Category: bleepingcomputer
-
Microsoft quietly extends free Windows 10 ESU support to October 2027
Microsoft quietly extends free Windows 10 ESU support to October 2027 Microsoft has quietly extended its free Windows 10 Extended Security Updates (ESU) program for consumers by an additional year, allowing enrolled devices to continue receiving security updates until October 12, 2027. […] Lawrence Abrams Go to bleepingcomputer
-
New macOS malware embeds fake errors to confuse AI analysis tools
New macOS malware embeds fake errors to confuse AI analysis tools A newly discovered macOS malware dubbed “Gaslight” is designed to confuse AI-assisted malware analysis tools by hiding prompt injection strings and fake debugging data within the executable. […] Lawrence Abrams Go to bleepingcomputer
-
Google releases new privacy controls for activity history, personalization
Google releases new privacy controls for activity history, personalization Google is rolling out new privacy controls for Search services and Google Play, giving you more control over saved history and personalized recommendations. […] Mayank Parmar Go to bleepingcomputer
-
DraftKings hacker ‘Snoopy’ sentenced to 18 months in prison
DraftKings hacker ‘Snoopy’ sentenced to 18 months in prison A 21-year-old using the alias “Snoopy” was sentenced to 18 months in prison for his role in hacking DraftKings accounts in the November 2022 cyberattack. […] Bill Toulas Go to bleepingcomputer
-
Mandiant reveals how Cisco SD-WAN zero-day attacks gained root access
Mandiant reveals how Cisco SD-WAN zero-day attacks gained root access New details have been revealed on how hackers exploited a Cisco Catalyst SD-WAN vulnerability tracked as CVE-2026-20245 in zero-day attacks to create rogue root accounts on targeted devices. […] Lawrence Abrams Go to bleepingcomputer
-
Malicious Edge extension abuses Native Messaging as bridge to malware
Malicious Edge extension abuses Native Messaging as bridge to malware A malicious Microsoft Edge extension dubbed ‘Edgecution’ has been used in a ransomware attack to escape the browser sandbox and deploy a Python-based backdoor. […] Bill Toulas Go to bleepingcomputer
-
CISA warns of max severity Ubiquiti flaws exploited in attacks
CISA warns of max severity Ubiquiti flaws exploited in attacks The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning of hackers actively exploiting flaws in Ubiquity UniFi OS and Lantronix serial-to-ethernet servers. […] Bill Toulas Go to bleepingcomputer
-
Tata Electronics confirms cyberattack as hackers leak data
Tata Electronics confirms cyberattack as hackers leak data Tata Electronics has confirmed in a statement to BleepingComputer that it was the target of a cyberattack that impacted parts of its IT infrastructure. […] Bill Toulas Go to bleepingcomputer
-
Cisco Unified CM flaw CVE-2026-20230 now exploited in attacks
Cisco Unified CM flaw CVE-2026-20230 now exploited in attacks A high-severity SSRF vulnerability, tracked as CVE-2026-20230, in Cisco Unified Communications Manager Server is now being exploited in attacks. […] Lawrence Abrams Go to bleepingcomputer
-
Windows 11 KB5095093 update rolls out new Point-in-Time restore feature
Windows 11 KB5095093 update rolls out new Point-in-Time restore feature Microsoft has released the KB5095093 preview cumulative update for Windows 11 24H2 and 25H2, which fixes numerous bugs and begins rolling out new features, including the new Point-in-Time restore feature. […] Lawrence Abrams Go to bleepingcomputer
-
Healthtech firm Xolis suffers data breach impacting 1.4 million people
Healthtech firm Xolis suffers data breach impacting 1.4 million people Healthcare technology company Xsolis says that sensitive data belonging to nearly 1.4 million individuals was compromised in a phishing attack that gave attackers access to its network. […] Bill Toulas Go to bleepingcomputer
-
New macOS ClickFix attack silently mounts DMGs to push infostealer
New macOS ClickFix attack silently mounts DMGs to push infostealer A new macOS ClickFix campaign is using Terminal commands to silently download, mount, and launch info-stealing malware from malicious disk image (DMG) files. […] Lawrence Abrams Go to bleepingcomputer
-
WhatsApp phishing attack uses fake business docs to hack PCs
WhatsApp phishing attack uses fake business docs to hack PCs An ongoing malware campaign is targeting WhatsApp users in multiple countries with deceptive messages that push VBScript files, leading to remote system access. […] Bill Toulas Go to bleepingcomputer
