Security-Portal.cz je internetový portál zaměřený na počítačovou bezpečnost, hacking, anonymitu, počítačové sítě, programování, šifrování, exploity, Linux a BSD systémy. Provozuje spoustu zajímavých služeb a podporuje příznivce v zajímavých projektech.

Kategorie

Hackers abuse Google Ads, Bing redirects to push Claude ClickFix attacks

Bleeping Computer - 9 Říjen, 2026 - 22:31
Hackers are abusing legitimate Bing search-result redirects as click URLs in Google search ads to direct users to fake Claude installers that deliver ClickFix attacks. [...]
Kategorie: Hacking & Security

Credential-Stealing GitHub Actions Workflows Planted in Tens of Thousands of Repositories

The Hacker News - 9 Říjen, 2026 - 21:14
Cybersecurity researchers have disclosed details of an ongoing credential-theft campaign that has compromised two high-profile open-source maintainer accounts to push a malicious workflow into over 340 repositories. "Using the account of Takashi Kitao, author of the 18,400-star game engine pyxel, the attacker pushed a malicious workflow to 27 repositories starting at 13:20 UTC," StepSecurity Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

PC shipments fall 20.1 percent in “sharpest decline” since Q1 2023

Ars Technica - 9 Říjen, 2026 - 20:54

PC shipments saw a steep drop of about 20 percent in Q3 2026, analysts reported this week.

The industry saw its “sharpest decline since “Q1 2023," Omdia said in an announcement toady. Global shipments of laptops, desktops, and workstations fell 21.2 percent year over year (YoY) to 58.1 million devices, the analyst said.

Desktop PC shipments (including desktop workstations) decreased 23.5 percent to 11.7 million units, and laptop shipments (including laptop workstations) declined 20.6 percent to 46.4 million, per Omdia.

Read full article

Comments

FBI Arrests Another ShinyHunters Suspect Reportedly Involved in Its Jobs Portal Hack

The Hacker News - 9 Říjen, 2026 - 19:45
The FBI has arrested another suspected co-conspirator of ShinyHunters, FBI Director Kash Patel said on October 9 in a post on X. ShinyHunters is the extortion group that said in September it had breached the FBI's jobs portal and stolen sensitive data on almost all FBI agents and job applicants. The FBI has not named the suspect, and no charges have been made public. The Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Unpatched AhsayCBS flaws exploited to deploy webshells, mine crypto

Bleeping Computer - 9 Říjen, 2026 - 19:17
Threat actors are exploiting one critical and one medium-severity vulnerability still unpatched in the AhsayCBS backup management platform to deploy webshells and cryptocurrency miners. [...]
Kategorie: Hacking & Security

FBI arrests another suspected ShinyHunters hacker after agency breach

Bleeping Computer - 9 Říjen, 2026 - 19:02
The FBI has arrested another suspected member of the ShinyHunters extortion group believed to be involved in the recent breach of FBI systems, Director Kash Patel announced Friday. [...]
Kategorie: Hacking & Security

P7 DarkSword iOS Exploit Kit Adds Crypto Wallet Data Theft and Remote Commands

The Hacker News - 9 Říjen, 2026 - 18:29
Cybersecurity researchers have disclosed details of a previously unseen variant of the DarkSword iOS exploit kit called P7 DarkSword. "Compared with the variants we usually observe, P7 reduces its on-device footprint, adds on-device keychain and crypto-wallet theft, and adds two way C2 communication with the attacker's infrastructure," iVerify said in a new report published Thursday. The name Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Bidding war over key component could eliminate third hard disk maker

Computerworld.com [Hacking News] - 9 Říjen, 2026 - 17:59

What if the three remaining hard disk manufacturers became two? Seagate Technology and Western Digital control 90% of the market, according to market researcher TrendForce, with Toshiba picking up the crumbs.

Seagate and WD both make their own magnetic drive heads, but Toshiba relies on a third party, TDK, which also sells to Seagate and WD when they need extra capacity.

