Tag: bleepingcomputer
-
Microsoft Entra account lockouts caused by user token logging mishap
Microsoft Entra account lockouts caused by user token logging mishap Microsoft confirms that the weekend Entra account lockouts were caused by the invalidation of short-lived user refresh tokens that were mistakenly logged into internal systems. […] Lawrence Abrams Go to bleepingcomputer
-
WordPress ad-fraud plugins generated 1.4 billion ad requests per day
WordPress ad-fraud plugins generated 1.4 billion ad requests per day A large-scale ad fraud operation called ‘Scallywag’ is monetizing pirating and URL shortening sites through specially crafted WordPress plugins that generate billions of daily fraudulent requests. […] Bill Toulas Go to bleepingcomputer
-
Phishers abuse Google OAuth to spoof Google in DKIM replay attack
Phishers abuse Google OAuth to spoof Google in DKIM replay attack In a rather clever attack, hackers leveraged a weakness that allowed them to send a fake email that seemed delivered from Google’s systems, passing all verifications but pointing to a fraudulent page that collected logins. […] Ionut Ilascu Go to bleepingcomputer
-
State-sponsored hackers embrace ClickFix social engineering tactic
State-sponsored hackers embrace ClickFix social engineering tactic ClickFix attacks are being increasingly adopted by threat actors of all levels, with researchers now seeing multiple advanced persistent threat (APT) groups from North Korea, Iran, and Russia utilizing the tactic to breach networks. […] Bill Toulas Go to bleepingcomputer
-
Widespread Microsoft Entra lockouts tied to new security feature rollout
Widespread Microsoft Entra lockouts tied to new security feature rollout Windows administrators from numerous organizations report widespread account lockouts triggered by false positives in the rollout of a new Microsoft Entra ID’s “leaked credentials” detection app called MACE. […] Lawrence Abrams Go to bleepingcomputer
-
New Android malware steals your credit cards for NFC relay attacks
New Android malware steals your credit cards for NFC relay attacks A new malware-as-a-service (MaaS) platform named ‘SuperCard X’ has emerged, targeting Android devices via NFC relay attacks that enable point-of-sale and ATM transactions using compromised payment card data. […] Bill Toulas Go to bleepingcomputer
-
Critical Erlang/OTP SSH RCE bug now has public exploits, patch now
Critical Erlang/OTP SSH RCE bug now has public exploits, patch now Public exploits are now available for a critical Erlang/OTP SSH vulnerability tracked as CVE-2025-32433, allowing unauthenticated attackers to remotely execute code on impacted devices. […] Lawrence Abrams Go to bleepingcomputer
-
Google Gemini AI is getting ChatGPT-like Scheduled Actions feature
Google Gemini AI is getting ChatGPT-like Scheduled Actions feature Google Gemini is testing a ChatGPT-like scheduled tasks feature called “Scheduled Actions,” which will allow you to create tasks that Gemini will execute later. […] Mayank Parmar Go to bleepingcomputer
-
Interlock ransomware gang pushes fake IT tools in ClickFix attacks
Interlock ransomware gang pushes fake IT tools in ClickFix attacks The Interlock ransomware gang now uses ClickFix attacks that impersonate IT tools to breach corporate networks and deploy file-encrypting malware on devices. […] Bill Toulas Go to bleepingcomputer
-
OpenAI details ChatGPT-o3, o4-mini, o4-mini-high usage limits
OpenAI details ChatGPT-o3, o4-mini, o4-mini-high usage limits OpenAI has launched three new reasoning models – o3, o4-mini, and o4-mini-high for Plus and Pro subscribers, but as it turns out, these models do not offer ‘unlimited’ usage. […] Mayank Parmar Go to bleepingcomputer
-
FBI: Scammers pose as FBI IC3 employees to ‘help’ recover lost funds
FBI: Scammers pose as FBI IC3 employees to ‘help’ recover lost funds The FBI warns that scammers posing as FBI IC3 employees are offering to “help” fraud victims recover money lost to other scammers. […] Sergiu Gatlan Go to bleepingcomputer
-
ASUS warns of critical auth bypass flaw in routers using AiCloud
ASUS warns of critical auth bypass flaw in routers using AiCloud ASUS is warning about an authentication bypass vulnerability in routers with AiCloud enabled that could allow remote attackers to perform unauthorized execution of functions on the device. […] Bill Toulas Go to bleepingcomputer