-
JaredFromSubway MEV bot hacked in $15 million crypto theft
JaredFromSubway MEV bot hacked in $15 million crypto theft The JaredFromSubway Ethereum MEV (Maximal Extractable Value) bot suffered a $15 million loss after an attacker manipulated the opportunity-detection logic by creating fake cryptocurrency trading opportunities. […] Bill Toulas Go to bleepingcomputer
-
FFmpeg fixes PixelSmash flaw in widely used video decoder
FFmpeg fixes PixelSmash flaw in widely used video decoder A newly disclosed FFmpeg flaw dubbed ‘PixelSmash’ could be exploited for remote code execution on Jellyfin servers under certain conditions, and can also trigger a denial-of-service condition in applications like Kodi, Emby, Nextcloud, PhotoPrism, and OBS Studio. […] Bill Toulas Go to bleepingcomputer
-
FortiBleed campaign used custom FortiGate sniffer to steal credentials
FortiBleed campaign used custom FortiGate sniffer to steal credentials Security firm SOCRadar says the large-scale FortiBleed campaign targeting Fortinet FortiGate devices used custom sniffers to harvest authentication secrets from compromised firewalls and steal credentials. […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft says Windows 11 26H2 is coming soon, details upgrade process
Microsoft says Windows 11 26H2 is coming soon, details upgrade process Microsoft has confirmed that Windows 11 version 26H2 will be the next feature update and that devices running Windows 11 24H2 and 25H2 will be able to upgrade using a small enablement package. […] Lawrence Abrams Go to bleepingcomputer
-
AryStinger botnet infected thousands of D-Link routers worldwide
AryStinger botnet infected thousands of D-Link routers worldwide A previously undocumented malware botnet named AryStinger has compromised more than 4,000 outdated routers to turn them into proxies for malicious traffic. […] Bill Toulas Go to bleepingcomputer
-
New Prinz Eugen ransomware prioritizes recent files for encryption
New Prinz Eugen ransomware prioritizes recent files for encryption A new ransomware operation named ‘Prinz Eugen’ prioritizes recently modified files for encryption and leaves no ransom note on the system. […] Bill Toulas Go to bleepingcomputer
-
Microsoft links Mastra AI supply chain attack to North Korean hackers
Microsoft links Mastra AI supply chain attack to North Korean hackers Microsoft has attributed a recent Mastra AI supply chain attack that compromised more than 140 npm packages to the North Korean hacking group Sapphire Sleet, also known as BlueNoroff. […] Lawrence Abrams Go to bleepingcomputer
-
Klue OAuth breach victim list grows as Icarus hackers claim attack
Klue OAuth breach victim list grows as Icarus hackers claim attack Market intelligence platform Klue has publicly confirmed a recent security incident that allowed threat actors to steal OAuth tokens used to connect to customers’ Salesforce environments, as the new “Icarus” extortion group publicly claims the attack. […] Lawrence Abrams Go to bleepingcomputer
-
Hackers exploit info disclosure bug in Gravity SMTP WordPress plugin
Hackers exploit info disclosure bug in Gravity SMTP WordPress plugin Threat actors are exploiting an unauthenticated information disclosure vulnerability in the WordPress plugin Gravity SMTP, active on 100,000 sites. […] Bill Toulas Go to bleepingcomputer
-
Texas govt data breach exposes over 3 million driver’s licenses
Texas govt data breach exposes over 3 million driver’s licenses The Texas Parks and Wildlife Department (TPWD) disclosed a data breach at its license system vendor that exposed personal information for more than three million individuals. […] Bill Toulas Go to bleepingcomputer
-
Every AI Agent Is an Identity. Most Organizations Don’t Treat Them That Way
Every AI Agent Is an Identity. Most Organizations Don’t Treat Them That Way AI agents can access data, trigger workflows, deploy code, and interact with critical business systems, often with little oversight. Token Security breaks down why AI agents are becoming a new identity and governance challenge. […] Sponsored by Token Security Go to bleepingcomputer
-
Webinar: How attackers bypass MFA and how defenders can respond
Webinar: How attackers bypass MFA and how defenders can respond Modern phishing attacks, including Device Code phishing, can undermine MFA protections and grant attackers access to corporate accounts without stealing passwords. This webinar explores how behavioral AI can help security teams detect compromised accounts faster and automate response workflows. […] BleepingComputer Go to bleepingcomputer
