Tag: bleepingcomputer
-
CISA orders feds to patch DarkSword iOS flaws exploited attacks
CISA orders feds to patch DarkSword iOS flaws exploited attacks CISA ordered U.S. government agencies to patch three iOS vulnerabilities targeted in cryptocurrency theft and cyberespionage attacks using the DarkSword exploit kit. […] Sergiu Gatlan Go to bleepingcomputer
-
New KB5085516 emergency update fixes Microsoft account sign-in
New KB5085516 emergency update fixes Microsoft account sign-in Microsoft has released an emergency update to address a major issue that breaks sign-ins with Microsoft accounts across multiple Microsoft apps, including Teams and OneDrive. […] Sergiu Gatlan Go to bleepingcomputer
-
VoidStealer malware steals Chrome master key via debugger trick
VoidStealer malware steals Chrome master key via debugger trick An information stealer called VoidStealer uses a new approach to bypass Chrome’s Application-Bound Encryption (ABE) and extract the master key for decrypting sensitive data stored in the browser. […] Bill Toulas Go to bleepingcomputer
-
Trivy vulnerability scanner breach pushed infostealer via GitHub Actions
Trivy vulnerability scanner breach pushed infostealer via GitHub Actions The Trivy vulnerability scanner was compromised in a supply-chain attack by threat actors known as TeamPCP, which distributed credential-stealing malware through official releases and GitHub Actions. […] Lawrence Abrams Go to bleepingcomputer
-
Google adds ‘Advanced Flow’ for safe APK sideloading on Android
Google adds ‘Advanced Flow’ for safe APK sideloading on Android Google has announced a new mechanism in Android called Advanced Flow that will allow sideloading APKs from unverified developers for power users in a more secure way. […] Bill Toulas Go to bleepingcomputer
-
Microsoft Azure Monitor alerts abused for callback phishing attacks
Microsoft Azure Monitor alerts abused for callback phishing attacks Microsoft Azure Monitor alerts are being abused to send callback phishing emails that impersonate warnings from the Microsoft Security Team about unauthorized charges on your account. […] Lawrence Abrams Go to bleepingcomputer
-
FBI links Signal phishing attacks to Russian intelligence services
FBI links Signal phishing attacks to Russian intelligence services The FBI has issued a public service announcement warning that Russian intelligence-linked threat actors are actively targeting users of encrypted messaging apps such as Signal and WhatsApp in phishing campaigns that have already compromised thousands of accounts. […] Lawrence Abrams Go to bleepingcomputer
-
Oracle pushes emergency fix for critical Identity Manager RCE flaw
Oracle pushes emergency fix for critical Identity Manager RCE flaw Oracle has released an out-of-band security update to fix a critical unauthenticated remote code execution vulnerability in Identity Manager and Web Services Manager tracked as CVE-2026-21992. […] Lawrence Abrams Go to bleepingcomputer
-
Police take down 373,000 fake CSAM sites in Operation Alice
Police take down 373,000 fake CSAM sites in Operation Alice An international law enforcement action called Operation Alice has shut down over 373,000 dark web sites that offered fake CSAM packages. […] Bill Toulas Go to bleepingcomputer
-
CISA orders feds to patch max-severity Cisco flaw by Sunday
CISA orders feds to patch max-severity Cisco flaw by Sunday The Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch a maximum-severity vulnerability, CVE-2026-20131, in Cisco Secure Firewall Management Center (FMC) by Sunday, March 22. […] Bill Toulas Go to bleepingcomputer
-
How CISOs Can Survive the Era of Geopolitical Cyberattacks
How CISOs Can Survive the Era of Geopolitical Cyberattacks Geopolitical tensions are driving destructive cyberattacks designed to disrupt operations, not demand ransom. CISOs must limit lateral movement and contain breaches to reduce the impact of wiper campaigns. […] Sponsored by Zero Networks Go to bleepingcomputer
-
Musician admits to $10M streaming royalty fraud using AI bots
Musician admits to $10M streaming royalty fraud using AI bots North Carolina musician Michael Smith has pleaded guilty to collecting over $10 million in royalty payments through a massive streaming royalty fraud scheme on Spotify, Apple Music, Amazon Music, and YouTube Music. […] Sergiu Gatlan Go to bleepingcomputer
-
International joint action disrupts world’s largest DDoS botnets