-
SonicWall SMA VPN devices targeted in attacks since January
SonicWall SMA VPN devices targeted in attacks since January A remote code execution vulnerability affecting SonicWall Secure Mobile Access (SMA) appliances has been under active exploitation since at least January 2025, according to cybersecurity company Arctic Wolf. […] Sergiu Gatlan Go to bleepingcomputer
-
Critical Erlang/OTP SSH pre-auth RCE is ‘Surprisingly Easy’ to exploit, patch now
Critical Erlang/OTP SSH pre-auth RCE is ‘Surprisingly Easy’ to exploit, patch now A critical vulnerability in the Erlang/OTP SSH, tracked as CVE-2025-32433, has been disclosed that allows for unauthenticated remote code execution on vulnerable devices. […] Lawrence Abrams Go to bleepingcomputer
-
Entertainment services giant Legends International discloses data breach
Entertainment services giant Legends International discloses data breach Entertainment venue management firm Legends International warns it suffered a data breach in November 2024, which has impacted employees and people who visited venues under its management. […] Bill Toulas Go to bleepingcomputer
-
Windows NTLM hash leak flaw exploited in phishing attacks on governments
Windows NTLM hash leak flaw exploited in phishing attacks on governments A Windows vulnerability that exposes NTLM hashes using .library-ms files is now actively exploited by hackers in phishing campaigns targeting government entities and private companies. […] Bill Toulas Go to bleepingcomputer
-
Chrome extensions with 6 million installs have hidden tracking code
Chrome extensions with 6 million installs have hidden tracking code A set of 57 Chrome extensions with 6,000,000 users have been discovered with very risky capabilities, such as monitoring browsing behavior, accessing cookies for domains, and potentially executing remote scripts. […] Bill Toulas Go to bleepingcomputer
-
Ahold Delhaize confirms data theft after INC ransomware claims attack
Ahold Delhaize confirms data theft after INC ransomware claims attack Food retail giant Ahold Delhaize confirms that data was stolen from its U.S. business systems during a November 2024 cyberattack. […] Bill Toulas Go to bleepingcomputer
-
CISA tags SonicWall VPN flaw as actively exploited in attacks
CISA tags SonicWall VPN flaw as actively exploited in attacks On Wednesday, CISA warned federal agencies to secure their SonicWall Secure Mobile Access (SMA) 100 series appliances against attacks exploiting a high-severity remote code execution vulnerability. […] Sergiu Gatlan Go to bleepingcomputer
-
Over 16,000 Fortinet devices compromised with symlink backdoor
Over 16,000 Fortinet devices compromised with symlink backdoor Over 16,000 internet-exposed Fortinet devices have been detected as compromised with a new symlink backdoor that allows read-only access to sensitive files on previously compromised devices. […] Lawrence Abrams Go to bleepingcomputer
-
Google blocked over 5 billion ads in 2024 amid rise in AI-powered scams
Google blocked over 5 billion ads in 2024 amid rise in AI-powered scams Google blocked 5.1 billion ads and suspended more than 39.2 million advertiser accounts in 2024, according to its 2024 Ads Safety Report released this week. […] Lawrence Abrams Go to bleepingcomputer
-
Apple fixes two zero-days exploited in targeted iPhone attacks
Apple fixes two zero-days exploited in targeted iPhone attacks Apple released emergency security updates to patch two zero-day vulnerabilities that were used in an “extremely sophisticated attack” against specific targets’ iPhones. […] Lawrence Abrams Go to bleepingcomputer
-
Google begins unifying search country domains to Google.com
Google begins unifying search country domains to Google.com Google has announced that it’s retiring separate country code top-level domain names like google.co.uk or google.com.br and redirecting users to Google.com. […] Mayank Parmar Go to bleepingcomputer
-
MITRE warns that funding for critical CVE program expires today
MITRE warns that funding for critical CVE program expires today MITRE Vice President Yosry Barsoum has warned that U.S. government funding for the Common Vulnerabilities and Exposures (CVE) and Common Weakness Enumeration (CWE) programs expires today, which could lead to widespread disruption across the global cybersecurity industry. […] Sergiu Gatlan Go to bleepingcomputer
