Furto di identità via phishing Wise
Nella giornata odierna il team anti-frode D3Lab ha rilevato la settima campagna di phishing dell'anno a danno dei clienti italiani di Wise, servizio per il trasferimento di denaro a livello globale, con bassi costi di trasferimento e di cambio.
Campagne di phishing a danno degli utenti italiani W
🔗️ [D3lab] https://link.is.it/nYNCCn
Nella giornata odierna il team anti-frode D3Lab ha rilevato la settima campagna di phishing dell'anno a danno dei clienti italiani di Wise, servizio per il trasferimento di denaro a livello globale, con bassi costi di trasferimento e di cambio.
Campagne di phishing a danno degli utenti italiani W
🔗️ [D3lab] https://link.is.it/nYNCCn
Your Controls Block Known Attacks. What About the Behavior?
Security controls can block a familiar attack method while missing quieter ways to achieve the same objective. Picus Security's Blue Report 2026 shows how prevention rates can vary dramatically by technique and why behavioral testing is needed to uncover those gaps.
🔗️ [Bleepingcomputer] https://link.is.it/OnqgIu
Security controls can block a familiar attack method while missing quieter ways to achieve the same objective. Picus Security's Blue Report 2026 shows how prevention rates can vary dramatically by technique and why behavioral testing is needed to uncover those gaps.
🔗️ [Bleepingcomputer] https://link.is.it/OnqgIu
Hackers target Ukrainian agency managing assets seized from sanctioned Russians
The agency said the latest attack came amid preparations to select a manager for seized corporate rights in IDS Ukraine, one of the country’s largest producers of bottled mineral water and beverages.
🔗️ [Therecord] https://link.is.it/GbHqAO
The agency said the latest attack came amid preparations to select a manager for seized corporate rights in IDS Ukraine, one of the country’s largest producers of bottled mineral water and beverages.
🔗️ [Therecord] https://link.is.it/GbHqAO
Berlin cuts two state ministries off government network after security breach
The affected ministries — one responsible for urban development, construction and housing, and the other for mobility, transport, climate protection and the environment — have been isolated from government networks since Friday as a precaution.
🔗️ [Therecord] https://link.is.it/btBwIb
The affected ministries — one responsible for urban development, construction and housing, and the other for mobility, transport, climate protection and the environment — have been isolated from government networks since Friday as a precaution.
🔗️ [Therecord] https://link.is.it/btBwIb
❤1
University of Texas forced to take systems offline in San Antonio after cyberattack
The University of Texas at San Antonio, which serves 40,000 students across six campuses, said its IT team identified threat activity on its academic campus over the weekend and took some systems, including phones, offline in response.
🔗️ [Therecord] https://link.is.it/xHO23Y
The University of Texas at San Antonio, which serves 40,000 students across six campuses, said its IT team identified threat activity on its academic campus over the weekend and took some systems, including phones, offline in response.
🔗️ [Therecord] https://link.is.it/xHO23Y
Clop created custom web shell for Windchill data theft attacks
A custom Java web shell likely linked to the Clop ransomware gang was designed specifically for PTC Windchill and FlexPLM servers, with built-in features to decrypt credentials, enumerate file repositories, and steal files.
🔗️ [Bleepingcomputer] https://link.is.it/7UL3LZ
A custom Java web shell likely linked to the Clop ransomware gang was designed specifically for PTC Windchill and FlexPLM servers, with built-in features to decrypt credentials, enumerate file repositories, and steal files.
🔗️ [Bleepingcomputer] https://link.is.it/7UL3LZ
More than 200 victims of Medusa ransomware identified over the last year, CISA says
The Cybersecurity and Infrastructure Security Agency (CISA) and FBI updated an advisory on the group initially released in March 2025 — writing that as of April 2026, Medusa actors have hit more than 500 victims. CISA previously said 300 victims, many of which are in critical infrastructure sectors, were attacked as of 2025.