International joint action disrupts world’s largest DDoS botnets Authorities from the United States, Germany, and Canada have taken down Command and Control (C2) infrastructure used by the Aisuru, KimWolf, JackSkid, and Mossad botnets to infect Internet of Things (IoT) devices. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft: March Windows updates break Teams, OneDrive sign-ins
Microsoft: March Windows updates break Teams, OneDrive sign-ins Microsoft says the March Windows 11 update breaks sign-ins with Microsoft accounts across multiple Microsoft apps, including Teams and OneDrive. […] Sergiu Gatlan Go to bleepingcomputer
-
Ex-data analyst stole company data in $2.5M extortion scheme
Ex-data analyst stole company data in $2.5M extortion scheme A North Carolina man was found guilty of extorting a D.C.-based technology company while still being employed as a data analyst contractor. […] Sergiu Gatlan Go to bleepingcomputer
-
Navia discloses data breach impacting 2.7 million people
Navia discloses data breach impacting 2.7 million people Navia Benefit Solutions, Inc. (Navia) is informing nearly 2.7 million individuals of a data breach that exposed their sensitive information to attackers. […] Bill Toulas Go to bleepingcomputer
-
Aura confirms data breach exposing 900,000 marketing contacts
Aura confirms data breach exposing 900,000 marketing contacts Identity protection company Aura has confirmed that an unauthorized party gained access to nearly 900,000 customer records containing names and email addresses. […] Bill Toulas Go to bleepingcomputer
-
CISA orders feds to patch Zimbra XSS flaw exploited in attacks
CISA orders feds to patch Zimbra XSS flaw exploited in attacks CISA has ordered U.S. government agencies to secure their servers against an actively exploited vulnerability in the Zimbra Collaboration Suite (ZCS). […] Sergiu Gatlan Go to bleepingcomputer
-
ConnectWise patches new flaw allowing ScreenConnect hijacking
ConnectWise patches new flaw allowing ScreenConnect hijacking ConnectWise is warning ScreenConnect customers of a cryptographic signature verification vulnerability that could lead to unauthorized access and privilege escalation. […] Bill Toulas Go to bleepingcomputer
-
Ransomware gang exploits Cisco flaw in zero-day attacks since January
Ransomware gang exploits Cisco flaw in zero-day attacks since January The Interlock ransomware gang has been exploiting a maximum severity remote code execution (RCE) vulnerability in Cisco’s Secure Firewall Management Center (FMC) software in zero-day attacks since late January. […] Sergiu Gatlan Go to bleepingcomputer
-
Marquis: Ransomware gang stole data of 672K people in cyberattack
Marquis: Ransomware gang stole data of 672K people in cyberattack Marquis, a Texas-based financial services provider, revealed this week that a ransomware gang stole the data of over 670,000 individuals in an August 2025 cyberattack that also disrupted operations at 74 banks across the United States. […] Sergiu Gatlan Go to bleepingcomputer
-
Apple pushes first Background Security Improvements update to fix WebKit flaw
Apple pushes first Background Security Improvements update to fix WebKit flaw Apple has released its first Background Security Improvements update to fix a WebKit flaw tracked as CVE-2026-20643 on iPhones, iPads, and Macs without requiring a full operating system upgrade. […] Lawrence Abrams Go to bleepingcomputer
-
GlassWorm malware hits 400+ code repos on GitHub, npm, VSCode, OpenVSX
GlassWorm malware hits 400+ code repos on GitHub, npm, VSCode, OpenVSX The GlassWorm supply-chain campaign has returned with a new, coordinated attack that targeted hundreds of packages, repositories, and extensions on GitHub, npm, and VSCode/OpenVSX extensions. […] Bill Toulas Go to bleepingcomputer
-
Europe sanctions Chinese and Iranian firms for cyberattacks
Europe sanctions Chinese and Iranian firms for cyberattacks The European Union Council has announced sanctions against three entities and two individuals for their involvement in cyberattacks targeting critical infrastructure in the region. […] Bill Toulas Go to bleepingcomputer
-
Top 5 Things CISOs Need to Do Today to Secure AI Agents
Top 5 Things CISOs Need to Do Today to Secure AI Agents AI agents are autonomous actors with real access to data and systems, not just copilots. Token Security explains why identity-based access control is critical to prevent misuse and data exposure. […] Sponsored by Token Security Go to bleepingcomputer
