Salta al contenuto principale

Lorenzo ha ricondiviso questo.


Ukraine's military intelligence agency GUR has allegedly hacked Russian internet service provider Orion Telecom

GUR hackers allegedly disabled 370 servers and 500 network switches and wiped backup servers

english.nv.ua/nation/largest-s…

reshared this


Lorenzo ha ricondiviso questo.


-Predator spyware alive despite US sanctions
-Paragon spyware used a zero-click iOS zero-day
-28 OAGs sue 23andMe
-South Korea’s largest online bookstore gets ransomwared
-Another CISA leadership departure
-Europol complains about E2EE again
-CNIL draft targets email tracking pixels
-Meta sues nudify app maker
-Privacy groups protest against STOP CSAM Act
-Academics say govts should launch period tracking apps

Podcast: risky.biz/RBNEWS437/
Newsletter: news.risky.biz/risky-bulletin-…

in reply to Catalin Cimpanu

-Danish ministry to move away from Microsoft, adopt LibreOffice, after US spying threats
-New DDoS against Russian Railways DDoS
-DDoS attack hit Sweden
-Hack costs Victoria's Secret $10mi
-RCMP lost an USB with informant names
-Dutch police identify Cracked[.]io users
-Interpol takes down infostealer infra
-Scammers detained across SE Asia
-Turkiye detains 400+ on cybercrime charges
-China spies on Airbus
-Sextortionist pleads guilty
-Proxy provider linked to DDoS attacks
in reply to Catalin Cimpanu

-UNK_SneakyStrike targets Entra accounts in brute-force attacks
-ConnectWise rotates certs over security
-Threat actors abuse dead Discord invite link
-New Teamxxx, Warlock, and Walocker ransomware gangs
-Malware reports on BrowserVenom, CyberEye, Pickai, Myth Stealer, Fog
-Campaign places keyloggers on Exchange login pages
-EchoLeak zero-click Copilot vulnerability
-TokenBreak attack
-Thunderbird patches bug that leaked Windows credentials
-GitHub Device Code Phishing
-Major Magento bug warning

Lorenzo ha ricondiviso questo.


An Intelligence Online report claims that a small Chinese telecommunications company deployed an unauthorized antenna near Airbus sites in an apparent attempt to spy on Airbus and French satellites

intelligenceonline.com/governm…

reshared this


Lorenzo ha ricondiviso questo.


There's a bug in Discord that lets threat actors exploit and hijack expired or deleted Discord invite links and redirect users to malware

research.checkpoint.com/2025/f…

reshared this


Lorenzo ha ricondiviso questo.


The Stryker mobile pen-testing app is now free: t.me/strykerapp/518

Learn how to use it from Lukas Stefanko, an expert in Android malware and reverse engineering: mobile-hacker.com/2025/06/12/s…

reshared this


Lorenzo ha ricondiviso questo.


New Predator spyware infrastructure discovered... now in Mozmbique for the first time

recordedfuture.com/research/pr…

reshared this


Lorenzo ha ricondiviso questo.


Dutch police identified 126 Cracked hacking forum users, with the youngest being an 11-year-old

They filed criminal cases against 8 and warned the rest

politie.nl/nieuws/2025/juni/10…

reshared this


Lorenzo ha ricondiviso questo.


The use of E2EE apps has become an increasingly important obstacle to Europol investigations. Short metadata retention periods also impact criminal network mapping efforts.

This is the third year in a row that Europol has highlighted E2EE as a problem

europol.europa.eu/media-press/…

reshared this

in reply to Catalin Cimpanu

I'm looking forward to the bombshell report from Europol highlighting the existential risks of "in-person conversation" and, even more dangerous, "thoughts".

Lorenzo ha ricondiviso questo.


France's privacy watchdog is exploring the possibility of adding a consent mechanism to email tracking pixel technologies

cnil.fr/fr/consultation-publiq…

reshared this

in reply to Catalin Cimpanu

Email tracking pixels are such a bs issue, because regardless of who the slimy party sending them is, it's always your own MUA selling you out by honoring them.

Please give us laws that make the party selling the MUA liable for the privacy breach.

in reply to Cassandrich

@dalias I'm more worried about the ISPs. If they're gonna sell my data in bulk, at least give me free internet or a 90% discount

Lorenzo ha ricondiviso questo.


RedTeam Pentesting and Synacktiv have published technical analyses of CVE-2025-33073, a new way to execute NTLM reflection attacks.

