Over Security

Over Security

34363 bookmarks
Custom sorting
Edmunds - 177,860 breached accounts
Edmunds - 177,860 breached accounts
In January 2026, the automotive research and car-shopping platform Edmunds was listed by the ShinyHunters hacking group as having been breached. Data purportedly obtained in the incident was later published publicly and included 178k unique email addresses, usernames, passwords, IP addresses, phone numbers and vehicle-related records.
·haveibeenpwned.com·
Edmunds - 177,860 breached accounts
WP Maps Pro bug exploited to create admin accounts on WordPress sites
WP Maps Pro bug exploited to create admin accounts on WordPress sites
Hackers are targeting WordPress websites running a vulnerable version of the WP Maps Pro plugin, which allows creating rogue administrator accounts without authentication.
·bleepingcomputer.com·
WP Maps Pro bug exploited to create admin accounts on WordPress sites
Malware Analysis: Is It About Tools or Mindset?
Malware Analysis: Is It About Tools or Mindset?
Malware analysis is more than tools. Learn the mindset, goals, techniques, and workflows analysts need to dissect malware effectively.
·secjuice.com·
Malware Analysis: Is It About Tools or Mindset?
Atlas Menu - 63,926 breached accounts
Atlas Menu - 63,926 breached accounts
In May 2026, the GTA V and CS2 cheat service Atlas Menu suffered a data breach. An attacker claimed to have gained access to all Atlas systems and published the service's database to a public GitHub repository. The incident exposed 64k unique email addresses along with usernames, IP addresses, support tickets and passwords stored as bcrypt hashes.
·haveibeenpwned.com·
Atlas Menu - 63,926 breached accounts
Palo Alto GlobalProtect VPN auth bypass flaw now exploited in attacks
Palo Alto GlobalProtect VPN auth bypass flaw now exploited in attacks
Palo Alto Networks is warning that hackers are now exploiting a PAN-OS GlobalProtect authentication bypass flaw, tracked as CVE-2026-0257, in attacks attempting to breach corporate networks.
·bleepingcomputer.com·
Palo Alto GlobalProtect VPN auth bypass flaw now exploited in attacks
New CIFSwitch Linux flaw gives root on multiple distributions
New CIFSwitch Linux flaw gives root on multiple distributions
A newly discovered local privilege escalation vulnerability dubbed 'CIFSwitch' in the Linux kernel could allow attackers to forge CIFS authentication key descriptions, abuse the kernel's key request mechanism, and gain root privileges.
·bleepingcomputer.com·
New CIFSwitch Linux flaw gives root on multiple distributions
ChatGPT share links abused to host fake outage pages to deliver malware
ChatGPT share links abused to host fake outage pages to deliver malware
Threat actors are abusing ChatGPT's content-sharing feature to display fake OpenAI outage pages that direct users to download malware disguised as the ChatGPT desktop application.
·bleepingcomputer.com·
ChatGPT share links abused to host fake outage pages to deliver malware
California AG sues 23andMe over 2023 breach exposing health data
California AG sues 23andMe over 2023 breach exposing health data
California Attorney General Rob Bonta filed a lawsuit against 23andMe, now Chrome Holding Co., over the company's failure to protect sensitive customer genetic and personal information.
·bleepingcomputer.com·
California AG sues 23andMe over 2023 breach exposing health data
From $5 Attacks to Botnet-Powered Platforms: Inside the DDoS-as-a- Service Market
From $5 Attacks to Botnet-Powered Platforms: Inside the DDoS-as-a- Service Market
DDoS attacks are increasingly being sold like subscription services, complete with pricing tiers, support, and reseller programs. Flare explores how the DDoS-as-a-Service market has evolved from scattered tools into polished attack platforms.
·bleepingcomputer.com·
From $5 Attacks to Botnet-Powered Platforms: Inside the DDoS-as-a- Service Market
(S)fiducia nell’algoritmo
(S)fiducia nell’algoritmo
Quanto conta la fiducia nell'era dell'automazione, in cui spesso c'è la delega ad una macchina di quella decisione che non solo dovrebbe essere umana ma che lo rimane anche nel conto delle responsabilità? Andiamo a comprendere quanto questo elemento possa essere dirimente per i tempi a venire
·cybersecurity360.it·
(S)fiducia nell’algoritmo
Il digitale non mente: dove cresce la tensione, il dominio cyber reagisce
Il digitale non mente: dove cresce la tensione, il dominio cyber reagisce
Gli attacchi informatici non sono eventi tecnici isolati, ma segnali di quello che accade nel dominio cyber. Per questo motivo, al giorno d’oggi, leggere e monitorare la realtà digitale significa saper connettere quello che succede online a quello che succede nel mondo fisico, e viceversa. Ecco perché
·cybersecurity360.it·
Il digitale non mente: dove cresce la tensione, il dominio cyber reagisce
VPN Brasile:
VPN Brasile:
Confronto tecnico e tariffe 2026 delle VPN per il Brasile: guida alla scelta aziendale per performance, compliance LGPD e cifratura.
·cybersecurity360.it·
VPN Brasile:
Google Chrome adds session cookie theft protection for all users
Google Chrome adds session cookie theft protection for all users
Google says the Chrome Device Bound Session Credentials (DBSC) security feature is now generally available and is rolling out to all users to prevent account takeovers.
·bleepingcomputer.com·
Google Chrome adds session cookie theft protection for all users
US charges Google security engineer with Polymarket insider trading
US charges Google security engineer with Polymarket insider trading
A Google security engineer was charged with insider trading after winning $1.2 million using confidential company data to place bets on the cryptocurrency-based Polymarket decentralized prediction market.
·bleepingcomputer.com·
US charges Google security engineer with Polymarket insider trading