logo

Security Affairs

ID: 4591e57d-d939-5a9c-95b6-1894657d6f54

STIX ID: identity--4591e57d-d939-5a9c-95b6-1894657d6f54

Feed Type: rss

Earliest post: 2024-05-19

Latest post: 2026-06-06

Cybersecurity news, threat analysis, malware research, and breaking coverage from independent expert Pierluigi Paganini — covering cybercrime, APTs, breaches, policy, hacking, and security trends.

01/01/2020
06/07/2026
Title Date Published Describes IncidentAuthorVisible
U.S. CISA adds SolarWinds Serv-U flaw to its Known Exploited Vulnerabilities catalog2026-06-06TruePierluigi PaganiniTrue
Report: Anthropic Deploys Engineers to Support NSA Use of Mythos2026-06-06TruePierluigi PaganiniTrue
Claude Opus Found a Four-Year-Old Hole in Zcash’s Privacy Layer. Nobody Knows If Someone Already Used It.2026-06-06TruePierluigi PaganiniTrue
Silent Ransom Group (SRG): Switching To DNS Fast Flux Infrastructure2026-06-05TruePierluigi PaganiniTrue
Cisco SD-WAN Has a New Root-Level Problem, and There’s No Fix Yet2026-06-05TruePierluigi PaganiniTrue
PCPJack Exposed: Researchers Uncover 230-Node Cloud Email Relay Network2026-06-05TruePierluigi PaganiniTrue
Fake Context Alignment: The Attack That Made Gemini Obey Strangers Through Your Notifications2026-06-05TruePierluigi PaganiniTrue
U.S. CISA adds Mirasvit Full Page Cache Warmer flaw to its Known Exploited Vulnerabilities catalog2026-06-04TruePierluigi PaganiniTrue
Critical Cisco Unified CM Bug Patched as Public Exploit Code Emerges2026-06-04TruePierluigi PaganiniTrue
Gamaredon Uses WinRAR Vulnerability to Launch Modular Spy Campaign on Ukrainian Targets2026-06-04TruePierluigi PaganiniTrue
Researcher Drops a New VS Code Zero-Day After Losing Trust in Microsoft’s Disclosure Process2026-06-04TruePierluigi PaganiniTrue
29 Arrests, Nine Crime Groups Dismantled: Another Blow to Illegal Streaming2026-06-04TruePierluigi PaganiniTrue
Cyber espionage campaign targeted stock exchange executive’s Outlook account2026-06-03TruePierluigi PaganiniTrue
Russia’s FSB Says Foreign Spies Infected Officials’ Phones With Malware2026-06-03TruePierluigi PaganiniTrue
U.S. CISA adds Android and Linux Kernel flaws to its Known Exploited Vulnerabilities catalog2026-06-03TruePierluigi PaganiniTrue
Google Patches Actively Exploited Android Flaw Affecting Millions of Devices2026-06-03TruePierluigi PaganiniTrue
Why an HP Poly VoIP Phones Bug Could Become an Enterprise Foothold2026-06-03TruePierluigi PaganiniTrue
Instagram Account Hijacks Expose the Security Risks of AI-Powered Support2026-06-02TruePierluigi PaganiniTrue
U.S. CISA adds Oracle WebLogic flaw to its Known Exploited Vulnerabilities catalog2026-06-02TruePierluigi PaganiniTrue
GoDaddy found malware on 1,980 WordPress sites using Steam as C2 infrastructure2026-06-02TruePierluigi PaganiniTrue
Ransomware Operators Keep Business Hours. The Data Proves It2026-06-01TruePierluigi PaganiniTrue
CVE-2026-8732: The WP Maps Pro Flaw That Lets Anyone Create a WordPress Admin Without a Password2026-06-01TruePierluigi PaganiniTrue
CIFSwitch, a Linux Root Bug Hidden in Plain Sight for 19 Years2026-06-01TruePierluigi PaganiniTrue