-
NY man charged after harassing college student with AI-generated nudes
NY man charged after harassing college student with AI-generated nudes A New York man faces cyberstalking charges after allegedly sharing AI-generated nude images and fabricated racist messages using fake social media profiles to harass a Georgia college student. […] Sergiu Gatlan Go to bleepingcomputer
-
CISA warns Fortinet users to secure devices after FortiBleed leak
CISA warns Fortinet users to secure devices after FortiBleed leak The U.S. Cybersecurity and Infrastructure Security Agency (CISA) urged Fortinet customers to secure their devices after nearly 74,000 firewall and VPN credentials were exposed in a data leak dubbed “FortiBleed.” […] Sergiu Gatlan Go to bleepingcomputer
-
Gentlemen ransomware uses multiple EDR killers to disable defenses
Gentlemen ransomware uses multiple EDR killers to disable defenses The Gentlemen ransomware-as-a-service (RaaS) is actively developing and maintaining a suite of endpoint detection and response (EDR) killers to help affiliates evade detection in attacks. […] Bill Toulas Go to bleepingcomputer
-
Nintendo confirms data stolen in WebMD subsidiary cyberattack
Nintendo confirms data stolen in WebMD subsidiary cyberattack Nintendo of America has confirmed to BleepingComputer that threat actors stole survey data from the third-party TinyPulse service used internally, but its systems were not compromised. […] Bill Toulas Go to bleepingcomputer
-
USB worm spreads crypto-stealing malware via Windows shortcut files
USB worm spreads crypto-stealing malware via Windows shortcut files Threat actors targeting cryptocurrency wallets have been distributing clipboard-stealing malware with self-spreading capabilities and using the Tor network to conceal communication. […] Bill Toulas Go to bleepingcomputer
-
Leak confirms OpenAI is testing a ChatGPT for Science subscription
Leak confirms OpenAI is testing a ChatGPT for Science subscription OpenAI appears to be testing a new subscription and experience for science use cases, but it’s unclear if it’ll be available to everyone regardless of their background. […] Mayank Parmar Go to bleepingcomputer
-
Google to use UK and EU user IP addresses for ad personalization
Google to use UK and EU user IP addresses for ad personalization From August 3, 2026, Google will use IP addresses from UK, EEA and Switzerland users for ad measurement and personalization. It lands as the ICO weighs new consent rules, and years after Google itself called using such signals to identify devices “wrong.” […]…
-
FortiBleed leak exposes Fortinet VPN credentials for 73,000 devices.
FortiBleed leak exposes Fortinet VPN credentials for 73,000 devices. A newly discovered data leak dubbed “FortiBleed” has exposed what appears to be a collection of Fortinet and FortiGate VPN credentials for 73,932 firewall URLs at organizations worldwide. […] Lawrence Abrams Go to bleepingcomputer
-
Why Account Takeovers Are Rising and How to Stop Them
Why Account Takeovers Are Rising and How to Stop Them Account takeovers are rising as attackers bypass traditional defenses through phishing, session hijacking, and MFA fatigue. Specops Software explores how device trust and continuous verification help reduce account takeover risk. […] Sponsored by Specops Software Go to bleepingcomputer
-
India’s Telegram ban hit the UAE too. Here’s how to get around it
India’s Telegram ban hit the UAE too. Here’s how to get around it India has banned Telegram until June 22 after the app was used to circulate leaked exam papers. CEO Pavel Durov accuses telecom Reliance of BGP hijacking that disrupted the app as far away as the UAE. Here’s what happened, and how to…
-
Kodak confirms data breach claimed by ShinyHunters extortion gang
Kodak confirms data breach claimed by ShinyHunters extortion gang Kodak has confirmed that it’s working with external cybersecurity experts to investigate a security breach after hackers gained access to some of the company’s data. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft working on Defender patch for RoguePlanet zero-day
Microsoft working on Defender patch for RoguePlanet zero-day Microsoft confirmed that it’s working on a security patch for a Defender zero-day vulnerability named “RoguePlanet,” disclosed one week ago. […] Sergiu Gatlan Go to bleepingcomputer
