Over Security

Over Security

31461 bookmarks
Custom sorting
Filtering Cisco API Output
Filtering Cisco API Output
Previously, we created a simple script to print a table of CDP neighbors for all interfaces in the fabric. While writing it, we realized it could be optimized. To optimize the script, we need to change the way we retrieve data.
·adainese.it·
Filtering Cisco API Output
Info Sec Unplugged – CISO e vCISO
Info Sec Unplugged – CISO e vCISO
Le ultime due puntate del podcast, che in realtà sono la prima e la seconda parte di una unica registrazione, sono tornate su un tema che sia io che Andrea, nonostante il nostro percorso profession…
·roccosicilia.com·
Info Sec Unplugged – CISO e vCISO
Detecting Vectored Exception Handling Squared in an EDR
Detecting Vectored Exception Handling Squared in an EDR
A deep Windows internals walkthrough: detecting Vectored Exception Handling Squared (VEH²) by reading DR0-DR3 from thread context in kernel mode, resolving target modules, and raising high-fidelity alerts in Sanctum EDR (Rust).
·fluxsec.red·
Detecting Vectored Exception Handling Squared in an EDR
Microsoft is retiring 'Send to Kindle' in Word
Microsoft is retiring 'Send to Kindle' in Word
Microsoft is retiring a feature that allowed you to send your documents to Kindle straight from Microsoft Word.
·bleepingcomputer.com·
Microsoft is retiring 'Send to Kindle' in Word
Spain arrests 34 suspects linked to Black Axe cyber crime
Spain arrests 34 suspects linked to Black Axe cyber crime
Authorities in Spain have arrested 34 individuals allegedly part of a criminal network involved in cyber fraud and believed to be connected to the Black Axe group responsible for illicit activities across Europe.
·bleepingcomputer.com·
Spain arrests 34 suspects linked to Black Axe cyber crime
BreachForums (2025) - 324,449 breached accounts
BreachForums (2025) - 324,449 breached accounts
In October 2025, a reincarnation of the hacking forum BreachForums, which had previously been shut down multiple times, was taken offline by a coalition of law enforcement agencies. In the months leading up to the takedown, the site itself suffered a data breach that exposed 324k unique email addresses, usernames, and Argon2 password hashes.
·haveibeenpwned.com·
BreachForums (2025) - 324,449 breached accounts
Ireland recalls almost 13,000 passports over missing 'IRL' code
Ireland recalls almost 13,000 passports over missing 'IRL' code
Ireland's Department of Foreign Affairs has recalled nearly 13,000 passports after a software update caused a printing defect. The printing error makes the documents non-compliant with international travel standards and potentially unreadable at automated border gates.
·bleepingcomputer.com·
Ireland recalls almost 13,000 passports over missing 'IRL' code
ChatGPT tests a new feature to find jobs, improve your resume, and more
ChatGPT tests a new feature to find jobs, improve your resume, and more
OpenAI is testing "Jobs," a new feature that could help you explore roles, improve your resume, and plan your career. This feature is being tested after ChatGPT gained support for the Health dashboard.
·bleepingcomputer.com·
ChatGPT tests a new feature to find jobs, improve your resume, and more
Microsoft may soon allow IT admins to uninstall Copilot
Microsoft may soon allow IT admins to uninstall Copilot
Microsoft is testing a new policy that allows IT administrators to uninstall the AI-powered Copilot digital assistant on managed devices.
·bleepingcomputer.com·
Microsoft may soon allow IT admins to uninstall Copilot
Raccolta dati e AI: le sfide legali del web scraping secondo la CNIL
Raccolta dati e AI: le sfide legali del web scraping secondo la CNIL
La CNIL chiarisce che la raccolta di dati accessibili online tramite web scraping è legittima se accompagnata da misure a salvaguardia dei diritti degli interessati. Con un interessante focus sheet sul punto, la base giuridica del legittimo interesse prende forza. Vediamo meglio
·cybersecurity360.it·
Raccolta dati e AI: le sfide legali del web scraping secondo la CNIL
Spogliati dall’AI: come difendersi dalla minaccia social
Spogliati dall’AI: come difendersi dalla minaccia social
Grok su X è molto usato per “spogliare” donne e minori senza consenso, creando immagini sexualizzate. Il Garante italiano avverte: generare e diffondere questi contenuti (deepfake) può integrare reati e gravi violazioni dei diritti, con conseguenze anche privacy. Ecco cosa si rischia e come difendersi
·cybersecurity360.it·
Spogliati dall’AI: come difendersi dalla minaccia social
Il “peccato” dell’incident response
Il “peccato” dell’incident response
L’incident response è una funzione vitale dell'organizzazione, ma adottare una corretta strategia a riguardo implica il compiere scelte condivise e coordinate, per non disperdere risorse e mantenere strategie coerenti ed efficaci. Motivo per cui non è da sottovalutare l'aspetto della comunicazione interna
·cybersecurity360.it·
Il “peccato” dell’incident response
IntelOwl 6.5.0
IntelOwl 6.5.0
Managed Detection & Response services (MDR) 24/7 for network, endpoint, cloud, SaaS and OT, against every type of cyber attack
·certego.net·
IntelOwl 6.5.0
Email security needs more seatbelts: Why click rate is the wrong metric
Email security needs more seatbelts: Why click rate is the wrong metric
Click rate misses the real email security risk: what attackers can do after they access a mailbox. Material Security explains why containment and post-compromise impact matter more than phishing metrics.
·bleepingcomputer.com·
Email security needs more seatbelts: Why click rate is the wrong metric
Illinois Department of Human Services data breach affects 700K people
Illinois Department of Human Services data breach affects 700K people
The Illinois Department of Human Services (IDHS), one of Illinois' largest state agencies, accidentally exposed the personal and health data of nearly 700,000 residents due to incorrect privacy settings.
·bleepingcomputer.com·
Illinois Department of Human Services data breach affects 700K people
L’archiviazione non cancella il passato digitale: la Cassazione fa chiarezza sul diritto all’oblio
L’archiviazione non cancella il passato digitale: la Cassazione fa chiarezza sul diritto all’oblio
La Cassazione boccia l'automatismo Cartabia: archiviazione penale non significa diritto all'oblio. Google mantiene la discrezionalità sul delisting. Per le piattaforme un presidio di bilanciamento, per l'interessato una pena reputazionale potenzialmente senza fine. Ecco tutti i punti critici
·cybersecurity360.it·
L’archiviazione non cancella il passato digitale: la Cassazione fa chiarezza sul diritto all’oblio
Illinois man charged with hacking Snapchat accounts to steal nude photos
Illinois man charged with hacking Snapchat accounts to steal nude photos
U.S. prosecutors have charged an Illinois man with orchestrating a phishing operation that allowed him to hack the Snapchat accounts of nearly 600 women to steal private photos and sell them online.
·bleepingcomputer.com·
Illinois man charged with hacking Snapchat accounts to steal nude photos
PHALT#BLYX e finte schermate di errore di Windows: la nuova tecnica di social engineering
PHALT#BLYX e finte schermate di errore di Windows: la nuova tecnica di social engineering
È stata individuata una nuova campagna malware, ribattezzata PHALT#BLYX, che segna un cambio di paradigma nelle tecniche di social engineering, sfruttando false schermate di errore di Windows per spingere gli utenti a compilare ed eseguire manualmente codice malevolo. Tutti i dettagli
·cybersecurity360.it·
PHALT#BLYX e finte schermate di errore di Windows: la nuova tecnica di social engineering