LATEST NEWS

VIEW ALL
ESET warns of three flaws that affect over 100 Lenovo notebook models
Pierluigi Paganini April 19, 2022

Lenovo warns of vulnerabilities in its Unified Extensible Firmware Interface (UEFI) shipped with at least 100 notebook models. Lenovo has published a security advisory to warn customers of vulnera ...

Kaspersky releases a free decryptor for Yanluowang ransomware
Pierluigi Paganini April 19, 2022

Kaspersky discovered a flaw in the encryption process of the Yanluowang ransomware that allows victims to recover their files for free. Researchers from Kaspersky discovered a vulnerability in the ...

NSO Group Pegasus spyware leverages new zero-click iPhone exploit in recent attacks
Pierluigi Paganini April 19, 2022

Researchers reported that threat actors leveraged a new zero-click iMessage exploit to install NSO Group Pegasus on iPhones belonging to Catalans. Researchers from Citizen Lab have published a re ...

New SolarMarker variant upgrades evasion abilities to avoid detection
Pierluigi Paganini April 19, 2022

Researchers disclosed a new variant of the SolarMarker malware that implements new techniques to avoid detection. Cybersecurity researchers from Palo Alto Networks disclosed a new version of the S ...

recent articles

Artificial Intelligence
SECURITY AFFAIRS AI-CYBERSECURITY NEWSLETTER ROUND 3

Security Affairs AI-CYBERSECURITY newsletter includes a collection of the best articles and research on AI in the international landscape Artificial intelligence is rapidly changing cybersecurity, ...

Pierluigi Paganini October 11, 2026
Breaking News
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 118

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter ClingSTUN Linux Backdoor Abuses Public S ...

Pierluigi Paganini October 11, 2026
Malware
Bitdefender finds preinstalled Android malware you can't uninstall, seen in 150 countries

Bitdefender finds Midnight Mimosa, preinstalled Android malware on cheap MediaTek phones that fakes ad clicks, drops apps and builds a proxy botnet. Bitdefender researchers discovered a campaign c ...

Pierluigi Paganini October 11, 2026
Breaking News
Security Affairs newsletter Round 599 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly Security ...

Pierluigi Paganini October 11, 2026
Security
U.S. CISA adds ProFTPD, ONLYOFFICE Docs, Strapi, Apache Struts, and ISC BIND flaws to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds ProFTPD, ONLYOFFICE Docs, Strapi, Apache Struts, and ISC BIND to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecuri ...

Pierluigi Paganini October 11, 2026
Artificial Intelligence
Anthropic Restricts Live Internet Access After Claude Evaluation Failures

Anthropic’s models kept working around the rules on the live internet. The company published the cases. Anthropic released a report on unintended actions its Claude models took during evaluation ...

Pierluigi Paganini October 10, 2026
Cyber Crime
Silent Ransom Group Allegedly Extorted $207 Million Without Encrypting Files

Silent Ransom Group allegedly extorted $207 million from 27 law firms in six months using phone calls and social engineering, not encryption. Silent Ransom Group doesn’t rely on encryption. No m ...

Pierluigi Paganini October 10, 2026
Cyber Crime
US Sentences Empire Market Co-Creator Over $430 Million Criminal Marketplace

Empire Market co-creator Raheim Hamilton was sentenced to 40 years in prison for running a dark web marketplace linked to $430 million in illegal trades. The case against Empire Market shows how a ...

Pierluigi Paganini October 10, 2026
Uncategorized
Germany Arrests Suspected Qilin Ransomware Leader After Japan Detention

Japan helped extradite a Russian suspect linked to Qilin ransomware to Germany, but the gang continued attacking victims after his arrest. Germany has arrested a Russian national believed to be a ...

Pierluigi Paganini October 09, 2026
Artificial Intelligence
Claude Helps Secure Open Source as Anthropic Offers Free Vulnerability Scanning

Anthropic launches free OSS Scanner, using AI to find open-source vulnerabilities and help maintainers fix bugs before attackers exploit them. Anthropic is launching OSS Scanner, a vulnerability s ...

Pierluigi Paganini October 09, 2026
Security
US Disrupts China-Linked Integrity Tech 's Cyber Espionage Tools

DOJ and FBI seized China-linked hacking tools Microscan and FishHub, linked to Integrity Tech and attacks on critical infrastructure worldwide. The Justice Department and FBI took down two hacking ...

Pierluigi Paganini October 09, 2026
Hacking
AI-Driven tool ARTEX used in attacks against South Korean Banks

CrowdStrike analyzes open directories left by an attacker who used the ARTEX AI pentest tool and LLMs to breach South Korean financial firms. CrowdStrike published a research on a campaign against ...

Pierluigi Paganini October 09, 2026
Cyber warfare
Italy's Foreign Ministry Under Cyberattack as Embassy Sites Come Under Review

Italy's Foreign Ministry is defending its website against a cyberattack, checking embassy sites and pushing for EU action to identify attackers. On the morning of October 8, Italy's Ministry of Fo ...

Pierluigi Paganini October 08, 2026
Cyber Crime
Hunt.io Finds New Infrastructure Of BraZetsu Access Broker Months Before Disclosure

Hunt.io traced BraZetsu 's infrastructure and found that hosting patterns and certificate data remained useful after published IOCs became outdated. Group-IB researchers published a detailed write ...

Pierluigi Paganini October 08, 2026
Cyber Crime
MonsterCloud Owner Charged With Secretly Paying Ransomware Demands

MonsterCloud owner Zohar Pinhasi allegedly paid ransomware demands behind clients’ backs, then charged them millions for the supposed recovery. Zohar Pinhasi, the owner of Florida-based MonsterC ...

Pierluigi Paganini October 08, 2026
Intelligence
U.S. Offers $10 Million Reward for Alleged HAFNIUM Hacker Zhang Yu

The U.S. offers $10M for Zhang Yu, accused of helping run HAFNIUM attacks that compromised thousands of organizations worldwide. The U.S. State Department is offering a $10 million reward for info ...

Pierluigi Paganini October 08, 2026
Security
Atlassian Vulnerability Comes Under Attack Hours After Details Go Public

Threat actors are exploiting CVE-2026-21589, a critical Atlassian flaw that can expose sensitive files across multiple Data Center products. Threat actors have started exploiting CVE-2026-21589 (C ...

Pierluigi Paganini October 08, 2026
Security
SonicWall Fixes Max Severity Pre-Auth Flaw in SMA1000 Appliances

SonicWall patched a CVSS 10 pre-auth SSRF flaw in SMA1000 appliances that could let unauthenticated attackers reach internal functions. SonicWall released hotfixes for four vulnerabilities in its ...

Pierluigi Paganini October 07, 2026
Cyber Crime
FortiBleed hit 86,000 firewalls by exploiting something nobody can patch away

FBI and Secret Service warn FortiBleed, a credential-harvesting campaign against Fortinet firewalls, has compromised 86,644 devices and is locking out admins. The FBI and the U.S. Secret Service i ...

Pierluigi Paganini October 07, 2026
Hacking
CERT-UA: Fake Cloudflare Checks Deliver LunexStealer Malware

Over 100 hacked websites used fake Cloudflare checks to trick visitors into installing LunexStealer through ClickFix commands. The lure is the now-familiar ClickFix technique, dressed up as Cloudf ...

Pierluigi Paganini October 07, 2026