-
ChatGPT 4.1 early benchmarks compared against Google Gemini
ChatGPT 4.1 early benchmarks compared against Google Gemini ChatGPT 4.1 is now rolling out, and it’s a significant leap from GPT 4o, but it fails to beat the benchmark set by Google’s most powerful model, Gemini. […] Mayank Parmar Go to bleepingcomputer
-
Midnight Blizzard deploys new GrapeLoader malware in embassy phishing
Midnight Blizzard deploys new GrapeLoader malware in embassy phishing Russian state-sponsored espionage group Midnight Blizzard is behind a new spear-phishing campaign targeting diplomatic entities in Europe, including embassies. […] Bill Toulas Go to bleepingcomputer
-
Landmark Admin data breach impact now reaches 1.6 million people
Landmark Admin data breach impact now reaches 1.6 million people Landmark Admin has issued an update to its investigation of a cyberattack it suffered in May 2024, increasing the number of impacted individuals to 1.6 million. […] Bill Toulas Go to bleepingcomputer
-
Infamous message board 4chan taken down following major hack
Infamous message board 4chan taken down following major hack 4chan, a notorious online forum, was taken offline earlier today after what appears to be a significant hack and has since been loading intermittently. […] Sergiu Gatlan Go to bleepingcomputer
-
Hertz confirms customer info, drivers’ licenses stolen in data breach
Hertz confirms customer info, drivers’ licenses stolen in data breach Car rental giant Hertz Corporation warns it suffered a data breach after customer data for its Hertz, Thrifty, and Dollar brands was stolen in the Cleo zero-day data theft attacks. […] Lawrence Abrams Go to bleepingcomputer
-
Govtech giant Conduent confirms client data stolen in January cyberattack
Govtech giant Conduent confirms client data stolen in January cyberattack American business services giant and government contractor Conduent disclosed today that client data was stolen in a January 2025 cyberattack. […] Lawrence Abrams Go to bleepingcomputer
-
Cybersecurity firm buying hacker forum accounts to spy on cybercriminals
Cybersecurity firm buying hacker forum accounts to spy on cybercriminals Swiss cybersecurity firm Prodaft has launched a new initiative called ‘Sell your Source’ where the company purchases verified and aged accounts on hacking forums to to spy on cybercriminals. […] Bill Toulas Go to bleepingcomputer
-
SSL/TLS certificate lifespans reduced to 47 days by 2029
SSL/TLS certificate lifespans reduced to 47 days by 2029 The CA/Browser Forum has voted to significantly reduce the lifespan of SSL/TLS certificates over the next 4 years, with a final lifespan of just 47 days starting in 2029. […] Bill Toulas Go to bleepingcomputer
-
New ResolverRAT malware targets pharma and healthcare orgs worldwide
New ResolverRAT malware targets pharma and healthcare orgs worldwide A new remote access trojan (RAT) called ‘ResolverRAT’ is being used against organizations globally, with the malware used in recent attacks targeting the healthcare and pharmaceutical sectors. […] Bill Toulas Go to bleepingcomputer
-
Leak confirms OpenAI’s GPT 4.1 is coming before GPT 5.0
Leak confirms OpenAI’s GPT 4.1 is coming before GPT 5.0 OpenAI is working on yet another AI model reportedly called GPT-4.1, a successor to GPT-4o, which is expected to come before GPT 5.0 […] Mayank Parmar Go to bleepingcomputer
-
Tycoon2FA phishing kit targets Microsoft 365 with new tricks
Tycoon2FA phishing kit targets Microsoft 365 with new tricks Phishing-as-a-service (PhaaS) platform Tycoon2FA, known for bypassing multi-factor authentication on Microsoft 365 and Gmail accounts, has received updates that improve its stealth and evasion capabilities. […] Bill Toulas Go to bleepingcomputer
-
AI-hallucinated code dependencies become new supply chain risk
AI-hallucinated code dependencies become new supply chain risk A new class of supply chain attacks named ‘slopsquatting’ has emerged from the increased use of generative AI tools for coding and the model’s tendency to “hallucinate” non-existent package names. […] Bill Toulas Go to bleepingcomputer
-
Microsoft Defender will isolate undiscovered endpoints to block attacks
Microsoft Defender will isolate undiscovered endpoints to block attacks Microsoft is testing a new Defender for Endpoint capability that will block traffic to and from undiscovered endpoints to thwart attackers’ lateral network movement attempts. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft starts final Windows Recall testing before rollout