-
Malicious JetBrains Marketplace plugins steal AI API keys from developers
Malicious JetBrains Marketplace plugins steal AI API keys from developers At least 15 malicious plugins found on the JetBrains Marketplace were designed to steal AI API keys from developers. […] Lawrence Abrams Go to bleepingcomputer
-
New Rokarolla Android malware targets 217 banking, crypto apps
New Rokarolla Android malware targets 217 banking, crypto apps A new Android banking trojan named Rokarolla is targeting 217 banking and cryptocurrency applications using an extensive set of 137 commands. […] Bill Toulas Go to bleepingcomputer
-
Steam Workshop abused to spread malware via Wallpaper Engine app
Steam Workshop abused to spread malware via Wallpaper Engine app Threat actors are abusing Steam Workshop, Valve’s community hub for downloading game-related content, to push various malware hidden in wallpaper packages. […] Bill Toulas Go to bleepingcomputer
-
Critical Fortinet FortiSandbox flaws now exploited in attacks
Critical Fortinet FortiSandbox flaws now exploited in attacks Attackers are now exploiting several critical vulnerabilities in Fortinet’s FortiSandbox cyber threat detection platform, according to threat intelligence company Defused. […] Sergiu Gatlan Go to bleepingcomputer
-
Windows version of SprySOCKS Linux malware used to attack govt orgs
Windows version of SprySOCKS Linux malware used to attack govt orgs Windows variants for the SprySOCKS Linux malware have been used in attacks targeting government organizations in at least four countries. […] Bill Toulas Go to bleepingcomputer
-
iRhythm discloses data breach, says hackers stole patient info
iRhythm discloses data breach, says hackers stole patient info Digital healthcare company iRhythm Holdings has disclosed a data breach after hackers stole patients’ personal and health information stored on third-party-hosted business applications. […] Sergiu Gatlan Go to bleepingcomputer
-
DOJ seizes CFAKE, SOCFAKE deepfake nude sites under TAKE IT DOWN Act
DOJ seizes CFAKE, SOCFAKE deepfake nude sites under TAKE IT DOWN Act The U.S. Department of Justice announced Friday that it has seized the CFAKE.com and SOCFAKE.com websites, which allegedly hosted nonconsensual AI-generated nude images and videos of women, in what appears to be the first publicly announced domain seizure under the TAKE IT DOWN…
-
SimpleHelp bug lets hackers create rogue remote support accounts
SimpleHelp bug lets hackers create rogue remote support accounts A vulnerability in the SimpleHelp remote management software allows unauthenticated attackers to create privileged technician accounts on servers using the OpenID Connect (OIDC) authentication protocol. […] Bill Toulas Go to bleepingcomputer
-
FBI disrupts massive AI-powered phishing service using a million URLs
FBI disrupts massive AI-powered phishing service using a million URLs In a coordinated effort, the FBI, working with Google and Black Lotus Labs, has dismantled a massive Chinese phishing-as-a-service operation called Outsider Enterprise with thousands of phishing websites used to steal credit card data and passwords. […] Bill Toulas Go to bleepingcomputer
-
Ex-school district employee jailed for hacks on former employer
Ex-school district employee jailed for hacks on former employer A former IT employee at an Iowa school district was sentenced to 21 months in prison after conducting a prolonged cyberattack against the former employer that disrupted classroom operations, deleted accounts, and caused tens of thousands of dollars in damages. […] Lawrence Abrams Go to bleepingcomputer
-
Chinese hackers hijack auth flow, spy on isolated network for a decade
Chinese hackers hijack auth flow, spy on isolated network for a decade Chinese hackers took control of a target organization’s authentication stack and maintained persistence for 10 years, with full visibility into the administrative activity. […] Bill Toulas Go to bleepingcomputer
-
US Gov asks Anthropic to ban ‘foreign national’ access to Fable, Mythos
US Gov asks Anthropic to ban ‘foreign national’ access to Fable, Mythos The US government has ordered Anthropic to block all foreign nationals from accessing Fable 5 and Mythos 5, forcing the company to suspend both models worldwide. Anthropic is complying but disputes the basis, calling the cited jailbreak narrow and the capability widely available…
-
Maine disables data breach notification portal after fake disclosures
