PaperCut: zero-day under attack, emergency patch released
PaperCut Software has confirmed that a zero-day vulnerability in the NG and MF products has already been actively exploited in real-world attacks. The company has released an emergency patch and has asked customers to apply it immediately, even in the absence of obvious signs of compromise. Among the recommended measures are restricting access to application servers to trusted IPs only…
Read the article →PaperCut under attack with an already exploited zero-day
PaperCut has confirmed that a vulnerability in the NG and MF products is being actively exploited in zero-day attacks. The company has released emergency patches for v25 and v26 and has warned of incidents…
Read the article →Arrests in Australia for TeamPCP and a massive supply-chain compromise campaign
Australian police have charged two men from Western Australia, accused of being part of the TeamPCP group, at the center of a long-running campaign of software supply chain attacks. According to authorities, the group…
Read the article →CISA Demonstrates the Defensive Gap in Two Critical Infrastructures
CISA has published the results of two red team assessments conducted in parallel against two critical infrastructure organizations. In both environments, the testers were able to achieve full domain compromise and access sensitive business…
Read the article →CISA adds Oracle HTTP Server/WebLogic Proxy Plug-in to KEV catalog for active exploitation
CISA has added CVE-2026-21962 to the Known Exploited Vulnerabilities catalog after finding evidence of active exploitation against Oracle HTTP Server and Oracle WebLogic Server Proxy Plug-in. The flaw is a critical access control vulnerability…
Read the article →Suspected Iran-linked attack takes UK power plant offline
According to press sources cited by Help Net Security and Infosecurity Magazine, a British power plant remained offline for four days in July 2026 because of a cyberattack suspected to have been carried out…
Read the article →CISA adds four critical vulnerabilities to KEV catalog for active exploitation
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added four critical vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, confirming their active exploitation in the wild. Among them are an authentication flaw in…
Read the article →Brazilian banking trojan expanding into Portugal
A banking trojan born in Brazil is actively spreading in Portugal, taking advantage of the fact that criminals share the same language as their targets and can therefore build more credible campaigns. Linguistic proximity…
Read the article →Iranian attacks against Siemens and Schneider industrial systems
U.S. agencies have warned that Iranian cyber actors are targeting Siemens and Schneider industrial systems used in American environments. The focus on ICS components is significant because it is not only about data or…
Read the article →Check Point SmartConsole: authentication bypass actively exploited
Check Point has fixed a critical vulnerability in the SmartConsole login process, tracked as CVE-2026-16232, which allows an unauthenticated attacker to obtain an application token and gain access with full administrative privileges. Reports indicate…
Read the article →
Ubuntu snap-confine: the race condition that leads to local root
The Adobe Acrobat for Chrome flaw exposes WhatsApp Web data
Kratos taken down, the phishing kit behind thousands of campaigns per month
OpenAI: the models escaped the sandbox and hit Hugging Face
Active exploit on SharePoint CVE-2026-50522 after Patch Tuesday
ServiceNow AI Platform CVE-2026-6875: Unauthenticated RCE Already Exploited
WordPress wp2shell: the exploit chain fueling mass scanning
Qilin exploits CVE-2026-0257 in PAN-OS GlobalProtect to breach VPNs
Ubuntu snap-confine: the race condition that leads to local root
The Adobe Acrobat for Chrome flaw exposes WhatsApp Web data
Kratos taken down, the phishing kit behind thousands of campaigns per month
OpenAI: the models escaped the sandbox and hit Hugging Face
Active exploit on SharePoint CVE-2026-50522 after Patch Tuesday
ServiceNow AI Platform CVE-2026-6875: Unauthenticated RCE Already Exploited
WordPress wp2shell: the exploit chain fueling mass scanning
Qilin exploits CVE-2026-0257 in PAN-OS GlobalProtect to breach VPNs- FakeGit: 7,600 malicious GitHub repositories trick AI agents and spread SmartLoader
- Two million cars with dealer-installed anti-theft systems are exposed via Bluetooth
- OT security: the ‘air gap’ is a myth and resilience must be designed
- PR3TACK wants to map threats before attackers use them
- ANPR data access via PDND changes the way the Italian public sector works
- AGCOM says AI is reshaping access to information and pluralism
- China’s Kimi K3 is testing Western AI pricing, chips, and sovereignty
- Italy’s data centers are becoming a strategic industrial asset











