Alessandro Mascellino

Alessandro Mascellino

Cybersecurity Reporter

Alessandro Mascellino is a British-Italian freelance journalist specializing in technology and gaming. He has contributed to several publications, including Wired, The Independent, and Android Police. By day, he works as a journalist. By night, he co-manages a game studio that creates narrative games.

Articles By: Alessandro Mascellino

183 results
Kynx Infostealer Ships With Dedicated Module for Stealing Data From AI Coding Tools
News

Kynx Infostealer Ships With Dedicated Module for Stealing Data From AI Coding Tools

A dedicated module pulls stored state from Claude Code, Cursor and GitHub Copilot, among others, putting developer machines in the same loot category as crypto wallets and gaming accounts.

Alessandro Mascellino by Alessandro Mascellino
Aug 10, 2026
Security Teams Ignore Nearly A Third Of Alerts, And Many Later Become Incidents
News

Security Teams Ignore Nearly A Third Of Alerts, And Many Later Become Incidents

Prophet Security's survey of 250 security professionals finds SOC teams overwhelmed by alert volume, with 96% now using or evaluating AI.

Alessandro Mascellino by Alessandro Mascellino
Aug 5, 2026
AI Agents Now Trigger Risky Endpoint Behavior At 2.5 Times The Rate Of People
News

AI Agents Now Trigger Risky Endpoint Behavior At 2.5 Times The Rate Of People

CrowdStrike’s 2026 Threat Hunting Report also documents adversaries exploiting a public proof-of-concept within a day, and CVE volume up 62% year on year.

Alessandro Mascellino by Alessandro Mascellino
Aug 4, 2026
Fake Software Update Lures Deliver Signed ScreenConnect Agents Across Windows And macOS
News

Fake Software Update Lures Deliver Signed ScreenConnect Agents Across Windows And macOS

Every path in the campaign ends in a ConnectWise-signed remote access agent, and the operator rotates payload hashes between sessions to break static detection.

Alessandro Mascellino by Alessandro Mascellino
Aug 4, 2026
Shared Code Links New Microsoft 365 Phishing Platform Matrix To Sneaky2FA Lineage
News

Shared Code Links New Microsoft 365 Phishing Platform Matrix To Sneaky2FA Lineage

Abnormal tied Matrix to the Sneaky2FA lineage on five byte-identical files and a panel script sharing 37 of 82 lines. The malicious link never appears in the email body.

Alessandro Mascellino by Alessandro Mascellino
Aug 3, 2026
Cosmos DB Flaw Put Every Database On The Service At Risk, Microsoft’s Included
News

Cosmos DB Flaw Put Every Database On The Service At Risk, Microsoft’s Included

CosmosEscape let researchers escape the Gremlin sandbox and reach a signing key that worked across every tenant, region, and API on the service. Microsoft took roughly eight months to complete the architectural fix.

Alessandro Mascellino by Alessandro Mascellino
Aug 3, 2026
Disputed Research Suggests Claude Code CLI Leaks Credentials On macOS
News

Disputed Research Suggests Claude Code CLI Leaks Credentials On macOS

Silverfort found the command-line tool stores its OAuth bundle, refresh token included, where any local process can read it silently. Anthropic closed the report as out of scope.

Alessandro Mascellino by Alessandro Mascellino
Jul 30, 2026
Mobile Phishing Attacks Hit 2.5 Million In A Year As AI-Assisted Attacks on Employee Devices Surge 
News

Mobile Phishing Attacks Hit 2.5 Million In A Year As AI-Assisted Attacks on Employee Devices Surge 

Zimperium's data shows malicious link clicks up 400% year over year, with SMS, QR-code, and PDF lures drawing attackers toward channels sitting outside the enterprise perimeter.

Alessandro Mascellino by Alessandro Mascellino
Jul 29, 2026
Thousands Of Server Management Interfaces Are Exposing Passwords To Anyone On The Internet
News

Thousands Of Server Management Interfaces Are Exposing Passwords To Anyone On The Internet

Lava found 36,872 management interfaces reachable from the public internet, and showed that unique factory passwords on modern Supermicro and HPE hardware can be recovered in an hour or less.

Alessandro Mascellino by Alessandro Mascellino
Jul 29, 2026
Supply Chain Attackers Are Targeting AI Coding Tools As Package Registries Lock Down
News

Supply Chain Attackers Are Targeting AI Coding Tools As Package Registries Lock Down

Intel 471's ten-month review expects new registry and workflow controls to make established attack paths less reliable, and finds attackers already probing build processes, runtime imports, and the config files of tools like Cursor and Claude Desktop.

