New Manic Android malware can exfiltrate data through nearby devices
A new Android malware named Manic targeting users in multiple European countries has a fallback data exfiltration mechanism that uses nearby infected devices.
🔗️ [Bleepingcomputer] https://link.is.it/XONNua
A new Android malware named Manic targeting users in multiple European countries has a fallback data exfiltration mechanism that uses nearby infected devices.
🔗️ [Bleepingcomputer] https://link.is.it/XONNua
UAT-10147: Chinese-speaking adversary integrates agentic AI into post-compromise operations
Cisco Talos discovered a Chinese-speaking cybercrime group, tracked as UAT-10147, that targets a wide range of vulnerable web servers. This is an overview of the campaign, examining the countries affected, potential impact of BadIIS infections, the attack chain, and post-compromise tactics.
🔗️ [Talosintelligence] https://link.is.it/gIiQpf
Cisco Talos discovered a Chinese-speaking cybercrime group, tracked as UAT-10147, that targets a wide range of vulnerable web servers. This is an overview of the campaign, examining the countries affected, potential impact of BadIIS infections, the attack chain, and post-compromise tactics.
🔗️ [Talosintelligence] https://link.is.it/gIiQpf
UAT-10147 deploys SPECTRE: A cross-platform implant with Linux rootkit and BYOVD capabilities
The newly identified SPECTRE implant represents an evolution in commodity intrusion tooling, integrating cross-platform C2 operations, process injection, credential theft, anti-analysis protections, and kernel-level endpoint detection and response (EDR) bypass functionality.
🔗️ [Talosintelligence] https://link.is.it/LYPvyX
The newly identified SPECTRE implant represents an evolution in commodity intrusion tooling, integrating cross-platform C2 operations, process injection, credential theft, anti-analysis protections, and kernel-level endpoint detection and response (EDR) bypass functionality.
🔗️ [Talosintelligence] https://link.is.it/LYPvyX
Critical Zimbra RCE flaw now actively exploited in attacks
CERT Polska, the Polish Computer Emergency Response Team (CERT), warned that attackers have begun exploiting a critical vulnerability in Zimbra Collaboration Suite (ZCS).
🔗️ [Bleepingcomputer] https://link.is.it/oIEJ8s
CERT Polska, the Polish Computer Emergency Response Team (CERT), warned that attackers have begun exploiting a critical vulnerability in Zimbra Collaboration Suite (ZCS).
🔗️ [Bleepingcomputer] https://link.is.it/oIEJ8s
Archiviazione dati permanente e sovranità digitale: l’evoluzione dei modelli di storage cloud senza abbonamento
Come ottenere il cloud storage a vita da 199 €: crittografia AES a 256 bit con pCloud: ecco come attivare il servizio e i requisiti.
🔗️ [Cybersecurity360] https://link.is.it/kAqTfD
Come ottenere il cloud storage a vita da 199 €: crittografia AES a 256 bit con pCloud: ecco come attivare il servizio e i requisiti.
🔗️ [Cybersecurity360] https://link.is.it/kAqTfD
Sanità sotto attacco: il ritorno a bit e carta, quasi una battaglia di altri tempi. Il caso Romania
I medici degli ospedali, quando il cyber attacco alla sanità in Romania ha costretto a mettere offline cento ospedali, hanno reagito creando soluzioni alternative per proteggere i pazienti fino al ripristino del servizio. Ecco quali
🔗️ [Cybersecurity360] https://link.is.it/RviaHR
I medici degli ospedali, quando il cyber attacco alla sanità in Romania ha costretto a mettere offline cento ospedali, hanno reagito creando soluzioni alternative per proteggere i pazienti fino al ripristino del servizio. Ecco quali
🔗️ [Cybersecurity360] https://link.is.it/RviaHR
CISA warns of hackers exploiting critical MLflow vulnerability
The Cybersecurity and Infrastructure Security Agency (CISA) warned federal agencies that threat actors are now exploiting a critical vulnerability in the MLflow open-source AI engineering platform.