This was fixed in this month's Patch Tuesday and also works against Kerberos.

blog.redteam-pentesting.de/202…

synacktiv.com/publications/ntl…

reshared this

in reply to Catalin Cimpanu

SySS has also published its analysis of CVE-2025-33073 today:

blog.syss.com/posts/kerberos-r…


Lorenzo ha ricondiviso questo.


For the past decade, academics have explored ways of exfiltrating data from air-gapped systems using smartphones as the receivers in those attacks. New research looks at the possibility of using smartwatches instead

arxiv.org/html/2506.08866v1

Questa voce è stata modificata (2 giorni fa)

reshared this

in reply to Catalin Cimpanu

Makes sense. If the department/company is at all serious about the air gap it will be in a separate room maybe even accessed via a room or two, and they will require *all* electronics to be left far away from the air gapped system. They even worry enough to use a separate electrical circuit on the fuse box and a UPS/power conditioner to somewhat isolate it electrically.

Lorenzo ha ricondiviso questo.


Sekoia has published a report looking at the AitM phishing kit landscape, its evolution, and today's largest providers.

blog.sekoia.io/global-analysis…

reshared this


Lorenzo ha ricondiviso questo.


A new threat actor named UNK_SneakyStrike used TrustedSec's TeamFiltration tool to enumerate Entra ID accounts and launch password-spraying attacks against 80k+ Entra ID accounts

proofpoint.com/us/blog/threat-…

reshared this


Lorenzo ha ricondiviso questo.


ISC2's 2025 Cybersecurity Hiring Trends is out

isc2.org/Insights/2025/06/cybe…

reshared this

in reply to Catalin Cimpanu

The CISSP is supposed to have 5 years of experience in cyber.

It is INSANE to “require” it for an entry level or junior position.

(Yes, ISC2 has the associate CISSP for those without 5 years, but CISSP is one of ISC’s main certs, so they should be aware enough to specify if the chart was talking about associate since it is a chart they made.)

in reply to Catalin Cimpanu

lol, all that title graphic says is that companies do not differentiate between entry and junior level positions to a real measurable degree 😅

Lorenzo ha ricondiviso questo.


Come proteggersi durante le proteste. I dimostranti affrontano gas lacrimogeni, granate stordenti, coronavirus e sorveglianza

Come evitare che le cosiddette armi non letali provochino danni temporanei o permanenti? Come proteggere la propria identità dagli strumenti di identificazione biometrica?

Nota dell'editore (11/06/25): Ripubblichiamo questo articolo del 2020 alla luce delle recenti proteste contro i raid sull'immigrazione a Los Angeles.

Grazie a @Mike Taylor 🦕 che ha condiviso l'articolo

scientificamerican.com/article…

@Etica Digitale (Feddit)


It's astonishing that Scientific American is having to publish an article on How Not To Be Killed By The Police, but here it is: scientificamerican.com/article…

(Update: as several people have pointed out to me, this article is from 2020. Not that that makes it any better.)


in reply to Franc Mac

siamo alla follia ma la cosa devastante è che gli hanno aperto la porta e l'hanno invitato ad entrare, e stiamo facendo pari pari anche noi

Etica Digitale (Feddit) reshared this.

in reply to Manuel

@manuel direi che abbiamo aperto la porta e servito il caffè visto il liberissimo decreto che hanno c***to fuori.

Etica Digitale (Feddit) reshared this.


Lorenzo ha ricondiviso questo.


-SentinelOne avoids a Chinese APT hack
-New Salt Typhoon victims uncovered
-Cyberattack disrupts grocery deliveries in the US
-Kazakhstan arrests 140 for selling citizens' data on Telegram
-New lead for FBI cyber division
-300k hit in Texas DOT breach
-Android 16 launched
-macOS to support container images
-Ofcom to investigate 4chan
-Outlook to block more file attachments
-YouTube quietly relaxed content moderation

Podcast: risky.biz/RBNEWS436/
Newsletter: news.risky.biz/risky-bulletin-…

reshared this

in reply to Catalin Cimpanu

-Telegram's shadowy contractor linked to intel agencies
-Grok getting blocked in corporate networks
-Gabbard pushes IC to outsource to tech sector
-Paragon and Italy cut ties
-Russia denies entry to users who wiped phones
-Five scammers plead guilty in US
-Extortionist sentenced in South Africa
-Over 40k cams expose feeds online
-Scammers target app testers
-New GhostVendors group
-New HelloTDS
-Librarian Ghouls steal data at night
-BlackSuit adopts social-engineering attacks
in reply to Catalin Cimpanu

-Tomcat brute-force campaign
-Most internet scans target Git and env files
-Mirai botnet targets Wazuh SIEMs
-DanaBleed vulnerability in DanaBot exposed operator identities
-Stealth Falcon uses WebDAV zero
-Patch Tuesday is out
-Apple accused of silently patching major bug
-Two new Secure Boot bypasses found
-Google patches bug exposing users' phone numbers
-Switch 2 exploit found day one
-New Russian disinfo op launched
-New Kimsuky ops
-Guardian launches CoverDrop, secure IM whistleblowing app

Lorenzo ha ricondiviso questo.


