Over Security

Over Security

34419 bookmarks
Custom sorting
Sapsan Terminal: AI-Powered BadUSB Script Generator
Sapsan Terminal: AI-Powered BadUSB Script Generator
Sapsan Terminal is an AI-driven online platform that simplifies payload generation for hardware-based attacks. Instead of manually writing scripts, you can describe your goal in plain language, and the AI will produce a ready-to-use script in the correct syntax.
·mobile-hacker.com·
Sapsan Terminal: AI-Powered BadUSB Script Generator
French prosecutors raid X offices, summon Musk over Grok deepfakes
French prosecutors raid X offices, summon Musk over Grok deepfakes
French prosecutors have raided X's offices in Paris on Tuesday as part of a criminal investigation into the platform's Grok AI tool, widely used to generate sexually explicit images.
·bleepingcomputer.com·
French prosecutors raid X offices, summon Musk over Grok deepfakes
16-31 January 2026 Cyber Attacks Timeline
16-31 January 2026 Cyber Attacks Timeline
Connect on Linkedin Follow me on X Follow me on Bluesky Connect on Mastodon EVENTS EVENTS/DAY 0 EVENTS 0 EVENTS/DAY 0 Motivations January H2 2026 No Data Found Attack Techniques January H2 2025 No …
·hackmageddon.com·
16-31 January 2026 Cyber Attacks Timeline
Supporting Wayland’s XDG activation protocol with Gtk/Glib
Supporting Wayland’s XDG activation protocol with Gtk/Glib
XDG activation protocol is a useful mechanism against focus stealing but it needs to be supported in applications. This describes the considerations required for applications based on Gtk/Glib.
·palant.info·
Supporting Wayland’s XDG activation protocol with Gtk/Glib
Prove forensi negli incidenti cyber: il ruolo del personale nella loro preservazione
Prove forensi negli incidenti cyber: il ruolo del personale nella loro preservazione
Nella prassi ordinaria, la distruzione di prove forensi non avviene quasi mai per dolo, ma spesso per errore, fretta o pressione organizzativa. Ecco perché formazione, disciplina e responsabilità condivisa sono oggi componenti essenziali della sicurezza richiesta dalla NIS 2
·cybersecurity360.it·
Prove forensi negli incidenti cyber: il ruolo del personale nella loro preservazione
The Notepad++ supply chain attack — unnoticed execution chains and new IoCs
The Notepad++ supply chain attack — unnoticed execution chains and new IoCs
Kaspersky GReAT experts discovered previously undocumented infection chains used in the Notepad++ supply chain attacks. The article provides new IoCs related to those incidents which employ DLL sideloading and Cobalt Strike Beacon delivery.
·securelist.com·
The Notepad++ supply chain attack — unnoticed execution chains and new IoCs
New GlassWorm attack targets macOS via compromised OpenVSX extensions
New GlassWorm attack targets macOS via compromised OpenVSX extensions
A new GlassWorm malware attack through compromised OpenVSX extensions focuses on stealing passwords, crypto-wallet data, and developer credentials and configurations from macOS systems.
·bleepingcomputer.com·
New GlassWorm attack targets macOS via compromised OpenVSX extensions
Russian hackers exploit recently patched Microsoft Office bug in attacks
Russian hackers exploit recently patched Microsoft Office bug in attacks
Ukraine's Computer Emergency Response Team (CERT) says that Russian hackers are exploiting CVE-2026-21509, a recently patched vulnerability in multiple versions of Microsoft Office.
·bleepingcomputer.com·
Russian hackers exploit recently patched Microsoft Office bug in attacks
Malicious MoltBot skills used to push password-stealing malware
Malicious MoltBot skills used to push password-stealing malware
More than 230 malicious packages for the personal AI assistant OpenClaw (formerly known as Moltbot and ClawdBot) have been published in less than a week on the tool's official registry and on GitHub.
·bleepingcomputer.com·
Malicious MoltBot skills used to push password-stealing malware
Mozilla announces switch to disable all Firefox AI features
Mozilla announces switch to disable all Firefox AI features
In response to user feedback on AI integration, Mozilla announced today that the next Firefox release will let users disable AI features entirely or manage them individually.
·bleepingcomputer.com·
Mozilla announces switch to disable all Firefox AI features
Microsoft: January update shutdown bug affects more Windows PCs
Microsoft: January update shutdown bug affects more Windows PCs
Microsoft has confirmed that a known issue preventing some Windows 11 devices from shutting down also affects Windows 10 systems with Virtual Secure Mode (VSM) enabled.
