UK Cybercrime Journal: Carding Tactics & Youth Money Muling
CTI, threat intelligence, OSINT, malware, APT, threat hunting, threat analysis, CTF, cybersecurity, security
🔗️ [Bushidotoken] https://link.is.it/VXacRv
CTI, threat intelligence, OSINT, malware, APT, threat hunting, threat analysis, CTF, cybersecurity, security
🔗️ [Bushidotoken] https://link.is.it/VXacRv
CISA: Medusa ransomware hit over 500 critical infrastructure orgs
The FBI said Tuesday that the Medusa ransomware gang has breached more than 500 critical infrastructure organizations in the United States since June 2021.
🔗️ [Bleepingcomputer] https://link.is.it/RjVuhR
The FBI said Tuesday that the Medusa ransomware gang has breached more than 500 critical infrastructure organizations in the United States since June 2021.
🔗️ [Bleepingcomputer] https://link.is.it/RjVuhR
Balonx Sistema: The Face Behind the PhaaS Affecting Mexican Banking
Group-IB exposes a Mexican PhaaS operation targeting over 20 financial institutions with live phishing, AI vishing, and mobile RAT capabilities.
🔗️ [Group-ib] https://link.is.it/0RcDZX
Group-IB exposes a Mexican PhaaS operation targeting over 20 financial institutions with live phishing, AI vishing, and mobile RAT capabilities.
🔗️ [Group-ib] https://link.is.it/0RcDZX
Critical GitLab Flaw Lets Hackers Alter or Delete Public Projects
GitLab has patched two security flaws, including CVE-2026-19478, a critical code injection vulnerability that could allow unauthenticated attackers to remotely
🔗️ [Thecyberexpress] https://link.is.it/otTWyh
GitLab has patched two security flaws, including CVE-2026-19478, a critical code injection vulnerability that could allow unauthenticated attackers to remotely
🔗️ [Thecyberexpress] https://link.is.it/otTWyh
Windows 11 24H2 Home and Pro reach end of support in 2 months
Microsoft has reminded customers that systems running Home and Pro editions of Windows 11 24H2 will stop receiving updates in two months.
🔗️ [Bleepingcomputer] https://link.is.it/6gaxyQ
Microsoft has reminded customers that systems running Home and Pro editions of Windows 11 24H2 will stop receiving updates in two months.
🔗️ [Bleepingcomputer] https://link.is.it/6gaxyQ
Quando la prassi sostituisce la procedura: la lezione per le imprese
Una recente sentenza del Tribunale di Udine mostra che l’ente produce policy e linee guida, ma l'operatività quotidiana si sviluppa attraverso relazioni organizzative differenti, costruite su rapidità decisionale, consuetudini operative e tolleranze manageriali. Ecco perché la sentenza assume rilievo per privacy, cyber security e governance
🔗️ [Cybersecurity360] https://link.is.it/MorCzM
Una recente sentenza del Tribunale di Udine mostra che l’ente produce policy e linee guida, ma l'operatività quotidiana si sviluppa attraverso relazioni organizzative differenti, costruite su rapidità decisionale, consuetudini operative e tolleranze manageriali. Ecco perché la sentenza assume rilievo per privacy, cyber security e governance
🔗️ [Cybersecurity360] https://link.is.it/MorCzM
UT San Antonio Shuts Systems, Delays Classes After Cyber Incident
UT San Antonio cyber incident response efforts have prompted the university to delay the start of fall classes by three
🔗️ [Thecyberexpress] https://link.is.it/tlPujD
UT San Antonio cyber incident response efforts have prompted the university to delay the start of fall classes by three
🔗️ [Thecyberexpress] https://link.is.it/tlPujD
Critical RCE flaw in Windows IKE Extension now actively exploited
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned that hackers are exploiting a critical-severity remote code execution (RCE) flaw in the Windows Internet Key Exchange (IKE) Service Extensions component.
🔗️ [Bleepingcomputer] https://link.is.it/NI6ZDT
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned that hackers are exploiting a critical-severity remote code execution (RCE) flaw in the Windows Internet Key Exchange (IKE) Service Extensions component.
🔗️ [Bleepingcomputer] https://link.is.it/NI6ZDT
Describing attacks with crime script analysis
Martin explores how using crime script analysis to describe an attack with everyday language makes the situation accessible to non-technical audiences and identify points where the crime can be disrupted.
🔗️ [Talosintelligence] https://link.is.it/6BB9gh
Martin explores how using crime script analysis to describe an attack with everyday language makes the situation accessible to non-technical audiences and identify points where the crime can be disrupted.
🔗️ [Talosintelligence] https://link.is.it/6BB9gh
La protezione dell’identità digitale e delle credenziali: il ruolo dei password manager crittografati contro le violazioni dati
Proton Pass offre un servizio di gestione delle password con crittografia end-to-end a 2,49 € al mese: ecco come funziona e come si attiva.
🔗️ [Cybersecurity360] https://link.is.it/hPLtGS
Proton Pass offre un servizio di gestione delle password con crittografia end-to-end a 2,49 € al mese: ecco come funziona e come si attiva.
🔗️ [Cybersecurity360] https://link.is.it/hPLtGS
La protezione della rete domestica multipiattaforma: l’impatto dei servizi VPN a dispositivi illimitati sulla cybersecurity
Surfshark offre la VPN per dispositivi illimitati a 2,49 €, aggiungendo anche 3 mesi extra gratis: ecco come funziona l'offerta e come averla
🔗️ [Cybersecurity360] https://link.is.it/jj103U
Surfshark offre la VPN per dispositivi illimitati a 2,49 €, aggiungendo anche 3 mesi extra gratis: ecco come funziona l'offerta e come averla
🔗️ [Cybersecurity360] https://link.is.it/jj103U
Microsoft fixes known issue causing Windows Defender crashes
Microsoft has resolved a bug that caused Windows Defender to crash after a recent security update, resulting in 0xc0000005 access violation errors on some affected systems.