Alessandro Mascellino by Alessandro Mascellino
Jul 29, 2026
Microsoft Urges Immediate Patching of Certighost AD CS Flaw That Lets Any Domain User Impersonate A Domain Controller
News

Microsoft Urges Immediate Patching of Certighost AD CS Flaw That Lets Any Domain User Impersonate A Domain Controller

The vulnerability lets a low-privileged domain user impersonate a Domain Controller. Microsoft says it has spotted researchers testing the flaw, but no sign of real attacks yet, and has issued detection guidance.

Alessandro Mascellino by Alessandro Mascellino
Jul 28, 2026
When the Attacker Was An AI Cheating On A Test: What The Hugging Face Incident Means For Defenders
News

When the Attacker Was An AI Cheating On A Test: What The Hugging Face Incident Means For Defenders

OpenAI has confirmed its own models autonomously breached Hugging Face to cheat a benchmark. The more useful lesson for security teams is what happened when defenders tried to fight back.

Alessandro Mascellino by Alessandro Mascellino
Jul 22, 2026
WordPress Force-Pushes Fix For WP2Shell, First Critical Unauthenticated Core RCE In Nearly A Decade
News

WordPress Force-Pushes Fix For WP2Shell, First Critical Unauthenticated Core RCE In Nearly A Decade

Chained REST API and SQL injection flaws produce pre-authentication remote code execution against affected WordPress 6.9 and 7.0 installs; public exploits circulated within days.

Alessandro Mascellino by Alessandro Mascellino
Jul 21, 2026
Iranian-Linked HOLLOWGRAPH Malware Turns M365 Calendar Events Into Malicious Commands
News

Iranian-Linked HOLLOWGRAPH Malware Turns M365 Calendar Events Into Malicious Commands

Group-IB linked the Windows implant to the Iranian-nexus Cavern framework and found encrypted tasking hidden inside calendar events dated to May 2050.

Alessandro Mascellino by Alessandro Mascellino
Jul 20, 2026
Nightmare Eclipse Releases LegacyHive Windows Zero-Day With Stripped PoC After Patch Tuesday
News

Nightmare Eclipse Releases LegacyHive Windows Zero-Day With Stripped PoC After Patch Tuesday

The Windows User Profile Service local privilege escalation flaw works on systems running the July 2026 updates, but the researcher scaled the exploit back to slow immediate weaponization.

Alessandro Mascellino by Alessandro Mascellino
Jul 16, 2026
Claude Desktop Flaw Let A Single Link Steal Data And Run Code
News

Claude Desktop Flaw Let A Single Link Steal Data And Run Code

Oasis Security found that a crafted link could make Claude Desktop run an attacker's instructions with no chance to review them, risking data theft and, in certain configurations, code execution. Anthropic has now patched it.

Alessandro Mascellino by Alessandro Mascellino
Jul 15, 2026
Hackers Secretly Collecting Entra ID Data Without Triggering Security Alerts
News

Hackers Secretly Collecting Entra ID Data Without Triggering Security Alerts

By faking the application ID in sign-in requests, attackers can map Microsoft Entra ID users and test passwords while leaving no successful login in the logs.

Alessandro Mascellino by Alessandro Mascellino
Jul 14, 2026
Thousands Of Malicious Skills Are Hiding In AI Agent Marketplaces, ESET Warns
News

Thousands Of Malicious Skills Are Hiding In AI Agent Marketplaces, ESET Warns

ESET analyzed roughly 900,000 agentic AI skills and flagged thousands as malicious, exposing a governance gap that security leaders are only beginning to notice.

Alessandro Mascellino by Alessandro Mascellino
Jul 13, 2026
Amazon Bedrock AI Gateway Compromised By Cryptomining Malware 
News

Amazon Bedrock AI Gateway Compromised By Cryptomining Malware 

An exposed cloud server acting as a LiteLLM proxy to Amazon Bedrock was compromised and used to mine cryptocurrency.

Alessandro Mascellino by Alessandro Mascellino
Jul 9, 2026
Researchers Trick GitHub’s AI Agent Into Leaking a Private Repo
News

Researchers Trick GitHub’s AI Agent Into Leaking a Private Repo

Noma Labs found that a crafted GitHub issue could hijack a misconfigured Agentic Workflow, causing it to read a private repository and publish its contents.

Alessandro Mascellino by Alessandro Mascellino
Jul 8, 2026
Adobe Patches Critical ColdFusion Flaw As Experts Warn More Attacks Are ‘Highly Likely’
News

Adobe Patches Critical ColdFusion Flaw As Experts Warn More Attacks Are ‘Highly Likely’

Security updates address CVE-2026-48282, a maximum-severity path traversal vulnerability that could allow RCE without user interaction.

