Over Security

Over Security

Microsoft plans to improve Windows 11 driver quality in 2026
Microsoft plans to improve Windows 11 driver quality in 2026
Microsoft plans to raise the quality bar of Windows 11 drivers, as drivers "sit at the heart of every Windows experience" and connect the OS to the "silicon, components, and peripherals."
·bleepingcomputer.com·
Microsoft plans to improve Windows 11 driver quality in 2026
TP-Link, Photoshop, OpenVPN, Norton VPN vulnerabilities
TP-Link, Photoshop, OpenVPN, Norton VPN vulnerabilities
Cisco Talos’ Vulnerability Discovery & Research team recently disclosed eight vulnerabilities in TP-Link, and one each in Adobe Photoshop, OpenVPN, and Gen Digital's Norton VPN. The vulnerabilities mentioned in this blog post have been patched by their respective vendors, in adherence to Cisco’s third-party vulnerability disclosure policy, except the Norton VPN vulnerability, which was discovered in-use before a patch was available.  For Snort coverage that can detect the exploitation of these
·blog.talosintelligence.com·
TP-Link, Photoshop, OpenVPN, Norton VPN vulnerabilities
JobStealer colpisce macOS e Windows e ruba dati personali con falsi colloqui di lavoro online
JobStealer colpisce macOS e Windows e ruba dati personali con falsi colloqui di lavoro online
È stata identificata una nuova campagna malware che sta prendendo di mira sia utenti macOS sia utenti Windows con il trojan JobStealer nascosto in piattaforme fraudolente che imitano servizi professionali utilizzati per colloqui di lavoro da remoto. L’obiettivo è rubare dati personali. Tutti i dettagli
·cybersecurity360.it·
JobStealer colpisce macOS e Windows e ruba dati personali con falsi colloqui di lavoro online
Ecco come Microsoft ha smantellato il gruppo Fox Tempest
Ecco come Microsoft ha smantellato il gruppo Fox Tempest
Microsoft ha annunciato il takedown di Fox Tempest, gruppo di cyber criminali che offriva un servizio malware signing as a service capace di fare apparire come legittimi dei software malevoli
·cybersecurity360.it·
Ecco come Microsoft ha smantellato il gruppo Fox Tempest
New Shai-Hulud malware wave compromises 600 npm packages
New Shai-Hulud malware wave compromises 600 npm packages
Threat actors earlier today published more than 600 malicious packages to the Node Package Manager (npm) index as part of a new Shai-Hulud supply-chain campaign.
·bleepingcomputer.com·
New Shai-Hulud malware wave compromises 600 npm packages
Critical Microsoft Vulnerabilities Doubled: From Exposure to Escalation
Critical Microsoft Vulnerabilities Doubled: From Exposure to Escalation
Microsoft's total vulnerability count stayed steady in 2025, but critical flaws surged year over year. BeyondTrust breaks down why attackers are increasingly focused on privilege escalation and identity abuse.
·bleepingcomputer.com·
Critical Microsoft Vulnerabilities Doubled: From Exposure to Escalation
7-Eleven confirms data breach claimed by the ShinyHunters gang
7-Eleven confirms data breach claimed by the ShinyHunters gang
Convenience store chain giant 7-Eleven confirmed that its systems were breached in a cyberattack claimed by the ShinyHunters extortion group last month.
·bleepingcomputer.com·
7-Eleven confirms data breach claimed by the ShinyHunters gang
Webinar: The hidden bottlenecks in network incident response
Webinar: The hidden bottlenecks in network incident response
IT teams are increasingly overwhelmed by alerts from disconnected systems, forcing responders to manually coordinate investigations during network incidents. This webinar explores how automation and AI-assisted workflows can help reduce response delays and improve operational coordination.
·bleepingcomputer.com·
Webinar: The hidden bottlenecks in network incident response
Microsoft confirms patching issues in restricted Windows networks
Microsoft confirms patching issues in restricted Windows networks
Microsoft says customers in restricted network environments may encounter Windows Update failures after installing the January 2026 optional non-security preview updates.
·bleepingcomputer.com·
Microsoft confirms patching issues in restricted Windows networks
From PDB strings to MaaS: Tracking a commodity BadIIS ecosystem used by Chinese-speaking threat
From PDB strings to MaaS: Tracking a commodity BadIIS ecosystem used by Chinese-speaking threat
Cisco Talos has uncovered a BadIIS variant — identifiable by its embedded "demo.pdb" strings — that functions as commodity malware, likely sold or shared among multiple Chinese-speaking cyber crime groups operating under a malware-as-a-service (MaaS) model for continuous monetization.
·blog.talosintelligence.com·
From PDB strings to MaaS: Tracking a commodity BadIIS ecosystem used by Chinese-speaking threat
L’Iran minaccia dazi sui cavi sottomarini: a rischio la connettività digitale mondiale
L’Iran minaccia dazi sui cavi sottomarini: a rischio la connettività digitale mondiale
I cavi sottomarini rappresentano la spina dorsale dell'economia digitale. La minaccia dell'Iran a mettere dazi sui cavi sottomarini che attraversano lo Stretto di Hormuz significa mettere in pericolo l'integrità di infrastrutture critiche per la connettività digitale mondiale
·cybersecurity360.it·
L’Iran minaccia dazi sui cavi sottomarini: a rischio la connettività digitale mondiale
Is Fraud Distorting Your iGaming Growth Numbers?
Is Fraud Distorting Your iGaming Growth Numbers?
We sat with Sarah Psaila (Group-IB Europe) to discuss why iGaming operators are measuring the wrong fraud signals and seeing bloated success metrics and what intelligence-driven protection against fraud looks like in 2026.
·group-ib.com·
Is Fraud Distorting Your iGaming Growth Numbers?
FAQ ACN NIS2 sui fornitori rilevanti: cosa cambia con le nuove FRN.8 e FRN.9
FAQ ACN NIS2 sui fornitori rilevanti: cosa cambia con le nuove FRN.8 e FRN.9
Le nuove FAQ ACN sui fornitori rilevanti NIS (FRN.8 e FRN.9) chiariscono i casi di subfornitore e fornitore infragruppo. Ecco come cambiano le regole e cosa devono fare concretamente le aziende per la compliance NIS2 entro il 31 maggio 2026
·cybersecurity360.it·
FAQ ACN NIS2 sui fornitori rilevanti: cosa cambia con le nuove FRN.8 e FRN.9