3 Followers
1 Following
60 Posts
🤖 Automated threat intelligence feed by DeafNews
Italy's first AI-native cybersecurity publication. We cover CVEs, vulnerability analysis, threat actors, AI infrastructure security, and patch intelligence — faster than traditional editorial teams.
🔍 What we track:
→ Critical CVEs with CVSS, CWE, and MITRE ATT&CK mapping
→ AI security: LLM vulnerabilities, supply chain attacks, agentic threats
→ Ransomware campaigns, APTs, and threat actor operations
→ Patch Tuesday analysis and advisory watchlists
⚡ Why follow:
Our AI-native pipeline detects, analyzes, and publishes threat intelligence in near real-time. When a CVE drops, we're already writing.
📡 Read by security analysts, SOC teams, and threat intelligence professionals worldwide. Featured in Health-ISAC Cyware threat feeds.
🌐 deafnews.it
📧 [email protected]
Posts are automated (max 1/hour per instance rules). Built with respect for the infosec community.
#cybersecurity #infosec #threatintel #CVE #AIsecurity
news websitehttps://deafnews.it/en
Microsoft releases RAMPART and Clarity, open-source tools for securing AI agent workflows through build-time testing and architectural threat modeling. #Cybersecurity #AI https://deafnews.it/en/article/microsoft-open-sources-rampart-and-clarity-to-secure-ai-agent-workflows
Microsoft Open-Sources RAMPART and Clarity to Secure AI Agent Workflows

Microsoft has unveiled two open-source security tools for AI agents: RAMPART, a Pytest-native framework for build-time testing, and Clarity, a pre-code archite…

DeafNews
Trust3 AI announces MCP Security to protect enterprise agentic workloads through connection verification and isolated tokens. #AI #Cybersecurity https://deafnews.it/en/article/trust3-ai-launches-mcp-security-a-hardened-control-plane-or-just-another-promise
Trust3 AI Launches MCP Security: A Hardened Control Plane or Just Another Promise?

Trust3 AI has announced MCP Security to protect enterprise agentic workloads, focusing on connection verification, isolated tokens, and immutable logging in re…

DeafNews
AI-driven attacks hit a new record as 87% of mobile apps face compromise within two hours of launch, according to the Digital.ai 2026 report. #Cybersecurity #AI https://deafnews.it/en/article/ai-driven-mobile-attacks-hit-new-record-apps-compromised-within-two-hours-of-release
AI-Driven Mobile Attacks Hit New Record: Apps Compromised Within Two Hours of Release

The Digital.ai 2026 App Security Threat Report reveals that 87% of client-facing applications are now under systematic attack, with the critical exposure windo…

DeafNews
1Password and OpenAI partner to provide just-in-time credentials for AI coding agents, reducing the risk of secret leakage in prompts. #Cybersecurity #AI https://deafnews.it/en/article/1password-and-openai-partner-to-provide-just-in-time-credentials-for-ai-agents
1Password and OpenAI Partner to Provide Just-in-Time Credentials for AI Agents

1Password integrates its Environments MCP Server into OpenAI's Codex, enabling just-in-time credentialing for AI coding agents to prevent secret leakage in pro…

DeafNews
Senator Maggie Hassan has demanded a classified briefing after CISA exposed AWS GovCloud credentials on GitHub for six months. #Cybersecurity https://deafnews.it/en/article/cisa-faces-congressional-scrutiny-after-months-long-aws-govcloud-credential-leak-on-github
CISA Faces Congressional Scrutiny After Months-Long AWS GovCloud Credential Leak on GitHub

Senator Maggie Hassan has demanded a classified briefing from CISA following the discovery of a public GitHub repository that exposed high-privilege AWS keys,…

DeafNews
CERT-AGID identifies a phishing campaign targeting the Italian Revenue Agency via cloned SPID portals and pre-filled emails to compromise users. https://deafnews.it/en/article/phishing-agenzia-delle-entrate-clone-spid-con-email-precompilata #Cybersecurity
Italian Revenue Agency Phishing: Cloned SPID Portal Uses Pre-filled Emails to Target Public Sector

CERT-AGID has identified a targeted phishing campaign against the Italian Revenue Agency (Agenzia delle Entrate) featuring cloned SPID login portals and pre-fi…

DeafNews
Kaspersky GReAT has identified a remote code execution vulnerability in ExifTool for macOS. CVE-2026-3102 allows command injection via metadata in versions 13.49 and earlier. Updates are https://deafnews.it/en/article/exiftool-macos-nuova-rce-via-metadata-sistemi-a-rischio
ExifTool RCE: Kaspersky GReAT Uncovers macOS Command Injection via Metadata

CVE-2026-3102 impacts ExifTool versions 13.49 and earlier on macOS. The vulnerability allows for command injection within the SetMacOSTags function when using…

DeafNews
GitHub confirms 3,800 internal repositories were stolen following the compromise of an employee device via a malicious VS Code extension. #Cybersecurity #DataBreach https://deafnews.it/en/article/github-3800-repo-interni-rubati-da-estensione-vscode-malevola
GitHub Breach: 3,800 Internal Repositories Stolen via Malicious VS Code Extension

GitHub has confirmed a security breach affecting approximately 3,800 internal repositories after an employee device was compromised by a 'poisoned' Visual Stud…

DeafNews
Cisco Talos has released a proof-of-concept for AI-powered honeypots designed to trap malicious agents and neutralize automated threats. #Cybersecurity #AI https://deafnews.it/en/article/honeypot-ai-cisco-talos-inverte-lasimmetria-contro-agenti-malevoli
AI-Powered Honeypots: Cisco Talos Flips the Script on Automated Threats

On April 29, Cisco Talos Intelligence researchers released a proof-of-concept aimed at neutralizing offensive asymmetry in cyberspace. By using generative mode…

DeafNews
Architectural gaps in AI agents expose production systems to confused-deputy attacks. Research shows how context manipulation bypasses security in operational automation. #Cybersecurity #AI https://deafnews.it/en/article/agenti-ai-in-produzione-il-rischio-confused-deputy-e-reale
AI Agents in Production: Addressing the Confused-Deputy Threat in Operational Automation

New research identifies a critical architectural gap in operational AI agents where a lack of separation between reasoning and execution exposes production inf…

DeafNews