Over Security

Over Security

35942 bookmarks
Custom sorting
How Agentic BAS AI Turns Threat Headlines Into Defense Strategies
How Agentic BAS AI Turns Threat Headlines Into Defense Strategies
Picus Security explains why relying on LLM-generated attack scripts is risky and how an agentic approach maps real threat intel to safe, validated TTPs. Their breakdown shows how teams can turn headline threats into reliable defense checks without unsafe automation.
·bleepingcomputer.com·
How Agentic BAS AI Turns Threat Headlines Into Defense Strategies
OpenAI denies rolling out ads on ChatGPT paid plans
OpenAI denies rolling out ads on ChatGPT paid plans
ChatGPT is allegedly showing ads to those who pay $20 for the Plus subscription, but OpenAI says this is an app recommendation feature, not an ad.
·bleepingcomputer.com·
OpenAI denies rolling out ads on ChatGPT paid plans
Portugal updates cybercrime law to exempt security researchers
Portugal updates cybercrime law to exempt security researchers
Portugal has modified its cybercrime law to establish a legal safe harbor for good-faith security research and to make hacking non-punishable under certain strict conditions.
·bleepingcomputer.com·
Portugal updates cybercrime law to exempt security researchers
SecjuiceCON 2026
SecjuiceCON 2026
SecjuiceCON is an online event for infosec and OSINT industry insiders, and we'd love for you to talk to our audience about your wisdom and learnings.
·secjuice.com·
SecjuiceCON 2026
Data Breach at Mid South Pulmonary & Sleep Specialists: Anubis Speaks
Data Breach at Mid South Pulmonary & Sleep Specialists: Anubis Speaks
Mid South Pulmonary & Sleep Specialists (MSPS), a major clinical center specializing in respiratory diseases and sleep disorders in Tennessee, has been hit by a severe cyberattack claimed by the ransomware group Anubis.
·suspectfile.com·
Data Breach at Mid South Pulmonary & Sleep Specialists: Anubis Speaks
React2Shell flaw exploited to breach 30 orgs, 77k IP addresses vulnerable
React2Shell flaw exploited to breach 30 orgs, 77k IP addresses vulnerable
Over 77,000 Internet-exposed IP addresses are vulnerable to the critical React2Shell remote code execution flaw (CVE-2025-55182), with researchers now confirming that attackers have already compromised over 30 organizations across multiple sectors.
·bleepingcomputer.com·
React2Shell flaw exploited to breach 30 orgs, 77k IP addresses vulnerable
LockBit Returns With New Data Leak Site, 7 Victims
LockBit Returns With New Data Leak Site, 7 Victims
The LockBit ransomware group is making a comeback, with a new data leak site and seven new victims. Can the top ransomware group of all time get back to the top?
·thecyberexpress.com·
LockBit Returns With New Data Leak Site, 7 Victims
Drones to Diplomas: How Russia’s Largest Private University is Linked to a $25M Essay Mill
Drones to Diplomas: How Russia’s Largest Private University is Linked to a $25M Essay Mill
A sprawling academic cheating network turbocharged by Google Ads that has generated nearly $25 million in revenue has curious connections to a Kremlin-connected oligarch whose Russian university builds drones for Russia's war against Ukraine.
·krebsonsecurity.com·
Drones to Diplomas: How Russia’s Largest Private University is Linked to a $25M Essay Mill
KinoKong - 817,808 breached accounts
KinoKong - 817,808 breached accounts
In March 2021, the Russian online streaming service KinoKong suffered a data breach that was later redistributed as part of a larger corpus of data. The breach exposed over 800k unique email addresses along with names, usernames, IP addresses and MD5 password hashes.
·haveibeenpwned.com·
KinoKong - 817,808 breached accounts
Barts Health NHS discloses data breach after Oracle zero-day hack
Barts Health NHS discloses data breach after Oracle zero-day hack
Barts Health NHS Trust has announced that Clop ransomware actors have stolen files from a database by exploiting a vulnerability in its Oracle E-business Suite software.
·bleepingcomputer.com·
Barts Health NHS discloses data breach after Oracle zero-day hack
Google rilascia patch per 107 vulnerabilità Android: due zero-day sotto attacco
Google rilascia patch per 107 vulnerabilità Android: due zero-day sotto attacco
L’Android Security Bulletin del mese di dicembre 2025 contiene gli aggiornamenti di sicurezza che correggono 107 vulnerabilità nel sistema operativo mobile di Google. Tra queste, anche due zero-day che la società ha confermato essere state sfruttate attivamente in attacchi reali. Ecco tutti i dettagli
·cybersecurity360.it·
Google rilascia patch per 107 vulnerabilità Android: due zero-day sotto attacco
A Practical Guide to Continuous Attack Surface Visibility
A Practical Guide to Continuous Attack Surface Visibility
Passive scan data goes stale fast as cloud assets shift daily, leaving teams blind to real exposures. Sprocket Security shows how continuous, automated recon gives accurate, up-to-date attack surface visibility.
·bleepingcomputer.com·
A Practical Guide to Continuous Attack Surface Visibility
Voucher digitali MIMIT: come accedere ai 150 milioni per la resilienza digitale delle PMI
Voucher digitali MIMIT: come accedere ai 150 milioni per la resilienza digitale delle PMI
PMI e lavoratori autonomi potranno ottenere le agevolazioni pari a 150 milioni di euro, stanziati dal Ministero delle Imprese e del Made in Italy, per pianificare gli investimenti per migliorare la propria postura cyber. Ecco il perimetro del voucher cyber del Mimit e come accedervi
·cybersecurity360.it·
Voucher digitali MIMIT: come accedere ai 150 milioni per la resilienza digitale delle PMI
Così basta un clic per consegnare porta di casa e telecamere a un hacker
Così basta un clic per consegnare porta di casa e telecamere a un hacker
Una vulnerabilità di Tuya, una delle piattaforme di domotica più popolari al mondo, permetteva a un malintenzionato di collegare tutti i device smart delle vittime al proprio account Alexa, esponendo centinaia di migliaia di dispositivi smart in tutto il mondo. La scoperta del Gruppo Abissi
·cybersecurity360.it·
Così basta un clic per consegnare porta di casa e telecamere a un hacker
L’unica soluzione certa è non fidarsi mai
L’unica soluzione certa è non fidarsi mai
Approcciarsi per soluzioni alla sicurezza cyber non fa altro che rinviare l'inevitabile momento in cui tutta quella fiducia assumerà l'amaro sapore della delusione scoprendosi così decisamente malriposta
·cybersecurity360.it·
L’unica soluzione certa è non fidarsi mai