Guild Group’s Mohammad Arif on the Security Risks of Enterprise AI
The Cyber Express speaks with Guild Group’s Mohammad Arif about the growingsecurity risks of AI, from data exposure and AI agents to supply-chain threats.
New Manic Android malware can exfiltrate data through nearby devices
A new Android malware named Manic targeting users in multiple European countries has a fallback data exfiltration mechanism that uses nearby infected devices.
UAT-10147: Chinese-speaking adversary integrates agentic AI into post-compromise operations
Cisco Talos discovered a Chinese-speaking cybercrime group, tracked as UAT-10147, that targets a wide range of vulnerable web servers. This is an overview of the campaign, examining the countries affected, potential impact of BadIIS infections, the attack chain, and post-compromise tactics.
Critical Zimbra RCE flaw now actively exploited in attacks
CERT Polska, the Polish Computer Emergency Response Team (CERT), warned that attackers have begun exploiting a critical vulnerability in Zimbra Collaboration Suite (ZCS).
Sanità sotto attacco: il ritorno a bit e carta, quasi una battaglia di altri tempi. Il caso Bulgaria
I medici degli ospedali, quando il cyber attacco alla sanità in Bulgaria ha costretto a mettere offline cento ospedali, hanno reagito creando soluzioni alternative per proteggere i pazienti fino al ripristino del servizio. Ecco quali
Payment was authorised. The transaction was, technically, legitimate. It was also part of a $187 million criminal network, and the payment was the worst place to fight it.
Zero Trust nei sistemi OT: dalla teoria all’applicazione, ecco le 5 aree di rischio prioritarie
L'applicazione agli ambienti di Operational Technology non è affatto immediata. Partendo da un caso applicativo nel settore elettrico, ecco un approccio mission-focused all’adozione dello Zero Trust nell'ambito OT, nel contesto normativo europeo (NIS2) e tecnico
Microsoft says August Windows updates may cause gaming issues
Microsoft is investigating a potential issue with the August 2026 updates that may prevent some games from launching or cause them to crash on affected Windows 11 systems.
BTMOB Exposed: Inside a Fraud-as-a-Service Platform with 1400+ live servers
The Trail
In February 2023, cryptocurrency payment processor Freewallet froze roughly $75,000 in accumulated earnings from a customer in Syria. The company demanded KYC verification. That moment of financial friction cracked the operational security that a threat actor known as EVLF had maintained for approximately eight years, and gave
Rogue ransomware affiliate poses as recovery firm to steal payments
A suspected ransomware affiliate is posing as a ransomware recovery service called "Ransom Busters," contacting the victims before the attacks become public and claiming to be able to provide decryption keys and delete stolen data for a fee.
Sakura Internet hack exposes data of up to 1.36 million accounts
Japanese cloud and data center service provider Sakura Internet disclosed that hackers accessed its sales management system, where customer contract and membership information is stored.
Rogue ransomware affiliate poses as data recovery firm to steal payments
A suspected ransomware affiliate is posing as a ransomware recovery service called "Ransom Busters," contacting the victims before the attacks become public and claiming to be able to provide decryption keys and delete stolen data for a fee.
Healthtech firm CareCloud data breach impacts 3.7 million patients
U.S. healthcare IT company CareCloud disclosed that the data breach incident it suffered earlier this year has impacted more than 3.7 million individuals.
Researchers say OpenAI revoked their access to limited cyber program
Multiple cybersecurity researchers said they suddenly lost access to OpenAI’s Trusted Access for Cyber (TAC) program, which offers models with fewer guardrails for vetted users.
US warns of AI-powered attacks on Siemens PLCs in critical infrastructure
U.S. cybersecurity agencies warn that threat actors are using AI-generated scripts to exploit Siemens S7 Series programmable logic controllers (PLCs) in U.S. critical infrastructure.
US charges Iranian hackers over $3.4 billion intellectual property theft
The U.S. has charged 17 Iranians, alleged members of a hacking-for-hire company called Mabna Institute, involved in years-long operations that stole data from American organizations.
Password spraying attacks surge 155x as hackers exploit MFA gaps
Huntress observed a 155x increase in password spraying attacks in H1 2026, including a campaign that generated more than 81 million login attempts in two weeks. The attacks exploited legacy authentication and gaps in MFA policies that left some login flows unprotected.
Quanto è davvero hacker il nuovo GLM-5.3 open weight della Z.ai
L'azienda cinese ha rilasciato il nuovo modello dichiarando forti capacità nel coding e nella cyber security. Ma si è preso due settimane per renderlo eseguibile anche su infrastrutture di terzi. Proviamo a scoprire quali sono i suoi effettivi vantaggi ma anche i suoi rischi