Over Security

Over Security

34373 bookmarks
Custom sorting
What 345 Days of Untested Exposure Looks Like at a Bank
What 345 Days of Untested Exposure Looks Like at a Bank
A two-week penetration test can leave roughly 345 days of real-world exposure unvalidated. Sprocket Security explores why continuous testing is becoming critical as attack surfaces constantly change.
·bleepingcomputer.com·
What 345 Days of Untested Exposure Looks Like at a Bank
Aggiornamenti Android giugno 2026: corretta una zero-day già sfruttata in attacchi mirati
Aggiornamenti Android giugno 2026: corretta una zero-day già sfruttata in attacchi mirati
Google rilascia il bollettino di sicurezza Android per il mese di giugno 2026 con patch per 124 vulnerabilità, tra cui la zero-day CVE-2025-48595 già attivamente sfruttata. Ecco l'analisi tecnica e le contromisure per aziende e consulenti
·cybersecurity360.it·
Aggiornamenti Android giugno 2026: corretta una zero-day già sfruttata in attacchi mirati
Police dismantles 9 crime groups in illegal streaming crackdown
Police dismantles 9 crime groups in illegal streaming crackdown
European and international law enforcement agencies have dismantled nine organized crime groups and arrested 29 suspects in a major crackdown on illegal streaming operations.
·bleepingcomputer.com·
Police dismantles 9 crime groups in illegal streaming crackdown
Addio a Carola Frediani, voce critica della tecnologia
Addio a Carola Frediani, voce critica della tecnologia
È stata una delle voci italiane più autorevoli sui temi di cybersicurezza, sorveglianza, cybercrime, privacy, diritti digitali e geopolitica della Rete
·lastampa.it·
Addio a Carola Frediani, voce critica della tecnologia
Basta chiedere al chatbot: come gli hacker hanno usato Meta AI per rubare account Instagram
Basta chiedere al chatbot: come gli hacker hanno usato Meta AI per rubare account Instagram
Numerosi account Instagram sono stati violati, ma non si è trattato di alcun exploit sofisticato: gli hacker hanno trovato un modo per usare il chatbot di assistenza di Meta contro gli utenti della stessa azienda. Un attacco che dimostra che anche l’AI può essere vulnerabile al social engineering. Ecco perché e come difendersi
·cybersecurity360.it·
Basta chiedere al chatbot: come gli hacker hanno usato Meta AI per rubare account Instagram
Addio a Carola Frediani, voce critica della tecnologia
Addio a Carola Frediani, voce critica della tecnologia
È stata una delle voci italiane più autorevoli sui temi di cybersicurezza, sorveglianza, cybercrime, privacy, diritti digitali e geopolitica della Rete
·lastampa.it·
Addio a Carola Frediani, voce critica della tecnologia
Addio Carola
Addio Carola
Oggi, 3 Giugno 2026, è venuta a mancare all'affetto della sua famiglia e dei suoi amici Carola Frediani. Carola è stata anima e linfa di Guerre di Rete e lascia un vuoto incolmabile in tutti coloro che l'hanno conosciuta in questi anni. Ci mancherai 🖤
·guerredirete.it·
Addio Carola
Google adds Android protection against AI deepfake scam calls
Google adds Android protection against AI deepfake scam calls
Google is introducing a new Android security feature that will detect and flag phone calls in which scammers use artificial intelligence to impersonate a user's personal contacts.
·bleepingcomputer.com·
Google adds Android protection against AI deepfake scam calls
Argamal: Malware hidden in hentai games
Argamal: Malware hidden in hentai games
Kaspersky researchers analyze new Argamal RAT distributed via infected hentai games and allowing the attacker to control the target machine.
·securelist.com·
Argamal: Malware hidden in hentai games
Quando l’Intelligenza artificiale sceglie se, quando e come attaccare
Quando l’Intelligenza artificiale sceglie se, quando e come attaccare
L’evoluzione dell’AI ha introdotto nuove e complesse sfide nella cyber security. Scopriamo quali sono e come agiscono gli agenti AI che hanno eseguito autonomamente molte operazioni di spionaggio
·cybersecurity360.it·
Quando l’Intelligenza artificiale sceglie se, quando e come attaccare
Error 524 Decoy: Unmasking a Global Smishing Operation Hiding Behind Error Pages
Error 524 Decoy: Unmasking a Global Smishing Operation Hiding Behind Error Pages
Group-IB researchers expose a large-scale smishing and phishing operation impersonating 260+ brands across 72 countries, using fake Cloudflare error pages, geofencing, and encrypted WebSocket channels for real-time credit card theft.
·group-ib.com·
Error 524 Decoy: Unmasking a Global Smishing Operation Hiding Behind Error Pages
VS Code zero-day lets hackers steal GitHub tokens in one click
VS Code zero-day lets hackers steal GitHub tokens in one click
A security researcher has released exploit code for a Visual Studio Code (VS Code) zero-day vulnerability that allows attackers to steal GitHub authentication tokens by tricking users into clicking a link.
·bleepingcomputer.com·
VS Code zero-day lets hackers steal GitHub tokens in one click
Microsoft's Coreutils project brings Linux commands to Windows
Microsoft's Coreutils project brings Linux commands to Windows
Microsoft announced today at its Build 2026 developer conference the release of Coreutils for Windows, bringing many commonly used Linux command-line utilities to Windows as native applications.
·bleepingcomputer.com·
Microsoft's Coreutils project brings Linux commands to Windows
OpenAI upgrades GPT-5.5, as it plans to retire legacy ChatGPT models
OpenAI upgrades GPT-5.5, as it plans to retire legacy ChatGPT models
OpenAI says it's rolling out a new update that improves the existing GPT-5.5 Instant model, and this move comes ahead of the scheduled retirement of multiple legacy models, including o3.
·bleepingcomputer.com·
OpenAI upgrades GPT-5.5, as it plans to retire legacy ChatGPT models
Critical Kirki flaw exploited to hijack WordPress admin accounts
Critical Kirki flaw exploited to hijack WordPress admin accounts
Hackers are exploiting a critical privilege escalation vulnerability (CVE-2026-8206) in the Kirki plugin for WordPress to take over any user account, including those belonging to administrators.
·bleepingcomputer.com·
Critical Kirki flaw exploited to hijack WordPress admin accounts
AI-built ransomware toolkit automates EDR evasion, AD discovery
AI-built ransomware toolkit automates EDR evasion, AD discovery
A threat actor is using an AI-built ransomware attack toolkit that automates Active Directory discovery and helps evade endpoint detection and response (EDR) solutions.
·bleepingcomputer.com·
AI-built ransomware toolkit automates EDR evasion, AD discovery
Microsoft Exchange Online outage causes email delays, failures
Microsoft Exchange Online outage causes email delays, failures
Microsoft is working to address a widespread service issue affecting the mail flow pipeline for Exchange Online customers across North America and Germany.
·bleepingcomputer.com·
Microsoft Exchange Online outage causes email delays, failures