Categoria : Security

image_pdfimage_print

CTEM, acronimo di continuous threat exposure management, nasce da una constatazione scomoda per chi difende le organizzazioni: si applicano patch sempre più in fretta, si automatizzano controlli, si chiudono falle a ritmo crescente, eppure l’esposizione reale al rischio non diminuisce in proporzione. La ragione è che la sicurezza viene ancora gestita come una sequenza di ..

Leggi tutto

Lug 21, 2026 Giancarlo Calzetta Approfondimenti, Attacchi, Attacchi, In evidenza, News, RSS 0 Per anni l’idea di un attacco informatico condotto interamente da un agente di Intelligenza Artificiale è rimasta confinata ai laboratori di ricerca e alle presentazioni dei vendor. Oggi non è più così. La piattaforma Hugging Face, punto di riferimento mondiale per lo ..

Leggi tutto

A new report from Sophos found the most common method malicious actors use to enact ransomware is the abuse of compromised credentials. 79% of incidents exploited legitimate user logins and identities in order to gain initial access.  The research also found that malicious actors are leveraging identities in several ways, such as intruding on systems or applications ..

Leggi tutto

SecurityWeek today announced the launch of the Critical Impact Awards, a new recognition program honoring the individuals, organizations, and technologies delivering measurable impact and contributions in industrial cybersecurity. Winners will be announced live at the 2026 ICS Cybersecurity Conference, taking place October 6–8, 2026, at the W Nashville, as the event celebrates its 25-year anniversary. Unlike pay-to-play ..

Leggi tutto

A recently discovered piece of malware abuses the Microsoft 365 calendar for command-and-control (C&C) communication, Group-IB reports. Dubbed HollowGraph, the malware is believed to be part of a larger toolkit and is likely linked to Cavern Manticore, an Iran-nexus threat actor that Check Point detailed earlier this month. The malware’s communication mechanism relies on the ..

Leggi tutto

Korber AG is the holding company of a diverse German technology and manufacturing organization with around 13,000 employees in 100 locations around the world.  “Take Pharma,” comments Andreas Gaetje. “Probably every vaccine you ever received has been through our machines.” Korber services companies that supply consumers. So, despite its size and importance, it is rarely ..

Leggi tutto

Cosmetics giant Estée Lauder has started notifying employees that their information was stolen from its Oracle E-Business Suite (EBS) instance last year. The incident, the company says, occurred in early August 2025, when the infamous Cl0p cybercrime group started exploiting CVE-2025-61882, a zero-day vulnerability in Oracle EBS that enabled unauthenticated remote code execution (RCE), to ..

Leggi tutto