LATEST NEWS

VIEW ALL
New EvilQuest ransomware targets macOS users
Pierluigi Paganini July 01, 2020

Experts discovered a new ransomware dubbed EvilQuest designed to target macOS systems, it also installs a keylogger and a reverse shell to take over them. Security experts have uncovered a new pie ...

Microsoft releases emergency security updates to fix Windows codecs
Pierluigi Paganini July 01, 2020

Microsoft has silently released an emergency security update through the Windows Store app to address two vulnerabilities in Windows codecs. Microsoft has silently released two out-of-band securit ...

Maze Ransomware operators hacked the Xerox Corporation
Pierluigi Paganini July 01, 2020

Xerox Corporation is the last victim of the Maze ransomware operators, hackers have encrypted its files and threaten of releasing them. Maze ransomware operators have breached the systems of the X ...

APTs will exploit Palo Alto Networks's PAN-OS flaw soon, US Cyber Command says
Pierluigi Paganini June 30, 2020

U.S. Cyber Command believes foreign APTs will likely attempt to exploit the recently addressed flaw in Palo Alto Networks's PAN-OS firewall OS. Recently Palo Alto Network addressed a critical vuln ...

recent articles

Security
DragonForce Hid Inside Microsoft Teams and Nobody Noticed for Two Months

DragonForce hid for months by routing malware traffic through Microsoft Teams infrastructure, masking C2 activity and evading network detection. DragonForce ransomware operators hit a major U.S. s ...

Pierluigi Paganini June 17, 2026
Hacking
U.S. CISA adds Widget Factory Joomla Content Editor flaw to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Widget Factory Joomla Content Editor (JCE) flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrast ...

Pierluigi Paganini June 17, 2026
Cyber Crime
New Rokarolla Android Trojan Targets 217 Banking and Crypto Apps

Rokarolla Android malware targets 217 banking and crypto apps, steals credentials, blocks bank calls, intercepts SMS, and disables Play Protect. Zimperium's zLabs researchers have published a deta ...

Pierluigi Paganini June 17, 2026
Data Breach
EdTech Faces a Cybersecurity Crisis: Data Breaches Surge

EdTech firms face rising cyberattacks as ShinyHunters and FulcrumSec target schools, exposing sensitive data and disrupting services. Resecurity (USA) warns the education technology (EdTech) secto ...

Pierluigi Paganini June 17, 2026
Security
FulcrumSec Targets Novo Nordisk, Leaks Clinical and Research Data

FulcrumSec leaked data stolen from Novo Nordisk, claiming to have exfiltrated 1.3TB, including clinical records and AI research assets. On June 15, 2026, a data-theft extortion group calling itsel ...

Pierluigi Paganini June 17, 2026
APT
China-Linked FishMonger Ports SprySOCKS to Windows With Kernel-Level Stealth and UEFI Bootkit Hints

China-linked FishMonger used two SprySOCKS Windows variants that leveraged kernel drivers and the Print Spooler to target governments in four countries. ESET researchers have found two previously ...

Pierluigi Paganini June 17, 2026
Data Breach
iRhythm Hit by Cyberattack, Patient Data Stolen and Ransom Demanded

iRhythm disclosed a cyberattack via third-party apps where patient and proprietary data was stolen, followed by a ransom demand. iRhythm Technologies is a U.S.-based digital healthcare company spe ...

Pierluigi Paganini June 16, 2026
Artificial Intelligence
Fortinet Warned as Three Critical FortiSandbox Bugs Come Under Attack

Three FortiSandbox flaws, including one patched last week, are being actively exploited, highlighting the shrinking window for defenders. Cybersecurity firm Defused Cyber confirmed it's seen activ ...

Pierluigi Paganini June 16, 2026
Security
CVE-2026-20262: CISCO Catalyst SD-WAN Flaw Under Active Targeted Exploitation

Cisco warned that CVE-2026-20262, a Catalyst SD-WAN Manager vulnerability allowing arbitrary file writes, is being actively exploited. Cisco confirmed active exploitation of CVE-2026-20262, an arb ...

Pierluigi Paganini June 16, 2026
Security
U.S. CISA adds Cisco Catalyst and LiteSpeed cPanel plugin flaws to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Cisco Catalyst and LiteSpeed cPanel plugin flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infras ...

Pierluigi Paganini June 16, 2026
APT
China-linked actor spent two years inside medical research networks

China's UNC6508 hid in North American medical research networks for 2 years, stealing credentials and forwarding emails to Gmail Google's Threat Intelligence Group published a report this week on ...

Pierluigi Paganini June 16, 2026
Data Breach
Australian Sugar Producer Mackay Sugar Reports Cyber Incident

Mackay Sugar, Australia's second-largest sugar producer, disclosed a cyberattack on June 10, potentially affecting key processing operations. Mackay Sugar is one of Australia's largest sugar produ ...

Pierluigi Paganini June 15, 2026
Security
Novo Nordisk Confirms Data Theft: What Attackers Took and What They Didn't

Novo Nordisk suffered a cyberattack where clinical trial data was copied. The breach is confirmed, but no threat actor has claimed responsibility. The Danish pharmaceutical giant Novo Nordisk disc ...

Pierluigi Paganini June 15, 2026
Security
Palo Alto Warns of Exploitation of VPN Bypass Exploits (CVE-2026-0257) in PAN-OS Flaw

Palo Alto Networks warns that attackers are actively exploiting CVE-2026-0257, a PAN-OS flaw that lets unauthorized users bypass authentication and establish VPN connections. Palo Alto Networks ha ...

Pierluigi Paganini June 15, 2026
Malware
Supply Chain Attack Hits Popular WordPress Plugins Through Awesome Motive CDN

Attackers compromised Awesome Motive CDN files, backdooring WordPress sites running OptinMonster, TrustPulse, and PushEngage. Sansec researchers discovered an active supply chain attack hitting Wo ...

Pierluigi Paganini June 15, 2026
Uncategorized
Infostealers, AI, and a 90% Affiliate Cut Fuel The Gentlemen group’s Rise

The Gentlemen ransomware used infostealer credentials, AI tools, and affiliates to hit 483 victims across 66 countries in under a year. The Gentlemen surfaced as a ransomware operation in Septembe ...

Pierluigi Paganini June 15, 2026
Breaking News
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 101

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter IronWorm: Shai-Hulud's rustier cousin ...

Pierluigi Paganini June 14, 2026
Security
Security Affairs newsletter Round 581 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly Security ...

Pierluigi Paganini June 14, 2026
Uncategorized
Ukrainian Extradited from Ireland Pleads Guilty Over Role in Conti Ransomware Scheme

Ukrainian national Oleksii Lytvynenko pleaded guilty in the U.S. for his role in Conti ransomware attacks targeting victims worldwide. Oleksii Oleksiyovych Lytvynenko (44), a Ukrainian national ex ...

Pierluigi Paganini June 14, 2026
Artificial Intelligence
Washington Pulled the Plug on Anthropic 's Fable 5 and Mythos 5 models. The Rest of the World Is Watching.

Anthropic disputes restrictions on Mythos 5 and Fable 5, arguing the decision lacks transparency and isn't based on clear technical evidence. On Friday June 12 at 5:21pm ET, Anthropic received a l ...

Pierluigi Paganini June 13, 2026