Over Security

Over Security

35019 bookmarks
Custom sorting
Kimwolf Android botnet abuses residential proxies to infect internal devices
Kimwolf Android botnet abuses residential proxies to infect internal devices
The Kimwolf botnet, an Android variant of the Aisuru malware, has grown to more than two million hosts, most of them infected by exploiting vulnerabilities in residential proxy networks to target devices on internal networks.
·bleepingcomputer.com·
Kimwolf Android botnet abuses residential proxies to infect internal devices
Sedgwick confirms breach at government contractor subsidiary
Sedgwick confirms breach at government contractor subsidiary
Claims administration and risk management company Sedgwick has confirmed that its federal contractor subsidiary, Sedgwick Government Solutions, was the victim of a security breach.
·bleepingcomputer.com·
Sedgwick confirms breach at government contractor subsidiary
How generative AI accelerates identity attacks against Active Directory
How generative AI accelerates identity attacks against Active Directory
Generative AI is accelerating password attacks against Active Directory, making credential abuse faster and more effective. Specops Software explains how AI-driven cracking techniques exploit weak and predictable AD passwords.
·bleepingcomputer.com·
How generative AI accelerates identity attacks against Active Directory
Are Copilot prompt injection flaws vulnerabilities or AI limits?
Are Copilot prompt injection flaws vulnerabilities or AI limits?
Microsoft has pushed back against claims that multiple prompt injection and sandbox-related issues raised by a security engineer in its Copilot AI assistant constitute security vulnerabilities. The development highlights a growing divide between how vendors and researchers define risk in generative AI systems.
·bleepingcomputer.com·
Are Copilot prompt injection flaws vulnerabilities or AI limits?
WhiteDate - 6,076 breached accounts
WhiteDate - 6,076 breached accounts
In December 2025, the dating website "for a Europid vision" WhiteDate suffered a data breach that exposed 6k unique email addresses. The breach exposed extensive further personal information including data related to physical appearance, income, education and IQ.
·haveibeenpwned.com·
WhiteDate - 6,076 breached accounts
Coupang, una violazione dati con terremoto al seguito: quale lezione dalla Corea del Sud
Coupang, una violazione dati con terremoto al seguito: quale lezione dalla Corea del Sud
Coupang, la più grande piattaforma e-commerce della Corea del Sud, è stata vittima di una violazione che ha esposto i dati di 33 milioni di clienti. Le critiche, sollevate anche dal legislatore, hanno causato un terremoto. Cosa è successo e quale rischio c’è che possa succedere anche in Italia
·cybersecurity360.it·
Coupang, una violazione dati con terremoto al seguito: quale lezione dalla Corea del Sud
Cloud file-sharing sites targeted for corporate data theft attacks
Cloud file-sharing sites targeted for corporate data theft attacks
A threat actor known as Zestix has been offering to corporate data stolen from dozens of companies likely after breaching their ShareFile, Nextcloud, and OwnCloud instances.
·bleepingcomputer.com·
Cloud file-sharing sites targeted for corporate data theft attacks
ClickFix attack uses fake Windows BSOD screens to push malware
ClickFix attack uses fake Windows BSOD screens to push malware
A new ClickFix social engineering campaign is targeting the hospitality sector in Europe, using fake Windows Blue Screen of Death (BSOD) screens to trick users into manually compiling and executing malware on their systems.
·bleepingcomputer.com·
ClickFix attack uses fake Windows BSOD screens to push malware
US broadband provider Brightspeed investigates breach claims
US broadband provider Brightspeed investigates breach claims
Brightspeed, one of the largest fiber broadband companies in the United States, is investigating security breach and data theft claims made by the Crimson Collective extortion gang.
·bleepingcomputer.com·
US broadband provider Brightspeed investigates breach claims
Justice Department Announces Actions to Combat Two Russian State-Sponsored Cyber Criminal Hacking Groups
Justice Department Announces Actions to Combat Two Russian State-Sponsored Cyber Criminal Hacking Groups
The Justice Department announced two indictments in the Central District of California charging Ukrainian national Victoria Eduardovna Dubranova for her role in conducting cyberattacks and computer intrusions against critical infrastructure and other victims around the world, in support of Russia’s geopolitical interests.