Seeking to guarantee supplies of this critical component, Toshiba made a bid for TDK’s drive head business earlier this year, according to Bloomberg. Concerned that this could affect its ability to meet the growing demand for hard disks from AI data centers, Seagate made a counteroffer, Bloomberg reported. TDK is staying mum.

If Seagate were to capture the TDK unit it could knock Toshiba out of the hard disk market altogether, according to Bloomberg.  

While Toshiba is reliant on its suppliers for technological advances, WD and Seagate continue to innovate. In February, Western Digital announced two technologies aimed at speeding up drive throughput: high bandwidth drive technology (HBDT) and dual pivot technology (DPT).

Western Digital said HBDT will enable simultaneous reading and writing from multiple heads on multiple tracks, delivering up twice the bandwidth of conventional HDDs.

In July, Seagate launched a hard disk packing 30TB into a 3.5-inch enclosure using its Heat-Assisted Magnetic Recording (HAMR) technology, and announced plans to release 32TB and 36TB models.

This article first appeared on Network World.

Kategorie: Hacking & Security

Ransomware consultant said he would decrypt data, is accused of paying ransoms instead

Computerworld.com [Hacking News] - 9 Říjen, 2026 - 17:48

The owner of a ransomware remediation company is facing trial for defrauding customers.

Zohar Pinhasi, also known as “Zack Silver” and “Zack Green,” has been arraigned in New York on wire fraud charges for allegedly defrauding clients of his ransomware remediation company, MonsterCloud.

Pinhasi falsely claimed he could recover documents encrypted by ransomware without paying a ransom, according to district attorney Joseph Nocella. “The defendant re-victimized his clients while extracting a hefty profit for himself,” Nocella said.

MonsterCloud claimed to offer an alternative to paying the ransom. Its website said that, thanks to its decryption techniques, “our team specializes in helping businesses recover their data without succumbing to ransom demands.” 

However, the indictment alleges that rather than using any technology, Pinhasi simply paid the cybercriminals in exchange for a decryption key with which MonsterCloud employees would then an attempt to unlock their clients’ files. It is alleged that Pinhasi typically charged clients a fee that was substantially higher than the ransom payment. For example, in 2023, he made a payment of $8,200 to a cybercriminal while charging a client $150,000.

There may be several reasons why clients chose to use MonsterCloud. US government advice (echoed by other governments) is not to pay ransoms as it may encourage more attacks, and victims may not get their data back. In addition, in some cases, if the attackers are from a country or group subject to trade sanctions, making a payment may actually be illegal, leaving the victim facing criminal charges.

There may be other factors at play. “Cases vary; sometimes negotiators simply overcharge for their services. In other cases, they may inflate the final amount, saying, for instance, that 50 percent extra is to ensure a third-party validation of secure data erasure or something similar that the client would buy,” said Ilia Kolochenko of cybersecurity company ImmuniWeb.

He warned that there were several techniques being used to extract additional money from ransomware victims.

“Some will be contacted by fake law enforcement agencies, which typically promise to find and arrest the hackers, but also mention the victim’s civil liability for the data breach and ask to prepay a bond for an eventual regulatory fine. Other victims may be contacted by fake cybersecurity companies, which claim that they have already found their stolen data on the Dark Web and ask for money to ‘securely erase’ the data from the dark web to avoid bad publicity and regulatory sanctions,” he said.

Similar cases have come to court recently, said Kolochenko, one in July involving a Florida business and another targeting a Latvian national in May.

This article first appeared on CSO.

Kategorie: Hacking & Security

Germany arrests alleged core Qilin ransomware member after extradition

Bleeping Computer - 9 Říjen, 2026 - 17:38
Germany has arrested a Russian national suspected of being a leading member of the Qilin ransomware group following extradition from Japan earlier this month. [...]
Kategorie: Hacking & Security

How to keep AI agents within their permissions

Bleeping Computer - 9 Říjen, 2026 - 16:01
AI agents can use valid credentials to perform actions beyond their assigned permissions, creating risks that traditional access controls may not prevent. Token Security explains how organizations can enforce agent-specific policies without sacrificing autonomy. [...]
Kategorie: Hacking & Security

