Opera rolls out Paste Protect feature to fight ClickFix attacks
Opera has introduced Paste Protect, a security feature designed to block ClickFix-style attacks that trick users into executing malicious commands through social engineering.
Alleged Scattered Spider hacker extradited to the United States
A dual United States and Estonian citizen has been extradited to the U.S. to face charges alleging he was a member of the Scattered Spider hacking collective.
Missed incidents, persistent threats, and response gaps: Insights from compromise assessment projects
Kaspersky Compromise Assessment specialists analyze trends from the service’s 2025 projects and provide tips on how to enhance your organization’s security.
La professione cyber cresce di più nell’era AI: il lavoro non scompare, ma evolve
La domanda di lavoro cyber tende a spostarsi verso profili capaci di unire competenze tecniche, normative, applicative, governance dei processi. Ecco perché la professione della cyber security non risente dell'effetto sostituzione delle competenze umane tramite automazione man mano che l'intelligenza artificiale compie progressi
Cyber sicurezza nell’era quantistica: perché agire oggi
Il quantum computing offre molte opportunità, ma rappresenta anche un nuovo rischio per la cyber security. Ecco perché il Q-Day riguarda il presente, non il futuro, mentre si prepara una transizione quantum-safe credibile
FortiBleed credential-theft campaign linked to Lynx ransomware
The massive FortiBleed credential theft campaign has been linked to the INC and Lynx ransomware operations, suggesting the stolen Fortinet credentials were intended to fuel future network intrusions.
FortiBleed credential-theft campaign linked to Lynx ransomware
The massive FortiBleed credential theft campaign has been linked to the INC and Lynx ransomware operations, suggesting the stolen Fortinet credentials were intended to fuel future network intrusions.
New ChocoPoC malware targets researchers via trojanized PoC exploits
Multiple weaponized proof-of-concept (PoC) exploits on GitHub were found delivering a Python-based remote access trojan (RAT) named ChocoPoC that can execute commands and steal sensitive data in a campaign believed to target cybersecurity researchers.
ChocoPoc malware delivered via trojanized exploits on GitHub
Multiple weaponized proof-of-concept (PoC) exploits on GitHub delivered a Python-based remote access trojan (RAT) called ChocoPoC that can execute commands and steal sensitive data.
The Department of Homeland Security is investigating a cyberattack that compromised the Homeland Security Information Network (HSIN), a sensitive information-sharing platform used by federal, state, local, and private-sector partners.
Webinar: Why traditional email security is no longer enough
Modern phishing, business email compromise, and account takeover attacks increasingly exploit trusted identities and legitimate business workflows, making them harder for traditional email defenses to detect. This webinar explores how behavioral AI can help organizations automate detection and response.
A vulnerability in Apple's iCloud+ privacy feature can expose the real email address behind a hidden alias. The researcher who reported it to Apple in June 2025 has now gone public after no fix shipped.
Intelligenza artificiale e vulnerabilità: il ruolo dei modelli LLM nel codice applicativo
Come i modelli LLM introducono vulnerabilità nel codice, le minacce del framework OWASP per LLM, strategie di mitigazione e governance aziendale per un'adozione sicura dell'IA
Turning Indicators into Intelligence in OpenCTI with Criminal IP
Threat intelligence is only as useful as the context behind it. Criminal IP explains how its integration enriches threat indicators in OpenCTI with risk scoring, infrastructure intelligence, and phishing analysis.
We've seen the strong reaction from the community over the idea that we've stopped developing the Flipper Zero firmware. We want to address this and let you know that we've heard all your feedback and have decided to rethink our approach to maintaining the project and engaging with the community.
TL;DR: We've allocated resources to maintain Flipper Zero firmware and support community contributions. From now on, community requests and contributions will be reviewed under new rules: voting for fe
La visibilità OT, dalla compliance alla resilienza: abilita la continuità industriale
Nel mondo industriale, un incidente cyber non si misura soltanto in termini di dati compromessi, ma anche di fermo macchina, interruzione di servizio, perdita economica e impatto reputazionale. Ecco perché la visibilità OT richiede equilibrio e qual è il livello di maturità per le imprese industriali