Hacker linked to Void Blizzard faces charges over cyberespionage campaign
British high school sends students home following cyberattack
University of Nottingham confirms cyber incident as Shiny Hunters group claims data theft
Why AI-driven threats are exposing the limits of MSP security stacks
AI-driven attacks are exposing the limits of fragmented MSP security stacks and slow response workflows. Kaseya breaks down why integrated security, automation, and recovery are becoming essential.
Software Bill of Materials (Sbom) nel 2026: i progessi e i 3 ostacoli all’adozione degli inventari
In base ai risultati dell’indagine dell'Enisa, più di 7 imprese su 10 hanno aumentato gli investimenti per gli SBOM. Oltre 4 intervistati su 10 dichiara che il CRA ha accelerato i piani di adozione degli inventari. Ma le PMI sono sotto rappresentate. Ecco cosa emerge dai dati sullo stato dell'adozione di Software Bill of Materials nel 2026
Coupang hit with record $409 million data breach fine in Korea
The Personal Information Protection Commission (PIPC), South Korea's data protection regulator, has fined e-commerce giant Coupang a record 624.6 billion won (roughly $409 million) following a massive data breach affecting more than 37 million customers
CISA tells govt agencies to patch critical exploited flaws in 3 days
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) announced a new Binding Operational Directive, 26-04, that prioritizes security updates for Federal Civilian Executive Branch (FCEB) agencies.
pCloud 20 GB di spazio cloud gratis: come funziona la promozione e quali vantaggi include
Come ottenere 20 GB di spazio cloud gratis con pCloud e accedere a tutti i vantaggi del servizio: le condizioni e i requisiti da avere.
May 2026 Cyber Attacks Statistics
165 events: Cyber Crime accounted for 73.8% of events, Malware remained the dominant weapon (48.8%) and Information & Communication was hit the most (37.6%)
Cyble Recognized in the 2026 Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies — and What Cyble Feels It Means for the Next Era of Threat Intel
Cyble has been recognized as a Challenger in the 2026 Gartner® Magic Quadrant™ for CTI. Here’s what it means for the future of threat intelligence.
La sfida dei data center spaziali
La Cina ha già lanciato i primi satelliti per elaborare dati in orbita. Gli Stati Uniti, tra Pentagono, Google e SpaceX, stanno facendo lo stesso. Sta nascendo una nuova infrastruttura digitale globale, che però non appartiene a nessuno Stato e che nessuna legge regola ancora
Microsoft fixes BitLocker recovery bug on Windows Server 2025
Microsoft has resolved a known issue causing some Windows Server 2025 devices to boot into BitLocker recovery after installing the April 2026 security update.
AI nella PA: la formazione di massa alla prova della sicurezza dei dati e della conformità normativa
La diffusione di Microsoft 365 Copilot nella Pubblica Amministrazione accompagna un ampio sforzo formativo, da analizzare dal duplice punto di vista della sicurezza dei dati e della conformità normativa. Ecco quali sono le problematiche e le possibili soluzioni
L’importanza della discovery e dell’osservabilità nell’era agentica
La maggior parte dei programmi di sicurezza dà per scontato che applicazioni e agenti AI siano autorizzati dall'IT e monitorati. Ecco cosa offrono gli agenti OpenClaw ai CISO e responsabili della cyber security interessati alla visibilità unificata e a garantire che l'osservabilità degli agenti non sia isolata
From Infosecurity Europe to CONFidence and C1b3rWall: What Security Teams Are Prioritizing in 2026
Explore ANY.RUN’s highlights from Infosecurity Europe, CONFidence, and C1b3rWall 2026, including the SOC priorities shaping security operations today.
L’adozione dell’AI tra Mythos e Fable 5: le nuove sfide alla sicurezza nazionale
Project Glasswing e i modelli Mythos di Anthropic aprono una nuova fase della cyber sicurezza. La capacità di individuare migliaia di vulnerabilità in tempi record promette vantaggi difensivi senza precedenti, ma solleva interrogativi su sovranità digitale, sicurezza nazionale e dipendenza tecnologica europea
Mackay Sugar Security Incident Forces Mill Shutdowns and Halts Harvesting Operations
Mackay Sugar security incident has halted mill operations and sugarcane harvesting in Queensland, disrupting production.
Sniper’s Nest: From Brand Impersonation to Browser Hijacking and CPA Fraud
This blog provides a deep-dive into SniperDz, a centralised PhaaS platform with more than 80 ready-made phishing templates impersonating over 30 global brands, and uncovers the hidden infrastructure behind this sophisticated and highly-organized fraud ecosystem.
Nottingham University data breach affects over 450,000 students
The University of Nottingham confirmed on Wednesday that a hacking group gained access to its student records system in a breach affecting both current students and alums.
ServiceNow Flaw Exploited by Threat Actors to Access Customer Instances
A ServiceNow flaw was exploited by threat actors to access customer instances, prompting a security update and customer notifications.
APT28, an evolution of tradecraft
APT28, an evolution of tradecraft
Max severity Ivanti Sentry vulnerability now exploited in attacks
Attackers are now targeting a recently patched maximum-severity flaw in Ivanti Sentry, enabling them to execute code with root privileges on Internet-exposed secure mobile gateways.
CISA Sets 72-Hour Patch Window for Federal Systems Facing Highest Cyber Risks
The CISA vulnerability management directive requires federal agencies to patch high-risk vulnerabilities within 72 hours to reduce cyber risk.
University of Nottingham - 454,635 breached accounts
In June 2026, the University of Nottingham was the target of a cyber attack, later linked to a ShinyHunters "pay or leak" extortion campaign. Tens of gigabytes of data were subsequently published online and included 455k unique email addresses along with extensive personal information including names, addresses, phone numbers, ethnicities, disabilities, passport numbers and information relating to academic enrolments and fee payments. In a post about the incident, the university advised that the breach affected both "current students, and alumni".
Cybercriminals claim breach of Oracle PeopleSoft servers at 100-plus organizations
The ShinyHunters hacking gang claims to have compromised the Oracle PeopleSoft servers of more than 100 organizations, including many universities.
Path traversal flaw in AI dev platform Langflow exploited in attacks
Attackers are actively exploiting CVE-2026-5027, a high-severity path traversal vulnerability in the AI development platform Langflow, to write arbitrary files on exposed servers.
The ‘Miasma’ worm source code briefly leaked on GitHub
The Miasma credential-stealing attack framework, which has recently targeted open-source ecosystems through supply-chain attacks, was briefly open-sourced on GitHub.
CISA to require federal agencies to patch some cyber vulnerabilities within 3 days
GitHub announces npm security changes to tackle supply-chain attacks
GitHub has announced that npm v12, expected next month, will introduce several security-focused changes aimed at blocking supply-chain attacks abusing behaviors triggered by the 'npm install' command.
Oracle PeopleSoft servers hacked in ShinyHunters data theft attacks
Oracle PeopleSoft servers are being targeted in ongoing data theft attacks by the ShinyHunters extortion gang, which claims to have stolen data from over 100 organizations.