🔗️ [Bleepingcomputer] https://link.is.it/MSqjta
Microsoft has resolved a bug that caused Windows Defender to crash after a recent security update, resulting in 0xc0000005 access violation errors on some affected systems.
🔗️ [Bleepingcomputer] https://link.is.it/MSqjta
Hunt Malware & Phishing Threats with ANY.RUN for Proactive Enterprise Security
Learn how ANY.RUN helps SOC teams hunt malware and phishing threats to strengthen enterprise security.
🔗️ [Any] https://link.is.it/PALKwP
Learn how ANY.RUN helps SOC teams hunt malware and phishing threats to strengthen enterprise security.
🔗️ [Any] https://link.is.it/PALKwP
Quanto è davvero hacker il nuovo GLM-5.3 open weight della Z.ai
L'azienda cinese ha reso pubblico il nuovo modello dichiarando forti capacità nel coding e nella cyber security. Ma si è preso due settimane per renderne disponibile il download dei pesi. Proviamo a scoprire quali sono i vantaggi ma anche i rischi di questo tipo di rilascio
🔗️ [Cybersecurity360] https://link.is.it/9Ezpjs
L'azienda cinese ha reso pubblico il nuovo modello dichiarando forti capacità nel coding e nella cyber security. Ma si è preso due settimane per renderne disponibile il download dei pesi. Proviamo a scoprire quali sono i vantaggi ma anche i rischi di questo tipo di rilascio
🔗️ [Cybersecurity360] https://link.is.it/9Ezpjs
US charges Iranians for sprawling hacking campaign on government agencies, universities
The Justice Department accused 17 alleged hackers with ties to the Iranian government of breaching email accounts at U.S. government agencies and stealing intellectual property from dozens of universities.
🔗️ [Therecord] https://link.is.it/PsfwsM
The Justice Department accused 17 alleged hackers with ties to the Iranian government of breaching email accounts at U.S. government agencies and stealing intellectual property from dozens of universities.
🔗️ [Therecord] https://link.is.it/PsfwsM
When the Attacker Wears Your Logo: Detecting and Taking Down Impersonation at AI Speed
Here's how AI-powered brand impersonation fuels phishing and fraud, and how continuous monitoring and takedowns help protect trusted brands.
🔗️ [Cyble] https://link.is.it/k1oqIm
Here's how AI-powered brand impersonation fuels phishing and fraud, and how continuous monitoring and takedowns help protect trusted brands.
🔗️ [Cyble] https://link.is.it/k1oqIm
Latvian officials resign after cyberattack exposes data on 1.2 million people
Latvia’s road traffic agency confirmed that hackers stole data connected to about two-thirds of the country’s population in a major cyberattack that has prompted calls for senior officials to resign.
🔗️ [Therecord] https://link.is.it/juvvJs
Latvia’s road traffic agency confirmed that hackers stole data connected to about two-thirds of the country’s population in a major cyberattack that has prompted calls for senior officials to resign.
🔗️ [Therecord] https://link.is.it/juvvJs
Password spraying attacks surge 155x as hackers exploit MFA gaps
Huntress observed a 155x increase in password spraying attacks in H1 2026, including a campaign that generated more than 81 million login attempts in two weeks. The attacks exploited legacy authentication and gaps in MFA policies that left some login flows unprotected.
🔗️ [Bleepingcomputer] https://link.is.it/a593dS
Huntress observed a 155x increase in password spraying attacks in H1 2026, including a campaign that generated more than 81 million login attempts in two weeks. The attacks exploited legacy authentication and gaps in MFA policies that left some login flows unprotected.
🔗️ [Bleepingcomputer] https://link.is.it/a593dS
US charges Iranian hackers over $3.4 billion intellectual property theft
The U.S. has charged 17 Iranians, alleged members of a hacking-for-hire company called Mabna Institute, involved in years-long operations that stole data from American organizations.
🔗️ [Bleepingcomputer] https://link.is.it/ItQNzN
The U.S. has charged 17 Iranians, alleged members of a hacking-for-hire company called Mabna Institute, involved in years-long operations that stole data from American organizations.
🔗️ [Bleepingcomputer] https://link.is.it/ItQNzN
Electronic health record company CareCloud says 3.7 million people affected by breach
Healthcare software firm CareCloud filed documents with the Department of Health and Human Services confirming that 3,756,469 people had information leaked after a hacker spent eight hours in one of the company’s electronic health record environments.
🔗️ [Therecord] https://link.is.it/zZgrl5
Healthcare software firm CareCloud filed documents with the Department of Health and Human Services confirming that 3,756,469 people had information leaked after a hacker spent eight hours in one of the company’s electronic health record environments.
🔗️ [Therecord] https://link.is.it/zZgrl5
Hackers compromise 14,500 Dahua web cameras in 35-day campaign
In a large-scale campaign that researchers dubbed CameraSwarm, hackers compromised more than 14,500 Dahua IP cameras mostly in Ukraine and Russia.
🔗️ [Bleepingcomputer] https://link.is.it/SbqbGl
In a large-scale campaign that researchers dubbed CameraSwarm, hackers compromised more than 14,500 Dahua IP cameras mostly in Ukraine and Russia.
🔗️ [Bleepingcomputer] https://link.is.it/SbqbGl