OpenClaw 2.0: rethinking security for AI agents
The open source project for autonomous AI agents ships its largest update yet, almost entirely dedicated to closing the security gaps typical of letti...
The Italian blog on cybersecurity
Articles, guides and tutorials on cybersecurity, ethical hacking, penetration testing and web app security.
The open source project for autonomous AI agents ships its largest update yet, almost entirely dedicated to closing the security gaps typical of letti...
IWSS, F-Hack's research across 10,022 .it domains: no security header exceeds 42% adoption, fewer than 1% of CSPs are actually restrictive, only 2.4% ...
An infostealer on a Context.ai employee's PC triggered a chain of compromises that reached Vercel's internal systems. Here's how it happened, what was...
Fail2ban configurato ma gli attacchi continuano? Diagnosi tra IP visto dall'app, log nginx dietro reverse proxy/Cloudflare, e punto effettivo di enfor...
Test
The commands to install nmap on the main Linux distributions, how to verify the installation worked, and how to run your first scan without making com...
A practical comparison of Burp Suite and OWASP ZAP: proxy, Repeater, scanner, automation, extensions, false positives and cost.
How E4del and PINHOLE RAT use the FTP banner as a dead drop to receive commands, with PCAP analysis, Suricata rules and hardening.
Decrypting isn't magic: you need the right key, the correct IV or nonce, and to know which mode was used to encrypt. Here's how it works with AES and ...
What a backdoor is, how it differs from viruses and trojans, how it gets installed on a system, and the signs that help you spot one in time.
AES encrypts fast with a shared key. RSA solves the distribution problem with two keys. SHA-256 doesn't decrypt anything. Three different tools for th...
Follow us on social media so you don't miss the latest articles, news and cybersecurity tutorials.