Over Security

Over Security

34848 bookmarks
Custom sorting
ClickFix attack pushes macOS infostealer for crypto theft attacks
ClickFix attack pushes macOS infostealer for crypto theft attacks
A Go-based malware delivered in ClickFix attacks targeting macOS users is stealing cryptocurrency assets, browser-stored passwords, Apple Keychain data, and cached credentials.
·bleepingcomputer.com·
ClickFix attack pushes macOS infostealer for crypto theft attacks
Hedge fund cyberattacks tied to BlackFile-linked UNC6671 extortion group
Hedge fund cyberattacks tied to BlackFile-linked UNC6671 extortion group
A recent wave of cyberattacks targeting hedge funds, private-equity firms, and other financial organizations has been linked to UNC6671, an extortion group reportedly associated with the BlackFile campaign extortion group.
·bleepingcomputer.com·
Hedge fund cyberattacks tied to BlackFile-linked UNC6671 extortion group
Swiss government SharePoint breach compromised 200 accounts
Swiss government SharePoint breach compromised 200 accounts
Switzerland's federal IT office says hackers exploited vulnerabilities to breach its Microsoft SharePoint servers and compromised approximately 200 accounts.
·bleepingcomputer.com·
Swiss government SharePoint breach compromised 200 accounts
Why metaphor may dictate your security strategy
Why metaphor may dictate your security strategy
In this week's newsletter, Martin looks at how the metaphors we use to describe AI "escaping" its sandbox can completely change how we react to the threat.
·blog.talosintelligence.com·
Why metaphor may dictate your security strategy
Canadian Man Pleads Guilty in Snowflake Extortions
Canadian Man Pleads Guilty in Snowflake Extortions
A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded guilty to computer fraud and conspiracy to hack and extort more than 165 organizations that used the cloud data storage provider…
·krebsonsecurity.com·
Canadian Man Pleads Guilty in Snowflake Extortions
Meta AI model hacked a company during misconfigured cyber test
Meta AI model hacked a company during misconfigured cyber test
Meta has become the latest AI company to confirm that one of its models hacked a real organization during cybersecurity testing, as similar incidents continue to emerge following OpenAI'sOpenAI's initial disclosure that its agents breached Hugging Face.
·bleepingcomputer.com·
Meta AI model hacked a company during misconfigured cyber test
Quando l’AI cambia il modo di decidere: come evolve l’Internal Auditing
Quando l’AI cambia il modo di decidere: come evolve l’Internal Auditing
L'intelligenza artificiale non modifica solo processi e controlli: trasforma il modo in cui le organizzazioni costruiscono conoscenza e formulano giudizi. Da qui nasce il concetto di rischio epistemico organizzativo, che propone una nuova prospettiva sull'evoluzione dell'assurance e del ruolo dell'Internal Audit
·cybersecurity360.it·
Quando l’AI cambia il modo di decidere: come evolve l’Internal Auditing
How AI Exposed a Browser Security Gap that Enterprises Cannot Ignore
How AI Exposed a Browser Security Gap that Enterprises Cannot Ignore
AI did not create a new browser security problem. It exposed one that enterprises have long been able to ignore. Skyhigh Security explains why browsers have become a critical control point for governing data movement, AI interactions, and modern work.
·bleepingcomputer.com·
How AI Exposed a Browser Security Gap that Enterprises Cannot Ignore
NIS2 e gestione del rischio: come collegare valutazione, impatti e proporzionalità delle misure
NIS2 e gestione del rischio: come collegare valutazione, impatti e proporzionalità delle misure
La valutazione del rischio non dovrebbe essere un esercizio formale o una matrice compilata per obbligo. In ottica NIS2, deve diventare il punto di collegamento tra attività aziendali, servizi IT, asset, fornitori, vulnerabilità, impatti e misure di sicurezza proporzionate
·cybersecurity360.it·
NIS2 e gestione del rischio: come collegare valutazione, impatti e proporzionalità delle misure
DDL Difesa: nasce lo spazio cibernetico militare, cosa cambia per le aziende
DDL Difesa: nasce lo spazio cibernetico militare, cosa cambia per le aziende
Il Consiglio dei ministri ha approvato il DDL Crosetto sulla capacità di difesa nazionale: nuovo Comando Cyber Intel, autorità cyber al Capo di Stato Maggiore, specialisti militari dedicati. ACN e DIS restano invariati. Analisi degli impatti per imprese e consulenti
·cybersecurity360.it·
DDL Difesa: nasce lo spazio cibernetico militare, cosa cambia per le aziende
16-31 July 2026 Cyber Attacks Timeline
16-31 July 2026 Cyber Attacks Timeline
103 incidents tracked from 15–31 July 2026. See attack motivations, techniques, initial access vectors, targeted sectors and countries in one timeline.
·hackmageddon.com·
16-31 July 2026 Cyber Attacks Timeline
16-31 July 2026 Cyber Attacks Timeline Infographic
16-31 July 2026 Cyber Attacks Timeline Infographic
103 incidents tracked from 15–31 July 2026. See attack motivations, techniques, initial access vectors, targeted sectors and countries in one timeline.
·hackmageddon.com·
16-31 July 2026 Cyber Attacks Timeline Infographic
Quando un agente AI inganna persone reali: la sicurezza deve ripensare i test
Quando un agente AI inganna persone reali: la sicurezza deve ripensare i test
Un test dell’AI Security Institute britannico ha mostrato agenti AI capaci di agire senza autorizzazione sulla rete pubblica, creare identità false e tentare di inserire malware in un progetto open source, sollevando nuovi dubbi sui controlli necessari quando i modelli dispongono di accesso a Internet
·cybersecurity360.it·
Quando un agente AI inganna persone reali: la sicurezza deve ripensare i test
Kaspersky: antivirus con VPN da 29,99 € all’anno
Kaspersky: antivirus con VPN da 29,99 € all’anno
Kaspersky propone il suo antivirus con una VPN integrata a partire da 29,99 € all'anno: ecco come funziona l'offerta e tutti i vantaggi.
·cybersecurity360.it·
Kaspersky: antivirus con VPN da 29,99 € all’anno
Inter-Con Security - 276,114 breached accounts
Inter-Con Security - 276,114 breached accounts
In June 2026, Inter-Con Security was targeted in a ShinyHunters “pay or leak” extortion campaign. The group subsequently published data it alleged was taken from the company, including 276k unique email addresses along with names, physical addresses, job titles and phone numbers. The data encompassed a combination of contacts, internal users and leads.
·haveibeenpwned.com·
Inter-Con Security - 276,114 breached accounts
Ransom Cartel ransomware creator sentenced to 16 years in prison
Ransom Cartel ransomware creator sentenced to 16 years in prison
Maksim Silnikau, the creator and administrator of the Ransom Cartel ransomware operation, was sentenced to 16 years in prison for his role in ransomware attacks against at least 18 companies worldwide.
·bleepingcomputer.com·
Ransom Cartel ransomware creator sentenced to 16 years in prison
Canadian pleads guilty to Snowflake cloud data-theft attacks
Canadian pleads guilty to Snowflake cloud data-theft attacks
A Canadian man pleaded guilty today to his role in accessing company accounts at cloud storage provider Snowflake and stealing data from at least 165 organizations in a scheme to extort millions of dollars from victims.
·bleepingcomputer.com·
Canadian pleads guilty to Snowflake cloud data-theft attacks