Bleeping Computer

Syndikovat obsah
BleepingComputer - All Stories
Aktualizace: 26 min 47 sek zpět

Critical Kirki flaw exploited to hijack WordPress admin accounts

3 Červen, 2026 - 00:12
Hackers are exploiting a critical privilege escalation vulnerability (CVE-2026-8206) in the Kirki plugin for WordPress to take over any user account, including those belonging to administrators. [...]
Kategorie: Hacking & Security

Over 116,000 Minecraft systems infected in WeedHack malware campaign

2 Červen, 2026 - 23:54
A large-scale malware campaign dubbed WeedHack is targeting Minecraft players and has infected more than 116,000 systems since January. [...]
Kategorie: Hacking & Security

Over 116,000 Mincraft systems infected in WeedHack malware campaign

2 Červen, 2026 - 23:54
A large-scale malware campaign dubbed WeedHack is targeting Minecraft players and has infected more than 116,000 systems since January. [...]
Kategorie: Hacking & Security

AI-built ransomware toolkit automates EDR evasion, AD discovery

2 Červen, 2026 - 22:01
A threat actor is using an AI-built ransomware attack toolkit that automates Active Directory discovery and helps evade endpoint detection and response (EDR) solutions. [...]
Kategorie: Hacking & Security

Microsoft Exchange Online outage causes email delays, failures

2 Červen, 2026 - 19:02
Microsoft is working to address a widespread service issue affecting the mail flow pipeline for Exchange Online customers across North America and Germany. [...]
Kategorie: Hacking & Security

Instagram users locked out after Meta AI abused to steal accounts

2 Červen, 2026 - 17:47
Multiple Instagram users had their accounts hijacked after attackers convinced Meta's AI-powered support tools that they were the legitimate owners. [...]
Kategorie: Hacking & Security

Why the browser is now the front line for AI security

2 Červen, 2026 - 16:30
AI-powered attacks and shadow AI adoption are creating new security risks inside the browser. Push Security explains why browser visibility is becoming critical for both threat detection and AI governance. [...]
Kategorie: Hacking & Security

CISA flags two-year-old Oracle flaw as actively exploited in attacks

2 Červen, 2026 - 14:40
CISA has ordered government agencies to secure their systems against a high-severity Oracle WebLogic Server vulnerability that was patched two years ago and is now actively exploited in attacks. [...]
Kategorie: Hacking & Security

Google fixes one actively exploited Android zero-day, 124 flaws

2 Červen, 2026 - 13:10
Google has released the June 2026 Android security patches to address 124 vulnerabilities, including one zero-day flaw exploited in targeted attacks. [...]
Kategorie: Hacking & Security

Hackers hijack thousands of sites for ClickFix and FakeUpdate attacks

2 Červen, 2026 - 00:14
A threat actor tracked as DriveSurge has been operating large-scale malware distribution campaigns using ClickFix and FakeUpdates techniques on compromised sites. [...]
Kategorie: Hacking & Security

Red Hat npm packages compromised to steal developer credentials

1 Červen, 2026 - 23:38
More than 30 npm packages under Red Hat's '@redhat-cloud-services' namespace were compromised in a supply-chain attack that distributed a new variant of the Shai-Hulud credential-stealing malware, dubbed "Miasma." [...]
Kategorie: Hacking & Security

Spain arrests doxer leaking sensitive data of govt employees

1 Červen, 2026 - 23:28
The Spanish National Police has arrested an individual for leaking sensitive information related to members of various key state organizations, including the National Cybersecurity Institute (INCIBE). [...]
Kategorie: Hacking & Security

Dashlane password manager users locked out by brute force attacks

1 Červen, 2026 - 20:17
Multiple Dashlane users have been locked out of their accounts following brute-force attacks that attempted logins from distant locations and unknown devices. [...]
Kategorie: Hacking & Security

WordPress malware campaign hides payloads in Steam profiles

1 Červen, 2026 - 19:04
Nearly 2,000 WordPress websites were infected with malware that relies on Steam Community profile comments to hide command-and-control (C2) data. [...]
Kategorie: Hacking & Security

Microsoft investigates Office Apps, Teams file access issues

1 Červen, 2026 - 16:36
Microsoft says an ongoing incident is preventing users of its Teams collaboration platform and Office for the web cloud-based productivity suite from opening files. [...]
Kategorie: Hacking & Security

Race Against Time: Why Faster Vulnerability Alerts Matter

1 Červen, 2026 - 16:00
Attackers are exploiting vulnerabilities faster than many organizations can identify and patch them. SecAlerts explains why faster vulnerability alerts can help reduce exposure and improve response times. [...]
Kategorie: Hacking & Security

Critical Windows Netlogon RCE flaw now exploited in attacks

1 Červen, 2026 - 14:30
The Centre for Cybersecurity Belgium (CCB), the country's national authority for cybersecurity, warned on Friday that threat actors are now exploiting a recently patched critical Windows Netlogon vulnerability in attacks. [...]
Kategorie: Hacking & Security

Webinar tomorrow: From alert to resolution in network incident response

1 Červen, 2026 - 14:01
Network incidents are often detected quickly, but investigations and coordination can delay resolution. Join our webinar tomorrow to learn how automation and AI-assisted workflows can help IT teams accelerate incident response. [...]
Kategorie: Hacking & Security

Microsoft fixes outage affecting MFA setup, MySignIn service

1 Červen, 2026 - 13:40
Microsoft is working to address an ongoing incident preventing customers from setting up multi-factor authentication (MFA) or accessing the My Sign-Ins platform. [...]
Kategorie: Hacking & Security

Microsoft confirms outage affecting MFA, My Sign-Ins platform

1 Červen, 2026 - 13:40
Microsoft is working to address an ongoing incident preventing customers from setting up multi-factor authentication (MFA) or accessing the My Sign-Ins platform. [...]
Kategorie: Hacking & Security