TP-Link Sued by Four More U.S. States Over Router Security and China Ties

The Hacker News - 9 Říjen, 2026 - 15:22
Four more U.S. states sued router maker TP-Link Systems on October 6, bringing the total to five, with  Texas filing a suit in February. Florida, Iowa, Montana and Nebraska allege the California company misled buyers about how secure its routers are and how separate it is from China. TP-Link denies the claims and says it will fight them in court. TP-Link Systems is based in Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Researchers Publish Working Exploit for Pre-Auth AnyDesk Linux Flaw That Gives Root Access

The Hacker News - 9 Říjen, 2026 - 14:59
Security researchers have published a full working exploit for a pre-authentication remote code execution flaw in AnyDesk Linux that gives attackers root access before anyone approves the connection. AnyDesk patched the flaw in version 8.0.3 in June, but its changelog described the fix only as "fixed a bug that could lead to a crash," with no CVE assigned and no security Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Anthropic Launches Free AI Vulnerability Scanner for Open-Source Projects

The Hacker News - 9 Říjen, 2026 - 14:47
Anthropic on Thursday unveiled OSS Scanner as an opt-in vulnerability scanner to help secure the open-source ecosystem using artificial intelligence (AI). "It's an opt-in service informed by our experience using Claude to find vulnerabilities during Project Glasswing," Anthropic said. "Projects that join will receive thorough, periodic security scans by our strongest models at no cost." Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Attackers Exploit AhsayCBS Flaws to Deploy XMRig Miners Disguised as Microsoft Edge

The Hacker News - 9 Říjen, 2026 - 14:47
Threat actors have been observed exploiting two recently disclosed flaws in the AhsayCBS backup utility to seize control of affected devices and deploy web shells and XMRig cryptocurrency miners. Details of the flaws are below - CVE-2026-105133 (CVSS v4 score: 5.5) - An improper authentication vulnerability in the checkSysPwd() function in the "com/ahsay/obs/api/ApiStructsAction.java" Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Ten chlápek z IT přeskočil kritickou záplatu. Hackeři vysáli citlivé složky FBI, včetně domácích adres agentů

Zive.cz - bezpečnost - 9 Říjen, 2026 - 14:45
Útočníci získali informace o tisících zaměstnanců FBI, a to včetně lidí pracujících se zdroji. Jejich domácí adresy, zdravotní či psychiatrické záznamy. Podrobnosti se dostaly do nepovolaných rukou. Potřebná záplata už byla dávno k dispozici...
Kategorie: Hacking & Security

Max severity SonicWall SMA1000 flaw now exploited in attacks

Bleeping Computer - 9 Říjen, 2026 - 14:32
Attackers are exploiting a maximum-severity vulnerability in SonicWall SMA1000 appliances (CVE-2026-102255) that was patched on Tuesday, three days ago. [...]
Kategorie: Hacking & Security

Flax Typhoon Exploits Five Flaws as CISA Sets October 11 Deadline for Federal Agencies

The Hacker News - 9 Říjen, 2026 - 14:21
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added five security flaws to its Known Exploited Vulnerabilities (KEV) catalog, following their abuse by a China-linked threat actor known as Flax Typhoon. The vulnerabilities in question are listed below - CVE-2015-3306 (CVSS score: 10.0) - An improper access control vulnerability in ProFTPD that could allow Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

The AI Velocity Paradox: Why Security Is Decades Behind AI Ambition

The Hacker News - 9 Říjen, 2026 - 13:30
As enterprises race to deploy autonomous AI agents to accelerate business, a new report reveals they are tethered to security architectures built for a different era. The "Horizons of Identity Security" report from SailPoint highlights a critical “velocity paradox,” in which organizations invest in AI-speed business operations while continuing to rely on human-speed security controls, creating [email protected]
Kategorie: Hacking & Security

Man admits to running network of 15,000 money mules for cybercriminals

Bleeping Computer - 9 Říjen, 2026 - 13:14
​A Ukrainian-Russian dual citizen has pleaded guilty to running a massive money laundering operation that laundered millions for cybercriminals worldwide. [...]
Kategorie: Hacking & Security
Syndikovat obsah