-
New font-rendering trick hides malicious commands from AI tools
New font-rendering trick hides malicious commands from AI tools A new font-rendering attack causes AI assistants to miss malicious commands shown on webpages by hiding them in seemingly harmless HTML. […] Bill Toulas Go to bleepingcomputer
-
Stryker attack wiped tens of thousands of devices, no malware needed
Stryker attack wiped tens of thousands of devices, no malware needed Last week’s cyberattack on medical technology giant Stryker was limited to its internal Microsoft environment and remotely wiped tens of thousands of employee devices. […] Ionut Ilascu Go to bleepingcomputer
-
CISA flags Wing FTP Server flaw as actively exploited in attacks
CISA flags Wing FTP Server flaw as actively exploited in attacks CISA warned U.S. government agencies to secure their Wing FTP Server instances against an actively exploited vulnerability that may be chained in remote code execution attacks. […] Sergiu Gatlan Go to bleepingcomputer
-
UK’s Companies House confirms security flaw exposed business data
UK’s Companies House confirms security flaw exposed business data Companies House, a British government agency that operates the registry for all U.K. companies, says its WebFiling service is back online after it was closed on Friday to fix a security flaw that exposed companies’ information since October 2025. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft Exchange Online outage blocks access to mailboxes
Microsoft Exchange Online outage blocks access to mailboxes Microsoft is working to address an ongoing Exchange Online outage that is preventing customers from accessing their mailboxes and calendars. […] Sergiu Gatlan Go to bleepingcomputer
-
Shadow AI is everywhere. Here’s how to find and secure it.
Shadow AI is everywhere. Here’s how to find and secure it. Shadow AI is quietly spreading across SaaS environments as employees adopt new AI tools without IT oversight. Nudge Security explains how security teams can discover AI apps, monitor usage, and govern risky AI activity. […] Sponsored by Nudge Security Go to bleepingcomputer
-
OpenAI says ChatGPT ads are not rolling out globally for now
OpenAI says ChatGPT ads are not rolling out globally for now OpenAI told BleepingComputer that ChatGPT ads on Free and Go plans are not yet rolling out outside the United States, even though some users noticed references to ads in the updated privacy policy. […] Mayank Parmar Go to bleepingcomputer
-
Betterleaks, a new open-source secrets scanner to replace Gitleaks
Betterleaks, a new open-source secrets scanner to replace Gitleaks A new open-source tool called Betterleaks can scan directories, files, and git repositories and identify valid secrets using default or customized rules. […] Bill Toulas Go to bleepingcomputer
-
Microsoft releases Windows 11 OOB hotpatch to fix RRAS RCE flaw
Microsoft releases Windows 11 OOB hotpatch to fix RRAS RCE flaw Microsoft has released an out-of-band (OOB) update to fix a security vulnerabilities affecting Windows 11 Enterprise devices that receive hotpatch updates instead of the regular Patch Tuesday cumulative updates. […] Lawrence Abrams Go to bleepingcomputer
-
AppsFlyer Web SDK hijacked to spread crypto-stealing JavaScript code
AppsFlyer Web SDK hijacked to spread crypto-stealing JavaScript code The AppsFlyer Web SDK was temporarily hijacked this week with malicious code used to steal cryptocurrency in a supply-chain attack. […] Bill Toulas Go to bleepingcomputer
-
Microsoft: Windows 11 users can’t access C: drive on some Samsung PCs
Microsoft: Windows 11 users can’t access C: drive on some Samsung PCs Microsoft is investigating a new issue affecting some Samsung laptops running Windows 11 after installing the February 2026 security updates, in which users lose access to their C: drive and are unable to launch applications. […] Lawrence Abrams Go to bleepingcomputer
-
FBI seeks victims of Steam games used to spread malware
FBI seeks victims of Steam games used to spread malware The FBI is asking gamers who installed Steam titles containing malware to provide information as part of an ongoing investigation into eight malicious games uploaded to the gaming platform. […] Lawrence Abrams Go to bleepingcomputer
-
Poland’s nuclear research centre targeted by cyberattack
Poland’s nuclear research centre targeted by cyberattack Poland’s National Centre for Nuclear Research (NCBJ) says hackers targeted its IT infrastructure, but the attack was detected and blocked before causing any impact. […] Bill Toulas Go to bleepingcomputer