Google launching Android 16 on the second day of WWDC has peak screw you energy

blog.google/products/android/a…

reshared this


Lorenzo ha ricondiviso questo.


This month, Microsoft patched 67 vulnerabilities, including one actively exploited zero-days—CVE-2025-33053, a WebDAV RCE discovered by Check Point

rawcdn.githack.com/campuscodi/…

msrc.microsoft.com/update-guid…

reshared this

in reply to Catalin Cimpanu

Check Point has linked this to the Stealth Falcon APT

research.checkpoint.com/2025/s…


Lorenzo ha ricondiviso questo.


The UK's telecommunications watchdog has started an investigation of online message board 4chan for hosting potential illegal content under the UK Online Safety Act

Prolly the easiest investigation ever

ofcom.org.uk/online-safety/ill…

reshared this

in reply to Catalin Cimpanu

They've gone after a bunch of US companies.. Not much Ofcom can do short of blocking them (and blocks have been wholly ineffective so far).

Lorenzo ha ricondiviso questo.


A hacking group is breaching Russian companies using special malware designed to steal data only at night

The Librarian Ghouls (Rare Wolf and Rezet) uses scripts that wake up infected systems between 1AM and 5AM to steal data while employees are at home

securelist.com/librarian-ghoul…

reshared this


Lorenzo ha ricondiviso questo.


DanaBot had a HeartBleed-like bug for three years

Leaked all the juicy stuff, such as threat actor usernames, IP addresses, private keys, and loads more

zscaler.com/blogs/security-res…

reshared this


Lorenzo ha ricondiviso questo.


Akamai has spotted two Mirai botnets abusing a recently patched RCE (CVE-2025-24016) in the Wazuh SIEM

akamai.com/blog/security-resea…

cvereports.com/cve-2025-24016-…

reshared this


Lorenzo ha ricondiviso questo.


A cyberattack is disrupting the operations of United Natural Foods, a distributor of grocery products in the US.

United Natural Foods is the largest grocery carrier and the 14th largest logistics company in the US.

ttnews.com/articles/cybersecur…

reshared this


Lorenzo ha ricondiviso questo.


Russian border authorities are denying entry to Ukrainians with clean phones.

According to court documents, authorities denied entry to users who wiped their image galleries, messenger chats, or deleted their YouTube watch history

ria.ru/20250608/prichiny-20216…

reshared this

in reply to Catalin Cimpanu

Am I missing something. Aren’t Russian authorities denying entry to Ukrainian nationals, full stop?

Lorenzo ha ricondiviso questo.


-EU launches private DNS service
-Trump scraps and revises Biden and Obama cyber EOs
-Supply chain attack hits popular npm packages
-Mysterious iOS attacks in the US and EU
-FSB can allegedly intercept some Telegram messages
-Russia wants prison sentences for DDoS attacks, but not those attacking "prohibited sites"
-Russia has a WeChat surveillance program
-DOGE gets SSN access
-Brazil's dWallet will pay users for their PII

Podcast: risky.biz/RBNEWS435/
Newsletter: news.risky.biz/risky-bulletin-…

reshared this

in reply to Catalin Cimpanu

-Indonesia's novel internet censorship system
-Italy admits to using spyware against NGOs, again
-Linux Found. launches FAIR package manager for WordPress
-Spanish ISPs blocked Google trying to block piracy sites
-Twitter sues content farmers
-Nigerian hacker sentenced in the US
-Nigeria sentences 72 for cybercrime
-India disrupts two scam call centers
-Feds go after pig-butchering couple
-New Grey Nickel group
-APT-Q-27 (Golden Eye Dog) targets the gambling sector
in reply to Catalin Cimpanu

-DarkGaboon linked to ransomware attacks in Russia
-Stark Industries rebrands after sanctions
-New Global ransomware gang
-APT reports on Cyber Partisans, APT36, Taiwan's ICEFCOM
-Security updates for Splunk, Jenkins, QNAP
-Samsung bug bounty payouts reach $6mil
-Loads of Tenda POCs published online
-Scamnetic sues BlackCloak in new infosec drama
-F5 acquires Fletch
-New tools ProxyBlob, Newtowner, DroidGround, and Code Auditor CTF
-Security Fest and CyCon conference streams

evariste.gal🌈is reshared this.