Microsoft starts final Windows Recall testing before rollout Microsoft is gradually rolling out the AI-powered Windows Recall feature to Insiders in the Release Preview channel before making it generally available to all Windows users with Copilot+ PCs. […] Sergiu Gatlan Go to bleepingcomputer
-
Western Sydney University discloses security breaches, data leak
Western Sydney University discloses security breaches, data leak Western Sydney University (WSU) announced two security incidents that exposed personal information belonging to members of its community. […] Bill Toulas Go to bleepingcomputer
-
Fortinet: Hackers retain access to patched FortiGate VPNs using symlinks
Fortinet: Hackers retain access to patched FortiGate VPNs using symlinks Fortinet warns that threat actors use a post-exploitation technique that helps them maintain read-only access to previously compromised FortiGate VPN devices even after the original attack vector was patched. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft: Windows ‘inetpub’ folder created by security fix, don’t delete
Microsoft: Windows ‘inetpub’ folder created by security fix, don’t delete Microsoft has now confirmed that an April 2025 Windows security update is creating a new empty “inetpub” folder and warned users not to delete it. […] Sergiu Gatlan Go to bleepingcomputer
-
Hackers exploit WordPress plugin auth bypass hours after disclosure
Hackers exploit WordPress plugin auth bypass hours after disclosure Hackers started exploiting a high-severity flaw that allows bypassing authentication in the OttoKit (formerly SureTriggers) plugin for WordPress just hours after public disclosure. […] Bill Toulas Go to bleepingcomputer
-
Microsoft releases emergency update to fix Office 2016 crashes
Microsoft releases emergency update to fix Office 2016 crashes Microsoft has released an out-of-band Office update to fix a known issue that caused Word, Excel, and Outlook to crash after installing the KB5002700 security update for Office 2016. […] Sergiu Gatlan Go to bleepingcomputer
-
OpenAI wants ChatGPT to ‘know you over your life’ with new Memory update
OpenAI wants ChatGPT to ‘know you over your life’ with new Memory update OpenAI is giving ChatGPT’s memory feature its biggest upgrade yet, allowing the AI to know you better by referencing all your past conversations. […] Mayank Parmar Go to bleepingcomputer
-
Microsoft: Licensing issue blocks Microsoft 365 Family for some users
Microsoft: Licensing issue blocks Microsoft 365 Family for some users Microsoft is investigating a potential licensing issue blocking access to Microsoft 365 services for some customers with Family subscriptions. […] Sergiu Gatlan Go to bleepingcomputer
-
Claude copies ChatGPT with $200 Max plan, but users aren’t happy
Claude copies ChatGPT with $200 Max plan, but users aren’t happy Claude has a new subscription tier called “MAX,” but it costs a whopping $200 per month, and users aren’t happy with how the company enforces rate limits. […] Mayank Parmar Go to bleepingcomputer
-
ChatGPT’s o4-mini, o4-mini-high and o3 spotted ahead of release
ChatGPT’s o4-mini, o4-mini-high and o3 spotted ahead of release OpenAI is preparing to launch as many as three new AI models, possibly called “o4-mini”, “o4-mini-high” and “o3”. […] Mayank Parmar Go to bleepingcomputer
-
Windows 11 tests sharing apps screen and files with Copilot AI
Windows 11 tests sharing apps screen and files with Copilot AI Copilot on Windows 11 is testing OS-level integration that would allow you to share your favourite apps’ screen with Copilot. […] Mayank Parmar Go to bleepingcomputer
-
Google takes on Cursor with Firebase Studio, its AI builder for vibe coding
Google takes on Cursor with Firebase Studio, its AI builder for vibe coding Google has quietly launched Firebase Studio, which is a cloud-based AI-powered integrated development environment that lets you build full-fledged apps using prompts. […] Mayank Parmar Go to bleepingcomputer
-
Hackers target SSRF bugs in EC2-hosted sites to steal AWS credentials
Hackers target SSRF bugs in EC2-hosted sites to steal AWS credentials A targeted campaign exploited Server-Side Request Forgery (SSRF) vulnerabilities in websites hosted on AWS EC2 instances to extract EC2 Metadata, which could include Identity and Access Management (IAM) credentials from the IMDSv1 endpoint. […] Bill Toulas Go to bleepingcomputer