🔗️ [Bleepingcomputer] https://link.is.it/ozKTur
The Cybersecurity and Infrastructure Security Agency (CISA) warned federal agencies that threat actors are now exploiting a critical vulnerability in the MLflow open-source AI engineering platform.
🔗️ [Bleepingcomputer] https://link.is.it/ozKTur
Guild Group’s Mohammad Arif on the Security Risks of Enterprise AI
Every enterprise wants the upside of AI — faster workflows, sharper decisions, leaner teams. Far fewer have asked the harder
🔗️ [Thecyberexpress] https://link.is.it/N1hlz7
Every enterprise wants the upside of AI — faster workflows, sharper decisions, leaner teams. Far fewer have asked the harder
🔗️ [Thecyberexpress] https://link.is.it/N1hlz7
How Easy Is It to Scan a Contactless Payment and Access Card?
I recently tested NFC Canary against several real-world tools used by security researchers and penetration testers, and it raises an interesting question
🔗️ [Mobile-hacker] https://link.is.it/Vfn1hL
I recently tested NFC Canary against several real-world tools used by security researchers and penetration testers, and it raises an interesting question
🔗️ [Mobile-hacker] https://link.is.it/Vfn1hL
👍1
Citrix urges admins to patch new NetScaler flaws as soon as possible
Citrix has warned customers to immediately secure their systems against two vulnerabilities affecting NetScaler Gateway secure remote access solutions and NetScaler ADC networking appliances.
🔗️ [Bleepingcomputer] https://link.is.it/Sclk6n
Citrix has warned customers to immediately secure their systems against two vulnerabilities affecting NetScaler Gateway secure remote access solutions and NetScaler ADC networking appliances.
🔗️ [Bleepingcomputer] https://link.is.it/Sclk6n
Phishing Klarna: crescita vertiginosa
Nella giornata odierna il team anti frode D3lab ha rilevato la 132a campagna di phishing del 2026 rivolta agli utilizzatori di Klarna.
Vettore di attacco
Klarna è una società svedese che si occupa di microcredito, permettendo agli utenti di rateizzare anche pagamenti di importo medio/basso
🔗️ [D3lab] https://link.is.it/MNo1fG
Nella giornata odierna il team anti frode D3lab ha rilevato la 132a campagna di phishing del 2026 rivolta agli utilizzatori di Klarna.
Vettore di attacco
Klarna è una società svedese che si occupa di microcredito, permettendo agli utenti di rateizzare anche pagamenti di importo medio/basso
🔗️ [D3lab] https://link.is.it/MNo1fG
Critical Elementor Pro bug exposes WordPress sites to RCE attacks
A critical vulnerability in the Elementor Pro WordPress plugin could allow attackers to upload executable files for remote code execution on the server.
🔗️ [Bleepingcomputer] https://link.is.it/Ot4EO2
A critical vulnerability in the Elementor Pro WordPress plugin could allow attackers to upload executable files for remote code execution on the server.
🔗️ [Bleepingcomputer] https://link.is.it/Ot4EO2
Insider Threat Report: Dark Web Recruitment & Access Trends
Flashpoint’s analysis of insider threat recruitment, illicit access advertising, and threat actor activity targeting enterprise environments.
🔗️ [Flashpoint] https://link.is.it/SHaRFW
Flashpoint’s analysis of insider threat recruitment, illicit access advertising, and threat actor activity targeting enterprise environments.
🔗️ [Flashpoint] https://link.is.it/SHaRFW
How MSPs can catch phishing attacks email filters miss
AI is making phishing attacks more personalized, convincing, and difficult for traditional email filters to detect. Kaseya explains how MSPs can monitor identity, email, and endpoint activity to detect and contain attacks that make it past the inbox.
🔗️ [Bleepingcomputer] https://link.is.it/sHVReh
AI is making phishing attacks more personalized, convincing, and difficult for traditional email filters to detect. Kaseya explains how MSPs can monitor identity, email, and endpoint activity to detect and contain attacks that make it past the inbox.
