Andrea Draghetti
@andreadraghetti.bsky.social
aka Drego. Head of Threat Intelligence at D3Lab! Phishing Army, tosint and meioc is my projectj! My passions are #F1 and #Running! My blog, my CV and my projects ⬇️ https://andreadraghetti.it
📱 New Android malware campaign abusing an Italian banking brand. Victims are promised a cash reward, redirected to a Telegram bot, and convinced to install a malicious APK outside official app stores. Analysis & IOCs: www.d3lab.net/fake-banking... #AndroidMalware #Albiriox #CTI
A threat actor is selling an alleged #Vinted database with more than 101M user records. According to the listing, the dataset includes emails, password hashes, phone numbers, shipping addresses. Vinted has not publicly confirmed the incident. #DataLeak #ThreatIntelligence #CTI
Meet Feedler — the smart, private RSS reader for iPhone 🪶 Clean article parsing, on-device AI summaries, inline embeds — works with iCloud, Feedbin, Inoreader, NewsBlur, FreshRSS & more. Now in TestFlight beta, testers welcome! 📲 testflight.apple.com/join/6Hs73zXe #RSS #iOS #TestFlight
🔍 New analysis: an Italian phishing campaign abusing Chrome Native Messaging to escape browser sandbox restrictions. Attack chain: obfuscated JS → DLL sideloading → malicious Chrome extension → Native Messaging Host → PowerShell execution. 📌 www.d3lab.net/breaking-out...
Inizia così #HackInBo con un doveroso ricordo ad una grande amica di tutta la community! Ciao Carola! ❤️ #CarolaFrediani
📧 New Italian invoice-themed phishing campaign delivering NeptuneRAT via UpCrypter. I’ve published a technical analysis of a malware campaign targeting Italian users through fake invoice emails. 📌 www.d3lab.net/italian-invo... #Malware #NeptuneRAT #UpCrypter #CyberSecurity #CTI #InfoSec
Italian Invoice-Themed Phishing Campaign Delivers UpCrypter and NeptuneRAT
Italian invoice-themed phishing campaign targeting users since February 2026. The infection chain abuses HTML attachments, fake download pages, JavaScript, PowerShell, and UpCrypter to deploy a final ...
d3lab.net
Carola Frediani, an Italian infosec journalist and member of Amnesty and Human Rights Watch, has unexpectedly passed away this week www.ansa.it/canale_tecno...
È morta Carola Frediani, pioniera del giornalismo tecnologico italiano - Notizie - Ansa.it
Aveva 51 anni, ha fondato il blog Guerre di Rete (ANSA)
ansa.it
Today we are releasing an analysis of Morpheus, a low-cost, highly sophisticated Android spyware made in Italy. Among its features, the spyware disables the microphone/camera indicator, connects locally to ADB, and eludes WhatsApp fingerprint verification. osservatorionessuno.org/blog/2026/04...
Morpheus: A new Spyware linked to IPS Intelligence
Morpheus: A new Spyware linked to IPS Intelligence
osservatorionessuno.org
Amazon is ending support for older Kindles and Kindle Fires
Amazon is ending support for older Kindles and Kindle Fires
Amazon is finally saying goodbye to older Kindle devices.
buff.ly
✨ Wipr 2 will be 40% off* tomorrow**! ✨ It's been a while since the last sale so why not! Enjoy! * Or more, depending on currency! ** Apr 5th! Whatever that means in your timezone!
🔎 OSINT analysis of BreachForums data leaks (2022–2026) Correlated historical leak data to reconstruct timelines and identify patterns in data releases. 📌 www.d3lab.net/breachforums... #OSINT #ThreatIntelligence #BreachForums #CyberSecurity
BreachForums Data Leaks: Technical Analysis and Timeline Attribution (2022–2026)
Technical analysis of BreachForums data leaks from 2022 to 2026, correlating publication dates with actual dataset timelines using the lastactive field to clarify attribution and infrastructure evolut...
d3lab.net
🚨 Operazione dei Carabinieri contro truffe informatiche legate al clan Mazzarella. 16 misure cautelari per attività di phishing, vishing, caller ID spoofing e siti bancari clone. www.carabinieri.it/in-vostro-ai... #Phishing #Vishing #CyberCrime #CyberSecurity #Italy
Truffe: la criminalità organizzata gestiva frodi informatiche, 16 misure cautelari affiliati al clan Mazzarella
Per delega del Procuratore della Repubblica Distrettuale di Napoli, si comunica che, a partire dalle prime ore della nottata del 16 marzo 2026, i Carabinieri dei Nucleo Investigativo di Napoli hanno d...
