Over Security

Over Security

35941 bookmarks
Custom sorting
North Korean hackers exploit React2Shell flaw in EtherRAT malware attacks
North Korean hackers exploit React2Shell flaw in EtherRAT malware attacks
A new malware implant called EtherRAT, deployed in a recent React2Shell attack, runs five separate Linux persistence mechanisms and leverages Ethereum smart contracts for communication with the attacker.
·bleepingcomputer.com·
North Korean hackers exploit React2Shell flaw in EtherRAT malware attacks
Ransomware IAB abuses EDR for stealthy malware execution
Ransomware IAB abuses EDR for stealthy malware execution
An initial access broker tracked as Storm-0249 is abusing endpoint detection and response solutions and trusted Microsoft Windows utilities to load malware, establish communication, and persistence in preparation for ransomware attacks.
·bleepingcomputer.com·
Ransomware IAB abuses EDR for stealthy malware execution
Il CISO come risk manager: dieci driver per mappare business e minacce
Il CISO come risk manager: dieci driver per mappare business e minacce
La mappatura degli elementi di business ai driver del rischio è ormai una necessità operativa per ogni organizzazione che gestisce asset strategici. In questo contesto, il CISO deve trasformarsi da responsabile della sicurezza IT a orchestratore della resilienza organizzativa. Ecco come
·cybersecurity360.it·
Il CISO come risk manager: dieci driver per mappare business e minacce
Malware Analysis
Malware Analysis
Managed Detection & Response services (MDR) 24/7 for network, endpoint, cloud, SaaS and OT, against every type of cyber attack
·certego.net·
Malware Analysis
New FvncBot Android banking trojan targets Poland | Intel 471
New FvncBot Android banking trojan targets Poland | Intel 471
Intel 471 discovered a new Android trojan, FvncBot, that masquerades as a security application for mBank, a major Polish bank. Our Malware Intelligence team analyzed its code, which is new and not based on other leaked malware code.
·intel471.com·
New FvncBot Android banking trojan targets Poland | Intel 471
Microsoft investigates Copilot outage affecting users in Europe
Microsoft investigates Copilot outage affecting users in Europe
Microsoft is working to mitigate an ongoing incident that has been blocking users in Europe from accessing the company's AI-powered Copilot digital assistant.
·bleepingcomputer.com·
Microsoft investigates Copilot outage affecting users in Europe
New BYOVD loader behind DeadLock ransomware attack
New BYOVD loader behind DeadLock ransomware attack
Cisco Talos has uncovered a new DeadLock ransomware campaign using a previously unknown BYOVD loader to exploit a Baidu Antivirus driver vulnerability, letting threat actors disable EDR defenses and escalate attacks.
·blog.talosintelligence.com·
New BYOVD loader behind DeadLock ransomware attack
Prima multa del Digital Services Act a X: la fine dell’illusione Muskiana?
Prima multa del Digital Services Act a X: la fine dell’illusione Muskiana?
La vicenda della multa a X rappresenta l’inizio di un confronto destinato a durare nel tempo tra la UE e Musk che dovrà decidere se adeguarsi alle regole europee o continuare su una linea di scontro ideologico che potrebbe portare a nuove sanzioni, con influenze anche per le altre piattaforme online. I punti cardine
·cybersecurity360.it·
Prima multa del Digital Services Act a X: la fine dell’illusione Muskiana?
Il punto cieco della NIS 2: l’articolo 24 del decreto e la sicurezza dei sistemi OT
Il punto cieco della NIS 2: l’articolo 24 del decreto e la sicurezza dei sistemi OT
Quattro aree sottovalutate della NIS 2 sono da rivedere per costruire una postura realmente resiliente. Ecco perché l’articolo 24 impone una revisione radicale della governance interna, integrando gli OT nella postura NIS 2
·cybersecurity360.it·
Il punto cieco della NIS 2: l’articolo 24 del decreto e la sicurezza dei sistemi OT
Ransomware gangs turn to Shanya EXE packer to hide EDR killers
Ransomware gangs turn to Shanya EXE packer to hide EDR killers
Several ransomware groups have been spotted using a packer-as-a-service (PaaS) platform named Shanya to assist in EDR (endpoint detection and response) killing operations.
·bleepingcomputer.com·
Ransomware gangs turn to Shanya EXE packer to hide EDR killers
Malicious VSCode extensions on Microsoft's registry drop infostealers
Malicious VSCode extensions on Microsoft's registry drop infostealers
Two malicious extensions on Microsoft's Visual Studio Code Marketplace infect developers' machines with information-stealing malware that can take screenshots, steal credentials, and hijack browser sessions.
·bleepingcomputer.com·
Malicious VSCode extensions on Microsoft's registry drop infostealers
FinCEN says ransomware gangs extorted over $2.1B from 2022 to 2024
FinCEN says ransomware gangs extorted over $2.1B from 2022 to 2024
A new report by the Financial Crimes Enforcement Network (FinCEN) shows that ransomware activity peaked in 2023 before falling in 2024, following a series of law enforcement actions targeting the ALPHV/BlackCat and LockBit ransomware gangs.
·bleepingcomputer.com·
FinCEN says ransomware gangs extorted over $2.1B from 2022 to 2024
Poland arrests Ukrainians utilizing 'advanced' hacking equipment
Poland arrests Ukrainians utilizing 'advanced' hacking equipment
The police in Poland arrested three Ukrainian nationals for allegedly attempting to damage IT systems in the country using hacking equipment and for obtaining "computer data of particular importance to national defense."
·bleepingcomputer.com·
Poland arrests Ukrainians utilizing 'advanced' hacking equipment