🔗️ [Therecord] https://link.is.it/mWe7QC
The Cybersecurity and Infrastructure Security Agency (CISA) and FBI updated an advisory on the group initially released in March 2025 — writing that as of April 2026, Medusa actors have hit more than 500 victims. CISA previously said 300 victims, many of which are in critical infrastructure sectors, were attacked as of 2025.
🔗️ [Therecord] https://link.is.it/mWe7QC
Comcast turns your Xfinity WiFi into a home motion detector
Comcast is promoting WiFi-based motion detection as a part of its new Xfinity Shield home protection platform, allowing routers and wireless devices to detect people moving through a home without cameras or motion sensors.
🔗️ [Bleepingcomputer] https://link.is.it/XXH7Bo
Comcast is promoting WiFi-based motion detection as a part of its new Xfinity Shield home protection platform, allowing routers and wireless devices to detect people moving through a home without cameras or motion sensors.
🔗️ [Bleepingcomputer] https://link.is.it/XXH7Bo
Fanlore - 144,520 breached accounts
In August 2026, the Organization for Transformative Works (OTW) identified unauthorised access to the Fanlore wiki it operates. The breach resulted in the exposure of 145k unique email addresses along with usernames and passwords stored as either MD5 or PBKDF2 hashes. OTW self-submitted the exposed data to HIBP.
🔗️ [Haveibeenpwned] https://link.is.it/vMtXHR
In August 2026, the Organization for Transformative Works (OTW) identified unauthorised access to the Fanlore wiki it operates. The breach resulted in the exposure of 145k unique email addresses along with usernames and passwords stored as either MD5 or PBKDF2 hashes. OTW self-submitted the exposed data to HIBP.
🔗️ [Haveibeenpwned] https://link.is.it/vMtXHR
Oz Hair and Beauty - 1,988,331 breached accounts
In August 2026, Australian beauty retailer Oz Hair and Beauty was the target of an xpl0itrs extortion attack. The group subsequently published data allegedly obtained from the company, which included 2M unique email addresses along with names, phone numbers, geographic locations (suburb and postcode) and purchases.
🔗️ [Haveibeenpwned] https://link.is.it/eUueY3
In August 2026, Australian beauty retailer Oz Hair and Beauty was the target of an xpl0itrs extortion attack. The group subsequently published data allegedly obtained from the company, which included 2M unique email addresses along with names, phone numbers, geographic locations (suburb and postcode) and purchases.
🔗️ [Haveibeenpwned] https://link.is.it/eUueY3
Cyberattack Hits Ukraine Agency Ahead of Major Asset Tender
A suspected ARMA cyberattack has targeted Ukraine's Asset Recovery and Management Agency as it prepares to select a manager for
🔗️ [Thecyberexpress] https://link.is.it/wHhAoi
A suspected ARMA cyberattack has targeted Ukraine's Asset Recovery and Management Agency as it prepares to select a manager for
🔗️ [Thecyberexpress] https://link.is.it/wHhAoi
Il problema non è il fattore umano. Perché il modello cyber va ripensato
Il nodo della cyber security non è la persona che sbaglia, ma un modello di sicurezza non allineato ai flussi di lavoro reali. Quando i processi sono complessi e poco usabili, la sicurezza viene aggirata invece di essere adottata. Ma anche la formazione deve cambiare
🔗️ [Cybersecurity360] https://link.is.it/UTdKrP
Il nodo della cyber security non è la persona che sbaglia, ma un modello di sicurezza non allineato ai flussi di lavoro reali. Quando i processi sono complessi e poco usabili, la sicurezza viene aggirata invece di essere adottata. Ma anche la formazione deve cambiare
🔗️ [Cybersecurity360] https://link.is.it/UTdKrP
What Is PreCrime?
Learn what PreCrime™ is, how predictive cybersecurity works, and how organizations identify cyber threats before attacks begin.
🔗️ [Bfore] https://link.is.it/5E7EBs
Learn what PreCrime™ is, how predictive cybersecurity works, and how organizations identify cyber threats before attacks begin.
