Over Security

Over Security

34849 bookmarks
Custom sorting
ACN, maggio in chiaroscuro: troppe aziende vivono la cyber come notifica e non come governo del rischio
ACN, maggio in chiaroscuro: troppe aziende vivono la cyber come notifica e non come governo del rischio
L'Operational summary di Acn registra a maggio 2026 ben 158 incidenti, in calo del 10% rispetto ad aprile, mentre la NIS2 fa emergere gli eventi. Ecco il report nei dettagli: ma non deve diventare il bollettino meteo della minaccia, perché è l'ora di costruire il tetto
·cybersecurity360.it·
ACN, maggio in chiaroscuro: troppe aziende vivono la cyber come notifica e non come governo del rischio
Securing the service desk: Why social engineering attacks keep succeeding
Securing the service desk: Why social engineering attacks keep succeeding
Service desks have become a favored target for attackers seeking password resets, MFA changes, and access to corporate accounts. Specops Software breaks down how service desk social engineering attacks work and how organizations can defend against them.
·bleepingcomputer.com·
Securing the service desk: Why social engineering attacks keep succeeding
Madison Square Garden Sports - 9,796,738 breached accounts
Madison Square Garden Sports - 9,796,738 breached accounts
In June 2026, the sports and entertainment company Madison Square Garden Sports was the target of a ShinyHunters "pay or leak" extortion campaign. The group later published the alleged data, which included almost 10M unique email addresses spanning staff and customers, along with extensive personal, employment and customer relationship information.
·haveibeenpwned.com·
Madison Square Garden Sports - 9,796,738 breached accounts
L’economia dei token e il vero prezzo dell’intelligenza artificiale
L’economia dei token e il vero prezzo dell’intelligenza artificiale
Quanto sareste disposti a pagare per usare Claude e ChatGPT? Il passaggio dalle tariffe fisse a quelle a consumo ha fatto esplodere i budget aziendali e sta mostrando la fragilità del sistema AI (modificato)
·guerredirete.it·
L’economia dei token e il vero prezzo dell’intelligenza artificiale
L’economia dei token e il vero prezzo dell’intelligenza artificiale
L’economia dei token e il vero prezzo dell’intelligenza artificiale
Quanto sareste disposti a pagare per usare Claude e ChatGPT? Il passaggio dalle tariffe fisse a quelle a consumo ha fatto esplodere i budget aziendali e sta mostrando la fragilità del sistema AI (modificato)
·guerredirete.it·
L’economia dei token e il vero prezzo dell’intelligenza artificiale
L’economia dei token e il vero prezzo dell’intelligenza artificiale
L’economia dei token e il vero prezzo dell’intelligenza artificiale
Quanto sareste disposti a pagare per usare Claude e ChatGPT? Il passaggio dalle tariffe fisse a quelle a consumo ha fatto esplodere i budget aziendali e sta mostrando la fragilità del sistema AI (modificato)
·guerredirete.it·
L’economia dei token e il vero prezzo dell’intelligenza artificiale
Stealthy Mistic backdoor linked to ransomware access broker KongTuke
Stealthy Mistic backdoor linked to ransomware access broker KongTuke
A new backdoor dubbed Mistic has been observed in financially motivated attacks targeting organizations in the insurance, education, IT, and professional services sectors.
·bleepingcomputer.com·
Stealthy Mistic backdoor linked to ransomware access broker KongTuke
Digital Identity Shadowing: quando qualcuno crea un’identità digitale a tua insaputa
Digital Identity Shadowing: quando qualcuno crea un’identità digitale a tua insaputa
Il rischio non è solo il furto di credenziali: il Digital Identity Shadowing descrive uno scenario in cui un attaccante crea un’identità digitale SPID parallela, formalmente valida e intestata alla vittima. Una minaccia che mette alla prova governance, antifrode e fiducia digitale
·cybersecurity360.it·
Digital Identity Shadowing: quando qualcuno crea un’identità digitale a tua insaputa
Quell’ignoranza inconsapevole delle intelligenze artificiali
Quell’ignoranza inconsapevole delle intelligenze artificiali
Hanno le allucinazioni perché non possono percepire i limiti di ciò che sanno e sono addestrate a non rispondere mai "non lo so". Ma quando questo avviene in ambiti critici come la sicurezza informatica, gli effetti e danni possono essere rovinosi. Parla Enrico Frumento, Cybersecurity Research Lead del Cefriel
·cybersecurity360.it·
Quell’ignoranza inconsapevole delle intelligenze artificiali
Ad-Funded Phishing: How Facebook and Google Deliver Attacks to Enterprise Browsers
Ad-Funded Phishing: How Facebook and Google Deliver Attacks to Enterprise Browsers
Between June 16 and June 22, we detected phishing campaigns spanning tech support scams delivered via Facebook ads on Azure infrastructure, Microsoft credential harvesting hosted on Heroku and promoted through Google Ads, Paperless Post invitation lures targeting multiple email providers. What ties them together: these campaign abused trusted infrastructure both to host and deliver their attacks.
·pixmsecurity.com·
Ad-Funded Phishing: How Facebook and Google Deliver Attacks to Enterprise Browsers
Tata Electronics confirms cyberattack as hackers leak data
Tata Electronics confirms cyberattack as hackers leak data
Tata Electronics has confirmed in a statement to BleepingComputer that it was the target of a cyberattack that impacted parts of its IT infrastructure.
·bleepingcomputer.com·
Tata Electronics confirms cyberattack as hackers leak data
Windows 11 KB5095093 update rolls out new Point-in-Time restore feature
Windows 11 KB5095093 update rolls out new Point-in-Time restore feature
​​Microsoft has released the KB5095093 preview cumulative update for Windows 11 24H2 and 25H2, which fixes numerous bugs and begins rolling out new features, including the new Point-in-Time restore feature.
·bleepingcomputer.com·
Windows 11 KB5095093 update rolls out new Point-in-Time restore feature
Healthtech firm Xolis suffers data breach impacting 1.4 million people
Healthtech firm Xolis suffers data breach impacting 1.4 million people
Healthcare technology company Xsolis says that sensitive data belonging to nearly 1.4 million individuals was compromised in a phishing attack that gave attackers access to its network.
·bleepingcomputer.com·
Healthtech firm Xolis suffers data breach impacting 1.4 million people