Over Security

Over Security

34863 bookmarks
Custom sorting
Convincing LinkedIn comment-reply tactic used in new phishing
Convincing LinkedIn comment-reply tactic used in new phishing
Scammers are flooding LinkedIn posts with fake "reply" comments that appear to come from the platform, warning of bogus policy violations and urging users to click external links. Some even abuse LinkedIn's official lnkd.in shortener, making the phishing attempts harder to spot.
·bleepingcomputer.com·
Convincing LinkedIn comment-reply tactic used in new phishing
Asset management: perché l’IT non deve essere l’asset owner e come farlo bene
Asset management: perché l’IT non deve essere l’asset owner e come farlo bene
L'asset management efficace trasforma l'inventario da semplice adempimento tecnico a strumento strategico che ottimizza investimenti di protezione e massimizza il valore degli asset organizzativi. Per questo motivo è importante farlo bene. Ecco un’utile guida operativa
·cybersecurity360.it·
Asset management: perché l’IT non deve essere l’asset owner e come farlo bene
Target employees confirm leaked code after ‘accelerated’ Git lockdown
Target employees confirm leaked code after ‘accelerated’ Git lockdown
Multiple current and former Target employees confirmed that leaked source code samples posted by a threat actor match real internal systems. The company also rolled out an "accelerated" lockdown of its Git server, requiring VPN access, a day after being contacted by BleepingComputer.
·bleepingcomputer.com·
Target employees confirm leaked code after ‘accelerated’ Git lockdown
Wraps - AWS Email Pricing with Modern Developer Experience
Wraps - AWS Email Pricing with Modern Developer Experience
82% of domains have no DMARC. Of those that do, most set p=none—which tells receivers not to enforce. An interactive deep-dive into email authentication.
·wraps.dev·
Wraps - AWS Email Pricing with Modern Developer Experience
Report annuale Polizia Postale 2025: la normalità dell’attacco, il dovere della resilienza
Report annuale Polizia Postale 2025: la normalità dell’attacco, il dovere della resilienza
Il Report annuale 2025 della Polizia Postale fotografa l’evoluzione del cybercrime in Italia: frodi da 269 milioni, 9.250 eventi di computer crime e nuove sfide su minori e violenza digitale. Ecco dati chiave e best practice per imprese e Paese
·cybersecurity360.it·
Report annuale Polizia Postale 2025: la normalità dell’attacco, il dovere della resilienza
Quando un incidente cyber smette di essere un problema tecnico e diventa di interesse pubblico
Quando un incidente cyber smette di essere un problema tecnico e diventa di interesse pubblico
Il nuovo paradigma introdotto dalla NIS 2 spiega perché l’incidente significativo non è più un fatto “interno”. Ecco quale ruolo assume il CSIRT Italia e perché la sicurezza informatica diventa oggi una responsabilità che travalica l’organizzazione colpita
·cybersecurity360.it·
Quando un incidente cyber smette di essere un problema tecnico e diventa di interesse pubblico
Hacker gets seven years for breaching Rotterdam and Antwerp ports
Hacker gets seven years for breaching Rotterdam and Antwerp ports
The Amsterdam Court of Appeal sentenced a 44-year-old Dutch national to seven years in prison for multiple crimes, including computer hacking and attempted extortion.
·bleepingcomputer.com·
Hacker gets seven years for breaching Rotterdam and Antwerp ports
Facebook login thieves now using browser-in-browser trick
Facebook login thieves now using browser-in-browser trick
Hackers over the past six months have relied increasingly more on the browser-in-the-browser (BitB) method to trick users into providing Facebook account credentials.
·bleepingcomputer.com·
Facebook login thieves now using browser-in-browser trick
Assemblea dei Soci 2026
Assemblea dei Soci 2026
L’assemblea annuale dei soci di Berghem-in-the-Middle ETS si terrà lunedì 16 febbraio 2026, dalle 19:00 alle 22:00, presso la saletta …
·hacklabg.net·
Assemblea dei Soci 2026
'Bad actor' hijacks Apex Legends characters in live matches
'Bad actor' hijacks Apex Legends characters in live matches
Apex Legends players over the weekend experienced disruptions during live matches as threat actors hijacked their characters, disconnected them, and changed their nicknames.
·bleepingcomputer.com·
'Bad actor' hijacks Apex Legends characters in live matches
University of Hawaii Cancer Center hit by ransomware attack
University of Hawaii Cancer Center hit by ransomware attack
​University of Hawaii says a ransomware gang breached its Cancer Center in August 2025, stealing data of study participants, including documents from the 1990s containing Social Security numbers.
·bleepingcomputer.com·
University of Hawaii Cancer Center hit by ransomware attack
Target's dev server offline after hackers claim to steal source code
Target's dev server offline after hackers claim to steal source code
Hackers are claiming to be selling internal source code belonging to Target Corporation, after publishing what appears to be a sample of stolen code repositories on a public software development platform. After BleepingComputer notified Target, the files were taken offline and the retailer's developer Git server was inaccessible.
·bleepingcomputer.com·
Target's dev server offline after hackers claim to steal source code
Hidden Telegram proxy links can reveal your IP address in one click
Hidden Telegram proxy links can reveal your IP address in one click
A single click on what may appear to be a Telegram username or harmless link is all it takes to expose your real IP address to attackers due to how proxy links are handled. Telegram says it will add warnings to proxy links after researchers demonstrated that such one-click interactions could reveal a Telegram user's real IP address.
·bleepingcomputer.com·
Hidden Telegram proxy links can reveal your IP address in one click
Microsoft is retiring the Lens scanner app for iOS, Android
Microsoft is retiring the Lens scanner app for iOS, Android
Microsoft has started retiring the Microsoft Lens PDF scanner app for Android and iOS devices on Friday, January 9th, with plans to remove it from app stores next month.
·bleepingcomputer.com·
Microsoft is retiring the Lens scanner app for iOS, Android
Spanish energy giant Endesa discloses data breach affecting customers
Spanish energy giant Endesa discloses data breach affecting customers
Spanish energy provider Endesa and its Energía XXI operator are notifying customers that hackers accessed the company's systems and accessed contract-related information, which includes personal details.
·bleepingcomputer.com·
Spanish energy giant Endesa discloses data breach affecting customers
Cos’è la guerra cognitiva e qual è la posizione della NATO
Cos’è la guerra cognitiva e qual è la posizione della NATO
Il paradigma della sicurezza globale è al centro di un cambiamento sostanziale. La NATO ha formalizzato la guerra cognitiva come nuova frontiera per la superiorità strategica. Cosa è la guerra cognitiva e quali sono i rischi che la caratterizzano
·cybersecurity360.it·
Cos’è la guerra cognitiva e qual è la posizione della NATO
Raccolta dati e AI, come informare correttamente gli interessati: le raccomandazioni
Raccolta dati e AI, come informare correttamente gli interessati: le raccomandazioni
La CNIL chiarisce come informare gli utenti/interessati quando si utilizzano sistemi di intelligenza artificiale, rendendo note delle linee guida molto operative e altrettanto dettagliate circa gli obblighi di trasparenza quando si raccolgono dati con l’AI. Il tutto in perfetta linea con i dettami del GDPR. Vediamo meglio
·cybersecurity360.it·
Raccolta dati e AI, come informare correttamente gli interessati: le raccomandazioni