-
Oracle says “obsolete servers” hacked, denies cloud breach
Oracle says “obsolete servers” hacked, denies cloud breach Oracle finally confirmed in email notifications sent to customers that a hacker stole and leaked credentials that were stolen from what it described as “two obsolete servers.” […] Sergiu Gatlan Go to bleepingcomputer
-
Fake Microsoft Office add-in tools push malware via SourceForge
Fake Microsoft Office add-in tools push malware via SourceForge Threat actors are abusing SourceForge to distribute fake Microsoft add-ins that install malware on victims’ computers to both mine and steal cryptocurrency. […] Bill Toulas Go to bleepingcomputer
-
Microsoft fixes auth issues on Windows Server, Windows 11 24H2
Microsoft fixes auth issues on Windows Server, Windows 11 24H2 Microsoft has fixed a known issue causing authentication problems when Credential Guard is enabled on systems using the Kerberos PKINIT pre-auth security protocol. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft: Windows CLFS zero-day exploited by ransomware gang
Microsoft: Windows CLFS zero-day exploited by ransomware gang Microsoft says the RansomEXX ransomware gang has been exploiting a high-severity zero-day flaw in the Windows Common Log File System to gain SYSTEM privileges on victims’ systems. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft April 2025 Patch Tuesday fixes exploited zero-day, 134 flaws
Microsoft April 2025 Patch Tuesday fixes exploited zero-day, 134 flaws Today is Microsoft’s April 2025 Patch Tuesday, which includes security updates for 134 flaws, including one actively exploited zero-day vulnerability. […] Lawrence Abrams Go to bleepingcomputer
-
Windows 10 KB5055518 update fixes random text when printing
Windows 10 KB5055518 update fixes random text when printing Microsoft has released the KB5055518 cumulative update for Windows 10 22H2 and Windows 10 21H2, with nine changes or fixes. […] Lawrence Abrams Go to bleepingcomputer
-
EncryptHub’s dual life: Cybercriminal vs Windows bug-bounty researcher
EncryptHub’s dual life: Cybercriminal vs Windows bug-bounty researcher EncryptHub, a notorious threat actor linked to breaches at 618 organizations, is believed to have reported two Windows zero-day vulnerabilities to Microsoft, revealing a conflicted figure straddling the line between cybercrime and security research. […] Bill Toulas Go to bleepingcomputer
-
Microsoft delays WSUS driver sync deprecation indefinitely
Microsoft delays WSUS driver sync deprecation indefinitely Microsoft announced today that, based on customer feedback, it will indefinitely delay removing driver synchronization in Windows Server Update Services (WSUS). […] Sergiu Gatlan Go to bleepingcomputer
-
Six arrested for AI-powered investment scams that stole $20 million
Six arrested for AI-powered investment scams that stole $20 million Spain’s police arrested six individuals behind a large-scale cryptocurrency investment scam that used AI tools to generate deepfake ads featuring popular public figures to lure people. […] Bill Toulas Go to bleepingcomputer
-
Everest ransomware’s dark web leak site defaced, now offline
Everest ransomware’s dark web leak site defaced, now offline The dark web leak site of the Everest ransomware gang has apparently been hacked over the weekend by an unknown attacker and is now offline. […] Sergiu Gatlan Go to bleepingcomputer
-
Google fixes Android zero-days exploited in attacks, 60 other flaws
Google fixes Android zero-days exploited in attacks, 60 other flaws Google has released patches for 62 vulnerabilities in Android’s April 2025 security update, including two zero-days exploited in targeted attacks. […] Sergiu Gatlan Go to bleepingcomputer
-
E-ZPass toll payment texts return in massive phishing wave
E-ZPass toll payment texts return in massive phishing wave An ongoing phishing campaign impersonating E-ZPass and other toll agencies has surged recently, with recipients receiving multiple iMessage and SMS texts to steal personal and credit card information. […] Bill Toulas Go to bleepingcomputer
-
OpenAI tests watermarking for ChatGPT-4o Image Generation model