Maine disables data breach notification portal after fake disclosures Maine has taken its public data breach reporting portal offline after fraudulent breach disclosures were published on the state’s website, prompting a review of procedures to prevent abuse in the future. […] Lawrence Abrams Go to bleepingcomputer
-
phpBB forum fixes auth bypass bug lurking for a decade
phpBB forum fixes auth bypass bug lurking for a decade A 10-year-old authentication bypass vulnerability discovered in the phpBB forum software allows an attacker to log in as any user, including administrators. […] Bill Toulas Go to bleepingcomputer
-
Ukrainian national pleads guilty to role in Conti ransomware operation
Ukrainian national pleads guilty to role in Conti ransomware operation A Ukrainian national extradited from Ireland to the United States last year has pleaded guilty to conspiracy charges tied to the Conti ransomware operation. […] Lawrence Abrams Go to bleepingcomputer
-
Over 400 Arch Linux packages compromised to push rootkit, infostealer
Over 400 Arch Linux packages compromised to push rootkit, infostealer More than 400 packages in the Arch User Repository (AUR) are distributing a Linux rootkit and infostealer malware targeting credentials and access tokens. […] Bill Toulas Go to bleepingcomputer
-
CISA orders feds to patch actively exploited Ivanti flaw by Sunday
CISA orders feds to patch actively exploited Ivanti flaw by Sunday The U.S. Cybersecurity and Infrastructure Security Agency (CISA) ordered government agencies to patch an actively exploited Ivanti Sentry flaw within three days, as mandated by the newly issued Binding Operational Directive (BOD) 26-04. […] Sergiu Gatlan Go to bleepingcomputer
-
Over 73,000 French govt employees affected in Tchap messenger breach
Over 73,000 French govt employees affected in Tchap messenger breach The French government revealed that a recent breach of its Tchap encrypted messaging platform affects the accounts of over 73,000 employees in the French public sector. […] Sergiu Gatlan Go to bleepingcomputer
-
Japanese energy firm loses drive with data of 10.9 million clients
Japanese energy firm loses drive with data of 10.9 million clients Kyushu Electric Power Co., Inc. has disclosed a physical security incident that affects private data of more than 10 million customers. […] Bill Toulas Go to bleepingcomputer
-
Maine breach portal abused to publish fake data breach disclosures
Maine breach portal abused to publish fake data breach disclosures In an unusual misinformation campaign, fraudulent data breach disclosures were submitted to Maine’s official breach portal and publicly posted before their legitimacy could be verified, prompting companies to deny the claims. […] Bill Toulas Go to bleepingcomputer
-
Oracle mitigates PeopleSoft zero-day exploited in data theft attacks
Oracle mitigates PeopleSoft zero-day exploited in data theft attacks Oracle is warning about a critical PeopleSoft Suite zero-day vulnerability tracked as CVE-2026-35273 that allows unauthenticated remote code execution, with the flaw actively exploited in ShinyHunter data theft attacks. […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft fixes BitLocker recovery bug on Windows Server 2025
Microsoft fixes BitLocker recovery bug on Windows Server 2025 Microsoft has resolved a known issue causing some Windows Server 2025 devices to boot into BitLocker recovery after installing the April 2026 security update. […] Sergiu Gatlan Go to bleepingcomputer
-
Nottingham University data breach affects over 450,000 students
Nottingham University data breach affects over 450,000 students The University of Nottingham confirmed on Wednesday that a hacking group gained access to its student records system in a breach affecting both current students and alums. […] Sergiu Gatlan Go to bleepingcomputer
-
Max severity Ivanti Sentry vulnerability now exploited in attacks
Max severity Ivanti Sentry vulnerability now exploited in attacks Attackers are now targeting a recently patched maximum-severity flaw in Ivanti Sentry, enabling them to execute code with root privileges on Internet-exposed secure mobile gateways. […] Sergiu Gatlan Go to bleepingcomputer
-
Path traversal flaw in AI dev platform Langflow exploited in attacks
Path traversal flaw in AI dev platform Langflow exploited in attacks Attackers are actively exploiting CVE-2026-5027, a high-severity path traversal vulnerability in the AI development platform Langflow, to write arbitrary files on exposed servers. […] Bill Toulas Go to bleepingcomputer
