Bleeping Computer

Syndikovat obsah
BleepingComputer - All Stories
Aktualizace: 5 min 1 sek zpět

Russia arrests US-sanctioned Cryptex founder, 95 other linked suspects

4 Říjen, 2024 - 20:56
​Russian law enforcement detained almost 100 suspects linked to the Cryptex cryptocurrency exchange, the UAPS anonymous payment service, and 33 other online services and platforms used to make illegal payments and sell stolen credentials. [...]
Kategorie: Hacking & Security

Google removes Kaspersky's antivirus software from Play Store

4 Říjen, 2024 - 18:03
Over the weekend, Google removed Kaspersky's Android security apps from the Google Play store and disabled the Russian company's developer accounts. [...]
Kategorie: Hacking & Security

Outlast game development delayed after Red Barrels cyberattack

4 Říjen, 2024 - 17:56
Canadian video game developer Red Barrels is warning that the development of its Outlast games will likely be delayed after the company suffered a cyberattack impacting its internal IT systems and data. [...]
Kategorie: Hacking & Security

UK nuclear site Sellafield fined $440,000 for cybersecurity shortfalls

4 Říjen, 2024 - 14:57
Nuclear waste processing facility Sellafield has been fined £332,500 ($440k) by the Office for Nuclear Regulation (ONR) for failing to adhere to cybersecurity standards and putting sensitive nuclear information at risk over four years, from 2019 to 2023. [...]
Kategorie: Hacking & Security

Recently patched CUPS flaw can be used to amplify DDoS attacks

4 Říjen, 2024 - 00:33
A recently disclosed vulnerability in the Common Unix Printing System (CUPS) open-source printing system can be exploited by threat actors to launch distributed denial-of-service (DDoS) attacks with a 600x amplification factor. [...]
Kategorie: Hacking & Security

‘Pig butchering’ trading apps found on Google Play, App Store

3 Říjen, 2024 - 21:36
Fake trading apps on Google Play and Apple's App Store lure victims into "pig butchering" scams that have a global reach. [...]
Kategorie: Hacking & Security

Dutch Police: ‘State actor’ likely behind recent data breach

3 Říjen, 2024 - 20:56
The national Dutch police (Politie) says that a state actor was likely behind the data breach it detected last week. [...]
Kategorie: Hacking & Security

Microsoft and DOJ disrupt Russian FSB hackers' attack infrastructure

3 Říjen, 2024 - 19:58
Microsoft and the Justice Department have seized over 100 domains used by the Russian ColdRiver hacking group to target United States government employees and nonprofit organizations from Russia and worldwide in spear-phishing attacks. [...]
Kategorie: Hacking & Security

Over 4,000 Adobe Commerce, Magento shops hacked in CosmicSting attacks

3 Říjen, 2024 - 19:19
Approximately 5% of all Adobe Commerce and Magento online stores, or 4,275 in absolute numbers, have been hacked in "CosmicSting" attacks. [...]
Kategorie: Hacking & Security

Fraudsters imprisoned for scamming Apple out of 6,000 iPhones

3 Říjen, 2024 - 18:27
Two Chinese nationals were sentenced to prison for scamming Apple out of more than $2.5 million after exchanging over 6,000 counterfeit iPhones for authentic ones. [...]
Kategorie: Hacking & Security

Cloudflare blocks largest recorded DDoS attack peaking at 3.8Tbps

3 Říjen, 2024 - 18:11
During a distributed denial-of-service campaign targeting organizations in the financial services, internet, and telecommunications sectors, volumetric attacks peaked at 3.8 terabits per second, the largest publicly recorded to date. The assault consisted of a "month-long" barrage of more than 100 hyper-volumetric DDoS attacks flood. [...]
Kategorie: Hacking & Security

Linux malware “perfctl” behind years-long cryptomining campaign

3 Říjen, 2024 - 16:33
A Linux malware named "perfctl" has been targeting Linux servers and workstations for at least three years, remaining largely undetected through high levels of evasion and the use of rootkits. [...]
Kategorie: Hacking & Security

Why your password policy should include a custom dictionary wordlist

3 Říjen, 2024 - 16:02
Utilizing a custom dictionaries helps strengthen your password policies. Learn more from Specops Software about how to build custom dictionaries in your Windows Active Directory password policy. [...]
Kategorie: Hacking & Security

Why your password policy should include a custom dictionary

3 Říjen, 2024 - 16:02
Utilizing a custom dictionaries helps strengthen your password policies. Learn more from Specops Software about how to build custom dictionaries in your Windows Active Directory password policy. [...]
Kategorie: Hacking & Security

FIN7 hackers launch deepfake nude “generator” sites to spread malware

2 Říjen, 2024 - 22:01
The notorious APT hacking group known as FIN7 launched a network of fake AI-powered deepnude generator sites to infect visitors with information-stealing malware. [...]
Kategorie: Hacking & Security

Critical Ivanti RCE flaw with public exploit now used in attacks

2 Říjen, 2024 - 20:55
CISA warned today that a critical Ivanti vulnerability that can let threat actors gain remote code execution on vulnerable Endpoint Manager (EPM) appliances is now actively exploited in attacks. [...]
Kategorie: Hacking & Security

Fake browser updates spread updated WarmCookie malware

2 Říjen, 2024 - 20:22
A new 'FakeUpdate' campaign targeting users in France leverages compromised websites to show fake browser and application updates that spread a new version of the WarmCookie malware. [...]
Kategorie: Hacking & Security

Microsoft Office 2024 now available for Windows and macOS users

2 Říjen, 2024 - 18:43
Microsoft has released Office 2024 for small businesses and consumers who want a standalone version without a Microsoft 365 subscription. [...]
Kategorie: Hacking & Security

CISA: Network switch RCE flaw impacts critical infrastructure

2 Říjen, 2024 - 17:02
U.S. cybersecurity agency CISA is warning about two critical vulnerabilities that allow authentication bypass and remote code execution in Optigo Networks ONS-S8 Aggregation Switch products used in critical infrastructure. [...]
Kategorie: Hacking & Security

Critical Zimbra RCE flaw exploited to backdoor servers using emails

2 Říjen, 2024 - 16:15
Hackers are actively exploiting a recently disclosed RCE vulnerability in Zimbra email servers that can be triggered simply by sending specially crafted emails to the SMTP server. [...]
Kategorie: Hacking & Security