-
Microsoft investigates classic Outlook sync and connection issues
Microsoft investigates classic Outlook sync and connection issues Microsoft is investigating several issues causing email synchronization and connection problems when using the classic Outlook desktop client. […] Sergiu Gatlan Go to bleepingcomputer
-
From VMware to what’s next: Protecting data during hypervisor migration
From VMware to what’s next: Protecting data during hypervisor migration Hypervisor migrations can introduce hidden risks that threaten data availability and recovery. Acronis explains why verified backups and cross-platform recovery are essential during VMware transitions. […] Sponsored by Acronis Go to bleepingcomputer
-
Starbucks discloses data breach affecting hundreds of employees
Starbucks discloses data breach affecting hundreds of employees Starbucks has disclosed a data breach affecting hundreds of employees after threat actors gained access to their Starbucks Partner Central accounts. […] Sergiu Gatlan Go to bleepingcomputer
-
Google fixes two new Chrome zero-days exploited in attacks
Google fixes two new Chrome zero-days exploited in attacks Google has released emergency security updates to patch two high-severity Chrome vulnerabilities exploited in zero-day attacks. […] Sergiu Gatlan Go to bleepingcomputer
-
Canadian retail giant Loblaw notifies customers of data breach
Canadian retail giant Loblaw notifies customers of data breach Still, out of an abundance of caution, Loblaw says it has automatically logged out all customers from their accounts. Account holders who need to access the company’s digital services will have to log in again. […] Bill Toulas Go to bleepingcomputer
-
England Hockey investigating ransomware data breach
England Hockey investigating ransomware data breach England Hockey, the governing body for field hockey in England, is investigating a potential data breach after the AiLock ransomware gang listed it as a victim on its data leak site. […] Bill Toulas Go to bleepingcomputer
-
AI-generated Slopoly malware used in Interlock ransomware attack
AI-generated Slopoly malware used in Interlock ransomware attack A new malware strain dubbed Slopoly, likely created using generative AI tools, allowed a threat actor to remain on a compromised server for more than a week and steal data in an Interlock ransomware attack. […] Bill Toulas Go to bleepingcomputer
-
WhatsApp introduces parent-managed accounts for pre-teens
WhatsApp introduces parent-managed accounts for pre-teens WhatsApp has begun rolling out parent-managed accounts for pre-teens, allowing parents and guardians to decide who can contact them and which groups they can join. […] Sergiu Gatlan Go to bleepingcomputer
-
SQLi flaw in Elementor Ally plugin impacts 250k+ WordPress sites
SQLi flaw in Elementor Ally plugin impacts 250k+ WordPress sites An SQL injection vulnerability in Ally, a WordPress plugin from Elementor for web accessibility and usability with more than 400,000 installations, could be exploited to steal sensitive data without authentication. […] Bill Toulas Go to bleepingcomputer
-
CISA orders feds to patch n8n RCE flaw exploited in attacks
CISA orders feds to patch n8n RCE flaw exploited in attacks The U.S. Cybersecurity and Infrastructure Security Agency (CISA) ordered government agencies on Wednesday to patch their systems against an actively exploited n8n vulnerability. […] Sergiu Gatlan Go to bleepingcomputer
-
Medtech giant Stryker offline after Iran-linked wiper malware attack
Medtech giant Stryker offline after Iran-linked wiper malware attack Leading medical technology company Stryker has been hit by a wiper malware attack claimed by Handala, an Iranian-linked and pro-Palestinian hacktivist group. […] Sergiu Gatlan Go to bleepingcomputer
-
New PhantomRaven NPM attack wave steals dev data via 88 packages
New PhantomRaven NPM attack wave steals dev data via 88 packages New attack waves from the ‘PhantomRaven’ supply-chain campaign are hitting the npm registry, with dozens of malicious packages that exfiltrate sensitive data from JavaScript developers. […] Bill Toulas Go to bleepingcomputer
-
New ‘BlackSanta’ EDR killer spotted targeting HR departments
New ‘BlackSanta’ EDR killer spotted targeting HR departments For more than a year, a Russian-speaking threat actor targeted human resource (HR) departments with malware that delivers a new EDR killer named BlackSanta. […] Bill Toulas Go to bleepingcomputer