-
The ‘Miasma’ worm source code briefly leaked on GitHub
The ‘Miasma’ worm source code briefly leaked on GitHub The Miasma credential-stealing attack framework, which has recently targeted open-source ecosystems through supply-chain attacks, was briefly open-sourced on GitHub. […] Bill Toulas Go to bleepingcomputer
-
Microsoft patches YellowKey, GreenPlasma, MiniPlasma zero-days
Microsoft patches YellowKey, GreenPlasma, MiniPlasma zero-days On Tuesday, Microsoft patched two zero-day vulnerabilities that let attackers gain SYSTEM privileges on fully patched Windows systems, and a third one that grants access to BitLocker-protected drives. […] Sergiu Gatlan Go to bleepingcomputer
-
Anthropic rolls out Claude Fable 5, but it’s available for a limited time
Anthropic rolls out Claude Fable 5, but it’s available for a limited time Anthropic has begun rolling out a new model called “Fable,” which is based on the same underlying model as Mythos, its most powerful AI model class. […] Mayank Parmar Go to bleepingcomputer
-
Ivanti: Max severity Sentry flaw allows code execution as root
Ivanti: Max severity Sentry flaw allows code execution as root Ivanti has patched two critical vulnerabilities in its Sentry secure mobile gateway solution, including a maximum-severity flaw that enables remote attackers to execute code with root privileges. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft Defender ‘RoguePlanet’ zero-day grants SYSTEM privileges
Microsoft Defender ‘RoguePlanet’ zero-day grants SYSTEM privileges A security researcher has released a new Microsoft Defender zero-day exploit named “RoguePlanet” just hours after Microsoft fixed two previously disclosed flaws during June 2026 Patch Tuesday. […] Lawrence Abrams Go to bleepingcomputer
-
ServiceNow discloses security incident exposing customer data
ServiceNow discloses security incident exposing customer data ServiceNow is warning about a security incident after attackers exploited an unauthenticated access flaw through a vulnerable API endpoint, allowing them to query data from customer instances. […] Lawrence Abrams Go to bleepingcomputer
-
CISA gives feds 3 days to patch Check Point VPN bug exploited as zero-day
CISA gives feds 3 days to patch Check Point VPN bug exploited as zero-day CISA has ordered U.S. government agencies to secure their Check Point Remote Access VPN and Mobile Access deployments against a critical vulnerability exploited in zero-day attacks by Qilin ransomware affiliates. […] Sergiu Gatlan Go to bleepingcomputer
-
Google patches new Chrome zero-day flaw exploited in the wild
Google patches new Chrome zero-day flaw exploited in the wild Google has released emergency updates to patch another Chrome zero-day vulnerability that has been exploited in the wild, the fifth such flaw patched since the start of the year. […] Sergiu Gatlan Go to bleepingcomputer
-
NFCShare Android malware spreads via fake banking app updates on GitHub
NFCShare Android malware spreads via fake banking app updates on GitHub New variants of the NFCShare Android malware are being distributed as fake updates for legitimate banking apps hosted on GitHub. […] Bill Toulas Go to bleepingcomputer
-
SoFi confirms third-party data breach at Hong Kong subsidiary
SoFi confirms third-party data breach at Hong Kong subsidiary SoFi Hong Kong is warning that it suffered a data breach after hackers gained access to a database at a third-party vendor containing customer information. […] Lawrence Abrams Go to bleepingcomputer
-
New Apple feature automatically changes your compromised passwords
New Apple feature automatically changes your compromised passwords At WWDC 26, Apple announced an Apple Intelligence-powered feature that can automatically fix weak and compromised passwords. This works in Safari, and it’s rolling out with iOS 27. […] Mayank Parmar Go to bleepingcomputer
-
Hands on with Intelligent Terminal, an AI-powered Windows Terminal
Hands on with Intelligent Terminal, an AI-powered Windows Terminal Microsoft has created an open-source fork of Windows Terminal called “Intelligent Terminal,” and it allows you to use AI directly inside Terminal without interfering with the regular session. […] Mayank Parmar Go to bleepingcomputer
-
Over 20,000 Instagram accounts stolen in Meta AI support hack
Over 20,000 Instagram accounts stolen in Meta AI support hack Meta has revealed that 20,225 Instagram users had their accounts hijacked in a recent incident where attackers used Meta’s AI-powered support system to reset passwords. […] Sergiu Gatlan Go to bleepingcomputer
