologia non è mai neutra quando osserva le persone. Ecco la sequenza per le organizzazioni volte a proteggere i lavoratori dagli infortuni e i loro diritti fondamentali
Cyber security negli ospedali: le linee guida Enisa cambiano le regole degli appalti
L'Agenzia per la Cybersicurezza europea ha pubblicato le linee guida per gli appalti in ambito sanitario, un settore particolarmente vulnerabile alle minacce informatiche e uno dei più colpiti, specie di questi tempi. Da questo report bene si evince che l’esposizione elevata sia dovuta a budget limitati per la cyber sicurezza. Vediamo meglio
Lavoro su piattaforme digitali: il recepimento della direttiva UE mette gli algoritmi sotto controllo
Lo schema di decreto che recepisce la direttiva UE sul lavoro mediante piattaforme digitali introduce nuove regole su trasparenza algoritmica, supervisione umana e tutela dei dati personali. Ma resta aperta la sfida di trasformare le nuove garanzie in tutele davvero efficaci
Mirage Kitten targets Middle East and Africa region with new malware
Kaspersky researchers reveal previously undocumented malware attributed to Mirage Kitten (UNC1549, Smoke Sandstorm, Nimbus Manticore): NightLedger backdoor, ArcBridge, and BridgeHead tunneling tools.
Houston City College - 831,642 breached accounts
In June 2026, Houston City College was the target of a ShinyHunters "pay or leak" extortion campaign. Data allegedly obtained from the college was later published publicly and included 832k unique email addresses along with names, addresses, phone numbers, academic records, and other personal information relating to both current students and alumni.
ZTNA Emerges as VPN Security Risks Put Federal Networks on Alert
ZTNA is emerging as an alternative to VPN as federal agencies weigh security risks, zero trust requirements, costs, and technical limitations.
Hackers target US firms in FastJson RCE zero-day attacks
Hackers are actively exploiting a vulnerability in the FastJson open-source Java library, allowing remote code execution without user interaction or elevated privileges.
Arista patches VeloCloud Orchestrator zero-day exploited in attacks
Arista has patched a maximum-severity command injection vulnerability in on-premises VeloCloud Orchestrator deployments that is being actively exploited in attacks.
Outdated VPNs should be purged from federal agencies, senator says