·bleepingcomputer.com·
Microsoft: January update shutdown bug affects more Windows PCs
Grave falla in Moltbook: l’incubo cyber degli agenti è realtà
Grave falla in Moltbook: l’incubo cyber degli agenti è realtà
Una vulnerabilità in Moltbook ha esposto email, token e chiavi API legate agli agenti. In un ecosistema agentico questo significa non solo perdita di dati, ma furto di capacità e possibile impersonificazione, con ricadute sui servizi collegati
·cybersecurity360.it·
Grave falla in Moltbook: l’incubo cyber degli agenti è realtà
Auto aziendali e monitoraggio dei lavoratori: il Garante privacy dice stop
Auto aziendali e monitoraggio dei lavoratori: il Garante privacy dice stop
Inflitta una sanzione di 120mila euro a una società del settore agricolo facente parte di un gruppo multinazionale con la capogruppo svizzera, per trattamento illecito di dati personali consistente nell’aver installato sui veicoli aziendali un dispositivo di monitoraggio di cinque dipendenti dotati di tale benefit. Vediamo meglio
·cybersecurity360.it·
Auto aziendali e monitoraggio dei lavoratori: il Garante privacy dice stop
Please Don’t Feed the Scattered Lapsus Shiny Hunters
Please Don’t Feed the Scattered Lapsus Shiny Hunters
A prolific data ransom gang that calls itself Scattered Lapsus Shiny Hunters (SLSH) has a distinctive playbook when it seeks to extort payment from victim firms: Harassing, threatening and even swatting executives and their families, all while notifying journalists and…
·krebsonsecurity.com·
Please Don’t Feed the Scattered Lapsus Shiny Hunters
Abusato il sistema di update eScan per inviare malware multistage
Abusato il sistema di update eScan per inviare malware multistage
Gli attacchi alla supply chain continuano a mietere vittime illustri e, stavolta, si tratta addirittura di un’azienda specializzata in sicurezza informatica. A esser stata abusata, infatti, è stata l’infrastruttura di eScan Antivirus che ha subito una compromissione diretta dei server di distribuzione, trasformando uno strumento di difesa in un efficace veicolo di infezione globale. Secondo …
·securityinfo.it·
Abusato il sistema di update eScan per inviare malware multistage
CTM360 Report Warns of Global Surge in Fake High-Yield Investment Scams
CTM360 Report Warns of Global Surge in Fake High-Yield Investment Scams
Fake high-yield investment platforms are surging worldwide, promising "guaranteed" returns that mask classic Ponzi schemes.CTM360 explains how HYIP scams scale through social media, recycled templates, and referral abuse.
·bleepingcomputer.com·
CTM360 Report Warns of Global Surge in Fake High-Yield Investment Scams
Notepad++ update feature hijacked by Chinese state hackers for months
Notepad++ update feature hijacked by Chinese state hackers for months
Chinese state-sponsored threat actors were likely behind the hijacking of Notepad++ update traffic last year that lasted for almost half a year, the developer states in an official announcement today.
·bleepingcomputer.com·
Notepad++ update feature hijacked by Chinese state hackers for months
Privacy Benchmark Cisco 2026: cosa dice e perché il confronto con le PMI italiane è aperto
Privacy Benchmark Cisco 2026: cosa dice e perché il confronto con le PMI italiane è aperto
Investire in privacy genera ritorni economici concreti e rafforza la fiducia nell’uso dei dati e dell’intelligenza artificiale: sono le evidenze del Cisco Data and Privacy Benchmark Study 2026. Ecco come leggere questi dati nel contesto italiano dominato da PMI che spesso vivono la compliance solo come un costo crescente
·cybersecurity360.it·
Privacy Benchmark Cisco 2026: cosa dice e perché il confronto con le PMI italiane è aperto
Panera Bread breach impacts 5.1 million accounts, not 14 million customers
Panera Bread breach impacts 5.1 million accounts, not 14 million customers
The data breach notification service Have I Been Pwned says that a data breach at the U.S. food chain Panera Bread affected 5.1 million accounts, not 14 million customers as previously reported.
·bleepingcomputer.com·
Panera Bread breach impacts 5.1 million accounts, not 14 million customers