🔗️ [Bleepingcomputer] https://link.is.it/sHVReh
Senators press TikTok over withholding of safety features for some users
In a letter on Wednesday, Sens. Marsha Blackburn (R-TN) and Richard Blumenthal (D-CT) criticized the company for having “knowingly withheld a critical safety measure for millions of American users."
🔗️ [Therecord] https://link.is.it/VYduJn
In a letter on Wednesday, Sens. Marsha Blackburn (R-TN) and Richard Blumenthal (D-CT) criticized the company for having “knowingly withheld a critical safety measure for millions of American users."
🔗️ [Therecord] https://link.is.it/VYduJn
Is Cyber missing the Marque?
In this week's newsletter, new author Mick Baccio introduces himself and explores the operational and security implications of the new White House memorandum regarding private sector participation in government-authorized offensive cyber operations.
🔗️ [Talosintelligence] https://link.is.it/qcySSh
In this week's newsletter, new author Mick Baccio introduces himself and explores the operational and security implications of the new White House memorandum regarding private sector participation in government-authorized offensive cyber operations.
🔗️ [Talosintelligence] https://link.is.it/qcySSh
Hackers poison arrayref Rust crate to push infostealer malware
Hackers compromised the maintainer account behind the widely used Rust crate arrayref to introduce malware that executed on developers' systems during compilation.
🔗️ [Bleepingcomputer] https://link.is.it/YFsZuQ
Hackers compromised the maintainer account behind the widely used Rust crate arrayref to introduce malware that executed on developers' systems during compilation.
🔗️ [Bleepingcomputer] https://link.is.it/YFsZuQ
China’s ‘SilkParasite’ espionage operation targeting Central Asia with AI-assisted malware
Suspected military-grade hackers based in China used artificial intelligence to develop malware in a campaign to penetrate Central Asian governments.
🔗️ [Therecord] https://link.is.it/a9i8KK
Suspected military-grade hackers based in China used artificial intelligence to develop malware in a campaign to penetrate Central Asian governments.
🔗️ [Therecord] https://link.is.it/a9i8KK
Someone targeted security researchers using a fake crypto conference as a lure
A hacker pretending to work for a leading cryptocurrency news website targeted several cybersecurity professionals using Google Docs as a way to deliver malware.
🔗️ [Techcrunch] https://link.is.it/2rxtat
A hacker pretending to work for a leading cryptocurrency news website targeted several cybersecurity professionals using Google Docs as a way to deliver malware.
🔗️ [Techcrunch] https://link.is.it/2rxtat
Il “will” del GDPR: la volontà che trasforma il dovere in accountability
Nel Regolamento Generale sulla Protezione dei Dati, il principio di accountability, che la traduzione italiana “responsabilizzazione” restituisce solo a metà, nasce da una coppia di verbi ausiliari. Ecco un grande assente, il verbo "will" del GDPR, che affonda le radici etimologiche nella volontà
🔗️ [Cybersecurity360] https://link.is.it/gCJGKL
Nel Regolamento Generale sulla Protezione dei Dati, il principio di accountability, che la traduzione italiana “responsabilizzazione” restituisce solo a metà, nasce da una coppia di verbi ausiliari. Ecco un grande assente, il verbo "will" del GDPR, che affonda le radici etimologiche nella volontà
🔗️ [Cybersecurity360] https://link.is.it/gCJGKL
SickKids data breach exposes employee and job applicant info
Toronto's Hospital for Sick Children (SickKids) says a cybersecurity incident exposed the personal information of some current and former employees and job applicants, stemming from a flaw in third-party software. Clinical systems and patient records were not affected. (264)
🔗️ [Bleepingcomputer] https://link.is.it/1c7WL7
Toronto's Hospital for Sick Children (SickKids) says a cybersecurity incident exposed the personal information of some current and former employees and job applicants, stemming from a flaw in third-party software. Clinical systems and patient records were not affected. (264)
🔗️ [Bleepingcomputer] https://link.is.it/1c7WL7