carabinieri.it
🚀 Over Security, un aggregatore di notizie di cybersecurity e cyber threat intelligence. Raccoglie articoli da fonti affidabili, e permette di cercare anche notizie più datate per analizzare incidenti e trend nel tempo. 🔎 oversecurity.net #CyberSecurity #CTI
Over Security - Cybersecurity news aggregator
Cybersecurity and cyber threat intelligence news aggregator with selected Italian and international sources.
oversecurity.net
🚨 #ShinyHunters recruiting for vishing ops? A Telegram post linked to the group offers $500–$1000 per scripted call targeting helpdesks, suggesting structured social-engineering/initial access activity. The human layer remains a key attack surface. #Vishing #CTI #ThreatIntel
I’ve just updated #Tosint: an #OSINT tool for analyzing #Telegram bot tokens and chat IDs! 🕵️♂️ It helps investigators and security researchers quickly extract actionable metadata from bots, chats, and admins! GitHub: github.com/drego85/tosint Feedback are welcome!
🚨 Il collettivo NoName ha avviato nuove campagne DDoS contro target italiani in vista delle Olimpiadi Milano-Cortina 2026. Colpiti finora hotel di Cortina e alcune realtà della PA. #DDoS #NoName #CyberSecurity #MilanoCortina2026 #CTI
Perché gli URL hanno path e query così specifici? (e.g. `/es/gay-porno?q=daddy` o `/general-terms-and-conditions` o `/girls?session=gd950e1e02073788173eb03f9b134828b`)
agcom.it
Io non so nemmeno come commentare. La Serie A (quelli di Piracy Shield, ricordate? Quelli disposti a bloccare mezza Internet pur di "fermare la pirateria") ha deciso di... trasmettere su YouTube le partite, gratis, in un certo numero di nazioni: www.reddit.com/r/singapore/...
Per evitare frane e alluvioni in Italia servirebbero molti più soldi! Invece il governo ha ridotto i fondi per la manutenzione del territorio previsti per i prossimi dieci anni, e non di poco. www.ilpost.it/2025/08/03/i...
Per evitare frane e alluvioni in Italia servirebbero molti più soldi - Il Post
Invece il governo ha ridotto i fondi per la manutenzione del territorio previsti per i prossimi dieci anni, e non di poco
ilpost.it
After the meme coin and the Escobar-style smartphone, all we need now is a #Trump branded VPN to complete the collector’s set of absurdity! 😅 #TrumpMobile #TrumpOrganization
Nuova campagna phishing 🇮🇹 contro utenti #Binance! C2 attivo, exfil via Telegram, fake SOW/AML. ✅ 168 casi (2025 YTD) 🔗 Analisi: www.d3lab.net/cresce-il-ph... #ThreatIntel #Phishing #CryptoThreats #Cybersecurity
Cresce il Phishing ai danni di Binance: analisi di una campagna ben congegnata
In forte aumento le campagne di phishing contro gli utenti Binance in Italia. I criminali sfruttano email, SMS, telefonate e persino Telegram per sottrarre dati e asset crypto.
d3lab.net
Heads-up to all threat intel and phishing analysts: OpenPhish no longer publishes their usual TXT feed of malicious URLs! Sharing this because I haven’t seen anyone mention it yet! #cti #openphish #phishing
📕 In offerta oggi a 4,99 € l’eBook di Kevin Mitnick, il leggendario hacker (RIP). 🔒 “L’arte dell’invisibilità” insegna come proteggere la propria privacy nell’era dei big data. 👉 www.amazon.it/gp/product/B... #cybersecurity #privacy #ebook #adv #kevinmitnick
🫵 Ultimi Giorni per prendere il biglietto di HackInBo a prezzo scontato! 🤑 Risparmia 10euro! tickets.hackinbo.it/HiB-C-SE-2025/ #HackInBo
HackInBo® Spring Edition 2025
07 Giugno 2025
tickets.hackinbo.it
📢 Ricevi un SMS dalla banca e ti chiedono di “verificare la carta”? Attento: potrebbe essere SuperCard X. Un’app fraudolenta legge la tua carta via NFC e la usa da remoto. Ecco come funziona 👉 www.d3lab.net/supercard-x-... #TruffeOnline #Android #NFC #Sicurezza #SuperCardX
SuperCard X: la nuova truffa che colpisce gli utenti italiani
Nuova truffa in Italia: app Android come “Verifica Carta” leggono i dati NFC della carta di credito per emularla e usarla da remoto. L’attacco combina smishing, vishing e tecniche avanzate di emulazio...
d3lab.net