Over Security

Over Security

34848 bookmarks
Custom sorting
RingCentral data breach exposed info of 1.6 million accounts
RingCentral data breach exposed info of 1.6 million accounts
The ShinyHunters extortion group stole personal information from 1.6 million RingCentral accounts after hacking the company in July, according to the data breach notification service Have I Been Pwned.
·bleepingcomputer.com·
RingCentral data breach exposed info of 1.6 million accounts
Un attacco ai trasporti è un problema europeo, ecco i rischi più gravi
Un attacco ai trasporti è un problema europeo, ecco i rischi più gravi
Il Cyber Europe 2026 ha visto la simulazione da parte di ENISA di attacchi informatici su larga scala contro operatori dei trasporti ferroviari e marittimi. Ecco perché i trasporti sono tra i settori più complessi da proteggere e qual è il quadro europeo di gestione coordinata delle crisi informatiche di vasta portata, noto come Cyber Blueprint
·cybersecurity360.it·
Un attacco ai trasporti è un problema europeo, ecco i rischi più gravi
L’evoluzione del SOC agentico
L’evoluzione del SOC agentico
Il futuro della sicurezza informatica tra automazione e controllo umano: ecco come cambia l'efficienza dei sistemi SOC moderni.
·cybersecurity360.it·
L’evoluzione del SOC agentico
Agenti AI militari e guerre diffuse: quando non sappiamo più chi ha deciso
Agenti AI militari e guerre diffuse: quando non sappiamo più chi ha deciso
Con gli agenti militari basati sull’intelligenza artificiale la catena di comando comincia ad assomigliare a una rete. Ecco i rischi legati ad agenti militari manipolati nelle guerre diffuse dove il vantaggio non appartiene solo a chi colpisce meglio, bensì anche a colui che riesce a dissimulare il colpo con un incidente
·cybersecurity360.it·
Agenti AI militari e guerre diffuse: quando non sappiamo più chi ha deciso
Data analyst sent to prison for stealing data, extorting employer
Data analyst sent to prison for stealing data, extorting employer
A former data analyst contractor for Brightly Software has been sentenced to two years in prison for targeting his employer in a $2.5 million extortion scheme.
·bleepingcomputer.com·
Data analyst sent to prison for stealing data, extorting employer
Le due responsabilità del GDPR: la promessa e il vincolo
Le due responsabilità del GDPR: la promessa e il vincolo
La responsabilità del GDPR ha due tempi e, in inglese, due nomi: responsibility, la promessa che guarda in avanti; liability, il vincolo che risponde all’indietro. Ecco la differenza fra responsabilità-promessa che guarda in avanti e la responsabilità-vincolo che risponde all’indietro
·cybersecurity360.it·
Le due responsabilità del GDPR: la promessa e il vincolo
Flock says its new tool will help identify police abuse, but hasn’t explained how it works
Flock says its new tool will help identify police abuse, but hasn’t explained how it works
The surveillance company announced it's making a tool called "Audit Assistance" mandatory for all customers, claiming it's already helped catch abuse. But the company has yet to explain how the tool works in detail, raising questions about its effectiveness.
·techcrunch.com·
Flock says its new tool will help identify police abuse, but hasn’t explained how it works
Curiouser and Curiouser
Curiouser and Curiouser
In this edition of the Threat Source newsletter, William reflects on the “Make Hazel a Hacker” segment in Beers with Talos, and how cybersecurity is a field where questions can lead to multiple correct answers.
·blog.talosintelligence.com·
Curiouser and Curiouser
Microsoft patches LegacyHive Windows zero-day vulnerability
Microsoft patches LegacyHive Windows zero-day vulnerability
Microsoft has released security patches to address a Windows zero-day vulnerability known as "LegacyHive," disclosed after the July 2026 Patch Tuesday.
·bleepingcomputer.com·
Microsoft patches LegacyHive Windows zero-day vulnerability
AI 'watermark removers' flood the web. Almost none can prove they work.
AI 'watermark removers' flood the web. Almost none can prove they work.
Multiple 'watermark removers' have surfaced days after Anthropic began watermarking text generated by Claude, including an open source project with over 4,500 GitHub stars and paid AI detection evasion services. None of the tools' claims about defeating the text watermark can be verified, as Anthropic has not released a detector.
·bleepingcomputer.com·
AI 'watermark removers' flood the web. Almost none can prove they work.
Critical VMware vCenter RCE flaw exploited for reverse SSH access
Critical VMware vCenter RCE flaw exploited for reverse SSH access
A recently patched critical vulnerability (CVE-2026-59310) in VMware vCenter Syslog Server is being exploited in an active campaign to deploy a reverse SSH tool for persistence and remote access.
·bleepingcomputer.com·
Critical VMware vCenter RCE flaw exploited for reverse SSH access
Hack back, Trump rompe il tabù: i privati entrano nella cyber offensiva, ecco i rischi
Hack back, Trump rompe il tabù: i privati entrano nella cyber offensiva, ecco i rischi
Trump firma un memorandum che consente alle aziende statunitensi di sferrare attacchi informatici. La nuova direttiva autorizza le aziende a condurre operazioni sotto la direzione del governo. Il confronto fra lo scenario Usa e quello italiano ed europeo: occorre distinguere fra Difesa e Giustizia
·cybersecurity360.it·
Hack back, Trump rompe il tabù: i privati entrano nella cyber offensiva, ecco i rischi
Trezor discloses data breach affecting nearly 14,000 customers
Trezor discloses data breach affecting nearly 14,000 customers
Hardware wallet manufacturer Trezor disclosed a data breach affecting nearly 14,000 of its customers after ShipMonk, its shipping provider and logistics partner, got hacked.
·bleepingcomputer.com·
Trezor discloses data breach affecting nearly 14,000 customers
Who Vets AI’s Code? The Scale Challenge Facing Open Source Ingestion
Who Vets AI’s Code? The Scale Challenge Facing Open Source Ingestion
AI coding tools can introduce unvetted or hallucinated open source dependencies faster than traditional security reviews can keep pace. ActiveState explains why organizations should govern packages at the point of selection, before they enter the development pipeline.
·bleepingcomputer.com·
Who Vets AI’s Code? The Scale Challenge Facing Open Source Ingestion
White House taps security firms for offensive hack-back operations
White House taps security firms for offensive hack-back operations
A new White House memo signed by U.S. President Donald Trump instructs the National Coordination Center (NCC) to establish a program that would allow private security companies to apply for approval to hack foreign cybercrime organizations.
·bleepingcomputer.com·
White House taps security firms for offensive hack-back operations
Come stai usando l’EDR?
Come stai usando l’EDR?
Introduzione Sul mondo degli EDR bisogna fare un po’ di premesse e visto che gli interlocutori principali di questa serie sono persone che lavorano per lo più all’interno di un team IT,…
·roccosicilia.com·
Come stai usando l’EDR?