atlas news
Oversecurity
21 may
14h37
AI agentiche nella cyber e nell’area della cognizione umana: vediamo se siamo preparati
Secondo un report, il 57% delle aziende si aspetta un miglioramento del rilevamento delle minacce grazie all’AI, mentre il 49% punta su risposte...
14h07
JOMANGY: INJ3CTOR3’s Self-Healing FreePBX Toll Fraud Campaign
CRIL uncovers JOMANGY, a stealth PHP webshell by INJ3CTOR3 with 6 persistence layers and self-healing cron jobs built to survive host cleanup.
14h02
Max severity Cisco Secure Workload flaw gives Site Admin privileges
Cisco has released security updates to address a maximum-severity vulnerability in Secure Workload that allows attackers to gain Site Admin...
14h02
Chinese hackers target telcos with new Linux, Windows malware
A Chinese cyber-espionage campaign has been targeting telecommunications providers with newly discovered Linux and Windows malware dubbed Showboat...
14h02
Inside a Crypto Drainer: How to Spot it Before it Empties Your Wallet
Modern crypto drainers don’t hack wallets. They trick users into approving malicious transactions. Flare explores how the Lucifer DaaS platform...
13h49
Europe dismantles VPN service used by cybercriminals to hide ransomware attacks
13h16
Police seize First VPN service used in ransomware, data theft attacks
A virtual private network service called ’First VPN,’ used in ransomware and data theft attacks, has been taken offline in a joint international law...
12h37
VPN su Fire TV Stick: guida alla scelta tra sicurezza, velocità e consumo CPU
Analisi tecnica delle VPN su FireOS: impatto di cifratura e protocolli sul throughput e sulle risorse CPU di Amazon Fire TV Stick.
12h25
Striga: Lifting x86 to LLVM IR with Python
Background While discussing with eversinc33 about lifting BinaryShield to LLVM IR I decided it would be useful to write a basic lifter in Python that...
12h15
Striga: Lifting x86 to LLVM IR with Python
Background While discussing with eversinc33 about lifting BinaryShield to LLVM IR I decided it would be useful to write a basic lifter in Python that...
11h50
Flipper One we need your help
We’re finally ready to talk about Flipper One a project we’ve been grinding on for years and have rebuilt from scratch several times. It’s an...
11h03
Flipper One project needs community help to build open Linux platform
Flipper Devices, the maker of the Flipper Zero pentesting tool, is asking the community to help build Flipper One, an open Linux platform for...
10h25
Direttiva NIS2: guida pratica alla conformità e responsabilità del CdA
Guida operativa alla Direttiva NIS2: obblighi per il CdA, gestione della supply chain e nuovi modelli di audit per il 2026.
10h22
Xi and Putin pledge closer cooperation on AI, cyberspace and satellite systems
09h39
Iperammortamento 2026-2028: la leva fiscale che accelera cyber e innovazione sostenibile
La Legge 199 2025 introduce un incentivo fino al 180% per investimenti in tecnologie digitali e di cyber security prodotte in Europa, su importi fino...
09h27
Hackers Exploit Butter Network Bridge to Mint Massive MAPO Supply
Map Protocol MAPO token fell 96% after a bridge exploit minted quadrillion tokens, draining ETH liquidity and exposing DeFi security flaws.
09h02
1-15 May 2026 Cyber Attacks Timeline
The threat landscape during May H1 was dominated by cyber crime and characterized by malware attacks, while the exploitation of public-facing...
08h08
Recovery scam, l’architettura della re-vittimizzazione
Sfruttando database di utenti già colpiti e leve psicologiche, i cyber criminali generano profitti milionari. Cosa sono le recovery scam, come...
08h02
Microsoft warns of new Defender zero-days exploited in attacks
07h38
AI Agent nelle organizzazioni: le 4 aree critiche
07h13
Discord Launches End-to-End Encryption for Voice and Video Calls
The company also revealed that it currently has no plans to extend end-to-end encryption to text messaging on the platform.
07h02
GitHub links repo breach to TanStack npm supply-chain attack
GitHub says the hackers who breached 3,800 internal repositories gained access via a malicious version of the Nx Console VS Code extension,...
06h57
Pardus Linux Vulnerability Chain Enables Complete System Takeover
CVE-2026-5140 in Pardus Linux lets local users gain root access through chained flaws in Polkit, CRLF injection, and APT handling.
