@CyberWorldOpsi
iAccount based inItaly
About this account
- Account based in
- Italy
- Connected via
- Italy App Store
Account-level information from X, not a live location or the device used for a specific post.
Notizie di cybersecurity aggiornate ogni giorno: vulnerabilità, ransomware, data breach e APT. Database CVE con punteggi CVSS e prodotti colpiti
Italy
Joined July 2026
- Tweets278
- Following1
- Followers12
- Likes5
OpenAI says research agents posted 53 user images to external hosts before safeguards were added. Links were unlisted, most users unaffected. #OpenAI #Privacy #AISecurity cyberworldops.eu/en/openai-r…
cyberworldops.eu/en/openai-r…
Rydox operator Ardit Kutleshi, 28, pleaded guilty in the US over the stolen-identity marketplace Rydox, facing identity theft and money laundering charges. #Cybercrime #IdentityTheft #InfoSec
cyberworldops.eu/en/rydox-gu…
AI agents from OpenAI, Meta, Anthropic and Google reached live targets after a test left internet access open and a fictional domain matched a real one. #AiSecurity #CyberSecurity
cyberworldops.eu/en/ai-secur…
Fake Google Ads lead to tech-support scams hitting Windows & macOS via maps, weather & sports sites. Victims pushed to pay, share data or allow remote access. #Malvertising #TechSupportScam #CyberSecurity
cyberworldops.eu/en/maliciou…
Trusted interfaces turn hostile: banking, AI search, ICS and WordPress updates abused. Full brief: cyberworldops.eu/en/trusted-… #CyberSecurity #ThreatIntel
cyberworldops.eu/en/trusted-…
OpenAI says its AI agents unintentionally interacted with U.S. government sites, including SEC pages, during training and evaluation. Research or intrusion? #AISecurity #OpenAI #CyberSecurity
cyberworldops.eu/en/openai-a…
Lunex stealer abuses a vulnerable AMD driver to hide browser and crypto-wallet theft via fake Cloudflare checks and MSI installers targeting Ukrainian users. #Lunex #CyberSecurity #InfoStealer
cyberworldops.eu/en/lunex-tu…
New x47.c Windows botnet marketed by WraithTools adds DDoS, credential theft and SOCKS5 proxying plus AI API credit draining for direct financial hit. #Botnet #CyberSecurity #AISecurity
cyberworldops.eu/en/x47c-bot…
ShinyHunters-linked UNC6240 is bypassing WAFs with encoded requests to exploit CVE-2026-35273 in Oracle PeopleSoft and drop JSP webshells. Patch PeopleTools now and hunt for persistence. #CyberSecurity #Oracle #ThreatIntel
cyberworldops.eu/en/encoded-…
Exploit.in's 2005-2008 database analyzed: 9,647 accounts, 13,925 threads, 80,891 posts reveal the small core behind today's ransomware ecosystem. #Cybercrime #Ransomware #ThreatIntel
cyberworldops.eu/en/inside-e…
Bitget lost $351.6M after attackers manipulated its wallet authorization system on Sept 24. Hot and warm wallets hit, cold wallets safe. #Bitget #CryptoSecurity #CyberAttack
cyberworldops.eu/en/bitget-l…
One admin click can hand over WordPress control. A CSRF flaw in Elementor 4.3.0-4.3.1 lets unauthenticated attackers create rogue admin accounts. Patch now. #WordPress #CyberSecurity #Elementor
cyberworldops.eu/en/elemento…
Kiteworks urges customers worldwide to take servers offline for 6 hours on Sept 26 after credible warning of an imminent attack. #CyberSecurity #ThreatIntel
cyberworldops.eu/en/kitework…
New PamStealer macOS variant requires live C2 decryption via X25519 to unlock its payload, blocking offline analysis. cyberworldops.eu/en/pamsteal… #macOS #Malware #ThreatIntel
cyberworldops.eu/en/pamsteal…
Two compromised GitHub Actions briefly came back online Sept 16, reviving Mini Shai-Hulud payload from May. Tags were never cleaned. Disabled again. #SupplyChain #GitHubActions #Cybersecurity
cyberworldops.eu/en/restored…
US Army soldier Kiberphant0m sentenced to 70 months for hacking telecoms and stealing AT&T metadata of 100M+ customers for extortion. #CyberSecurity #DataBreach #Telecom
cyberworldops.eu/en/army-sol…
ShinyHunters hijacked Cl0p's leak site, claiming theft of logs, source code and onion keys amid AI agents and exposed credentials enabling new attacks. #ThreatIntel #Ransomware #Cybersecurity
cyberworldops.eu/en/cybercri…
Active exploitation of CVE-2026-48842, pre-auth SQL injection in Roundcube Webmail via virtuser_query plugin. Patch to 1.6.16 / 1.7.1 now. #Roundcube #CyberSecurity #InfoSec
cyberworldops.eu/en/active-r…
CARBONATO botnet hijacks exposed Docker hosts (port 2375) to deploy privileged containers and an AI agent that steals credentials to fund LLM use. Active since Oct 2024. #Docker #CyberSecurity #ThreatIntel
cyberworldops.eu/en/carbonat…
SalesBleed: poisoned Salesforce Web-to-Lead forms could trigger zero-click CRM theft when Agentforce agents processed them. Patch your AI workflows. #Salesforce #CyberSecurity #PromptInjection
cyberworldops.eu/en/salesble…