Ukrainian hackers claim to have destroyed servers of Russian #drone maker
Gli hacker utilizzano ClickFix e FileFix per diffondere il trojan Interlock
Link all'articolo : https://www.redhotcyber.com/post/gli-hacker-utilizzano-clickfix-e-filefix-per-diffondere-il-trojan-interlock/
Most cybersecurity risk comes from just 10% of employees
A new report from Living Security and the Cyentia Institute sheds light on the real human element behind cybersecurity threats, and it’s not what most organizations expect.
https://www.helpnetsecurity.com/2025/07/16/human-cybersecurity-risk-employees/
From this morning: Bluesky hands UK age verification data to Epic Games, France launched criminal investigation into Twitter algorithm as foreign interference, arsonist tortoise rescued after starting fire in UK flat, #Covid rising in half the US, more
https://www.patreon.com/posts/cybersecurity-15-134166312 #Cybersecurity
Alla scoperta di Scattered Spider: la minaccia criminale che utilizza tattiche e tecniche avanzate
Link all'articolo : https://www.redhotcyber.com/post/scattered-spider-la-minaccia-criminale-che-utilizza-tattiche-e-tecniche-avanzate/
La Cina chiede una revisione etica e legale dei robot umanoidi militari
Link all'articolo : https://www.redhotcyber.com/post/la-cina-chiede-una-revisione-etica-e-legale-dei-robot-umanoidi-militari/
Android 16 è open, ma non ha più l’Anima! Sono spariti i file chiave per i Google Pixel
Link all'articolo : https://www.redhotcyber.com/post/android-16-e-open-ma-non-ha-piu-lanima-sono-spariti-i-file-chiave-per-i-google-pixel/
This dumb password rule is from ING Australia.
4 numeric digits.
"Added security" by randomising the positions on the keypad. Must be clicked.
Want to know how to keep me on #linux? This is how you keep me on #linux!
Now Microsoft’s Copilot Vision AI can scan everything on your screen
Copilot Vision will be able to look at your whole desktop.
https://www.theverge.com/news/707995/microsoft-copilot-vision-ai-windows-scan-screen-desktop
@thenewoil unpaywalled link so people can actually fucking read it
Hackers Can Remotely Trigger the Brakes on American #Trains and the Problem Has Been Ignored for Years
Palo Alto Networks' Lior Rochberger looks into a cluster of suspicious activity targeting governmental entities in Southeast Asia. The threat actors behind this campaign use the HazyBeacon backdoor, which leverages AWS Lambda URLs as C2 infrastructure.
#CyberSecurity #InfoSec
https://unit42.paloaltonetworks.com/windows-backdoor-for-novel-c2-communication/
OpenAI Vulnerability: 48 Days, No Response
https://requilence.any.org/open-ai-vulnerability-responsible-disclosure
Overprivileged containers can expose #AWS credentials through packet sniffing and API spoofing. Our research shows how attackers exploit these settings to escalate access in cloud environments. #CyberSecurity #InfoSec https://www.trendmicro.com/en_us/research/25/f/aws-credential-exposure-overprivileged-containers.html?utm_source=trendmicroresearch&utm_medium=smk&utm_campaign=0625_aws2critical2
EclecticIQ's Arda Büyükkaya describes the emergence of GLOBAL GROUP, a new RaaS brand promoted on the Ramp4u forum, and assesses with medium confidence that GLOBAL GROUP was likely established as a rebranding of the BlackLock RaaS operation.
#CyberSecurity
https://blog.eclecticiq.com/global-group-emerging-ransomware-as-a-service
Encrypting files with passkeys and age
New: Fake Telegram apps are being spread through 607 malicious domains to deliver Android malware, using blog-style pages and other tactics.
Read: https://hackread.com/fake-telegram-apps-domains-android-malware-attack/