Over Security
631 subscribers
29.4K photos
30.8K links
This is a (beta) cybersecurity news aggregator!

https://oversecurity.net
Download Telegram
La protezione dell’identità digitale e delle credenziali: il ruolo dei password manager crittografati contro le violazioni dati

Proton Pass offre un servizio di gestione delle password con crittografia end-to-end a 2,49 € al mese: ecco come funziona e come si attiva.

🔗️ [Cybersecurity360] https://link.is.it/hPLtGS
La protezione della rete domestica multipiattaforma: l’impatto dei servizi VPN a dispositivi illimitati sulla cybersecurity

Surfshark offre la VPN per dispositivi illimitati a 2,49 €, aggiungendo anche 3 mesi extra gratis: ecco come funziona l'offerta e come averla

🔗️ [Cybersecurity360] https://link.is.it/jj103U
Microsoft fixes known issue causing Windows Defender crashes

Microsoft has resolved a bug that caused Windows Defender to crash after a recent security update, resulting in 0xc0000005 access violation errors on some affected systems.

🔗️ [Bleepingcomputer] https://link.is.it/MSqjta
Hunt Malware & Phishing Threats with ANY.RUN for Proactive Enterprise Security

Learn how ANY.RUN helps SOC teams hunt malware and phishing threats to strengthen enterprise security.

🔗️ [Any] https://link.is.it/PALKwP
Quanto è davvero hacker il nuovo GLM-5.3 open weight della Z.ai

L'azienda cinese ha reso pubblico il nuovo modello dichiarando forti capacità nel coding e nella cyber security. Ma si è preso due settimane per renderne disponibile il download dei pesi. Proviamo a scoprire quali sono i vantaggi ma anche i rischi di questo tipo di rilascio

🔗️ [Cybersecurity360] https://link.is.it/9Ezpjs
US charges Iranians for sprawling hacking campaign on government agencies, universities

The Justice Department accused 17 alleged hackers with ties to the Iranian government of breaching email accounts at U.S. government agencies and stealing intellectual property from dozens of universities.

🔗️ [Therecord] https://link.is.it/PsfwsM
When the Attacker Wears Your Logo: Detecting and Taking Down Impersonation at AI Speed

Here's how AI-powered brand impersonation fuels phishing and fraud, and how continuous monitoring and takedowns help protect trusted brands.

🔗️ [Cyble] https://link.is.it/k1oqIm
Latvian officials resign after cyberattack exposes data on 1.2 million people

Latvia’s road traffic agency confirmed that hackers stole data connected to about two-thirds of the country’s population in a major cyberattack that has prompted calls for senior officials to resign.

🔗️ [Therecord] https://link.is.it/juvvJs
Password spraying attacks surge 155x as hackers exploit MFA gaps

Huntress observed a 155x increase in password spraying attacks in H1 2026, including a campaign that generated more than 81 million login attempts in two weeks. The attacks exploited legacy authentication and gaps in MFA policies that left some login flows unprotected.

🔗️ [Bleepingcomputer] https://link.is.it/a593dS
US charges Iranian hackers over $3.4 billion intellectual property theft

The U.S. has charged 17 Iranians, alleged members of a hacking-for-hire company called Mabna Institute, involved in years-long operations that stole data from American organizations.

🔗️ [Bleepingcomputer] https://link.is.it/ItQNzN
Electronic health record company CareCloud says 3.7 million people affected by breach

Healthcare software firm CareCloud filed documents with the Department of Health and Human Services confirming that 3,756,469 people had information leaked after a hacker spent eight hours in one of the company’s electronic health record environments.

🔗️ [Therecord] https://link.is.it/zZgrl5
Hackers compromise 14,500 Dahua web cameras in 35-day campaign

In a large-scale campaign that researchers dubbed CameraSwarm, hackers compromised more than 14,500 Dahua IP cameras mostly in Ukraine and Russia.

🔗️ [Bleepingcomputer] https://link.is.it/SbqbGl
NSA, FBI warns of hackers using AI-generated tools in attacks on critical infrastructure technology

The National Security Agency (NSA), FBI and other federal agencies said the campaign is targeting Siemens S7 Series PLCs and was being fueled by “AI-assisted development” alongside exploitation of known vulnerabilities.

🔗️ [Therecord] https://link.is.it/fX8ktE
US warns of AI-powered attacks on Siemens PLCs in critical infrastructure

U.S. cybersecurity agencies warn that threat actors are using AI-generated scripts to exploit Siemens S7 Series programmable logic controllers (PLCs) in U.S. critical infrastructure.

🔗️ [Bleepingcomputer] https://link.is.it/Nvdqv3
Researchers say OpenAI revoked their access to limited cyber program

The idea behind OpenAI's Trusted Access for Cyber program is to give trusted defenders better models so they can report bugs and vulnerabilities to companies, with the aim of getting flaws patched faster.

🔗️ [Techcrunch] https://link.is.it/gBLi25
Healthtech firm CareCloud data breach impacts 3.7 million patients

U.S. healthcare IT company CareCloud disclosed that the data breach incident it suffered earlier this year has impacted more than 3.7 million individuals.

🔗️ [Bleepingcomputer] https://link.is.it/1J3okm
Sakura Internet hack exposes data of up to 1.36 million accounts

Japanese cloud and data center service provider Sakura Internet disclosed that hackers accessed its sales management system, where customer contract and membership information is stored.

🔗️ [Bleepingcomputer] https://link.is.it/VtNqvQ
Rogue ransomware affiliate poses as data recovery firm to steal payments

A suspected ransomware affiliate is posing as a ransomware recovery service called "Ransom Busters," contacting the victims before the attacks become public and claiming to be able to provide decryption keys and delete stolen data for a fee.

🔗️ [Bleepingcomputer] https://link.is.it/JrrHkx
Rogue ransomware affiliate poses as recovery firm to steal payments

A suspected ransomware affiliate is posing as a ransomware recovery service called "Ransom Busters," contacting the victims before the attacks become public and claiming to be able to provide decryption keys and delete stolen data for a fee.

🔗️ [Bleepingcomputer] https://link.is.it/bPHNLs
OpenAI confirms ChatGPT is down as logins and signups fail

ChatGPT is experiencing a major outage, and users are unable to sign in, create accounts, or load chats, including previous conversations.

🔗️ [Bleepingcomputer] https://link.is.it/0MRscF
One Adversary: Fraud Is a Network, Not a Payment

Payment was authorised. The transaction was, technically, legitimate. It was also part of a $187 million criminal network, and the payment was the worst place to fight it.

🔗️ [Group-ib] https://link.is.it/F7ZB8x