LATEST NEWS

VIEW ALL
Surveillance firm Hacking Team hacked [Updated]
Pierluigi Paganini July 06, 2015

Hacking Team, the Italian surveillance firm that develops spyware and hacking software has been hacked by attackers that exfiltrated some 400Gbs of data. The Italian security firm Hacking Tea ...

Security Affairs newsletter Round 16 – Best of the week from best sources
Pierluigi Paganini July 05, 2015

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from the best sources free for you in your email box. US Healthcare companies are the most ta ...

Cisco Unified CDM platform open to cyber attacks
Pierluigi Paganini July 05, 2015

Cisco Unified CDM software contains a privileged account with a static password that cannot be changed, by using it an attacker can control the platform. A default privileged account with a static pa ...

Anonymous India hacked BSNL website and compromised more than 30 Million records
Pierluigi Paganini July 05, 2015

Anonymous India hacked the BSNL Telecommunications Journal website and claims to have compromised more than 30 million records. The website of the BSNL Telecommunications Journal has been hacked b ...

recent articles

Hacking
ShadowLeak: Radware Uncovers Zero-Click Attack on ChatGPT

Radware discovered a server-side data theft attack, dubbed ShadowLeak, targeting ChatGPT. OpenAI patched the zero-click vulnerability. Researchers at Radware uncovered a server-side data theft att ...

Pierluigi Paganini September 18, 2025
Data Breach
SonicWall warns customers to reset credentials after MySonicWall backups were exposed

SonicWall urges users to reset credentials after MySonicWall backups were exposed; the company locked out the threat actors and notified authorities. SonicWall urged customers to reset credentials ...

Pierluigi Paganini September 18, 2025
Uncategorized
CVE-2025-10585 is the sixth actively exploited Chrome zero-day patched by Google in 2025

Google addressed four vulnerabilities affecting its Chrome web browser, including one that has been exploited in the wild. Google released security updates to address four vulnerabilities in the C ...

Pierluigi Paganini September 18, 2025
Security
Jaguar Land Rover will extend its production halt into a third week following a cyberattack

Jaguar Land Rover will keep vehicle production halted until at least September 24 following a cyberattack that hit the company earlier this month. Jaguar Land Rover will extend its production halt ...

Pierluigi Paganini September 18, 2025
APT
China-linked APT41 targets government, think tanks, and academics tied to US-China trade and policy

China-linked group APT41 impersonated a U.S. lawmaker in phishing attacks on government, think tanks, and academics tied to US-China trade and policy. Proofpoint observed China-linked cyber espion ...

Pierluigi Paganini September 17, 2025
Cyber Crime
Microsoft and Cloudflare teamed up to dismantle the RaccoonO365 phishing service

Microsoft and Cloudflare disrupted the RaccoonO365 phishing service, used to steal thousands of user credentials. A joint operation conducted by Microsoft and Cloudflare has taken down the infrast ...

Pierluigi Paganini September 17, 2025
Cyber Crime
DoJ resentenced former BreachForums admin to three years in prison

The U.S. Department of Justice (DoJ) resentenced the former administrator of the popular BreachForums hacking forum BreachForums to three years in prison. The U.S. DoJ resentenced the former Breac ...

Pierluigi Paganini September 17, 2025
Security
Apple backports fix for actively exploited CVE-2025-43300

Apple announced it has backported patches for a recently addressed actively exploited vulnerability tracked as CVE-2025-43300. Apple has backported security patches released to address an actively ...

Pierluigi Paganini September 17, 2025
Malware
New supply chain attack hits npm registry, compromising 40+ packages

Researchers uncovered a new supply chain attack targeting the npm registry that impacted over 40 packages belonging to multiple maintainers. Security researchers at Socket uncovered a malicious u ...

Pierluigi Paganini September 16, 2025
Security
Cybercrime group accessed Google Law Enforcement Request System (LERS)

Google found threat actors created a fake account in its Law Enforcement Request System (LERS) and shut it down. Google confirmed that threat actors gained access to its Law Enforcement Request Sy ...

Pierluigi Paganini September 16, 2025
APT
China-linked Mustang Panda deploys advanced SnakeDisk USB worm

China-linked APT group Mustang Panda has been spotted using a new USB worm called SnakeDisk along with a new version of known malware China-linked APT group Mustang Panda (aka Hive0154, Camaro D ...

Pierluigi Paganini September 16, 2025
Data Breach
Insider breach at FinWise Bank exposes data of 689,000 AFF customers

An ex-employee caused an insider breach at FinWise Bank, exposing data of 689,000 American First Finance customers. FinWise Bank is a Utah-based community bank, FDIC-insured, that partners with fi ...

Pierluigi Paganini September 16, 2025
Cyber Crime
Hackers steal millions of Gucci, Balenciaga, and Alexander McQueen customer records

Crooks stole personal data of millions of Gucci, Balenciaga, and Alexander McQueen customers: parent firm Kering confirmed the breach. Hackers stole private data of millions of Gucci, Balenciaga, ...

Pierluigi Paganini September 15, 2025
Data Breach
Fairmont Federal Credit Union 2023 data breach impacted 187K people

Fairmont Federal Credit Union alerts 187K people that a 2023 breach exposed personal, financial, and medical data. Fairmont Federal Credit Union (FFCU) is a not-for-profit financial cooperative in ...

Pierluigi Paganini September 15, 2025
Cyber Crime
UK ICO finds students behind majority of school data breaches

UK ICO reports students caused over half of school data breaches, showing kids are shaping cybersecurity in unexpected ways. The UK Information Commissioner’s Office (ICO), students were respons ...

Pierluigi Paganini September 15, 2025
Data Breach
INC ransom group claimed the breach of Panama’s Ministry of Economy and Finance

Panama’s Ministry of Economy and Finance disclosed a security breach impacting a computer in its infrastructure. Panama’s Ministry of Economy and Finance (MEF) announced that threat actors lik ...

Pierluigi Paganini September 15, 2025
Malware
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 62

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter npm debug and chalk packages compromised ...

Pierluigi Paganini September 14, 2025
Breaking News
Security Affairs newsletter Round 541 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly Security ...

Pierluigi Paganini September 14, 2025
Cyber Crime
ShinyHunters Attack National Credit Information Center of Vietnam

Vietnam’s National Credit Information Center (CIC) was hit by a ShinyHunters cyberattack, with VNCERT confirming signs of unauthorized access to steal personal data. Authorities are investigatin ...

Pierluigi Paganini September 14, 2025
Cyber Crime
FBI warns of Salesforce attacks by UNC6040 and UNC6395 groups

The U.S. FBI issued a flash alert to warn of malicious activities carried out by two cybercriminal groups tracked as UNC6040 and UNC6395. The FBI issued a FLASH alert with IOCs for cybercriminal g ...

Pierluigi Paganini September 13, 2025