atlas news
  Oversecurity
21  may     14h37
AI agentiche nella cyber e nell’area della cognizione umana: vediamo se siamo preparati
   Secondo un report, il 57% delle aziende si aspetta un miglioramento del rilevamento delle minacce grazie all’AI, mentre il 49% punta su risposte...
    14h07
JOMANGY: INJ3CTOR3’s Self-Healing FreePBX Toll Fraud Campaign
   CRIL uncovers JOMANGY, a stealth PHP webshell by INJ3CTOR3 with 6 persistence layers and self-healing cron jobs built to survive host cleanup.
    14h02
Max severity Cisco Secure Workload flaw gives Site Admin privileges
   Cisco has released security updates to address a maximum-severity vulnerability in Secure Workload that allows attackers to gain Site Admin...
    14h02
Chinese hackers target telcos with new Linux, Windows malware
   A Chinese cyber-espionage campaign has been targeting telecommunications providers with newly discovered Linux and Windows malware dubbed Showboat...
    14h02
Inside a Crypto Drainer: How to Spot it Before it Empties Your Wallet
   Modern crypto drainers don’t hack wallets. They trick users into approving malicious transactions. Flare explores how the Lucifer DaaS platform...
    13h49
Europe dismantles VPN service used by cybercriminals to hide ransomware attacks
  
    13h16
Police seize First VPN service used in ransomware, data theft attacks
   A virtual private network service called ’First VPN,’ used in ransomware and data theft attacks, has been taken offline in a joint international law...
    12h37
VPN su Fire TV Stick: guida alla scelta tra sicurezza, velocità e consumo CPU
   Analisi tecnica delle VPN su FireOS: impatto di cifratura e protocolli sul throughput e sulle risorse CPU di Amazon Fire TV Stick.
    12h25
Striga: Lifting x86 to LLVM IR with Python
   Background While discussing with eversinc33 about lifting BinaryShield to LLVM IR I decided it would be useful to write a basic lifter in Python that...
    12h15
Striga: Lifting x86 to LLVM IR with Python
   Background While discussing with eversinc33 about lifting BinaryShield to LLVM IR I decided it would be useful to write a basic lifter in Python that...
    11h50
Flipper One we need your help
   We’re finally ready to talk about Flipper One a project we’ve been grinding on for years and have rebuilt from scratch several times. It’s an...
    11h03
Flipper One project needs community help to build open Linux platform
   Flipper Devices, the maker of the Flipper Zero pentesting tool, is asking the community to help build Flipper One, an open Linux platform for...
    10h25
Direttiva NIS2: guida pratica alla conformità e responsabilità del CdA
   Guida operativa alla Direttiva NIS2: obblighi per il CdA, gestione della supply chain e nuovi modelli di audit per il 2026.
    10h22
Xi and Putin pledge closer cooperation on AI, cyberspace and satellite systems
  
    09h39
Iperammortamento 2026-2028: la leva fiscale che accelera cyber e innovazione sostenibile
   La Legge 199 2025 introduce un incentivo fino al 180% per investimenti in tecnologie digitali e di cyber security prodotte in Europa, su importi fino...
    09h27
Hackers Exploit Butter Network Bridge to Mint Massive MAPO Supply
   Map Protocol MAPO token fell 96% after a bridge exploit minted quadrillion tokens, draining ETH liquidity and exposing DeFi security flaws.
    09h02
1-15 May 2026 Cyber Attacks Timeline
   The threat landscape during May H1 was dominated by cyber crime and characterized by malware attacks, while the exploitation of public-facing...
    08h08
Recovery scam, l’architettura della re-vittimizzazione
   Sfruttando database di utenti già colpiti e leve psicologiche, i cyber criminali generano profitti milionari. Cosa sono le recovery scam, come...
    08h02
Microsoft warns of new Defender zero-days exploited in attacks
  