OpenAI tests watermarking for ChatGPT-4o Image Generation model OpenAI is reportedly testing a new “watermark” for the Image Generation model, which is a part of the ChatGPT 4o model. […] Mayank Parmar Go to bleepingcomputer
-
Carding tool abusing WooCommerce API downloaded 34K times on PyPI
Carding tool abusing WooCommerce API downloaded 34K times on PyPI A newly discovered malicious PyPi package named ‘disgrasya’ that abuses legitimate WooCommerce stores for validating stolen credit cards has been downloaded over 34,000 times from the open-source package platform. […] Bill Toulas Go to bleepingcomputer
-
Coinbase to fix 2FA account activity entry freaking out users
Coinbase to fix 2FA account activity entry freaking out users Coinbase is fixing an incorrect account activity message that freaks out customers and makes them think their credentials were compromised. […] Lawrence Abrams Go to bleepingcomputer
-
WinRAR flaw bypasses Windows Mark of the Web security alerts
WinRAR flaw bypasses Windows Mark of the Web security alerts A vulnerability in the WinRAR file archiver solution could be exploited to bypass the Mark of the Web (MotW) security warning and execute arbitrary code on a Windows machine. […] Ionut Ilascu Go to bleepingcomputer
-
Port of Seattle says ransomware breach impacts 90,000 people
Port of Seattle says ransomware breach impacts 90,000 people Port of Seattle, the U.S. government agency overseeing Seattle’s seaport and airport, is notifying roughly 90,000 individuals of a data breach after their personal information was stolen in an August 2024 ransomware attack. […] Sergiu Gatlan Go to bleepingcomputer
-
PoisonSeed phishing campaign behind emails with wallet seed phrases
PoisonSeed phishing campaign behind emails with wallet seed phrases A large-scale phishing campaign dubbed ‘PoisonSeed’ compromises corporate email marketing accounts to distribute emails containing crypto seed phrases used to drain cryptocurrency wallets. […] Bill Toulas Go to bleepingcomputer
-
Australian pension funds hit by wave of credential stuffing attacks
Australian pension funds hit by wave of credential stuffing attacks Over the weekend, a massive wave of credential stuffing attacks hit multiple large Australian super funds, compromising thousands of members’ accounts. […] Sergiu Gatlan Go to bleepingcomputer
-
Europcar GitLab breach exposes data of up to 200,000 customers
Europcar GitLab breach exposes data of up to 200,000 customers A hacker breached the GitLab repositories of multinational car-rental company Europcar Mobility Group and stole source code for Android and iOS applications, as well as some personal information belonging to up to 200,000 users. […] Ionut Ilascu Go to bleepingcomputer
-
OpenAI’s $20 ChatGPT Plus is now free for students until the end of May
OpenAI’s $20 ChatGPT Plus is now free for students until the end of May ChatGPT Plus subscription is now free, but only if you’re a student based out of the United States of America and Canada. […] Mayank Parmar Go to bleepingcomputer
-
Max severity RCE flaw discovered in widely used Apache Parquet
Max severity RCE flaw discovered in widely used Apache Parquet A maximum severity remote code execution (RCE) vulnerability has been discovered impacting all versions of Apache Parquet up to and including 1.15.0. […] Bill Toulas Go to bleepingcomputer
-
Hunters International shifts from ransomware to pure data extortion
Hunters International shifts from ransomware to pure data extortion The Hunters International Ransomware-as-a-Service (RaaS) operation is shutting down and rebranding with plans to switch to date theft and extortion-only attacks. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft starts testing Windows 11 taskbar icon scaling
Microsoft starts testing Windows 11 taskbar icon scaling Microsoft is testing a new taskbar icon scaling feature that automatically scales down Windows taskbar icons to show more apps when it gets too overcrowded. […] Sergiu Gatlan Go to bleepingcomputer
-
CISA warns of Fast Flux DNS evasion used by cybercrime gangs
CISA warns of Fast Flux DNS evasion used by cybercrime gangs CISA, the FBI, the NSA, and international cybersecurity agencies are calling on organizations and DNS providers to mitigate the “Fast Flux” cybercrime evasion technique used by state-sponsored threat actors and ransomware gangs. […] Bill Toulas Go to bleepingcomputer
-