🔗️ [Bfore] https://link.is.it/5E7EBs
UK Cybercrime Journal: Carding Tactics & Youth Money Muling
CTI, threat intelligence, OSINT, malware, APT, threat hunting, threat analysis, CTF, cybersecurity, security
🔗️ [Bushidotoken] https://link.is.it/VXacRv
CTI, threat intelligence, OSINT, malware, APT, threat hunting, threat analysis, CTF, cybersecurity, security
🔗️ [Bushidotoken] https://link.is.it/VXacRv
CISA: Medusa ransomware hit over 500 critical infrastructure orgs
The FBI said Tuesday that the Medusa ransomware gang has breached more than 500 critical infrastructure organizations in the United States since June 2021.
🔗️ [Bleepingcomputer] https://link.is.it/RjVuhR
The FBI said Tuesday that the Medusa ransomware gang has breached more than 500 critical infrastructure organizations in the United States since June 2021.
🔗️ [Bleepingcomputer] https://link.is.it/RjVuhR
Balonx Sistema: The Face Behind the PhaaS Affecting Mexican Banking
Group-IB exposes a Mexican PhaaS operation targeting over 20 financial institutions with live phishing, AI vishing, and mobile RAT capabilities.
🔗️ [Group-ib] https://link.is.it/0RcDZX
Group-IB exposes a Mexican PhaaS operation targeting over 20 financial institutions with live phishing, AI vishing, and mobile RAT capabilities.
🔗️ [Group-ib] https://link.is.it/0RcDZX
Critical GitLab Flaw Lets Hackers Alter or Delete Public Projects
GitLab has patched two security flaws, including CVE-2026-19478, a critical code injection vulnerability that could allow unauthenticated attackers to remotely
🔗️ [Thecyberexpress] https://link.is.it/otTWyh
GitLab has patched two security flaws, including CVE-2026-19478, a critical code injection vulnerability that could allow unauthenticated attackers to remotely
🔗️ [Thecyberexpress] https://link.is.it/otTWyh
Windows 11 24H2 Home and Pro reach end of support in 2 months
Microsoft has reminded customers that systems running Home and Pro editions of Windows 11 24H2 will stop receiving updates in two months.
🔗️ [Bleepingcomputer] https://link.is.it/6gaxyQ
Microsoft has reminded customers that systems running Home and Pro editions of Windows 11 24H2 will stop receiving updates in two months.
🔗️ [Bleepingcomputer] https://link.is.it/6gaxyQ
Quando la prassi sostituisce la procedura: la lezione per le imprese
Una recente sentenza del Tribunale di Udine mostra che l’ente produce policy e linee guida, ma l'operatività quotidiana si sviluppa attraverso relazioni organizzative differenti, costruite su rapidità decisionale, consuetudini operative e tolleranze manageriali. Ecco perché la sentenza assume rilievo per privacy, cyber security e governance
🔗️ [Cybersecurity360] https://link.is.it/MorCzM
Una recente sentenza del Tribunale di Udine mostra che l’ente produce policy e linee guida, ma l'operatività quotidiana si sviluppa attraverso relazioni organizzative differenti, costruite su rapidità decisionale, consuetudini operative e tolleranze manageriali. Ecco perché la sentenza assume rilievo per privacy, cyber security e governance
🔗️ [Cybersecurity360] https://link.is.it/MorCzM
UT San Antonio Shuts Systems, Delays Classes After Cyber Incident
UT San Antonio cyber incident response efforts have prompted the university to delay the start of fall classes by three
🔗️ [Thecyberexpress] https://link.is.it/tlPujD
UT San Antonio cyber incident response efforts have prompted the university to delay the start of fall classes by three
🔗️ [Thecyberexpress] https://link.is.it/tlPujD
Critical RCE flaw in Windows IKE Extension now actively exploited
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned that hackers are exploiting a critical-severity remote code execution (RCE) flaw in the Windows Internet Key Exchange (IKE) Service Extensions component.
🔗️ [Bleepingcomputer] https://link.is.it/NI6ZDT
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned that hackers are exploiting a critical-severity remote code execution (RCE) flaw in the Windows Internet Key Exchange (IKE) Service Extensions component.
🔗️ [Bleepingcomputer] https://link.is.it/NI6ZDT