Image

LATEST NEWS

VIEW ALL
Attackers Exploit Critical ServiceNow RCE Flaw CVE-2026-6875
Image Pierluigi Paganini Image July 21, 2026

Attackers are exploiting critical ServiceNow flaw CVE-2026-6875, allowing unauthenticated remote code execution on self-hosted instances. Searchlight Cyber researchers disclosed a critical pre-aut ...

Dutch Intelligence Warns Russia Uses Hacked IP Cameras for Military Espionage
Image Pierluigi Paganini Image July 20, 2026

Dutch intelligence says Russia hacks IP cameras to monitor NATO military logistics and weapons shipments to Ukraine. The Netherlands' AIVD and MIVD, the civilian and military intelligence services ...

Critical 7-Zip Flaw Allows Code Execution by Opening Crafted XZ-Compressed Files. Update it now!
Image Pierluigi Paganini Image July 20, 2026

7-Zip fixed a vulnerability that could let attackers run code by tricking users into opening malicious XZ-compressed archive files. 7-Zip released version 26.02 to address a remote code execution ...

CVE-2026-42533: Critical NGINX Bug Could Turn HTTP Requests Into Server Takeovers
Image Pierluigi Paganini Image July 20, 2026

F5 fixes critical nginx flaw CVE-2026-42533 that can crash servers and, in some cases, allow remote code execution through crafted HTTP requests. F5 released patches for a critical nginx vulnerabi ...

recent articles

Image
Intelligence
Dutch Intelligence Warns Russia Uses Hacked IP Cameras for Military Espionage

Dutch intelligence says Russia hacks IP cameras to monitor NATO military logistics and weapons shipments to Ukraine. The Netherlands' AIVD and MIVD, the civilian and military intelligence services ...

Image Pierluigi Paganini ImageJuly 20, 2026
Image
Security
Critical 7-Zip Flaw Allows Code Execution by Opening Crafted XZ-Compressed Files. Update it now!

7-Zip fixed a vulnerability that could let attackers run code by tricking users into opening malicious XZ-compressed archive files. 7-Zip released version 26.02 to address a remote code execution ...

Image Pierluigi Paganini ImageJuly 20, 2026
Image
Hacking
CVE-2026-42533: Critical NGINX Bug Could Turn HTTP Requests Into Server Takeovers

F5 fixes critical nginx flaw CVE-2026-42533 that can crash servers and, in some cases, allow remote code execution through crafted HTTP requests. F5 released patches for a critical nginx vulnerabi ...

Image Pierluigi Paganini ImageJuly 20, 2026
Image
Artificial Intelligence
AI Agents Turned Into Attackers: Hugging Face Reveals Autonomous Intrusion Campaign

Hugging Face says an autonomous AI agent breached part of its production infrastructure and accessed internal data and service credentials. Hugging Face is one of the world's leading open-source A ...

Image Pierluigi Paganini ImageJuly 20, 2026
Image
Hacking
Volexity Uncovers Zero-Day Campaign Targeting SonicWall VPN Appliances

Unknown hackers exploited two SonicWall SMA 1000 zero-days to gain root access on VPN appliances before patches became available. Volexity published its findings after conducting an incident respo ...

Image Pierluigi Paganini ImageJuly 20, 2026
Image
Malware
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 106

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter CrashStealer: C++ macOS infostealer posi ...

Image Pierluigi Paganini ImageJuly 19, 2026
Image
Breaking News
Security Affairs newsletter Round 586 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly Security ...

Image Pierluigi Paganini ImageJuly 19, 2026
Image
Hacking
Attackers Can Take Over WordPress Sites Using Newly Released wp2shell Exploits

Public exploits are now available for two critical WordPress flaws that attackers can chain to gain remote code execution without authentication. Public proof-of-concept exploits are now available ...

Image Pierluigi Paganini ImageJuly 19, 2026
Image
Hacking
OpenSSL Fixes HollowByte Memory Exhaustion Bug

Okta disclosed HollowByte, an 11-byte OpenSSL flaw that lets remote attackers exhaust server memory and trigger denial-of-service attacks. Okta's Red Team disclosed a denial-of-service vulnerabili ...