-
New BeatBanker Android malware poses as Starlink app to hijack devices
New BeatBanker Android malware poses as Starlink app to hijack devices A new Android malware named BeatBanker can hijack devices and tricks users into installing it by posing as a Starlink app on websites masquerading as the official Google Play Store. […] Bill Toulas Go to bleepingcomputer
-
New ‘Zombie ZIP’ technique lets malware slip past security tools
New ‘Zombie ZIP’ technique lets malware slip past security tools A new technique dubbed “Zombie ZIP” helps conceal payloads in compressed files specially created to avoid detection from security solutions such as antivirus and endpoint detection and response (EDR) products. […] Bill Toulas Go to bleepingcomputer
-
Microsoft releases Windows 10 KB5078885 extended security update
Microsoft releases Windows 10 KB5078885 extended security update Microsoft has released the Windows 10 KB5078885 extended security update to fix the March 2026 Patch Tuesday vulnerabilities, including 2 zero-days and an issue that prevent some devices from shutting down. […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft March 2026 Patch Tuesday fixes 2 zero-days, 79 flaws
Microsoft March 2026 Patch Tuesday fixes 2 zero-days, 79 flaws Today is Microsoft’s March 2026 Patch Tuesday with security updates for 79 flaws, including 2 publicly disclosed zero-day vulnerabilities. […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft Teams phishing targets employees with A0Backdoor malware
Microsoft Teams phishing targets employees with A0Backdoor malware Hackers contacted employees at financial and healthcare organizations over Microsoft Teams to trick them into granting remote access through Quick Assist and deploy a new piece of malware called A0Backdoor. […] Bill Toulas Go to bleepingcomputer
-
Google: Cloud attacks exploit flaws more than weak credentials
Google: Cloud attacks exploit flaws more than weak credentials Hackers are increasingly exploiting newly disclosed vulnerabilities in third-party software to gain initial access to cloud environments, with the window for attacks shrinking from weeks to just days. […] Bill Toulas Go to bleepingcomputer
-
Dutch govt warns of Signal, WhatsApp account hijacking attacks
Dutch govt warns of Signal, WhatsApp account hijacking attacks Russian state-sponsored hackers have been linked to an ongoing Signal and WhatsApp phishing campaign targeting government officials, military personnel, and journalists to gain access to sensitive messages. […] Lawrence Abrams Go to bleepingcomputer
-
Ericsson US discloses data breach after service provider hack
Ericsson US discloses data breach after service provider hack Ericsson Inc., the U.S. subsidiary of Swedish networking and telecommunications giant Ericsson, says attackers have stolen data belonging to an undisclosed number of employees and customers after hacking one of its service providers. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft Teams will tag third-party bots trying to join meetings
Microsoft Teams will tag third-party bots trying to join meetings Microsoft says Teams will soon automatically tag third-party bots in lobbies, allowing organizers to control whether they can join meetings. […] Sergiu Gatlan Go to bleepingcomputer
-
EU court adviser says banks must immediately refund phishing victims
EU court adviser says banks must immediately refund phishing victims Athanasios Rantos, the Advocate General of the Court of Justice of the EU (CJEU), has issued a formal opinion suggesting that banks must immediately refund account holders affected by unauthorized transactions, even when it’s their fault. […] Bill Toulas Go to bleepingcomputer
-
Hackers abuse .arpa DNS and ipv6 to evade phishing defenses
Hackers abuse .arpa DNS and ipv6 to evade phishing defenses Threat actors are abusing the special-use “.arpa” domain and IPv6 reverse DNS in phishing campaigns that more easily evade domain reputation checks and email security gateways. […] Lawrence Abrams Go to bleepingcomputer
-
Termite ransomware breaches linked to ClickFix CastleRAT attacks
Termite ransomware breaches linked to ClickFix CastleRAT attacks Ransomware threat actors tracked as Velvet Tempest are using the ClickFix technique and legitimate Windows utilities to deploy the DonutLoader malware and the CastleRAT backdoor. […] Bill Toulas Go to bleepingcomputer
