House passes kids’ online safety bill, but Senate approval unlikely
America250 Fourth of July Threat Assessment
We break down the intersecting cyber risks, physical security strains, and operational challenges of America250.
Fake Perplexity extension on Chrome Web Store tracked searches
A malicious extension in the Chrome Web Store is masquerading as the Perplexity AI answer engine, intercepting search traffic and collecting browsing information.
Architetture multicloud protette: criteri di segmentazione logica per la difesa degli asset
Criteri di segmentazione e sicurezza logica in ambienti multicloud: architettura, microsegmentazione, controllo degli accessi unificato e monitoraggio continuo della conformità
Campagne di phishing a tema “Sostituzione Tessera Sanitaria” in corso
Nuova campagna di smishing sfrutta APCOA Flow per sottrarre dati delle carte di pagamento
Nel mese di giugno 2026 D3Lab ha rilevato almeno quattro campagne di smishing che sfruttano il brand APCOA Flow per simulare multe relative a parcheggi non pagati. L'obiettivo dei criminali è sottrarre i dati delle carte di pagamento delle vittime attraverso un sofisticato kit di phishing riconducib
Microsoft adds smarter bot protection to Teams meetings
Microsoft has introduced a new Teams admin policy that allows organizers to prevent third-party bots from joining meetings without approval.
Rainbow Tables: ecco perché le password “normali” non bastano più
Le Rainbow Table consentono di recuperare in pochi istanti le password partendo dagli hash precedentemente sottratti dai criminal hacker. Tra GPU, key stretching, salting e pepper, la protezione delle credenziali richiede oggi strategie più evolute delle tradizionali policy sulle password. Ecco perché e quali
An intelligence budget 'super user' job is now in the hands of Russ Vought
Lessons from the Underground: How to Combat Business Email Compromise
Business Email Compromise is more than an email scam. It's a coordinated operation involving compromised accounts, financial research, and cash-out networks. Flare explores how underground forums reveal how BEC attacks are planned and executed.
Symfony YAML Security Audit
Security audit of the Symfony YAML component, a PHP library to parse and dump YAML. Facilitated by the Open Source Technology Improvement Fund (OSTIF) and performed by Shielder.
Cyber risk, la compliance non basta più: cresce il divario tra aziende conformi e quelle protette
La nuova stagione regolatoria non è garanzia assoluta rispetto al cyber risk. Essere compliant non significa automaticamente essere protetti né dagli attacchi né sul piano assicurativo. Ecco perché c'è un disallineamento tra requisiti normativi e condizioni assicurative e bisogna colmare il gap tra richieste normative e coperture della polizza
Closing the Supplier Security Gap: How a US Manufacturer Cut Third-Party Risk and Doubled SOC Triage Speed
See how a US automotive manufacturer secured supplier file intake, cut Tier 1 escalations, doubled SOC triage speed, and scaled without adding headcount.
Closing the Supplier Security Gap: How a US Manufacturer Cut Third-Party Risk and Doubled SOC Triage Speed
See how a US automotive manufacturer secured supplier file intake, cut Tier 1 escalations, doubled SOC triage speed, and scaled without adding headcount.
Closing the Supplier Security Gap: How a US Manufacturer Cut Third-Party Risk and Doubled SOC Triage Speed
See how a US automotive manufacturer secured supplier file intake, cut Tier 1 escalations, doubled SOC triage speed, and scaled without adding headcount.
Closing the Supplier Security Gap: How a US Manufacturer Cut Third-Party Risk and Doubled SOC Triage Speed
See how a US automotive manufacturer secured supplier file intake, cut Tier 1 escalations, doubled SOC triage speed, and scaled without adding headcount.
Rapid-Deployable Cloud Malware Analysis Lab on AWS
Every time I changed laptops I found myself rebuilding the same malware analysis environment from scratch. Local VMs worked well enough until they didn’t: snapshots became stale, the host machine slowed down, and after a few months I was no longer entirely sure whether the environment was still clean. Moving to an Apple Silicon Mac finally forced me to rethink the entire workflow. Rather than fighting emulation layers or maintaining increasingly heavy local VMs, I decided to move the analysis environment into AWS.
Rapid-Deployable Cloud Malware Analysis Lab on AWS
Every time I changed laptops I found myself rebuilding the same malware analysis environment from scratch. Local VMs worked well enough until they didn’t: snapshots became stale, the host machine slowed down, and after a few months I was no longer entirely sure whether the environment was still clean. Moving to an Apple Silicon Mac finally forced me to rethink the entire workflow. Rather than fighting emulation layers or maintaining increasingly heavy local VMs, I decided to move the analysis environment into AWS.