Image Pierluigi Paganini ImageJuly 18, 2026
Image
Malware
Daxin: 13-Year-Old China-Linked Malware Found Still Active on Manufacturer's Network

Researchers found China's Daxin rootkit and a new Stupig backdoor on a Taiwan firm's network, suggesting a stealthy intrusion dating back to 2013. Symantec's Threat Hunter Team found Daxin running ...

Image Pierluigi Paganini ImageJuly 18, 2026
Image
Security
U.S. CISA adds Fortinet FortiSandbox and Microsoft SharePoint flaws to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Fortinet FortiSandbox and Microsoft SharePoint flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and In ...

Image Pierluigi Paganini ImageJuly 18, 2026
Image
Data Breach
Ernst & Young (EY) Investigates Data Breach Involving Third-Party Support Tickets

Ernst & Young (EY) disclosed a data breach after attackers compromised a third-party IT support system containing client documents and tax information. Ernst & Young (EY) is disclosed a da ...

Image Pierluigi Paganini ImageJuly 17, 2026
Image
Security
A cyberattack hit Nichirei, one of Japan's largest food companies

A cyberattack hit one of Japan's largest food companies, Nichirei, disrupting logistics and shipments. The company is gradually restoring operations. Nichirei is one of Japan's largest food compan ...

Image Pierluigi Paganini ImageJuly 17, 2026
Image
Malware
New Russian Campaign Uses Fake Webex and Zoom Installers to Deploy Starland RAT

Russian-speaking UAT-11795 spreads trojanized Zoom, Webex, and MobaXterm installers to deliver Starland RAT and the WLDR memory-only implant. Cisco Talos researchers published a detailed technical ...

Image Pierluigi Paganini ImageJuly 17, 2026
Image
Security
U.S. CISA adds KNX Association KNX Protocol Connection Authorization Option 1 and Oracle flaws to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds KNX Association KNX Protocol Connection Authorization Option 1 and Oracle flaws to its Known Exploited Vulnerabilities catalog. Th ...

Image Pierluigi Paganini ImageJuly 17, 2026
Image
Cyber Crime
Two Scattered Spider Members Sentenced to Prison Over £29 Million TfL Cyberattack

Two members of the Scattered Spider cybercrime group received jail sentences in the UK for the 2024 cyberattack on Transport for London. A UK court sentenced two Scattered Spider members, Thalha J ...

Image Pierluigi Paganini ImageJuly 16, 2026
Image
Artificial Intelligence
TuxBot v3: The IoT Botnet Built With AI - Bugs, Disclaimers and All

TuxBot v3, an AI-built IoT botnet for 17 architectures, shipped with LLM bugs and safety disclaimers the developer never removed. Palo Alto Networks' Unit 42 identified a previously undocumented m ...

Image Pierluigi Paganini ImageJuly 16, 2026
Image
Artificial Intelligence
Claude Code and DeepSeek Powered Chinese Cyber Espionage Campaign

Chinese actors used Claude Code and DeepSeek to automate attacks that breached government systems and targeted financial firms. Hunt.io researchers stumbled onto an active intrusion campaign in Ju ...

Image Pierluigi Paganini ImageJuly 16, 2026
Image
Security
Zoom Fixes CVE-2026-53412, a Critical Account Takeover Bug

Zoom warns of a critical Windows flaw, tracked as CVE-2026-53412, that could let attackers take over accounts without authentication. Zoom has fixed a critical Windows vulnerability, tracked as CV ...

Image Pierluigi Paganini ImageJuly 16, 2026
Image
Hacking
Chaotic Eclipse Unveils LegacyHive Exploit Affecting Fully Patched Windows Systems

LegacyHive PoC exposes a Windows Privilege Escalation flaw affecting fully patched Windows desktop and server systems. Just hours after Microsoft's July 2026 Patch Tuesday, security researcher Nig ...

Image Pierluigi Paganini ImageJuly 15, 2026