-
Microsoft: Hackers abusing AI at every stage of cyberattacks
Microsoft: Hackers abusing AI at every stage of cyberattacks Microsoft says threat actors are increasingly using artificial intelligence in their operations to accelerate attacks, scale malicious activity, and lower technical barriers across all aspects of a cyberattack. […] Lawrence Abrams Go to bleepingcomputer
-
Cognizant TriZetto breach exposes health data of 3.4 million patients
Cognizant TriZetto breach exposes health data of 3.4 million patients TriZetto Provider Solutions, a healthcare IT company that develops software and services used by health insurers and healthcare providers, has suffered a data breach that exposed the sensitive information of over 3.4 million people. […] Bill Toulas Go to bleepingcomputer
-
CISA warns feds to patch iOS flaws exploited in crypto-theft attacks
CISA warns feds to patch iOS flaws exploited in crypto-theft attacks CISA ordered U.S. federal agencies to patch three iOS security flaws targeted in cyberespionage and crypto-theft attacks using the Coruna exploit kit. […] Sergiu Gatlan Go to bleepingcomputer
-
EC-Council Expands AI Certification Portfolio to Strengthen U.S. AI Workforce Readiness and Security
EC-Council Expands AI Certification Portfolio to Strengthen U.S. AI Workforce Readiness and Security EC-Council, creator of the world-renowned Certified Ethical Hacker (CEH) credential and a global leader in applied cybersecurity education, today launched its Enterprise AI Credential Suite, with four new role-based AI certifications debuting alongside Certified CISO v4, an overhauled executive cyber leadership program.…
-
Fake Claude Code install guides push infostealers in InstallFix attacks
Fake Claude Code install guides push infostealers in InstallFix attacks Threat actors are employing a new variation of the ClickFix social engineering technique called InstallFix to convince users into running malicious commands under the pretext of installing legitimate command line interface (CLI) tools. […] Bill Toulas Go to bleepingcomputer
-
Microsoft 365 Backup to add file-level restore for faster recovery
Microsoft 365 Backup to add file-level restore for faster recovery Microsoft will soon begin rolling out a significant upgrade to Microsoft 365 Backup to speed up recovery by allowing administrators to restore individual files and folders. […] Sergiu Gatlan Go to bleepingcomputer
-
FBI investigates breach of surveillance and wiretap systems
FBI investigates breach of surveillance and wiretap systems The U.S. Federal Bureau of Investigation (FBI) confirmed on Thursday that it’s investigating a breach that affected systems used to manage surveillance and wiretap warrants. […] Sergiu Gatlan Go to bleepingcomputer
-
Chinese state hackers target telcos with new malware toolkit
Chinese state hackers target telcos with new malware toolkit A China-linked advanced persistent threat actor tracked as UAT-9244 has been targeting telecommunication service providers in South America since 2024, compromising Windows, Linux, and network-edge devices. […] Bill Toulas Go to bleepingcomputer
-
Bing AI promoted fake OpenClaw GitHub repo pushing info-stealing malware
Bing AI promoted fake OpenClaw GitHub repo pushing info-stealing malware Fake OpenClaw installers hosted in GitHub repositories and promoted by Microsoft Bing’s AI-enhanced search feature instructed users to run commands that deployed information stealers and proxy malware. […] Bill Toulas Go to bleepingcomputer
-
Wikipedia hit by self-propagating JavaScript worm that vandalized pages
Wikipedia hit by self-propagating JavaScript worm that vandalized pages The Wikimedia Foundation suffered a security incident today after a self-propagating JavaScript worm began vandalizing pages and modifying user scripts across multiple wikis. […] Lawrence Abrams Go to bleepingcomputer
-
WordPress membership plugin bug exploited to create admin accounts
WordPress membership plugin bug exploited to create admin accounts Hackers are exploiting a critical vulnerability in the User Registration & Membership plugin, which is installed on more than 60,000 WordPress sites. […] Bill Toulas Go to bleepingcomputer
-
Phobos ransomware admin pleads guilty to wire fraud conspiracy
Phobos ransomware admin pleads guilty to wire fraud conspiracy A Russian national pleaded guilty to a wire fraud conspiracy charge related to his role in administering the Phobos ransomware operation, which breached hundreds of victims worldwide. […] Sergiu Gatlan Go to bleepingcomputer