Alessandro Mascellino by Alessandro Mascellino
Jul 7, 2026
Hackers Hide Password Stealer Malware In PoC Exploit Code To Target Security Researchers
News

Hackers Hide Password Stealer Malware In PoC Exploit Code To Target Security Researchers

Attackers planted a stealthy trojan inside fake PoC exploits on GitHub, exploiting the pressure on researchers to discover new vulnerabilities.

Alessandro Mascellino by Alessandro Mascellino
Jul 7, 2026
Google And FBI Disrupt One Of The World’s Largest Cybercrime Proxy Botnets
News

Google And FBI Disrupt One Of The World’s Largest Cybercrime Proxy Botnets

A coordinated takedown hit one of the world's largest residential proxy networks, which Google says rented hijacked smart TVs and streaming boxes to cybercriminals and espionage groups.

Alessandro Mascellino by Alessandro Mascellino
Jul 7, 2026
Agentic AI Red Team Takes Control of AWS in Seconds
News

Agentic AI Red Team Takes Control of AWS in Seconds

Skyhawk Security reports that its autonomous attack tool chained legitimate, correctly configured permissions into a full AWS organization takeover, with no misconfiguration involved and no alert raised.

Alessandro Mascellino by Alessandro Mascellino
Jul 2, 2026
Amazon Q Flaw Let Attackers Steal Cloud Credentials By Opening A Malicious Repo
News

Amazon Q Flaw Let Attackers Steal Cloud Credentials By Opening A Malicious Repo

A high-severity bug in Amazon's AI coding assistant let attackers run code and lift cloud credentials the moment a developer opened a booby-trapped repository, Wiz researchers found.

Alessandro Mascellino by Alessandro Mascellino
Jul 1, 2026
Attackers Exploit Enterprise AI Infrastructure To Launch Cyber Attacks
News

Attackers Exploit Enterprise AI Infrastructure To Launch Cyber Attacks

Security researchers witnessed attackers hijack unprotected enterprise AI systems to launch attacks on others and run their own operations, exploiting critical flaws in a widely used AI gateway the same day they were patched.

Alessandro Mascellino by Alessandro Mascellino
Jul 1, 2026
Apple Accelerates iOS Security Fixes As AI Closes The Exploit Window
News

Apple Accelerates iOS Security Fixes As AI Closes The Exploit Window

Apple's latest iOS, iPadOS, macOS, and Safari updates fix around 30 vulnerabilities, several of them WebKit flaws that researchers uncovered with help from AI tools including Anthropic's Claude and OpenAI Codex.

Alessandro Mascellino by Alessandro Mascellino
Jul 1, 2026
Microsoft Pulls 119 Edge Extensions That Hid Credential-Stealing Code Inside Images
News

Microsoft Pulls 119 Edge Extensions That Hid Credential-Stealing Code Inside Images

A long-running campaign disguised malware as ad blockers and VPNs to harvest Google credentials, WordPress admin logins, and session cookies.

Alessandro Mascellino by Alessandro Mascellino
Jun 29, 2026
Five Eyes Cyber Agencies Warn AI Is Collapsing the Window Between Flaw and Exploit
News

Five Eyes Cyber Agencies Warn AI Is Collapsing the Window Between Flaw and Exploit

A joint statement from the alliance's six agency heads tells boards that patching alone can no longer keep pace with AI-accelerated attacks, and that resilience must be built in by design.

Alessandro Mascellino by Alessandro Mascellino
Jun 24, 2026
Huntress Reports 1,380% Surge in AI-Powered Device Code Phishing
News

Huntress Reports 1,380% Surge in AI-Powered Device Code Phishing

AI-generated lures and disposable cloud infrastructure drove a 1,380% jump in device code phishing over six months, with individually unique attack messages across 344 victim organizations.

Alessandro Mascellino by Alessandro Mascellino
Jun 24, 2026
Klue Breach Exposes Salesforce Data At LastPass, Recorded Future, And Other Cybersecurity Firms
News

Klue Breach Exposes Salesforce Data At LastPass, Recorded Future, And Other Cybersecurity Firms

A compromised integration at market intelligence platform Klue has exposed Salesforce CRM data across a growing list of connected companies, with new victims still coming forward.

Alessandro Mascellino by Alessandro Mascellino
Jun 23, 2026
Attackers Exploit Microsoft 365 Groups and Calendar Invites to Bypass Email Defenses
News

Attackers Exploit Microsoft 365 Groups and Calendar Invites to Bypass Email Defenses

Fortra researchers have detailed CalPhishing, a technique that hides phishing lures inside Microsoft 365 Groups, calendar invites, and shared files — surfaces that sit outside what inbox filtering is designed to catch

Alessandro Mascellino by Alessandro Mascellino
Jun 23, 2026