Over Security

Over Security

Kaspersky: antivirus con VPN da 29,99 € all’anno
Kaspersky: antivirus con VPN da 29,99 € all’anno
Kaspersky propone il suo antivirus con una VPN integrata a partire da 29,99 € all'anno: ecco come funziona l'offerta e tutti i vantaggi.
·cybersecurity360.it·
Kaspersky: antivirus con VPN da 29,99 € all’anno
Inter-Con Security - 276,114 breached accounts
Inter-Con Security - 276,114 breached accounts
In June 2026, Inter-Con Security was targeted in a ShinyHunters “pay or leak” extortion campaign. The group subsequently published data it alleged was taken from the company, including 276k unique email addresses along with names, physical addresses, job titles and phone numbers. The data encompassed a combination of contacts, internal users and leads.
·haveibeenpwned.com·
Inter-Con Security - 276,114 breached accounts
Ransom Cartel ransomware creator sentenced to 16 years in prison
Ransom Cartel ransomware creator sentenced to 16 years in prison
Maksim Silnikau, the creator and administrator of the Ransom Cartel ransomware operation, was sentenced to 16 years in prison for his role in ransomware attacks against at least 18 companies worldwide.
·bleepingcomputer.com·
Ransom Cartel ransomware creator sentenced to 16 years in prison
Canadian pleads guilty to Snowflake cloud data-theft attacks
Canadian pleads guilty to Snowflake cloud data-theft attacks
A Canadian man pleaded guilty today to his role in accessing company accounts at cloud storage provider Snowflake and stealing data from at least 165 organizations in a scheme to extort millions of dollars from victims.
·bleepingcomputer.com·
Canadian pleads guilty to Snowflake cloud data-theft attacks
Hackers run khunt post-exploitation toolkit from Oracle database
Hackers run khunt post-exploitation toolkit from Oracle database
Hackers exploited a SQL injection vulnerability to install a post-exploitation toolkit directly inside an Oracle database that was used to breach a corporate network.
·bleepingcomputer.com·
Hackers run khunt post-exploitation toolkit from Oracle database
COLDCARD security audit phishing attack installs remote access tool
COLDCARD security audit phishing attack installs remote access tool
A phishing campaign is exploiting fears surrounding the recently disclosed COLDCARD wallet vulnerability and suspected $88.6 million Bitcoin theft to trick users into installing ScreenConnect remote access software.
·bleepingcomputer.com·
COLDCARD security audit phishing attack installs remote access tool
PSA: Apple’s Private Relay can leak your real IP address
PSA: Apple’s Private Relay can leak your real IP address
A bug in how Apple implements its Private Relay feature, which in theory masks users’ IP addresses from the sites they visit, can reveal users’ real IP addresses.
·techcrunch.com·
PSA: Apple’s Private Relay can leak your real IP address
CISA warns of hackers exploiting Langflow, N-central, Apache Tomcat flaws
CISA warns of hackers exploiting Langflow, N-central, Apache Tomcat flaws
The U.S. Cybersecurity and Infrastructure Security Agency is giving federal agencies three days to mitigate vulnerabilities in IBM Langflow, N-central, and Apache Tomcat, all actively exploited.
·bleepingcomputer.com·
CISA warns of hackers exploiting Langflow, N-central, Apache Tomcat flaws
Security Wals: il podcast
Security Wals: il podcast
Lo ammetto, è stato un anno difficile. Uno di quelli dove le volte che hai ingioiato il rospo, sono in pari con quelle in cui ti sei rialzato.
·codiceinsicuro.it·
Security Wals: il podcast
Google Blogger locks hundreds of blogs in malware false positive
Google Blogger locks hundreds of blogs in malware false positive
Google has locked hundreds of Blogger websites after a false positive claimed they violated its "Malware and Similar Malicious Content" policy, with some sites deleted from the platform.
·bleepingcomputer.com·
Google Blogger locks hundreds of blogs in malware false positive
Supply chain software: Amazon conferma una campagna d’attacco che l’Italia ha già intercettato
Supply chain software: Amazon conferma una campagna d’attacco che l’Italia ha già intercettato
In due episodi Amazon ha analizzato gli attaccanti far leva su tecniche di ingegneria sociale per conquistare la fiducia degli amministratori dei pacchetti e ottenere così i privilegi. Ecco come gruppi legati alla Corea del Nord hanno sferrato gli attacchi ai pacchetti NPM e come difendersi da una minaccia strutturale sull'ecosistema di dipendenze
·cybersecurity360.it·
Supply chain software: Amazon conferma una campagna d’attacco che l’Italia ha già intercettato
How AI-powered phishing killed blocklists for good
How AI-powered phishing killed blocklists for good
AI is helping attackers create disposable phishing infrastructure and rapidly evolving toolkits that blocklists cannot track fast enough. Push Security explains why browser-level, technique-based detection offers a more durable defense than relying on domains, signatures, and other known-bad indicators.
·bleepingcomputer.com·
How AI-powered phishing killed blocklists for good