LATEST NEWS

VIEW ALL
Former DoE worker was hacking to steal nuclear secrets and resell them
Pierluigi Paganini February 04, 2016

A former Department of Energy (DoE) employee, Charles Harvey Eccleston [62], has been charged with trying to steal and sell nuclear secrets to foreign governments. A former employee at the Department ...

Europol, a new move against terrorism and money laundering
Pierluigi Paganini February 03, 2016

The Europol is increasing its efforts against terrorism, it has joined forces with EU to fight terrorist financing and money laundering. Since 1 January 2016, Europol has increased the level of inte ...

Comodo Chromodo Secure Internet Browser exposes you at risks
Pierluigi Paganini February 03, 2016

Security Expert discovered that the Comodo Chromodo browser has 'Same Origin Policy' (SOP) disabled by default, if you are using it you are at risk. Chromodo is the name of a free browser offered b ...

Cybersecurity Operational Tests And Assessments - US Defence can't check F-35 data due to insecure systems
Pierluigi Paganini February 03, 2016

Cybersecurity Operational Tests And Assessments conducted by the US Defence are essential to improve overall security ... and discover that US Govt can't check F-35 data due to insecure systems. It i ...

recent articles

Malware
MedusaHVNC Trojan Creates Hidden Desktops to Hijack Browsers and Steal Data

MedusaHVNC RAT uses hidden Windows desktops to remotely control browsers, steal data, and evade detection through legitimate system features. Windows has always supported hidden desktops as a legi ...

Pierluigi Paganini July 27, 2026
Data Breach
DentaQuest disclosed a data breach that impacted +23 million individuals

DentaQuest disclosed a data breach that may have exposed the personal and dental health information of more than 23 million people. DentaQuest is notifying more than 23 million people of a data br ...

Pierluigi Paganini July 27, 2026
Hacking
GitLab Users Urged to Patch After Research Reveals Critical RCE Chain

Researchers chained two Oj parser bugs to achieve GitLab RCE via Jupyter notebook diffs, affecting authenticated users on unpatched versions. Depthfirst researchers published a working remote code ...

Pierluigi Paganini July 27, 2026
Security
EFF: Most Smart Wearables Still Fall Short on Privacy and Transparency

EFF says most smart wearables lack basic privacy protections, with Apple standing out for end-to-end encryption and transparency. Most smart wearables still treat privacy like an optional extra, a ...

Pierluigi Paganini July 27, 2026
Security
LockBit5 and Qilin Lead Ransomware Attacks Against Italian Organizations

A new report links 148 ransomware attacks to Italian organizations in H1 2026, with manufacturing the most targeted sector. Six months, 148 confirmed ransomware claims against Italian targets, and ...

Pierluigi Paganini July 27, 2026
Malware
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 107

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter UAC-0145 Primary Compromise Vectors as o ...

Pierluigi Paganini July 26, 2026
Security
Hackers Hijack Hotel Wi-Fi to Steal Microsoft 365 Credentials

Hackers compromised hotel Wi-Fi gateways to redirect users to fake Microsoft 365 login pages and steal credentials. ReliaQuest's threat research team just documented attackers compromising the Wi- ...

Pierluigi Paganini July 26, 2026
Security
Security Affairs newsletter Round 587 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly Security ...

Pierluigi Paganini July 26, 2026
APT
Iran-Linked Actors Breach Are Targeting US Water and Energy Control Systems

US agencies warn Iran-linked actors are targeting internet-exposed water and energy control systems, risking disruption. Federal agencies updated their cybersecurity advisory this week: Iran-linke ...

Pierluigi Paganini July 25, 2026
Data Breach
Australian energy provider Origin Energy disclosed a data breach impacting customer data

Origin Energy confirmed a data breach after a hacker claimed to have stolen data from 2 million customers and threatened to leak it. Origin Energy disclosed a cyberattack that exposed customer dat ...

Pierluigi Paganini July 25, 2026
Laws and regulations
Google Fined €890M Under EU Digital Markets Act Over Search and Play Store Practices

EU fined Google €890M under the DMA for favoring its own services and restricting Play Store competition, with AI search features also under scrutiny. The European Commission hit Google with two ...

Pierluigi Paganini July 24, 2026
Hacking
Thailand's Ministry of Finance Targeted With Hermes AI Agent Running Unattended, Hades Implant Staged

Hunt.io uncovered a cyber-espionage attack on Thailand’s Finance Ministry using Hermes AI agent and Hades malware for reconnaissance and persistence. Researchers at Hunt.io have uncovered an int ...

Pierluigi Paganini July 24, 2026
Cyber warfare
UAC-0099 Is Now Hiding Malware Inside a Fake Notepad++ Plugin to Target Ukrainian Organizations

UAC-0099 delivers malware via a fake Notepad++ plugin after phishing, using a loader that sabotages itself if run without the correct arguments to hinder analysis. CERT-UA published a new advisory ...

Pierluigi Paganini July 24, 2026
Artificial Intelligence
The AI Trust Paradox: Businesses Are Racing Ahead, but Consumers Are Hesitating

Artificial intelligence adoption is soaring, but consumer trust lags. Transparency, human oversight, and clear AI use cases are key to closing the trust gap. Businesses are rapidly adopting AI, w ...

Pierluigi Paganini July 24, 2026
APT
US Agencies Warn of Laundry Bear Campaign Targeting Unpatched Zimbra Servers

US agencies warn Russian group Laundry Bear is exploiting a patched Zimbra flaw to steal email accounts from organizations running unpatched servers. The Cybersecurity and Infrastructure Security ...

Pierluigi Paganini July 24, 2026
Security
U.S. CISA adds Microsoft SharePoint and Check Point SmartConsole flaws to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds SharePoint and Check Point flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Securit ...

Pierluigi Paganini July 23, 2026
Malware
Chaos ransomware deploys browser-based msaRAT to evade network detection

Cisco Talos uncovered msaRAT, a Chaos ransomware RAT that hides C2 traffic by routing it through Chrome or Edge using the Chrome DevTools Protocol. Cisco Talos disclosed msaRAT, a Rust-based remot ...

Pierluigi Paganini July 23, 2026
Security
Google Released Gemini 3.5 Flash Cyber AI, a Specialized AI Model for Vulnerability Hunting

Google DeepMind unveiled Gemini 3.5 Flash Cyber, an AI model for vulnerability discovery and patching, available only to governments and trusted partners. Google DeepMind announced Gemini 3.5 Flas ...

Pierluigi Paganini July 23, 2026
Hacking
Check Point patches actively exploited SmartConsole authentication bypass flaw

Check Point addressed a critical authentication bypass flaw, tracked as CVE-2026-16232, in SmartConsole that is being actively exploited. Check Point has released security updates to fix multiple ...

Pierluigi Paganini July 23, 2026
Security
CVE-2026-8933: Ubuntu security flaw breaks Snap sandbox protections

Qualys disclosed CVE-2026-8933, a high-severity Ubuntu flaw that lets local attackers gain root privileges through a race condition in snap-confine. Qualys has disclosed a high-severity local priv ...

Pierluigi Paganini July 22, 2026