CISA orders feds to patch max severity ColdFusion flaw by Friday
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered government agencies to patch an actively exploited maximum-severity flaw in the Adobe ColdFusion commercial web app development platform by Friday.
È il momento d’oro dei data center. Trainati da cloud, AI e PA digitale
L’Italia, con 251 infrastrutture attive al giugno 2026 e un valore di mercato atteso a 14,97 miliardi di dollari entro il 2031, si posiziona come hub emergente della data economy mediterranea. Stato dell’arte, trend di mercato, quadro normativo e prospettive di sviluppo per operatori, investitori e istituzioni
Accenture confirms breach after hacker offers stolen data for sale
IT services giant Accenture has confirmed it suffered a security breach after a threat actor claimed to have stolen 35 GB of source code and other data from the company.
AI is reshaping cyber threat intelligence and governance, transparency, and trust are becoming increasingly important as organizations rely more heavily on AI-generated insights and autonomous capabilities.
Prime Day is Over but Amazon Phishing is Not. Why Amazon Phishing is an Enterprise Problem
Amazon's Prime Day wrapped on June 26th — and the Amazon phishing wave around it is a case study in how attackers sidestep corporate email security. Leading up to the fourth of July weekend, PIXM observed a surge of post-sale lures — refund, delivery problem, "verify your account" — reaching employees through personal inboxes, text messages, and social feeds opened on corporate devices: channels the secure email gateway never inspects. The hosting is chosen to beat the rest of the stack: Check Point researchers counted 6,843 new Amazon-themed domains in the six months before the sale, but the phishing pages we detected in the days after it never registered a domain at all — they lived on free cPanel preview subdomains: aged, legitimate, valid-TLS infrastructure that no reputation engine will flag.
Chinese hackers develop LONGLEASH malware to expand ORB network
Chinese hackers tracked as 'UAT-7810' are actively evolving their malware to expand their Operational Relay Box (ORB) network by compromising internet-facing networking devices, primarily unpatched Ruckus routers.
Hidden backdoor in Tenda router firmware grants admin access
A hidden authentication backdoor has been found in multiple Tenda router firmware versions, potentially allowing an attacker to gain administrative access to the device's web management panel.
Cyber insurance e gestione dei rischi: l’impatto delle nuove clausole di esclusione delle polizze
Evoluzioni e clausole di esclusione nelle polizze cyber insurance: impatto NIS2, requisiti minimi, esclusioni supply chain e ransomware e gestione sinistri
Ultimatum BCE alle banche: alzate le difese contro la minaccia AI
Le banche hanno tempo fino al 31 ottobre 2026 per presentare un piano contro le minacce cyber abilitate dall’intelligenza artificiale. La richiesta dà seguito agli allarmi dopo uscita di Mythos
Model stealing: quando il modello AI diventa il vero bersaglio degli attaccanti
La distillazione, una tecnica messa a punto più di un decennio fa per rendere più efficienti i sistemi di apprendimento automatico, oggi è utilizzata anche per replicare, senza autorizzazione, il comportamento di modelli proprietari altrui. Ecco perché la minaccia sta assumendo proporzioni industriali
Spain arrests suspected member of pro-Russian hacktivist groups
The National Police in Spain have arrested a man who is suspected of being an active member of the CyberArmy of Russia Reborn (CARR) and Z-Pentest, both pro-Russian hacktivist groups.
The GitHub Actions Attack Pattern Your CI Security Scanners Miss
ActiveState explains how GitHub Actions attack chains can evade traditional CI security scanners, why passing a scan doesn't guarantee a secure pipeline, and how organizations can better govern their CI/CD workflows.
JADEPUFFER, il ransomware agentico che cambia le regole della cyber security: come difendersi
JADEPUFFER è la prima operazione ransomware pilotata end-to-end da un agente IA: violazione di un'istanza Langflow, furto massivo di credenziali e attacco automatizzato a database Nacos/MySQL. Tecniche, indicatori di compromissione e contromisure per CISO e aziende
Webinar tomorrow: Why modern email attacks require a new approach to defense
Tomorrow's webinar explores how behavioral AI can help organizations detect sophisticated phishing, business email compromise, and account takeover attacks while reducing alert fatigue through automated investigation and response workflows.
Microsoft to enable Windows settings backup by default for orgs
Microsoft says the Windows settings backup and restore tool will be enabled by default on Microsoft Entra-joined or Microsoft Entra hybrid-joined enterprise systems after upgrading to Windows 11 26H2.
Connecting Scattered Spider: Defining A Cybercrime Collective Through Shared TTPs
This blog covers Group-IB’s overview of Scattered Spider, backed by Group-IB’s proprietary intelligence, providing additional information to what has already been reported publicly, with added clarification on 0ktapus and how it is related to Scattered Spider.
BeyondTrust warns of critical flaws in remote access software
BeyondTrust warned customers to patch two critical security flaws in its Remote Support (RS) and Privileged Remote Access (PRA) software that could allow attackers to bypass authentication.