-
C0XMO botnet spreads via DD-WRT router flaw, kills rival malware
C0XMO botnet spreads via DD-WRT router flaw, kills rival malware A new variant of the Gafgyt botnet called C0XMO is targeting DD-WRT router firmware and can move to other device types with various CPU architectures. […] Bill Toulas Go to bleepingcomputer
-
Silent Ransom Group targets law firms with fake IT support calls
Silent Ransom Group targets law firms with fake IT support calls The Silent Ransom Group extortion gang is actively targeting U.S. law firms and professional services organizations in social engineering attacks that often lead to data theft within hours of initial contact, according to a new report by cybersecurity firm Mandiant. […] Lawrence Abrams Go…
-
Critical Everest Forms Pro flaw exploited to take over WordPress sites
Critical Everest Forms Pro flaw exploited to take over WordPress sites Hackers are actively exploiting a critical vulnerability (CVE-2026-3300) in the Everest Forms Pro plugin, which lets them take complete control of a WordPress website. […] Bill Toulas Go to bleepingcomputer
-
Suspicious Polyfill login prompts pop up on Toshiba, Muji websites
Suspicious Polyfill login prompts pop up on Toshiba, Muji websites Tech giant Toshiba and mega-retailer Muji warned visitors that suspicious sign-in screens popping up on their websites could collect credentials. […] Bill Toulas Go to bleepingcomputer
-
CISA: Hackers now exploit SolarWinds Serv-U flaw to crash servers
CISA: Hackers now exploit SolarWinds Serv-U flaw to crash servers CISA warned today that hackers are now actively exploiting a recently patched high-severity SolarWinds Serv-U flaw to crash servers. […] Sergiu Gatlan Go to bleepingcomputer
-
Chinese APT deploys new malware to keep access to hacked networks
Chinese APT deploys new malware to keep access to hacked networks A Chinese espionage group tracked as UNC5221 has been accessing Microsoft 365 environments using the Brickstorm backdoor and previously undocumented malware named Plenet and AgentPSD. […] Bill Toulas Go to bleepingcomputer
-
Dark web Nemesis Market vendor gets 26 years for selling drugs
Dark web Nemesis Market vendor gets 26 years for selling drugs A California man was sentenced to more than 26 years in federal prison for trafficking fentanyl and methamphetamine through Nemesis Market, one of the world’s largest dark web marketplaces. […] Sergiu Gatlan Go to bleepingcomputer
-
Over 900 US gas station tank gauge systems exposed to attacks
Over 900 US gas station tank gauge systems exposed to attacks Over 900 automatic tank gauge (ATG) systems across the United States, used to monitor fuel and chemical storage tanks across various critical infrastructure sectors, have been found exposed online and are vulnerable to ongoing attacks. […] Sergiu Gatlan Go to bleepingcomputer
-
Cisco warns of unpatched SD-WAN zero-day exploited in attacks
Cisco warns of unpatched SD-WAN zero-day exploited in attacks On Thursday, Cisco warned of a high-severity, unpatched zero-day in the Cisco Catalyst SD-WAN Manager (tracked as CVE-2026-20245) actively exploited in attacks enabling root privilege escalation. […] Sergiu Gatlan Go to bleepingcomputer
-
Brave Software releases Origin for a paid, bloat-free browsing experience
Brave Software releases Origin for a paid, bloat-free browsing experience Brave has announced the public release of Brave Origin, a paid minimalist version of its browser that strips out cryptocurrency, AI, rewards, and other monetization-focused features. […] Lawrence Abrams Go to bleepingcomputer
-
Hola Browser for Windows compromised to deliver cryptominer
Hola Browser for Windows compromised to deliver cryptominer The Windows version of the Hola Browser has been compromised in a supply chain attack that delivered an undeclared executable identified by researchers as a cryptocurrency miner. […] Bill Toulas Go to bleepingcomputer
-
Credit card theft campaign abuses Stripe to host stolen payment info
Credit card theft campaign abuses Stripe to host stolen payment info A new Magecart campaign is using Stripe’s API infrastructure to host the credit card-stealing payload and the data exfiltrated from checkout pages. […] Bill Toulas Go to bleepingcomputer
-
DentaQuest data breach exposed info of 2.6 million accounts
