LATEST NEWS

VIEW ALL
Stuxnet, are we really safe now? No, of course!
Pierluigi Paganini January 31, 2012

Once again I draw inspiration from the argument "Stuxnet" on which much is being read on the web at this time, and a lot of which will be discussed in the years to come. From all the scientists Stuxne ...

Social Media, exercise or not exercise the control
Pierluigi Paganini January 30, 2012

Exercise or not exercise the control, that is the question that divides major governments on the social networks surveillance and social media, at the center of heated debates. Always consider myself ...

Chinese Attacks on Defense Contractors, 2 clues are evidence
Pierluigi Paganini January 29, 2012

It's not first time and the news itself doesn't rapresent a surprise, once again Chinese hacker groups are involved in cyber intelligence operations against western companies with the intent to steal ...

Malware evolution and the Frankenmalware case
Pierluigi Paganini January 28, 2012

In the last decade we have witnessed an extraordinary evolution of those agents technically defined as the term "malware" in several respects as: functional characteristics developing process ...

recent articles

Cyber Crime
A suspected Scattered Spider member suspect detained for casino network attacks

A suspected Scattered Spider member linked to cyber attacks on Las Vegas casinos was arrested on September 17. The Las Vegas Metropolitan Police Department arrested on September 17 a suspected Sca ...

Pierluigi Paganini September 23, 2025
Security
$150K awarded for L1TF Reloaded exploit that bypasses cloud mitigations

Researchers earned $150K for “L1TF Reloaded,” combining L1TF and half-Spectre to leak VM memory from public clouds despite mitigations. Researchers from Vrije Universiteit Amsterdam earned $15 ...

Pierluigi Paganini September 23, 2025
Cyber Crime
Canada's RCMP closes TradeOgre, seizes $40M in country’s largest crypto bust

RCMP shuts down TradeOgre, seizing $40M from crime, the first crypto exchange closure and largest asset seizure in Canada’s history. The Royal Canadian Mounted Police shut down the crypto exchan ...

Pierluigi Paganini September 23, 2025
Data Breach
Stellantis probes data breach linked to third-party provider

Stellantis is investigating a data breach after unauthorized access to a third-party provider’s platform potentially exposed customer data. Car maker giant Stellantis announced it is investigati ...

Pierluigi Paganini September 22, 2025
Cyber Crime
FBI alerts public to spoofed IC3 site used in fraud schemes

The FBI warns that criminals are spoofing the IC3 site to steal personal data and commit fraud targeting cybercrime reporters. The FBI warned that attackers are spoofing the official Crime Complai ...

Pierluigi Paganini September 22, 2025
Security
EU agency ENISA says ransomware attack behind airport disruptions

The EU cybersecurity agency ENISA confirmed that airport check-in disruptions were caused by a cyberattack, and law enforcement is investigating. A cyber attack on Collins Aerospace disrupted chec ...

Pierluigi Paganini September 22, 2025
Malware
Researchers expose MalTerminal, an LLM-enabled malware pioneer

SentinelOne uncovered MalTerminal, the earliest known malware with built-in LLM capabilities, and presented it at LABScon 2025. SentinelLABS researchers discovered MalTerminal, the earliest known ...

Pierluigi Paganini September 22, 2025
Malware
Beware: GitHub repos distributing Atomic Infostealer on macOS

LastPass warns macOS users of fake GitHub repos distributing Atomic infostealer malware disguised as legitimate tools. LastPass warns macOS users about fake GitHub repositories spreading malware d ...

Pierluigi Paganini September 22, 2025
APT
ESET uncovers Gamaredon–Turla collaboration in Ukraine cyberattacks

ESET found evidence that Russia-linked groups Gamaredon and Turla collaborated in cyberattacks on Ukraine between February and April 2025. ESET reported Russia-linked groups Gamaredon and Turla co ...

Pierluigi Paganini September 21, 2025
Malware
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 63

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter SmokeLoader Rises From the Ashes  Hi ...

Pierluigi Paganini September 21, 2025
Breaking News
Security Affairs newsletter Round 542 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly Security ...

Pierluigi Paganini September 21, 2025
Hacking
A cyberattack on Collins Aerospace disrupted operations at major European airports

A cyberattack on Collins Aerospace disrupted operations at major European airports, with Heathrow, Brussels, and Berlin most affected. A cyber attack on Collins Aerospace disrupted check-in and b ...

Pierluigi Paganini September 20, 2025
Security
Fortra addressed a maximum severity flaw in GoAnywhere MFT software

Fortra addressed a critical flaw in GoAnywhere Managed File Transfer (MFT) software that could result in the execution of arbitrary commands. Fortra addressed a critical vulnerability, tracked as ...

Pierluigi Paganini September 19, 2025
Security
UK police arrested two teen Scattered Spider members linked to the 2024 attack on Transport for London

U.K. police arrested two teens from the Scattered Spider group for their role in the August 2024 cyberattack on Transport for London. U.K. law enforcement authorities arrested two teenagers who ar ...

Pierluigi Paganini September 19, 2025
Hacking
ShadowLeak: Radware Uncovers Zero-Click Attack on ChatGPT

Radware discovered a server-side data theft attack, dubbed ShadowLeak, targeting ChatGPT. OpenAI patched the zero-click vulnerability. Researchers at Radware uncovered a server-side data theft att ...

Pierluigi Paganini September 18, 2025
Data Breach
SonicWall warns customers to reset credentials after MySonicWall backups were exposed

SonicWall urges users to reset credentials after MySonicWall backups were exposed; the company locked out the threat actors and notified authorities. SonicWall urged customers to reset credentials ...

Pierluigi Paganini September 18, 2025
Uncategorized
CVE-2025-10585 is the sixth actively exploited Chrome zero-day patched by Google in 2025

Google addressed four vulnerabilities affecting its Chrome web browser, including one that has been exploited in the wild. Google released security updates to address four vulnerabilities in the C ...

Pierluigi Paganini September 18, 2025
Security
Jaguar Land Rover will extend its production halt into a third week following a cyberattack

Jaguar Land Rover will keep vehicle production halted until at least September 24 following a cyberattack that hit the company earlier this month. Jaguar Land Rover will extend its production halt ...

Pierluigi Paganini September 18, 2025
APT
China-linked APT41 targets government, think tanks, and academics tied to US-China trade and policy

China-linked group APT41 impersonated a U.S. lawmaker in phishing attacks on government, think tanks, and academics tied to US-China trade and policy. Proofpoint observed China-linked cyber espion ...

Pierluigi Paganini September 17, 2025
Cyber Crime
Microsoft and Cloudflare teamed up to dismantle the RaccoonO365 phishing service

Microsoft and Cloudflare disrupted the RaccoonO365 phishing service, used to steal thousands of user credentials. A joint operation conducted by Microsoft and Cloudflare has taken down the infrast ...

Pierluigi Paganini September 17, 2025