-
Bitwarden adds support for passkey login on Windows 11
Bitwarden adds support for passkey login on Windows 11 Bitwarden announced support for logging into Windows 11 devices using passkeys stored in the manager’s vault, enabling phishing-resistant authentication. […] Bill Toulas Go to bleepingcomputer
-
CISA flags VMware Aria Operations RCE flaw as exploited in attacks
CISA flags VMware Aria Operations RCE flaw as exploited in attacks The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a VMware Aria Operations vulnerability tracked as CVE-2026-22719 to its Known Exploited Vulnerabilities catalog, flagging the flaw as exploited in attacks. […] Lawrence Abrams Go to bleepingcomputer
-
Paint maker giant AkzoNobel confirms cyberattack on U.S. site
Paint maker giant AkzoNobel confirms cyberattack on U.S. site The multinational Dutch paint company AkzoNobel has confirmed to BleepingComputer that hackers breached the network of one of its U.S. sites. […] Bill Toulas Go to bleepingcomputer
-
Facebook accounts unavailable in worldwide outage
Facebook accounts unavailable in worldwide outage Social media giant Facebook is currently experiencing a massive worldwide outage, preventing users from accessing their accounts. […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft: Hackers abuse OAuth error flows to spread malware
Microsoft: Hackers abuse OAuth error flows to spread malware Hackers are abusing the legitimate OAuth redirection mechanism to bypass phishing protections in email and browsers to take users to malicious pages. […] Bill Toulas Go to bleepingcomputer
-
Google Chrome shifts to two-week release cycle for increased stability
Google Chrome shifts to two-week release cycle for increased stability Google Chrome will shift from a four-week to a two-week release cycle to roll out new features, bug fixes, and performance improvements more frequently. […] Bill Toulas Go to bleepingcomputer
-
UH Cancer Center data breach affects nearly 1.2 million people
UH Cancer Center data breach affects nearly 1.2 million people The University of Hawaii confirmed that a ransomware gang stole the data of nearly 1.2 million individuals in August 2025 after breaching its Cancer Center’s Epidemiology Division. […] Sergiu Gatlan Go to bleepingcomputer
-
Android gets patches for Qualcomm zero-day exploited in attacks
Android gets patches for Qualcomm zero-day exploited in attacks Google has released security updates to patch 129 Android security vulnerabilities, including an actively exploited zero-day flaw in a Qualcomm display component. […] Sergiu Gatlan Go to bleepingcomputer
-
CyberStrikeAI tool adopted by hackers for AI-powered attacks
CyberStrikeAI tool adopted by hackers for AI-powered attacks Researchers warn that a newly identified open-source AI security testing platform called CyberStrikeAI was used by the same threat actor behind a recent campaign that breached hundreds of Fortinet FortiGate firewalls. […] Lawrence Abrams Go to bleepingcomputer
-
Fake Google Security site uses PWA app to steal credentials, MFA codes
Fake Google Security site uses PWA app to steal credentials, MFA codes A phishing campaign is using a fake Google Account security page to deliver a web-based app capable of stealing one-time passcodes, harvesting cryptocurrency wallet addresses, and proxying attacker traffic through victims’ browsers. […] Ionut Ilascu Go to bleepingcomputer
-
Alabama man pleads guilty to hacking, extorting hundreds of women
Alabama man pleads guilty to hacking, extorting hundreds of women A 22-year-old Alabama man pleaded guilty to extortion, cyberstalking, and computer fraud charges after hijacking the social media accounts of hundreds of young women (including minors). […] Sergiu Gatlan Go to bleepingcomputer
-
ClawJacked attack let malicious websites hijack OpenClaw to steal data
ClawJacked attack let malicious websites hijack OpenClaw to steal data Security researchers have disclosed a high-severity vulnerability dubbed “ClawJacked” in the popular AI agent OpenClaw that allowed a malicious website to silently bruteforce access to a locally running instance and take control over it. […] Lawrence Abrams Go to bleepingcomputer
-
Samsung TVs to stop collecting Texans’ data without express consent