·flashpoint.io·
Justice Department Announces Actions to Combat Two Russian State-Sponsored Cyber Criminal Hacking Groups
Exploit test (con ghostcat)
Exploit test (con ghostcat)
Potrebbe essere un po’ impopolare come opinione, sono comunque convinto che per capirci veramente qualcosa nel mondo del Penetration Testing bisogna veramente immergerti nella melma e dedicar…
·roccosicilia.com·
Exploit test (con ghostcat)
VSCode IDE forks expose users to "recommended extension" attacks
VSCode IDE forks expose users to "recommended extension" attacks
Popular AI-powered integrated development environment solutions, such as Cursor, Windsurf, Google Antigravity, and Trae, recommend extensions that are non-existent in the OpenVSX registry, allowing threat actors to claim the namespace and upload malicious extensions.
·bleepingcomputer.com·
VSCode IDE forks expose users to "recommended extension" attacks
Analysis of PPPP “encryption”
Analysis of PPPP “encryption”
The “encryption” used by PPPP protocol is even worse than I described earlier. It turns out, there are at most 157,092 ways to encrypt a particular packet.
·palant.info·
Analysis of PPPP “encryption”
Operazione Absolute Resolve per catturare Maduro: autopsia di una decapitazione strategica in ambiente multi-dominio
Operazione Absolute Resolve per catturare Maduro: autopsia di una decapitazione strategica in ambiente multi-dominio
L'operazione, culminata con la cattura del presidente venezuelano Nicolás Maduro, si configura come l'esempio più sofisticato e integrato di multi-domain operation (MDO). Ecco come si abbatte un regime, fra una battaglia elettronica nei cieli e una guerra silenziosa ma devastante nel dominio cibernetico e spaziale
·cybersecurity360.it·
Operazione Absolute Resolve per catturare Maduro: autopsia di una decapitazione strategica in ambiente multi-dominio
Agentic AI Is an Identity Problem and CISOs Will Be Accountable for the Outcome
Agentic AI Is an Identity Problem and CISOs Will Be Accountable for the Outcome
As agentic AI adoption accelerates, identity is emerging as the primary security challenge. Token Security explains why AI agents behave like a new class of identity and why CISOs must manage their access, lifecycle, and risk.
·bleepingcomputer.com·
Agentic AI Is an Identity Problem and CISOs Will Be Accountable for the Outcome
Ledger customers impacted by third-party Global-e data breach
Ledger customers impacted by third-party Global-e data breach
Ledger is informing some customers that their personal data has been exposed after hackers breached the systems of third-party payment processor Global-e.
·bleepingcomputer.com·
Ledger customers impacted by third-party Global-e data breach
NordVPN denies breach claims, says attackers have "dummy data"
NordVPN denies breach claims, says attackers have "dummy data"
NordVPN denied allegations that its internal Salesforce development servers were breached, saying that cybercriminals obtained "dummy data" from a trial account on a third-party automated testing platform.
·bleepingcomputer.com·
NordVPN denies breach claims, says attackers have "dummy data"
Governance del rischio nei luoghi di lavoro e spettacolo: ecco perché serve una black box
Governance del rischio nei luoghi di lavoro e spettacolo: ecco perché serve una black box
La recente tragedia a Crans-Montana in Svizzera accende i fari sulla frammentazione tra sicurezza sul lavoro, sicurezza del pubblico, protezione dei dati e modelli di governance. Il DPO e l’organismo di vigilanza 231 diventano centrali per trasformare adempimenti in governance reale. Ecco perché occorre l’obbligo di sistemi automatici di conteggio delle presenze con “black box”
·cybersecurity360.it·
Governance del rischio nei luoghi di lavoro e spettacolo: ecco perché serve una black box
L’importanza dell’immutabilità assoluta nello storage di backup
L’importanza dell’immutabilità assoluta nello storage di backup
L'immutabilità assoluta protegge efficacemente i dati aziendali, contribuendo a contrastare le crescenti minacce informatiche e l’aumento costante degli attacchi ransomware. Ma quando si valuta un dispositivo progettato per lo storage di backup, è importante considerare l'approccio alla sicurezza da parte del fornitore
·cybersecurity360.it·
L’importanza dell’immutabilità assoluta nello storage di backup
Il nuovo reato di deepfake: quando il diritto penale diventa l’ultima difesa dell’incertezza
Il nuovo reato di deepfake: quando il diritto penale diventa l’ultima difesa dell’incertezza
L’introduzione del reato di deepfake nella legge italiana sull’AI rappresenta un esperimento interessante e un sintomo preoccupante: sancisce il riconoscimento giuridico di una nuova forma di manipolazione digitale, ma rivela anche la tendenza a reagire all’innovazione con strumenti arcaici. I punti di discussione
·cybersecurity360.it·
Il nuovo reato di deepfake: quando il diritto penale diventa l’ultima difesa dell’incertezza