DentaQuest data breach exposed info of 2.6 million accounts A data breach at the dental benefits administrator DentaQuest has reportedly exposed the sensitive data of 2.6 million accounts. […] Bill Toulas Go to bleepingcomputer
-
Chinese hackers use new Atlas RAT malware in European cyberattacks
Chinese hackers use new Atlas RAT malware in European cyberattacks A Chinese-speaking cybercrime group has expanded its targeting to the European space, deploying previously undocumented malware and the Atlas backdoor. […] Bill Toulas Go to bleepingcomputer
-
U.S. sanctions Nobitex crypto exchange used by Iranian ransomware actors
U.S. sanctions Nobitex crypto exchange used by Iranian ransomware actors The U.S. Treasury’s Office of Foreign Assets Control (OFAC) has announced sanctions against Nobitex, Iran’s largest cryptocurrency exchange, for facilitating payments related to terrorist activities. […] Bill Toulas Go to bleepingcomputer
-
CISA warns of cyberattacks targeting fuel tank monitoring systems
CISA warns of cyberattacks targeting fuel tank monitoring systems CISA, the FBI, the NSA, the Department of Energy, and other US government partners are warning that hackers are targeting internet-exposed automatic tank gauge (ATG) systems used to monitor fuel and liquid storage tanks across various critical infrastructure sectors. […] Lawrence Abrams Go to bleepingcomputer
-
New ‘HTTP/2 Bomb’ DoS attack crashes web servers in under a minute
New ‘HTTP/2 Bomb’ DoS attack crashes web servers in under a minute A new denial-of-service (DoS) attack dubbed HTTP/2 Bomb can be launched from a single machine to take down web servers within seconds. […] Bill Toulas Go to bleepingcomputer
-
CISA warns of active attacks exploiting Android, Linux bugs
CISA warns of active attacks exploiting Android, Linux bugs The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning that hackers are exploiting vulnerabilities in the Linux kernel and Android operating system. […] Bill Toulas Go to bleepingcomputer
-
Google adds Android protection against AI deepfake scam calls
Google adds Android protection against AI deepfake scam calls Google is introducing a new Android security feature that will detect and flag phone calls in which scammers use artificial intelligence to impersonate a user’s personal contacts. […] Sergiu Gatlan Go to bleepingcomputer
-
VS Code zero-day lets hackers steal GitHub tokens in one click
VS Code zero-day lets hackers steal GitHub tokens in one click A security researcher has released exploit code for a Visual Studio Code (VS Code) zero-day vulnerability that allows attackers to steal GitHub authentication tokens by tricking users into clicking a link. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft’s Coreutils project brings Linux commands to Windows
Microsoft’s Coreutils project brings Linux commands to Windows Microsoft announced today at its Build 2026 developer conference the release of Coreutils for Windows, bringing many commonly used Linux command-line utilities to Windows as native applications. […] Lawrence Abrams Go to bleepingcomputer
-
OpenAI upgrades GPT-5.5, as it plans to retire legacy ChatGPT models
OpenAI upgrades GPT-5.5, as it plans to retire legacy ChatGPT models OpenAI says it’s rolling out a new update that improves the existing GPT-5.5 Instant model, and this move comes ahead of the scheduled retirement of multiple legacy models, including o3. […] Mayank Parmar Go to bleepingcomputer
-
Critical Kirki flaw exploited to hijack WordPress admin accounts
Critical Kirki flaw exploited to hijack WordPress admin accounts Hackers are exploiting a critical privilege escalation vulnerability (CVE-2026-8206) in the Kirki plugin for WordPress to take over any user account, including those belonging to administrators. […] Bill Toulas Go to bleepingcomputer
-
Hackers hijack thousands of sites for ClickFix and FakeUpdate attacks
Hackers hijack thousands of sites for ClickFix and FakeUpdate attacks A threat actor tracked as DriveSurge has been operating large-scale malware distribution campaigns using ClickFix and FakeUpdates techniques on compromised sites. […] Bill Toulas Go to bleepingcomputer
-
Red Hat npm packages compromised to steal developer credentials
Red Hat npm packages compromised to steal developer credentials More than 30 npm packages under Red Hat’s ‘@redhat-cloud-services’ namespace were compromised in a supply-chain attack that distributed a new variant of the Shai-Hulud credential-stealing malware, dubbed “Miasma.” […] Lawrence Abrams Go to bleepingcomputer