Bleeping Computer

Syndikovat obsah
BleepingComputer - All Stories
Aktualizace: 29 min 40 sek zpět

ADT confirms data breach after ShinyHunters leak threat

13 hodin 36 min zpět
Home security giant ADT has confirmed a data breach after the ShinyHunters extortion group threatened to leak stolen data unless a ransom is paid. [...]
Kategorie: Hacking & Security

Firestarter malware survives Cisco firewall updates, security patches

24 Duben, 2026 - 22:34
Cybersecurity agencies in the U.S. and U.K. are warning about a custom malware called Firestarter persisting on Cisco Firepower and Secure Firewall devices running Adaptive Security Appliance (ASA) or Firepower Threat Defense (FTD) software. [...]
Kategorie: Hacking & Security

Windows Update gets new controls to reduce forced restarts

24 Duben, 2026 - 22:08
Microsoft is rolling out Windows Update improvements that give users more control over how updates are installed while reducing disruption from frequent or poorly timed restarts. [...]
Kategorie: Hacking & Security

New BlackFile extortion group linked to surge of vishing attacks

24 Duben, 2026 - 20:26
A new financially motivated hacking group tracked as BlackFile has been linked to a wave of data theft and extortion attacks against retail and hospitality organizations since February 2026. [...]
Kategorie: Hacking & Security

Microsoft to roll out Entra passkeys on Windows in late April

24 Duben, 2026 - 20:13
Microsoft will roll out passkey support for phishing-resistant passwordless authentication to Microsoft Entra‑protected resources from Windows devices starting late April. [...]
Kategorie: Hacking & Security

New ‘Pack2TheRoot’ flaw gives hackers root Linux access

24 Duben, 2026 - 19:28
A new vulnerability dubbed Pack2TheRoot could be exploited in the PackageKit daemon to allow local Linux users to install or remove system packages and gain root permissions. [...]
Kategorie: Hacking & Security

DORA and operational resilience: Credential management as a financial risk control

24 Duben, 2026 - 16:10
Article 9 of DORA makes authentication and access control a legal obligation for EU financial entities. Here is what the regulation requires, and what a breach looks like when those controls are missing. [...]
Kategorie: Hacking & Security

Over 10,000 Zimbra servers vulnerable to ongoing XSS attacks

24 Duben, 2026 - 15:35
Over 10,000 Zimbra Collaboration Suite (ZCS) instances exposed online are vulnerable to ongoing attacks exploiting a cross-site scripting (XSS) security flaw. [...]
Kategorie: Hacking & Security

Microsoft now lets admins uninstall Copilot on enterprise devices

24 Duben, 2026 - 13:38
Microsoft says IT administrators can now uninstall the AI-powered Copilot digital assistant from enterprise devices using a new policy setting, which has become broadly available after the April 2026 Patch Tuesday. [...]
Kategorie: Hacking & Security

Hackers exploit file upload bug in Breeze Cache WordPress plugin

23 Duben, 2026 - 23:33
Hackers are actively exploiting a critical vulnerability in the Breeze Cache plugin for WordPress that allows uploading arbitrary files on the server without authentication. [...]
Kategorie: Hacking & Security

Bitwarden CLI npm package compromised to steal developer credentials

23 Duben, 2026 - 21:21
The Bitwarden CLI was briefly compromised after attackers uploaded a malicious @bitwarden/cli package to npm containing a credential-stealing payload capable of spreading to other projects. [...]
Kategorie: Hacking & Security

Trigona ransomware attacks use custom exfiltration tool to steal data

23 Duben, 2026 - 20:59
Recently observed Trigona ransomware attacks are using a custom, command-line tool to steal data from compromised environments faster and more efficiently. [...]
Kategorie: Hacking & Security

New Checkmarx supply-chain breach affects KICS analysis tool

23 Duben, 2026 - 18:05
Hackers have compromised Docker images, VSCode and Open VSX extensions for the Checkmarx KICS analysis tool to harvest sensitive data from developer environments. [...]
Kategorie: Hacking & Security

Cosmetics giant Rituals discloses data breach affecting customers

23 Duben, 2026 - 16:16
Dutch cosmetics giant Rituals disclosed a data breach after attackers stole the personal information of an undisclosed number of customers from its "My Rituals" membership database. [...]
Kategorie: Hacking & Security

Regular Password Resets Aren’t as Safe as You Think

23 Duben, 2026 - 16:10
Password resets are one of the easiest ways for attackers to bypass security controls. Specops Software shows how helpdesk social engineering turns a seemingly legitimate reset request into full account compromise. [...]
Kategorie: Hacking & Security

Microsoft: Some Teams users can’t join meetings after Edge update

23 Duben, 2026 - 15:18
Microsoft confirmed that a recent Microsoft Edge browser update introduced a bug that prevents Windows users from joining Teams meetings. [...]
Kategorie: Hacking & Security

UK warns of Chinese hackers using proxy networks to evade detection

23 Duben, 2026 - 14:28
The United Kingdom's National Cyber Security Centre (NCSC-UK) and international partners warned that China-nexus hackers are increasingly using large-scale proxy networks of hijacked consumer devices to evade detection and disguise their malicious activity. [...]
Kategorie: Hacking & Security

New GopherWhisper APT group abuses Outlook, Slack, Discord for comms

23 Duben, 2026 - 14:06
A previously undocumented state-backed threat actor named GopherWhisper is using a Go-based custom toolkit and legitimate services like Microsoft 365 Outlook, Slack, and Discord in attacks against government entities. [...]
Kategorie: Hacking & Security

CISA orders feds to patch BlueHammer flaw exploited as zero-day

23 Duben, 2026 - 13:05
CISA has ordered U.S. federal agencies to patch a Microsoft Defender privilege escalation flaw (dubbed BlueHammer) that has been exploited in zero-day attacks. [...]
Kategorie: Hacking & Security

Apple fixes bug that let the FBI recover deleted Signal messages

22 Duben, 2026 - 22:58
Apple has released out-of-band security updates for iPhone and iPad devices to fix a Notification Services flaw that could allow notifications marked for deletion to remain stored on the device. [...]
Kategorie: Hacking & Security