LATEST NEWS

VIEW ALL
Dark marketplaces raked from $300,000 to $500,000 a day
Pierluigi Paganini August 16, 2015

A Study that will be presented at the USENIX Security Symposium shows that principal Dark marketplaces raked from $300,000 to $500,000 a day. We all remind the operation Onymous and the seizure of se ...

Kaspersky accused of sabotage to harm competitors
Pierluigi Paganini August 15, 2015

According to two former employees the Russian antivirus firm Kaspersky has faked malware to harm competitors and cause false positive in their solutions. Two former employees, who requested anonymity ...

Zero-Day in the Google Admin App can bypass Android sandbox
Pierluigi Paganini August 15, 2015

MWR Labs have disclosed information on an unpatched vulnerability that allows an attacker to easily bypass the Android sandbox. Other problems for the popular Android OS, after the discovery of the S ...

US authorities dismantled Insider Trading Ring Nets $100M
Pierluigi Paganini August 14, 2015

US authorities have identified and arrested members of an international ring of hackers and stock traders specialized in the theft of trading info. The Department of Justice charged a group of nine h ...

recent articles

Malware
BambooToken: The Malware That Speaks MQTT to Stay Under the Radar

Lumen exposes BambooToken, a stealthy malware family using MQTT and sideloading to quietly infect targets across Asia and beyond. BambooToken is a new malware family that uses MQTT, a lightweight ...

Pierluigi Paganini September 16, 2026
Hacking
Google Patches Pixel Modem Zero-Day Exploited in Targeted Attacks

Google has patched a high-severity zero-day in the Pixel cellular modem after finding evidence that the vulnerability was exploited in limited, targeted attacks. Google has released its September ...

Pierluigi Paganini September 16, 2026
Data Breach
Revolut Data Leak May Trace Back to Compromised Italian Government Accounts

A suspected compromise of an Italian government PEC account may have allowed threat actors to impersonate law enforcement and obtain sensitive data from hundreds of Revolut customers. The Revolut ...

Pierluigi Paganini September 16, 2026
Data Breach
Texas Utility CenterPoint Energy Confirms Data Breach After Hacker Claims 7.49M Records Stolen

CenterPoint Energy confirmed a customer data breach after a hacker claimed to leak 7.49M records, including personal and billing information. CenterPoint Energy admitted on Monday that an intruder ...

Pierluigi Paganini September 16, 2026
Security
U.S. CISA adds Cisco Secure Email Gateway flaw to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Cisco Secure Email Gateway flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security ...

Pierluigi Paganini September 15, 2026
Hacking
Cisco Warns of Ongoing Exploitation of Critical Email Gateway Zero-Day

Cisco warns of a critical zero-day in Secure Email Gateway, exploited in the wild to gain root access through malicious emails. Cisco disclosed a critical zero-day, tracked as CVE-2026-76461 (CVSS ...

Pierluigi Paganini September 15, 2026
Security
Shared Hosting at Risk: LiteSpeed Enterprise Bug Can Grant Root from a Single Tenant

Critical LiteSpeed Enterprise flaw lets one shared hosting account gain root, bypassing CageFS; patch now to 6.3.7 via forced update. cPanel warned that a critical flaw in LiteSpeed Enterprise can ...

Pierluigi Paganini September 15, 2026
APT
One Exploit Chain, Two Espionage Campaigns: Chrome and Windows Under Fire

Two China-linked groups ran identical Chrome/Windows zero-day exploits against NGOs, before Chrome's patch shipped, deploying different backdoors each. Two China-linked threat actors used the same ...

Pierluigi Paganini September 15, 2026
Security
Telegram Desktop Flaw Could Turn Old Chat Exports Into Data Theft Traps

A Telegram Desktop flaw let bots inject JavaScript into exported chats, enabling data theft and page manipulation. Old HTML exports remain unsafe. A vulnerability in Telegram Desktop could have tu ...

Pierluigi Paganini September 15, 2026
Security
Non-Zero-Day VPN Flaw Left Japan 's Government Shared Network Platform Exposed: 246,000 Records at Risk

Japan 's Digital Agency disclosed a VPN breach exposing 246,000 government employee records across 23 ministries. Detected June 25, publicly disclosed September 11. Japan 's Digital Agency disclos ...

Pierluigi Paganini September 15, 2026
Artificial Intelligence
ENISA: Frontier AI Is Changing the Speed of Cyberattacks. Europe Needs to Catch Up

Frontier AI is compressing the attack lifecycle from vulnerability discovery to exploitation, forcing defenders to detect, patch and respond at machine speed. Cybersecurity has always been a race ...

Pierluigi Paganini September 14, 2026
Uncategorized
China Calls Amodei’s AI Proposal a New Cold War Playbook

China rejects Amodei’s AI slowdown proposal, calling it fearmongering and a US attempt to contain China’s technology sector. The debate over whether the world should slow down the development ...

Pierluigi Paganini September 14, 2026
Security
U.S. CISA adds GitLab, JFrog Artifactory, and ConnectWise ScreenConnect flaws to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds GitLab, JFrog Artifactory, and ConnectWise ScreenConnect flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecu ...

Pierluigi Paganini September 14, 2026
Security
Dutch NCSC Warns: Critical Check Point VPN Flaws Put Networks at Risk

Two critical Check Point VPN flaws score 9.8 and could enable remote code execution. Patch now and restrict VPN access before exploitation begins. The Dutch NCSC warns that two critical vulnerabil ...

Pierluigi Paganini September 14, 2026
Artificial Intelligence
Anthropic CEO Calls for an AI Slowdown. Is It Possible?

Anthropic CEO calls for AI slowdown, proposes embedded evaluators and global coordination. Geopolitical competition with China makes a voluntary pause structurally fragile. Dario Amodei published ...

Pierluigi Paganini September 14, 2026
Breaking News
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 114

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter REVSTEALER ramps up Breaking the Seal ...

Pierluigi Paganini September 13, 2026
Security
Security Affairs newsletter Round 594 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly Security ...

Pierluigi Paganini September 13, 2026
Hacking
GitLab CVE-2026-85706: One HTTP Request, No Authentication, Full File Read - Exploited Within 24 Hours

CVE-2026-85706, a CVSS 10.0 GitLab path traversal, was under active exploitation within 24 hours of disclosure. GitLab disclosed CVE-2026-85706 (CVSS score of 10.0) on September 10, 2026, a path t ...

Pierluigi Paganini September 13, 2026
Cyber Crime
Conti Hacker Who Built Malware and Attacked Victims Gets Four-Year Sentence

Ukrainian lawyer and Conti malware developer Oleksii Lytvynenko was sentenced to four years in U.S. prison for ransomware attacks. Oleksii Oleksiyovych Lytvynenko had, by most accounts, a fairly o ...

Pierluigi Paganini September 13, 2026
Artificial Intelligence
Anthropic: AI Misuse Is Entering a New Phase: From Cybercrime to Surveillance, Propaganda and Weapons

AI is becoming an operational force for cybercrime, surveillance, propaganda, fraud and weapons development, lowering the cost and scale of attacks. Artificial intelligence (AI) is becoming more t ...

Pierluigi Paganini September 12, 2026