The latest from Italy, emerging APT operations, newly announced breaches, and law enforcement activity
Italy: malware, smishing, and ransomware activity On July 9, 2026, security researchers identified a campaign in Italy impersonating the UniCredit brand by promoting a fake banking rewards program designed to...
Read moreAttacks in Italy, cybercrime operations, developments in the APT and hacktivist landscape
Italy: cybercrime and hacktivist activities Several active phishing operations have been detected in Italy that fraudulently exploit the name, logo, and visual identity of the Italian Revenue Agency (Agenzia delle...
Read moreNoName057(16) targets Italy, new cybercrime offensives, the latest from Moscow and Pyongyang
Italy: DDoS offensives targeting Italian organizations Following the trend observed last week, the pro-Russian hacktivist collective NoName057(16) renewed its focus on Italy. The adversary claimed DDoS attacks against the following...
Read moreItaly targeted by multiple adversaries, novel APT operations, emerging threats, and supply chain compromises
Italy: New ransomware claims The pro-Russian hacktivist collective NoName057(16) has resumed targeting Italian websites following the allocation of an additional €10 million in support of Ukraine for the restoration of...
Read moreLatest from Italy, updates in the state-sponsored landscape, ransomware and leaks
Italy: several malicious activities observed In the past week, several offensives have targeted Italian entities. Specifically, Microsoft reported an advanced phishing campaign exploiting the legitimate “device code flow” authentication mechanism...
Read moreAttacks in Italy, several breaches announced, new state-sponsored operations
Italy: spyware, breaches, ransomware and DDoS WhatsApp notified approximately 200 users, primarily in Italy, that they had been targeted through a counterfeit version of its iPhone application containing spyware. Those...
Read moreLatest from Italy, updates in the APT landscape, multiple vulnerabilities exploited ITW
Italy: multiple malicious activities observed Over the past week, several offensive operations targeted Italian entities. Specifically, a new distribution campaign involving a malware strain named UpCrypter was tracked, inducing targets...
Read moreUpdates on React2Shell exploitation, the latest from Beijing and Tehran, new attacks in Italy
React2Shell: EtherRAT and other malware delivered in state-sponsored and cybercrime activity During a recent attack based on the exploitation of the critical vulnerability CVE-2025-55182 (known as React2Shell), security researchers identified...
Read more