Ivanti patches Connect Secure zero-day exploited since mid-March
Ivanti patches Connect Secure zero-day exploited since mid-March Ivanti has released security updates to patch a critical Connect Secure remote code execution vulnerability exploited by a China-linked espionage actor to deploy malware since at least mid-March 2025. […] Sergiu Gatlan Go to bleepingcomputer
-
Genetic data site openSNP to close and delete data over privacy concerns
Genetic data site openSNP to close and delete data over privacy concerns The openSNP project, a platform for sharing genetic and phenotypic data, will shut down on April 30, 2025, and delete all user submissions over privacy concerns and the risk of misuse by authoritarian governments. […] Bill Toulas Go to bleepingcomputer
-
Verizon Call Filter API flaw exposed customers’ incoming call history
Verizon Call Filter API flaw exposed customers’ incoming call history A vulnerability in Verizon’s Call Filter feature allowed customers to access the incoming call logs for another Verizon Wireless number through an unsecured API request. […] Bill Toulas Go to bleepingcomputer
-
GitHub expands security tools after 39 million secrets leaked in 2024
GitHub expands security tools after 39 million secrets leaked in 2024 Over 39 million secrets like API keys and account credentials were leaked on GitHub throughout 2024, exposing organizations and users to significant security risks. […] Bill Toulas Go to bleepingcomputer
-
Microsoft adds hotpatching support to Windows 11 Enterprise
Microsoft adds hotpatching support to Windows 11 Enterprise Microsoft has announced that hotpatch updates are now available for business customers using Windows 11 Enterprise 24H2 on x64 (AMD/Intel) systems, starting today. […] Sergiu Gatlan Go to bleepingcomputer
-
Royal Mail investigates data leak claims, no impact on operations
Royal Mail investigates data leak claims, no impact on operations Royal Mail is investigating claims of a security breach after a threat actor leaked over 144GB of data allegedly stolen from the company’s systems. […] Sergiu Gatlan Go to bleepingcomputer
-
New Windows 11 trick lets you bypass Microsoft Account requirement
New Windows 11 trick lets you bypass Microsoft Account requirement A previously unknown trick lets you easily bypass using a Microsoft Account in Windows 11, just as Microsoft tries to make it harder to use local accounts. […] Lawrence Abrams Go to bleepingcomputer
-
North Korean IT worker army expands operations in Europe
North Korean IT worker army expands operations in Europe North Korea’s IT workers have expanded operations beyond the United States and are now increasingly targeting organizations across Europe. […] Sergiu Gatlan Go to bleepingcomputer
-
We Smell a (DC)Rat: Revealing a Sophisticated Malware Delivery Chain
We Smell a (DC)Rat: Revealing a Sophisticated Malware Delivery Chain A RAR file, a fake summons, and a Nietzsche quote—all part of a multi-stage malware chain delivering DCRat & Rhadamanthys. Acronis TRU breaks down how attackers use VBS, batch, and PowerShell scripts to slip past defenses. […] Sponsored by Acronis Go to bleepingcomputer
-
Apple fined €150 million over App Tracking Transparency issues
Apple fined €150 million over App Tracking Transparency issues Autorité de la concurrence, France’s antitrust watchdog, has fined Apple €150 million ($162 million) for using the App Tracking Transparency privacy framework to abuse its dominant market position in mobile app advertising on its devices. […] Sergiu Gatlan Go to bleepingcomputer
-
Google rolls out easy end-to-end encryption for Gmail business users
Google rolls out easy end-to-end encryption for Gmail business users Google has started rolling out a new end-to-end encryption (E2EE) model for Gmail enterprise users, making it easier to send encrypted emails to any recipient. […] Sergiu Gatlan Go to bleepingcomputer
-
VMware Workstation auto-updates broken after Broadcom URL redirect
VMware Workstation auto-updates broken after Broadcom URL redirect VMware Workstation users report that the software’s automatic update functionality is broken after Broadcom redirected the download URL to its generic support page, triggering certificate errors. […] Lawrence Abrams Go to bleepingcomputer
-
OpenAI says Deep Research is coming to ChatGPT free “very soon”
