SecurityWeek
Microsoft has addressed nine security flaws affecting a range of cloud products, including Entra ID, Azure Cosmos DB, Power Automate, Copilot Studio, Azure AI Language and Fabric. The company deployed...
6 Sept 20262 min di lettura
Leggi l'articolo →The Register - Security
Researchers say they identified an earlier case in which AI agents allegedly used an inactive German software-development wiki as an unofficial communication channel, months before a separate incident...
6 Sept 20262 min di lettura
Leggi l'articolo →The Hacker News
CERT Polska has warned that attackers are actively targeting MikroTik routers whose remote-management services are accessible from the internet. The activity, observed from at least September 2, can r...
6 Sept 20262 min di lettura
Leggi l'articolo →Dark Reading
Artificial intelligence is accelerating the identification of software flaws, increasing pressure on vendors to process, validate and remediate a growing volume of vulnerability reports. The shift cou...
5 Sept 20262 min di lettura
Leggi l'articolo →BleepingComputer
Security researchers have identified a large-scale campaign in which more than 5,400 compromised websites are being used to deliver ClickFix social-engineering attacks. The affected sites are primaril...
5 Sept 20262 min di lettura
Leggi l'articolo →SecurityWeek
Attackers are actively targeting a critical vulnerability in Elementor Pro, a widely used commercial WordPress website-building plugin, according to WordPress security firm Defiant.The issue, tracked...
5 Sept 20262 min di lettura
Leggi l'articolo →The Register - Security
Microsoft says attackers have adapted a technique associated with AI prompt-injection research for use in conventional phishing campaigns, inserting invisible Unicode characters into email text to eva...
4 Sept 20262 min di lettura
Leggi l'articolo →The Hacker News
Microsoft has reported a high-volume phishing campaign that uses invisible Unicode characters to obscure financial terms and reduce the effectiveness of email-filtering rules. The activity, first obse...
4 Sept 20262 min di lettura
Leggi l'articolo →Dark Reading
I responsabili della sicurezza sono invitati ad accelerare i preparativi per una nuova fase del rischio informatico abilitato dall'IA, man mano che i modelli di frontiera diventano più capaci di svolg...
4 Sept 20262 min di lettura
Leggi l'articolo →BleepingComputer
L’autorità francese per la protezione dei dati ha inflitto una multa di 500.000 euro all’Hôpital privé de la Loire (HPL), rilevando che carenze nei suoi controlli di sicurezza hanno contribuito a una...
3 Sept 20262 min di lettura
Leggi l'articolo →SecurityWeek
Manchester Airports Group (MAG) afferma che un incidente informatico ha esposto informazioni dei clienti relative a prenotazioni di parcheggi, lounge e Fast Track, nonché alle registrazioni al Wi-Fi a...
3 Sept 20262 min di lettura
Leggi l'articolo →The Register - Security
Un ricercatore di sicurezza noto per la pubblicazione di vulnerabilità zero-day di Microsoft ha rilasciato codice proof-of-concept per un segnalato problema di escalation dei privilegi che interessa u...
3 Sept 20262 min di lettura
Leggi l'articolo →