Over Security

Over Security

34030 bookmarks
Custom sorting
Fake Next.js job interview tests backdoor developer's devices
Fake Next.js job interview tests backdoor developer's devices
The Microsoft Defender team has discovered a coordinated campaign targeting software developers through malicious repositories posing as legitimate Next.js projects and technical assessment materials, including recruiting coding tests.
·bleepingcomputer.com·
Fake Next.js job interview tests backdoor developer's devices
Understanding the DarkCloud Infostealer
Understanding the DarkCloud Infostealer
Flashpoint analyzes the DarkCloud infostealer, its Visual Basic 6 evasion tactics, encryption methods, and enterprise credential theft risk.
·flashpoint.io·
Understanding the DarkCloud Infostealer
Inside the story of the US defense contractor who leaked hacking tools to Russia
Inside the story of the US defense contractor who leaked hacking tools to Russia
The former boss of a U.S. hacking tools maker was jailed for selling highly sensitive software exploits to a Russian broker. This is how we first learned of his arrest, reported the story, and some of the unanswered questions we still have.
·techcrunch.com·
Inside the story of the US defense contractor who leaked hacking tools to Russia
What Windows Server 2025 Quietly Did to Your NTLM Relay
What Windows Server 2025 Quietly Did to Your NTLM Relay
TL;DR This post is super short, nevertheless: The classic cross-DC coerce + relay to LDAPS technique, abusing a misconfigured LmCompatibilityLevel (0/1/2) to generate NTLMv1 + ESS and strip the MIC…
·decoder.cloud·
What Windows Server 2025 Quietly Did to Your NTLM Relay
Critical Cisco SD-WAN bug exploited in zero-day attacks since 2023
Critical Cisco SD-WAN bug exploited in zero-day attacks since 2023
Cisco is warning that a critical authentication bypass vulnerability in Cisco Catalyst SD-WAN, tracked as CVE-2026-20127, was actively exploited in zero-day attacks that allowed remote attackers to compromise controllers and add malicious rogue peers to targeted networks.
·bleepingcomputer.com·
Critical Cisco SD-WAN bug exploited in zero-day attacks since 2023
Password manager, tra promesse di inattaccabilità e lacune nella sicurezza
Password manager, tra promesse di inattaccabilità e lacune nella sicurezza
I ricercatori dell’ETH Zurich hanno dimostrato 25 attacchi concreti sui password manager Bitwarden, LastPass e Dashlane. Il modello zero-knowledge, presentato come garanzia assoluta, si rivela strutturalmente più fragile di quanto promesso. Ecco cosa significa per aziende e professionisti e come agire subito
·cybersecurity360.it·
Password manager, tra promesse di inattaccabilità e lacune nella sicurezza
Kali & LLM: macOS with Claude Desktop GUI & Anthropic Sonnet LLM
Kali & LLM: macOS with Claude Desktop GUI & Anthropic Sonnet LLM
This post will focus on an alternative method of using Kali Linux, moving beyond direct terminal command execution. Instead, we will leverage a Large Language Model (LLM) to translate “natural language” descriptions of desired actions into technical commands. Achieving this setup requires the integration of three distinct systems:
·kali.org·
Kali & LLM: macOS with Claude Desktop GUI & Anthropic Sonnet LLM
Chinese cyberspies breached dozens of telecom firms, govt agencies
Chinese cyberspies breached dozens of telecom firms, govt agencies
Google's Threat Intelligence Group (GTIG), Mandiant, and partners disrupted a global espionage campaign attributed to a suspected Chinese threat actor that used SaaS API calls to hide malicious traffic in attacks targeting telecom and government networks.
·bleepingcomputer.com·
Chinese cyberspies breached dozens of telecom firms, govt agencies
Il 44% delle principali aziende italiane è a rischio di email spoofing: come difenderle
Il 44% delle principali aziende italiane è a rischio di email spoofing: come difenderle
Avere attivi SPF e DMARC sulla posta elettronica non basta per bloccare le e-mail di phishing, è necessario configurarli correttamente. Perché la prevenzione da sola non basta: serve un rilevamento attivo delle credenziali compromesse
·cybersecurity360.it·
Il 44% delle principali aziende italiane è a rischio di email spoofing: come difenderle
Active exploitation of Cisco Catalyst SD-WAN by UAT-8616
Active exploitation of Cisco Catalyst SD-WAN by UAT-8616
Cisco Talos is tracking the active exploitation of CVE-2026-20127, a vulnerability in Cisco Catalyst SD-WAN Controller, formerly vSmart, that allows an unauthenticated remote attacker to bypass authentication and obtain administrative privileges.
·blog.talosintelligence.com·
Active exploitation of Cisco Catalyst SD-WAN by UAT-8616
Marquis sues SonicWall over backup breach that led to ransomware attack
Marquis sues SonicWall over backup breach that led to ransomware attack
Marquis Software Solutions has filed a lawsuit against SonicWall, accusing the cybersecurity company of gross negligence and misrepresentation that allegedly led to a ransomware attack disrupting operations at 74 U.S. banks.
·bleepingcomputer.com·
Marquis sues SonicWall over backup breach that led to ransomware attack
The OpenClaw Hype: Analysis of Chatter from Open-Source Deep and Dark Web
The OpenClaw Hype: Analysis of Chatter from Open-Source Deep and Dark Web
OpenClaw has sparked heavy Telegram and dark web chatter, but Flare's data shows more research hype than mass exploitation. Flare explains how its telemetry found real supply-chain risk in the skills marketplace, yet limited signs of large-scale criminal operationalization.
·bleepingcomputer.com·
The OpenClaw Hype: Analysis of Chatter from Open-Source Deep and Dark Web
Zyxel warns of critical RCE flaw affecting over a dozen routers
Zyxel warns of critical RCE flaw affecting over a dozen routers
Taiwan networking provider Zyxel has released security updates to address a critical vulnerability affecting over a dozen router models that can allow unauthenticated attackers to gain remote command execution on unpatched devices.
·bleepingcomputer.com·
Zyxel warns of critical RCE flaw affecting over a dozen routers
How to Quantify the Value of Preemptive Cybersecurity
How to Quantify the Value of Preemptive Cybersecurity
Learn how you can quantify preemptive cybersecurity value. Shift from reactive 'assume breach' to a predictive approach, measuring ROI through cost reduction and averted breach costs.
·bfore.ai·
How to Quantify the Value of Preemptive Cybersecurity