OpenAI says Deep Research is coming to ChatGPT free “very soon” OpenAI has confirmed that its powerful AI agent “Deep Research” will begin rolling out to free users “very soon.” At the moment, Deep Research is available only for Plus and Enterprise customers. […] Mayank Parmar Go to bleepingcomputer
-
Microsoft uses AI to find flaws in GRUB2, U-Boot, Barebox bootloaders
Microsoft uses AI to find flaws in GRUB2, U-Boot, Barebox bootloaders Microsoft used its AI-powered Security Copilot to discover 20 previously unknown vulnerabilities in the GRUB2, U-Boot, and Barebox open-source bootloaders. […] Bill Toulas Go to bleepingcomputer
-
Phishing platform ‘Lucid’ behind wave of iOS, Android SMS attacks
Phishing platform ‘Lucid’ behind wave of iOS, Android SMS attacks A phishing-as-a-service (PhaaS) platform named ‘Lucid’ has been targeting 169 entities in 88 countries using well-crafted messages sent on iMessage (iOS) and RCS (Android). […] Bill Toulas Go to bleepingcomputer
-
Hackers abuse WordPress MU-Plugins to hide malicious code
Hackers abuse WordPress MU-Plugins to hide malicious code Hackers are utilizing the WordPress mu-plugins (“Must-Use Plugins”) directory to stealthily run malicious code on every page while evading detection. […] Bill Toulas Go to bleepingcomputer
-
Microsoft tests new Windows 11 tool to remotely fix boot crashes
Microsoft tests new Windows 11 tool to remotely fix boot crashes Microsoft has begun testing a new Windows 11 tool called Quick Machine Recovery, which is designed to remotely deploy fixes for buggy drivers and configurations that prevent the operating system from starting. […] Lawrence Abrams Go to bleepingcomputer
-
New Crocodilus malware steals Android users’ crypto wallet keys
New Crocodilus malware steals Android users’ crypto wallet keys A newly discovered Android malware dubbed Crocodilus tricks users into providing the seed phrase for the cryptocurrency wallet using a warning to back up the key to avoid losing access. […] Bill Toulas Go to bleepingcomputer
-
Microsoft’s killing script used to avoid Microsoft Account in Windows 11
Microsoft’s killing script used to avoid Microsoft Account in Windows 11 Microsoft has removed the ‘BypassNRO.cmd’ script from Windows 11 preview builds, which allowed users to bypass the requirement to use a Microsoft Account when installing the operating system. […] Lawrence Abrams Go to bleepingcomputer
-
U.S. seized $8.2 million in crypto linked to ‘Romance Baiting’ scams
U.S. seized $8.2 million in crypto linked to ‘Romance Baiting’ scams The U.S. Department of Justice (DOJ) has seized over $8.2 million worth of USDT (Tether) cryptocurrency that was stolen via ‘romance baiting’ scams. […] Bill Toulas Go to bleepingcomputer
-
Retail giant Sam’s Club investigates Clop ransomware breach claims
Retail giant Sam’s Club investigates Clop ransomware breach claims Sam’s Club, an American warehouse supermarket chain owned by U.S. retail giant Walmart, is investigating claims of a Clop ransomware breach. […] Sergiu Gatlan Go to bleepingcomputer
-
OpenAI now pays researchers $100,000 for critical vulnerabilities
OpenAI now pays researchers $100,000 for critical vulnerabilities Artificial intelligence company OpenAI has announced a fivefold increase in the maximum bug bounty rewards for “exceptional and differentiated” critical security vulnerabilities from $20,000 to $100,000. […] Sergiu Gatlan Go to bleepingcomputer
-
Phishing-as-a-service operation uses DNS-over-HTTPS for evasion
Phishing-as-a-service operation uses DNS-over-HTTPS for evasion A newly discovered phishing-as-a-service (PhaaS) operation that researchers call Morphing Meerkat, has been using the DNS over HTTPS (DoH) protocol to evade detection. […] Bill Toulas Go to bleepingcomputer
-
Microsoft fixes button that restores classic Outlook client
Microsoft fixes button that restores classic Outlook client Microsoft resolved an issue that caused the new Outlook email client to crash when users clicked a button designed to switch back to classic Outlook. […] Sergiu Gatlan Go to bleepingcomputer
-
New Ubuntu Linux security bypasses require manual mitigations
New Ubuntu Linux security bypasses require manual mitigations Three security bypasses have been discovered in Ubuntu Linux’s unprivileged user namespace restrictions, which could be enable a local attacker to exploit vulnerabilities in kernel components. […] Bill Toulas Go to bleepingcomputer