Dissection of a PHP Backdoor leveraging php-win.exe
FIRST Technical Colloquium Paris: Inside Mythic: Dissecting a Modern Attack Framework
Botconf: Tomb Raider - In Search of the Lost Signatures
Brucon: Anti-Forensics (and Anti-Anti-Forensics) Techniques
Anatomy of a Deno-Based Proxy & RAT
Fantastic clear-text passwords and where to collect them (Part 1 - Linux)
L’AI non cambia solo la cyber, cambia gli equilibri geopolitici: la lezione di Roberto Baldoni
Impatto ed evoluzione del binomio tra AI e cybersecurity: le risposte strategiche delle intelligence ai modelli di frontiera.
AryStinger botnet infected thousands of D-Link routers worldwide
A previously undocumented malware botnet named AryStinger has compromised more than 4,000 outdated routers to turn them into proxies for malicious traffic.
La sfida industriale dei computer quantistici
Materie prime rare, filiere fragili e pochissimi talenti: gli ostacoli sulla strada del quantum computing non sono solo scientifici, ma anche industriali e umani.
Microsoft links Mastra AI supply chain attack to North Korean hackers
Microsoft has attributed a recent Mastra AI supply chain attack that compromised more than 140 npm packages to the North Korean hacking group Sapphire Sleet, also known as BlueNoroff.
New Prinz Eugen ransomware prioritizes recent files for encryption
A new ransomware operation named 'Prinz Eugen' prioritizes recently modified files for encryption and leaves no ransom note on the system.
Microsoft links Mastra AI supply chain attack to North Korean hackers
Microsoft has attributed a recent Mastra AI supply chain attack that compromised more than 140 npm packages to the North Korean hacking group Sapphire Sleet, also known as BlueNoroff.
New Prinz Eugen ransomware prioritizes recent files for encryption
A new ransomware operation named 'Prinz Eugen' prioritizes recently modified files for encryption and leaves no ransom note on the system.
Microsoft links Mastra AI supply chain attack to North Korean hackers
Microsoft has attributed a recent Mastra AI supply chain attack that compromised more than 140 npm packages to the North Korean hacking group Sapphire Sleet, also known as BlueNoroff.
New Prinz Eugen ransomware prioritizes recent files for encryption
A new ransomware operation named 'Prinz Eugen' prioritizes recently modified files for encryption and leaves no ransom note on the system.
Microsoft links Mastra AI supply chain attack to North Korean hackers
Microsoft has attributed a recent Mastra AI supply chain attack that compromised more than 140 npm packages to the North Korean hacking group Sapphire Sleet, also known as BlueNoroff.
New Prinz Eugen ransomware prioritizes recent files for encryption
A new ransomware operation named 'Prinz Eugen' prioritizes recently modified files for encryption and leaves no ransom note on the system.
Microsoft links Mastra AI supply chain attack to North Korean hackers
Microsoft has attributed a recent Mastra AI supply chain attack that compromised more than 140 npm packages to the North Korean hacking group Sapphire Sleet, also known as BlueNoroff.
Microsoft links Mastra AI supply chain attack to North Korean hackers
Microsoft has attributed a recent Mastra AI supply chain attack that compromised more than 140 npm packages to the North Korean hacking group Sapphire Sleet, also known as BlueNoroff.
New Prinz Eugen ransomware prioritizes recent files for encryption
A new ransomware operation named 'Prinz Eugen' prioritizes recently modified files for encryption and leaves no ransom note on the system.
New Prinz Eugen ransomware prioritizes recent files for encryption
A new ransomware operation named 'Prinz Eugen' prioritizes recently modified files for encryption and leaves no ransom note on the system.
JCPenney - 368,418 breached accounts
In June 2026, retailer JCPenney and associated brands were targeted in a ShinyHunters "pay or leak" extortion campaign. Data allegedly obtained from JCPenney through the exploitation of a critical zero-day vulnerability in Oracle PeopleSoft was later published publicly. The exposed records indicated they primarily related to internal HR systems and impacted current and former employees. The data included 368k corporate and personal email addresses, names, dates of birth, Social Security numbers, phone numbers and home addresses.
Encryption, spyware, and now Mythos: History shows why cyber export control doesn’t work
For the last 30 years, stopping the flow of cybersecurity-related software has proven to be ineffective. It's unclear why it would work now with Anthropic’s cybersecurity model Mythos.
Klue OAuth breach victim list grows as Icarus hackers claim attack
Market intelligence platform Klue has publicly confirmed a recent security incident that allowed threat actors to steal OAuth tokens used to connect to customers' Salesforce environments, as the new "Icarus" extortion group publicly claims the attack.
Hackers exploit info disclosure bug in Gravity SMTP WordPress plugin
Threat actors are exploiting an unauthenticated information disclosure vulnerability in the WordPress plugin Gravity SMTP, active on 100,000 sites.
Mal di audit
La scelta di "direzionare" un audit a produrre determinati esiti è l'infausto presupposto di ancor più infauste sorti della sicurezza cyber. Nel momento in cui infatti un risultato viene forzato, ecco che il controllo di gestione viene perso, con tutte le conseguenze del caso
Texas govt data breach exposes over 3 million driver’s licenses
The Texas Parks and Wildlife Department (TPWD) disclosed a data breach at its license system vendor that exposed personal information for more than three million individuals.
Attacco a Novo Nordisk: il patrimonio intellettuale farmaceutico è tra i bersagli più ambiti, ecco i rischi
Dopo aver sottratto 1,3 terabyte di dati sanitari, i gruppi di estorsione, che hanno condotto il cyber attacco a Novo Nordisk, ora chiedono un riscatto multimilionario. Anzi due. Ma ecco cosa c'è in gioco oltre ai dati sanitari e alle informazioni sui trial clinici
Sintesi riepilogativa delle campagne malevole nella settimana del 13 – 19 giugno
Direttiva NIS 2 e cloud: i requisiti di conformità per le infrastrutture digitali
NIS 2 e cloud ridefiniscono gli obblighi di sicurezza per migliaia di organizzazioni italiane: dalla gestione del rischio alla notifica degli incidenti, dall'autenticazione alla supply chain. Questa guida analizza i requisiti tecnici del D.lgs. 138/2024, il ruolo di ACN e la roadmap operativa per l'adeguamento entro le scadenze previste