Over Security
631 subscribers
29.6K photos
31K links
This is a (beta) cybersecurity news aggregator!

https://oversecurity.net
Download Telegram
Mastering Claude Code Series - Part 3

🔗️ [Github] https://link.is.it/7QuZ54
Mastering Claude Code Series - Part 4

🔗️ [Github] https://link.is.it/5xT3aQ
New AmnesiaStealer macOS malware hijacks browser sessions via remote control

A new information-stealing malware called AmnesiaStealer, which targets macOS users via ClickFix attacks, includes a streaming module that allows the attacker to interactively control the victim's web browser.

🔗️ [Bleepingcomputer] https://link.is.it/pggb1v
Large-scale DDoS attacks disrupted Threema secure messaging service

Multiple distributed denial-of-service (DDoS) attacks targeted the Threema secure messaging service earlier this week, causing severe disruptions to communications.

🔗️ [Bleepingcomputer] https://link.is.it/clXH8r
Anthropic confirms Claude is down in major outage affecting multiple services

Claude is experiencing a major outage, with users reporting login problems and degraded performance across several Anthropic services.

🔗️ [Bleepingcomputer] https://link.is.it/QpOLKw
SafePal data breach impacts 39,798 customers, stolen info for sale

Cryptocurrency hardware wallet provider SafePal is warning of a data breach affecting about 39,798 customers after a flaw was exploited to steal customer order information, and a threat actor is now claiming to be selling the stolen data.

🔗️ [Bleepingcomputer] https://link.is.it/RNeBXp
Software Bill of Materials per l’AI: la supply chain dell’intelligenza artificiale diventa verificabile

Il G7 definisce per la prima volta gli elementi minimi di un SBOM dedicato ai sistemi AI, estendendo l'inventario software a modelli, dataset, infrastrutture e proprietà di sicurezza. Una base comune per rendere la supply chain più tracciabile e prepararsi a requisiti che potrebbero diventare vincolanti

🔗️ [Cybersecurity360] https://link.is.it/jdx6hH
Microsoft working on Defender patch for ShieldBreak zero-day

Microsoft is working on a security patch for the "ShieldBreak" zero-day vulnerability disclosed last week by security researcher "Nightmare Eclipse" and now tracked as CVE-2026-69414.

🔗️ [Bleepingcomputer] https://link.is.it/md0zJ7
French tax authority data breach affects 678,000 individuals

The French Ministry of the Economy and Finance has disclosed a data breach after an attacker accessed the General Directorate of Public Finances (DGFiP) systems and stole data belonging to 678,000 individuals.

🔗️ [Bleepingcomputer] https://link.is.it/mDDAKr
Identity Resilience: perché il backup di Active Directory non basta più nell’era del ransomware

La vera sfida non è salvare i dati, ma garantire un recupero rapido e sicuro delle identità dopo una compromissione. Ecco perché in uno scenario, la semplice disponibilità di un backup non è più sufficiente

🔗️ [Cybersecurity360] https://link.is.it/1KMWxW
Oltre l’antivirus: la suite Kaspersky Premium integra VPN illimitata, IA e identity protection senza impattare sulle prestazioni

Cosa offre l'offerta di Kaspersky Premium che include altri servizi oltre all'antivirus: come aggiungere VPN e identity protection.

🔗️ [Cybersecurity360] https://link.is.it/zzIWRO
Dati personali al sicuro dall’IA delle Big Tech: come la crittografia end-to-end di Proton Drive protegge il cloud storage

Proton Drive offre cloud storage crittografato e privacy data: ecco quanto costa questa offerta e quali sono tutti i servizi inclusi.

🔗️ [Cybersecurity360] https://link.is.it/I9MyR3
Attacchi informatici: le nuove strategie tra infiltrazione fisica e IA

Le truffe e gli attacchi informatici si evolvono tra infiltrazioni fisiche e clonazione vocale. Ecco i dati e i casi reali.

🔗️ [Cybersecurity360] https://link.is.it/hW8sNU
Ukraine says cyberattack hit Russian e-commerce giant Wildberries amid drone strikes

Ukraine’s military intelligence claimed it disrupted the operations of Russia’s largest online marketplace, Wildberries, in a cyberattack intended to amplify the impact of drone strikes on the company’s infrastructure.

🔗️ [Therecord] https://link.is.it/Cybfoc
Philips and GE investigating Clop ransomware data theft claims

Tech giants General Electric (GE) and Philips have also confirmed they're investigating claims that the Clop ransomware gang breached their systems and stole data.

🔗️ [Bleepingcomputer] https://link.is.it/kfOjzA
Windows Server 2022 reaches end of mainstream support in 60 days

Microsoft has reminded IT administrators that Windows Server 2022 is rapidly approaching its mainstream end date of October 2026, when it will switch to extended support.

🔗️ [Bleepingcomputer] https://link.is.it/MFekh3
Certighost and the Privilege Hiding in Your Certificate Authority

CVE-2026-54121 lets a standard domain user turn your Enterprise CA into a Domain Controller. The patch is the easy part. The lesson is standing privilege, implicit trust, and treating PKI as the Tier 0 identity infrastructure it has always been.

🔗️ [Bleepingcomputer] https://link.is.it/wWmVkm
Brand Impersonation Takedown: From Whack-a-Mole to Managed Response

Manual phishing and brand impersonation takedowns can't keep pace with attackers. See why consulting firms need managed, continuous takedown response.

🔗️ [Cyble] https://link.is.it/Vl3iAx
Microsoft confirms GitHub is down worldwide

GitHub is down for some users as a widespread outage is causing errors across the website, API, Actions, Pull Requests, and several other services.

🔗️ [Bleepingcomputer] https://link.is.it/kyM00w
SafePal latest crypto hardware wallet maker affected by breach, with nearly 40,000 impacted

The crypto hardware wallet company SafePal confirmed a data breach on Sunday, telling users that nearly 40,000 customers had information stolen during a recent security incident.

🔗️ [Therecord] https://link.is.it/XL3k4k
Poland probes MyDr healthcare software breach potentially affecting 19 million people

MyDr, a privately-owned Polish company that supplies software to doctors, clinics and other healthcare providers, said on Friday that it had identified and removed the cause of the incident and introduced additional security measures.

🔗️ [Therecord] https://link.is.it/VKKWEv