    07h38
AI Agent nelle organizzazioni: le 4 aree critiche
  
    07h13
Discord Launches End-to-End Encryption for Voice and Video Calls
   The company also revealed that it currently has no plans to extend end-to-end encryption to text messaging on the platform.
    07h02
GitHub links repo breach to TanStack npm supply-chain attack
   GitHub says the hackers who breached 3,800 internal repositories gained access via a malicious version of the Nx Console VS Code extension,...
    06h57
Pardus Linux Vulnerability Chain Enables Complete System Takeover
   CVE-2026-5140 in Pardus Linux lets local users gain root access through chained flaws in Polkit, CRLF injection, and APT handling.
    06h13
GitHub Confirms Cyberattack Targeting Thousands of Internal Repositories
   GitHub cyberattack exposed internal repositories after TeamPCP used a malicious VS Code extension to breach an employee device.
    06h13
Ukraine Busts Massive Cybercrime Scheme Behind 28,000 Stolen Accounts
   Investigators said the account theft scheme operated throughout 2024 and 2025 and targeted customers of an online store based in California.
    05h38
Dragonica Lunaris - 126,293 breached accounts
   In December 2025, the European Dragonica private server Dragonica Lunaris suffered a data breach. The incident exposed 126k email addresses,...
    05h25
FTC Cracks Down on AI Nudify Platforms Under TAKE IT DOWN Act
   Before the enforcement deadline, the FTC also contacted technology companies to remind them of their obligations under the TAKE IT DOWN Act.
    04h39
Windows93 Myspace93 - 46,105 breached accounts
   In January 2021, the parody site Windows93 suffered a data breach of the Myspace93 sub-site after a beta application was exploited to download server...
20  may     21h46
Ukraine identifies infostealer operator tied to 28,000 stolen accounts
   The Ukrainian cyberpolice, working in conjunction with U.S. law enforcement, has identified an 18-year-old man from Odesa suspected of running an...
    21h31
Hackers bypass SonicWall VPN MFA due to incomplete patching
   Threat actors brute-forced VPN credentials and bypassed multi-factor authentication (MFA) on SonicWall Gen6 SSL-VPN appliances to deploy tools used...
    20h46
The Flipper One: Hacking Gadget is Becoming a Pocket Linux PC
  
    20h30
The Flipper One: Hacking Gadget is Becoming a Pocket Linux PC
  
    19h02
MSHTA, lo zombie di IE che alimenta attacchi su Windows
   Nonostante Internet Explorer sia ormai ufficialmente morto da tempo, uno dei suoi componenti storici continua a rappresentare un serio problema di...
    18h18
Attacco ai router Huawei dietro blackout telecom del Lussemburgo
   Un attacco informatico basato su una vulnerabilità sconosciuta nei router enterprise di Huawei avrebbe causato nel 2025 uno dei piu gravi incidenti...
    17h51
FTC warns 12 major tech firms of violating Take It Down Act
  
    17h39
GSR2 e sistemi di sicurezza per i veicoli: i rischi per la privacy
   La normativa europea GSR2 impone i sistemi ADAS obbligatori dal 2024 sulle nostre automobili per rilevare sonnolenza tramite tracciamento oculare tra...
    16h50
Ukraine probes teen suspect in cyber theft scheme targeting California online shoppers
  
    16h36
Discord migrates all users to end-to-end encryption by default
  
    16h20
7-Eleven confirms breach after ShinyHunters claims
  
    15h55
Customers say Trump Mobile is leaking their personal information
   Trump Mobile is leaking customers’ email and home addresses, but has not responded to people alerting the company of the data exposure, according to...
    15h53
CalPhishing: quando il phishing entra nel calendario aziendale
   Una nuova campagna malevola basata sulla tecnica del CalPhishing (Calendar Phishing) sta una campagna che sfruttando gli inviti calendario per...
    15h46
Grafana breach caused by missed token rotation after TanStack attack
   The Grafana data breach was caused by a single GitHub workflow token that slipped through the rotation process following the TanStack npm supply...
    14h16
Identity Alone Isn’t Enough: Why Device Security Has to Share the Load
   Identity checks alone can’t stop attackers using stolen session tokens and compromised devices. Specops Software outlines why Zero Trust strategies...
    13h37
Ukraine says Russia is deploying AI-powered malware on the battlefield
  
    13h20
Texas, Florida top list of states reporting millions of dollars lost through crypto ATMs
  
    13h11
How Can MSSPs Scale Threat Detection Without Burning Out Their Analysts?
   Learn how ANY.RUN’s Threat Intelligence Feeds , Sandbox, and Threat Intelligence Lookup help MSSP scale by making threat analysts efficient.
    13h07
Cloud sovrano e nazionale: la sicurezza del dato in Italia ed Europa
   Il futuro del cloud sovrano sarà sempre piu integrato con sistemi di AI capaci di proteggere dati, infrastrutture e servizi critici in modo adattivo...
    13h01
Drupal critical update to fix bug with high exploitation risk
   Drupal has announced a core security release scheduled for later today, warning that threat actors might develop exploits within hours of the update...
    12h34
Senator presses CISA for answers about alleged GitHub repository leak
  
    12h34
GitHub confirms being hacked by TeamPCP, says customer data unaffected
  
1779375651