Rapid-Deployable Cloud Malware Analysis Lab on AWS
Every time I changed laptops I found myself rebuilding the same malware analysis environment from scratch. Local VMs worked well enough until they didn’t: snapshots became stale, the host machine slowed down, and after a few months I was no longer entirely sure whether the environment was still clean. Moving to an Apple Silicon Mac finally forced me to rethink the entire workflow. Rather than fighting emulation layers or maintaining increasingly heavy local VMs, I decided to move the analysis environment into AWS.
Rapid-Deployable Cloud Malware Analysis Lab on AWS
Every time I changed laptops I found myself rebuilding the same malware analysis environment from scratch. Local VMs worked well enough until they didn’t: snapshots became stale, the host machine slowed down, and after a few months I was no longer entirely sure whether the environment was still clean. Moving to an Apple Silicon Mac finally forced me to rethink the entire workflow. Rather than fighting emulation layers or maintaining increasingly heavy local VMs, I decided to move the analysis environment into AWS.
Closing the Supplier Security Gap: How a US Manufacturer Cut Third-Party Risk and Doubled SOC Triage Speed
See how a US automotive manufacturer secured supplier file intake, cut Tier 1 escalations, doubled SOC triage speed, and scaled without adding headcount.
Rapid-Deployable Cloud Malware Analysis Lab on AWS
Every time I changed laptops I found myself rebuilding the same malware analysis environment from scratch. Local VMs worked well enough until they didn’t: snapshots became stale, the host machine slowed down, and after a few months I was no longer entirely sure whether the environment was still clean. Moving to an Apple Silicon Mac finally forced me to rethink the entire workflow. Rather than fighting emulation layers or maintaining increasingly heavy local VMs, I decided to move the analysis environment into AWS.
Business Continuity: andare avanti, mentre tutto si ferma
Il vero significato del Business Continuity Plan non è un documento da archiviare, ma una vera e propria struttura di sopravvivenza. Ecco perché oggi rappresenta il livello più alto della resilienza organizzativa richiesta dalla NIS 2
Patch Apple anticipate: perché l’AI cambia la finestra di rischio
Apple anticipa le patch 26.5.2 per iOS, macOS e Safari: cosa correggono, perché conta l’AI e come gestire gli update
EvilTokens, il phishing che si guadagna l’accesso ai dispositivi senza rubare password
I cyber criminali guadagnano l’accesso senza necessità di rubare le credenziali: il kit di phishing-as-a-service, che colpisce gli account Microsoft 365 tramite OAuth 2.0, inganna le vittime inducendole ad effettuare l'accesso a Microsoft in modo legittimo, con l'autenticazione a due fattori, su un sito autentico. Ecco perché EvilTokens preoccupa
Trasferimenti dati Ue-Usa, traballa l’accordo dopo sentenza su FTC
La Corte Suprema Usa ha stabilito che la Ftc non può più essere protetta come autorità indipendente dal potere del presidente. Allarme di noyb, mentre Bruxelles valuterà l’impatto sul Data Privacy Framework. Ecco cosa sapere, per Dpo e Ciso
NordPass lancia lo sconto fino al 40% sul password manager business: come funziona l’offerta
NordPass offre la sua soluzione per ottenere un password manager per il business con uno sconto del 40%: come aderire alla promozione.
Business Continuity: andare avanti, mentre tutto si ferma
Il vero significato del Business Continuity Plan non è un documento da archiviare, ma una vera e propria struttura di sopravvivenza. Ecco perché oggi rappresenta il livello più alto della resilienza organizzativa richiesta dalla NIS 2
Patch Apple anticipate: perché l’AI cambia la finestra di rischio
Apple anticipa le patch 26.5.2 per iOS, macOS e Safari: cosa correggono, perché conta l’AI e come gestire gli update
EvilTokens, il phishing che si guadagna l’accesso ai dispositivi senza rubare password
I cyber criminali guadagnano l’accesso senza necessità di rubare le credenziali: il kit di phishing-as-a-service, che colpisce gli account Microsoft 365 tramite OAuth 2.0, inganna le vittime inducendole ad effettuare l'accesso a Microsoft in modo legittimo, con l'autenticazione a due fattori, su un sito autentico. Ecco perché EvilTokens preoccupa