Samsung TVs to stop collecting Texans’ data without express consent Samsung and the State of Texas have reached a settlement agreement over the alleged unlawful collection of content-viewing information through its smart TVs […] Bill Toulas Go to bleepingcomputer
-
QuickLens Chrome extension steals crypto, shows ClickFix attack
QuickLens Chrome extension steals crypto, shows ClickFix attack A Chrome extension named “QuickLens – Search Screen with Google Lens” has been removed from the Chrome Web Store after it was compromised to push malware and attempt to steal crypto from thousands of users. […] Lawrence Abrams Go to bleepingcomputer
-
$4.8M in crypto stolen after Korean tax agency exposes wallet seed
$4.8M in crypto stolen after Korean tax agency exposes wallet seed South Korea’s National Tax Service accidentally exposed the mnemonic recovery phrase of a seized cryptocurrency wallet in an official press release, allowing hackers to steal 6.4 billion won ($4.8M) worth in cryptocurrency. […] Bill Toulas Go to bleepingcomputer
-
Microsoft testing Windows 11 batch file security improvements
Microsoft testing Windows 11 batch file security improvements Microsoft is rolling out new Windows 11 Insider Preview builds that improve security and performance during batch file or CMD script execution. […] Sergiu Gatlan Go to bleepingcomputer
-
APT37 hackers use new malware to breach air-gapped networks
APT37 hackers use new malware to breach air-gapped networks North Korean hackers are deploying newly uncovered tools to move data between internet-connected and air-gapped systems, spread via removable drives, and conduct covert surveillance. […] Bill Toulas Go to bleepingcomputer
-
Europol-led crackdown on The Com hackers leads to 30 arrests
Europol-led crackdown on The Com hackers leads to 30 arrests A yearlong Europol-coordinated operation dubbed “Project Compass” has led to 30 arrests and 179 suspects being tied to “The Com,” an online cybercrime collective that targets children and teenagers. […] Sergiu Gatlan Go to bleepingcomputer
-
CISA warns that RESURGE malware can be dormant on Ivanti devices
CISA warns that RESURGE malware can be dormant on Ivanti devices The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has released new details about RESURGE, a malicious implant used in zero-day attacks exploiting CVE-2025-0282 to breach Ivanti Connect Secure devices. […] Bill Toulas Go to bleepingcomputer
-
Third-Party Patching and the Business Footprint We All Share
Third-Party Patching and the Business Footprint We All Share Everyday tools like PDF readers, email clients, and archive utilities quietly define the real attack surface. Action1 explains how third-party software drift increases exploit risk and why consistent patching reduces exposure across endpoints. […] Sponsored by Action1 Go to bleepingcomputer
-
Previously harmless Google API keys now expose Gemini AI data
Previously harmless Google API keys now expose Gemini AI data Google API keys for services like Maps embedded in accessible client-side code could be used to authenticate to the Gemini AI assistant and access private data. […] Bill Toulas Go to bleepingcomputer
-
Trend Micro warns of critical Apex One code execution flaws
Trend Micro warns of critical Apex One code execution flaws Trend Micro has patched two critical Apex One vulnerabilities that allow attackers to gain remote code execution (RCE) on vulnerable Windows systems. […] Sergiu Gatlan Go to bleepingcomputer
-
European DYI chain ManoMano data breach impacts 38 million customers
European DYI chain ManoMano data breach impacts 38 million customers DIY store chain ManoMano is notifying customers of a data breach personal data, which was caused by hackers compromising a third-party service provider. […] Bill Toulas Go to bleepingcomputer
-
Critical Juniper Networks PTX flaw allows full router takeover
Critical Juniper Networks PTX flaw allows full router takeover A critical vulnerability in the Junos OS Evolved network operating system running on PTX Series routers from Juniper Networks could allow an unauthenticated attacker to execute code remotely with root privileges. […] Bill Toulas Go to bleepingcomputer
-
Olympique Marseille confirms ‘attempted’ cyberattack after data leak
Olympique Marseille confirms ‘attempted’ cyberattack after data leak French professional football club Olympique de Marseille has confirmed a cyberattack after a threat actor claimed on Monday that it breached the club’s systems earlier this month. […] Sergiu Gatlan Go to bleepingcomputer