06h13
GitHub Confirms Cyberattack Targeting Thousands of Internal Repositories
GitHub cyberattack exposed internal repositories after TeamPCP used a malicious VS Code extension to breach an employee device.
06h13
Ukraine Busts Massive Cybercrime Scheme Behind 28,000 Stolen Accounts
Investigators said the account theft scheme operated throughout 2024 and 2025 and targeted customers of an online store based in California.
05h38
Dragonica Lunaris - 126,293 breached accounts
In December 2025, the European Dragonica private server Dragonica Lunaris suffered a data breach. The incident exposed 126k email addresses,...
05h25
FTC Cracks Down on AI Nudify Platforms Under TAKE IT DOWN Act
Before the enforcement deadline, the FTC also contacted technology companies to remind them of their obligations under the TAKE IT DOWN Act.
04h39
Windows93 Myspace93 - 46,105 breached accounts
In January 2021, the parody site Windows93 suffered a data breach of the Myspace93 sub-site after a beta application was exploited to download server...
20 may
21h46
Ukraine identifies infostealer operator tied to 28,000 stolen accounts
The Ukrainian cyberpolice, working in conjunction with U.S. law enforcement, has identified an 18-year-old man from Odesa suspected of running an...
21h31
Hackers bypass SonicWall VPN MFA due to incomplete patching
Threat actors brute-forced VPN credentials and bypassed multi-factor authentication (MFA) on SonicWall Gen6 SSL-VPN appliances to deploy tools used...
20h46
The Flipper One: Hacking Gadget is Becoming a Pocket Linux PC
20h30
The Flipper One: Hacking Gadget is Becoming a Pocket Linux PC
19h02
MSHTA, lo zombie di IE che alimenta attacchi su Windows
Nonostante Internet Explorer sia ormai ufficialmente morto da tempo, uno dei suoi componenti storici continua a rappresentare un serio problema di...
18h18
Attacco ai router Huawei dietro blackout telecom del Lussemburgo
Un attacco informatico basato su una vulnerabilità sconosciuta nei router enterprise di Huawei avrebbe causato nel 2025 uno dei piu gravi incidenti...
17h51
FTC warns 12 major tech firms of violating Take It Down Act
17h39
GSR2 e sistemi di sicurezza per i veicoli: i rischi per la privacy
La normativa europea GSR2 impone i sistemi ADAS obbligatori dal 2024 sulle nostre automobili per rilevare sonnolenza tramite tracciamento oculare tra...
16h50
Ukraine probes teen suspect in cyber theft scheme targeting California online shoppers
16h36
Discord migrates all users to end-to-end encryption by default
16h20
7-Eleven confirms breach after ShinyHunters claims
15h55
Customers say Trump Mobile is leaking their personal information
Trump Mobile is leaking customers’ email and home addresses, but has not responded to people alerting the company of the data exposure, according to...
15h53
CalPhishing: quando il phishing entra nel calendario aziendale
Una nuova campagna malevola basata sulla tecnica del CalPhishing (Calendar Phishing) sta una campagna che sfruttando gli inviti calendario per...
15h46
Grafana breach caused by missed token rotation after TanStack attack
The Grafana data breach was caused by a single GitHub workflow token that slipped through the rotation process following the TanStack npm supply...
14h16
Identity Alone Isn’t Enough: Why Device Security Has to Share the Load
Identity checks alone can’t stop attackers using stolen session tokens and compromised devices. Specops Software outlines why Zero Trust strategies...
13h37
Ukraine says Russia is deploying AI-powered malware on the battlefield
13h20
Texas, Florida top list of states reporting millions of dollars lost through crypto ATMs
13h11
How Can MSSPs Scale Threat Detection Without Burning Out Their Analysts?
Learn how ANY.RUN’s Threat Intelligence Feeds , Sandbox, and Threat Intelligence Lookup help MSSP scale by making threat analysts efficient.
13h07
Cloud sovrano e nazionale: la sicurezza del dato in Italia ed Europa
Il futuro del cloud sovrano sarà sempre piu integrato con sistemi di AI capaci di proteggere dati, infrastrutture e servizi critici in modo adattivo...
13h01
Drupal critical update to fix bug with high exploitation risk
Drupal has announced a core security release scheduled for later today, warning that threat actors might develop exploits within hours of the update...
12h34
Senator presses CISA for answers about alleged GitHub repository leak
12h34
GitHub confirms being hacked by TeamPCP, says customer data unaffected
1779375651