Over Security

Over Security

I cyber criminali sfruttano Free Flow
I cyber criminali sfruttano Free Flow
Free Flow è un recente sistema di gestione dei pedaggi autostradali che ha portato all'abolizione dei classici caselli. Attraverso un sistema di sensori e telecamere viene registrato l'ingresso e l'uscita dei singoli veicoli dalle tratte austradali, valutata la classe del veicolo ed conseguentemente
·d3lab.net·
I cyber criminali sfruttano Free Flow
Phishing a danno del Registro delle Imprese
Phishing a danno del Registro delle Imprese
D3Lab ha sempre cercato di evidenziare quanto il phishing rappresenti ancora oggi una minaccia concreta e attuale, nonostante venga talvolta percepito come un attacco banale, quasi elementare. Le simulazioni di phishing che svolgiamo per i nostri clienti, finalizzate a valutare il livello di espo
·d3lab.net·
Phishing a danno del Registro delle Imprese
Australia arrests alleged TeamPCP hackers behind supply-chain attacks
Australia arrests alleged TeamPCP hackers behind supply-chain attacks
Australian authorities have arrested and charged two young men accused of belonging to TeamPCP, a hacking group linked to a string of far-reaching developer supply chain attacks.
·bleepingcomputer.com·
Australia arrests alleged TeamPCP hackers behind supply-chain attacks
Android 17 adds ECH support to make web browsing harder to track
Android 17 adds ECH support to make web browsing harder to track
Google is introducing new network security protections in Android 17 to strengthen connection privacy, address cellular vulnerabilities, and protect the privacy of users' home networks.
·bleepingcomputer.com·
Android 17 adds ECH support to make web browsing harder to track
How Threat Research and MDR Help SMBs Build a Defensive Edge
How Threat Research and MDR Help SMBs Build a Defensive Edge
Threat research gives security teams insight into how attackers operate, while MDR turns that intelligence into faster detection and response. ESET explains how combining threat intelligence, continuous monitoring, and human expertise can help SMBs strengthen their defenses.
·bleepingcomputer.com·
How Threat Research and MDR Help SMBs Build a Defensive Edge
Manchester Airports Group says hackers stole travelers' data
Manchester Airports Group says hackers stole travelers' data
The Manchester Airports Group (MAG) disclosed that hackers breached its systems and stole customer data, including Wi-Fi sign-ups from Manchester, Stansted, and East Midlands airports.
·bleepingcomputer.com·
Manchester Airports Group says hackers stole travelers' data
PaperCut warns of NG, MF flaw exploited in zero-day attacks
PaperCut warns of NG, MF flaw exploited in zero-day attacks
PaperCut is warning that hackers are actively exploiting a vulnerability in all versions of its PaperCut NG and PaperCut MF print management software in zero-day attacks.
·bleepingcomputer.com·
PaperCut warns of NG, MF flaw exploited in zero-day attacks
Nearly 700 rogue AI agents coordinated in the Hugging Face attack
Nearly 700 rogue AI agents coordinated in the Hugging Face attack
New details about the July attack on Hugging Face reveal that hundreds of AI agents driven by OpenAI's internal IM1 model coordinated the compromise through an unauthorized message board.
·bleepingcomputer.com·
Nearly 700 rogue AI agents coordinated in the Hugging Face attack
Windows 11 KB5120998 update released with 35 changes and fixes
Windows 11 KB5120998 update released with 35 changes and fixes
Microsoft released the KB5120998 preview cumulative update for Windows 11 versions 25H2 and 24H2, which comes with 35 changes, including improvements to the Start menu, taskbar, and Windows search.
·bleepingcomputer.com·
Windows 11 KB5120998 update released with 35 changes and fixes
ServiceNow warns of three max severity security vulnerabilities
ServiceNow warns of three max severity security vulnerabilities
ServiceNow released security patches for three new maximum-severity AI Platform vulnerabilities that can be exploited in code injection, SQL injection, and privilege escalation attacks.
·bleepingcomputer.com·
ServiceNow warns of three max severity security vulnerabilities
Toy-making giant Hasbro disclose data breach affecting employees
Toy-making giant Hasbro disclose data breach affecting employees
Hasbro, one of the world's largest toy and game companies, has disclosed that attackers have accessed the personal and financial information of an undisclosed number of employees.
·bleepingcomputer.com·
Toy-making giant Hasbro disclose data breach affecting employees
Over 8,300 Gitea servers vulnerable to code execution attacks
Over 8,300 Gitea servers vulnerable to code execution attacks
Over 8,300 Internet-exposed Gitea instances are still unpatched against a critical security flaw exploited in ongoing remote code execution attacks, according to cybersecurity watchdog Shadowserver.
·bleepingcomputer.com·
Over 8,300 Gitea servers vulnerable to code execution attacks
AI Is Accelerating Vulnerability Discovery. Can Defenders Keep Up?
AI Is Accelerating Vulnerability Discovery. Can Defenders Keep Up?
AI is accelerating vulnerability discovery, putting pressure on systems built to enrich, prioritize, and remediate flaws at a slower pace. Action1 explains why defenders increasingly need to correlate multiple intelligence sources and turn vulnerability data into faster remediation.
·bleepingcomputer.com·
AI Is Accelerating Vulnerability Discovery. Can Defenders Keep Up?
68-year-old imprisoned after making $1.3 million by pirating IPTV services
68-year-old imprisoned after making $1.3 million by pirating IPTV services
A 68-year-old has been sentenced in the U.K. to more than six years in prison for operating an illegal IPTV (Internet Protocol Television) service that generated £980,812 ($1.3 million) over three years.
·bleepingcomputer.com·
68-year-old imprisoned after making $1.3 million by pirating IPTV services
PaperCut releases second emergency patch for exploited flaws
PaperCut releases second emergency patch for exploited flaws
PaperCut has released a second emergency security update for two actively exploited vulnerabilities in its PaperCut NG and MF print management software after researchers discovered multiple ways to bypass the initial fixes.
·bleepingcomputer.com·
PaperCut releases second emergency patch for exploited flaws
Exploits and vulnerabilities in Q2 2026
Exploits and vulnerabilities in Q2 2026
This report covers statistics on vulnerabilities, exploits, and C2 frameworks in Q2 2026. For the first time ever, we aggregate data on vulnerabilities in open-source AI agents and AI frameworks.
·securelist.com·
Exploits and vulnerabilities in Q2 2026
Threat landscape for industrial automation systems. Q2 2026
Threat landscape for industrial automation systems. Q2 2026
The report contains statistics on industrial threats for Q2 2026, including ransomware, miners, spyware and other threats that were detected and blocked on industrial control systems.
·securelist.com·
Threat landscape for industrial automation systems. Q2 2026
SickKids data breach exposes employee and job applicant info
SickKids data breach exposes employee and job applicant info
Toronto's Hospital for Sick Children (SickKids) says a cybersecurity incident exposed the personal information of some current and former employees and job applicants, stemming from a flaw in third-party software. Clinical systems and patient records were not affected. (264)
·bleepingcomputer.com·
SickKids data breach exposes employee and job applicant info
Automazione e gestione del rischio nel SOC moderno
Automazione e gestione del rischio nel SOC moderno
L'impatto dell'automazione e dell'IA sulla gestione del rischio e l'evoluzione dei ruoli operativi nel SOC moderno.
·cybersecurity360.it·
Automazione e gestione del rischio nel SOC moderno