Lorenzo ha ricondiviso questo.


A threat actor compromised 16 npm libraries from the Gluestack UI framework.

The attacker compromised a Gluestack admin's account, added a RAT to the libraries, and pushed updates on Friday.

It's the same threat actor behind the rand-user-agent package last month.

linkedin.com/feed/update/urn:l…

reshared this


Lorenzo ha ricondiviso questo.


Talks from the NATO CCDCOE's CyCon 2025 security conference, which took place at the end of May, are available on YouTube

youtube.com/watch?v=Q1lGmXOiCb…

Live streams from the Security Fest 2025 conference, which took place over the week, are available on YouTube

youtube.com/playlist?list=PL0J…

reshared this

in reply to Catalin Cimpanu

Following up on @campuscodi post on the NATO CCDCOE CyCon security conference, I watched the talk by Rense Buijen - Head of Global Incident Response, Trend Micro, who delivered his thoughts on the threats from APTs and the value of Red Teaming. #cybersecurity #redteam

youtube.com/watch?v=yKgBGBHBoW…


Lorenzo ha ricondiviso questo.


China's National Computer Virus Emergency Response Center published a report on APT groups associated with Taiwan's ICEFCOM cyber warfare unit:

-APT-C-01 (Poison Vine)
-APT-C-62 (Viola Tricolor)
-APT-C-64 (Anonymous 64)
-APT-C-65 (Neon Pothos)
-APT-C-67 (Ursa)

PDF: cverc.org.cn/head/zhaiyao/Inve…

reshared this


Lorenzo ha ricondiviso questo.


iVerify has found traces of a mysterious exploit on the iPhones of individuals in the US and the EU.

Possible victims include government officials and individuals linked to political campaigns, media organizations, and AI companies.

Apple denied the attacks

iverify.io/blog/iverify-uncove…

reshared this


Lorenzo ha ricondiviso questo.


"This essay addresses that gap by examining Indonesia’s use of domain name system (DNS) redirection as a method of internet censorship"

carnegieendowment.org/research…

reshared this


Lorenzo ha ricondiviso questo.


Mapping Hidden Alliances in Russian-Affiliated Ransomware

dti.domaintools.com/mapping-hi…

reshared this


Lorenzo ha ricondiviso questo.


Avrei voluto vedere il video in modalità Hunger Game, ma sono un ragazzo semplice e mi accontento così 🤣
in reply to Al Kath

hunger game non sarebbe coerente, nel loro mondo fatato chi muore vince…


In this comparison between Bitwarden and LastPass, we explore their features, security, ease of use and pricing. Find out which password manager is best for you.#Bitwarden #lastpass #password #passwordmanagement #passwordmanager #passwordsecurity

Giorgio Sarto reshared this.


Lorenzo ha ricondiviso questo.


C’è negozio e negozio

Soprattutto se uno deve comprare una bici.

wp.me/p6hcSh-8nz

reshared this

in reply to .mau.

@.mau. hai ragione i meganegozi di bici ormai sono diventati peggio di decathlon. E almeno da decathlon trovi spesso meccanici che avevano il negozietto e che l'hanno chiuso per sfinimento ma che almeno hanno passione e competenza, mentre i megastore della bici sfornano solo roba standard.

Se vuoi qualcosa di meglio ormai devi andare da quei negozi legatissimi ai club di cicloturisti o mountain bikers perché ancora ragionano sulla personalizzazione





The widespread use of AI, particularly generative AI, in modern businesses creates new network security risks for complex enterprise workloads across various locations.

Giorgio Sarto reshared this.




La California è il primo stato a fare causa a Trump sui dazi. Si tratta dell'attacco più diretto del governatore Gavin Newsom contro Trump da quando il presidente è rientrato in carica.

SACRAMENTO, California — Il governatore della California, Gavin Newsom, ha intentato causa a Donald Trump per i dazi, in una mossa aggressiva per porre fine alla morsa del presidente sul commercio globale.

La causa intentata da Newsom, annunciata mercoledì mattina insieme al procuratore generale della California Rob Bonta, è la prima contestazione da parte di uno Stato americano contro il simbolo della politica estera di Trump.

politico.com/news/2025/04/16/c…

@Politica interna, europea e internazionale

reshared this



LastPass’ recent data breaches make it hard to recommend as a viable password manager in 2025. Learn more in our full review below.#passwordmanagers

Giorgio Sarto reshared this.