U.S. CISA adds Palo Alto Networks PAN-OS flaw to its Known Exploited Vulnerabilities catalog2026-06-01TruePierluigi PaganiniTrue
The Pentagon Finally Admits That Location Data Is a Battlefield Problem2026-06-01TruePierluigi PaganiniTrue
CVE-2026-0257: Rapid7 Caught Attackers Abusing Forged VPN Cookies Against Multiple Customers2026-05-31TruePierluigi PaganiniTrue
Security Affairs newsletter Round 579 by Pierluigi Paganini – INTERNATIONAL EDITION2026-05-31TruePierluigi PaganiniTrue
ShinyHunters Leaks Charter Communications Data, Potentially Impacting 5 Million Customers2026-05-30TruePierluigi PaganiniTrue
Signal Phishing Campaign Targets Journalists and Activists to Steal Backup Recovery Keys2026-05-30TruePierluigi PaganiniTrue
Botnet of 17 Million Devices Dismantled in the Netherlands2026-05-30TruePierluigi PaganiniTrue
Meet GREYVIBE, the Russia-Linked Hacking Group Using AI to Target Ukraine and Still Making Rookie Mistakes2026-05-29TruePierluigi PaganiniTrue
DIL Observatory: when the World Escalates, the Underground Responds2026-05-29TruePierluigi PaganiniTrue
Microsoft Calls the Zero-Day Dumps Irresponsible. The Researcher Says Microsoft Started It.2026-05-29TruePierluigi PaganiniTrue
BTMOB RAT Gives Criminals a Point-and-Click Kit to Take Over Your Android Phone2026-05-29TruePierluigi PaganiniTrue
Carnival Data Breach Exposes Personal Data of Nearly 6 Million Customers2026-05-28TruePierluigi PaganiniTrue
CVE-2026-35616: FortiClient EMS Flaw Actively Exploited in Malware Attacks2026-05-28TruePierluigi PaganiniTrue
Resecurity Supports Microsoft DCU in Disrupting Fox Tempest ’s Cybercriminal Code-Signing Ecosystem2026-05-28TruePierluigi PaganiniTrue
U.S. CISA adds Daemon Tools, TanStack, and Nx Console flaws to its Known Exploited Vulnerabilities catalog2026-05-28TruePierluigi PaganiniTrue
A Fake UK Visa Site Left 100,000 Passports Wide Open2026-05-28TruePierluigi PaganiniTrue
U.S. CISA adds LiteSpeed cPanel Plugin flaw to its Known Exploited Vulnerabilities catalog2026-05-28TruePierluigi PaganiniTrue
19.6 Billion Files Are Sitting Open on the Internet. No Password Required2026-05-28TruePierluigi PaganiniTrue
Romanian Hacker Gets Nearly 5 Years in US Prison Over Network Intrusion2026-05-27TruePierluigi PaganiniTrue
The LA Metro Attack Wasn’t Hacktivism. It Was a State Operation With a Costume On.2026-05-27TruePierluigi PaganiniTrue
How cybersecurity firms took down Glassworm botnet in one shot2026-05-27TruePierluigi PaganiniTrue
Microsoft SharePoint Has a New RCE Flaw. If You Haven’t Patched Yet, Go Do That.2026-05-27TruePierluigi PaganiniTrue
The Hidden Ransomware Economy Running on Exposed Databases2026-05-26TruePierluigi PaganiniTrue
Malware Found in Laravel-Lang Composer Packages After Git Tag Poisoning Attack2026-05-26TruePierluigi PaganiniTrue
Nimbus Manticore Expanded Attacks With AI-Assisted Malware and Fake Zoom Installers2026-05-26TruePierluigi PaganiniTrue
Lazarus APT unveils fileless remote access Trojan designed to evade detection2026-05-26TruePierluigi PaganiniTrue
Third-Party Cyberattack Impacts Patient Information at The Oncology Institute2026-05-26TruePierluigi PaganiniTrue

1–50 of 685