Bleeping Computer

Syndikovat obsah
BleepingComputer - All Stories
Aktualizace: 56 sek zpět

MFA's Weakest Link: Account Recovery Is the New Attack Path

9 Září, 2026 - 16:01
MFA makes account takeover harder, but attackers are increasingly targeting the recovery processes used to reset passwords and authentication methods. Specops explains why stronger identity verification at the service desk is critical to preventing social engineering attacks from turning account recovery into account takeover. [...]
Kategorie: Hacking & Security

Over 36,000 exposed Plex servers vulnerable to recent flaws

9 Září, 2026 - 12:11
Over 36,000 Plex Media servers exposed online remain unpatched against multiple security vulnerabilities and are vulnerable to attacks. [...]
Kategorie: Hacking & Security

Man gets 15 years for extorting women with AI-generated porn videos

9 Září, 2026 - 10:44
An Ohio man was sentenced to 15 years in prison for multiple cybercrimes, including sextortion and cyberstalking of numerous victims using AI-generated sexually explicit content. [...]
Kategorie: Hacking & Security

New Microsoft Defender 'ShieldCrash' zero-day grants SYSTEM access

9 Září, 2026 - 09:30
An anonymous security researcher known as Nightmare Eclipse has released a new Microsoft Defender zero-day exploit named "ShieldCrash" right after Microsoft rolled out its September 2026 Patch Tuesday security updates. [...]
Kategorie: Hacking & Security

Google warns of new Chrome zero-day bug exploited in attacks

9 Září, 2026 - 08:25
Google has patched 230 vulnerabilities on Tuesday, including another actively exploited Chrome zero-day bug, the seventh such vulnerability patched since the start of the year. [...]
Kategorie: Hacking & Security

Microsoft adds age-awareness APIs that can tell if users are children, teens, or adults

9 Září, 2026 - 03:16
Microsoft is adding new age-awareness APIs to Windows 11 that will allow apps to determine whether someone is a child, teenager, or adult without exposing their exact date of birth. [...]
Kategorie: Hacking & Security

DoppelCart fraud network uses 119,000 fake shops to steal credit cards

8 Září, 2026 - 22:35
A massive operation dubbed "DoppelCart" uses more than 119,000 domains to run a network of fake e-shops that steal payment card details. [...]
Kategorie: Hacking & Security

The EU CRA's Real Question: What Shipped, and When Did You Know?

8 Září, 2026 - 22:24
The EU Cyber Resilience Act's vulnerability reporting requirements take effect September 11, giving software vendors as little as 24 hours to report actively exploited flaws. ActiveState explains why knowing exactly what shipped and when vulnerabilities were discovered will be critical to meeting the new requirements. [...]
Kategorie: Hacking & Security

Hackers breach F5 BIG-IP APM devices to deploy Linux rootkit

8 Září, 2026 - 22:08
A Linux rootkit targeting devices in F5 BIG-IP APM environments can intercept PHP file loading and inject a fileless web shell directly into memory, avoiding the need to write malicious code to disk. [...]
Kategorie: Hacking & Security

Microsoft releases Windows 10 KB5122878 extended security update

8 Září, 2026 - 20:49
Microsoft has released the Windows 10 KB5122878 extended security update, which includes this month's record-breaking September 2026 Patch Tuesday fixes, along with a few bug fixes. [...]
Kategorie: Hacking & Security

Microsoft September 2026 Patch Tuesday fixes 966 flaws, 2 zero-days

8 Září, 2026 - 20:18
Today is Microsoft's September 2026 Patch Tuesday, with security updates released for a record-breaking 966 flaws, including two actively exploited zero-day vulnerabilities. [...]
Kategorie: Hacking & Security

Windows 11 cumulative updates KB5124008 & KB5122880 released

8 Září, 2026 - 19:57
Microsoft has released Windows 11 KB5124008 and KB5122880 cumulative updates for versions 25H2/24H2 and 23H2 to fix security vulnerabilities, bugs, and add new features. [...]
Kategorie: Hacking & Security

ShinyHunters hackers claim breach of Florida "DAVID" DMV database

8 Září, 2026 - 18:35
The ShinyHunters extortion gang claims it breached an online platform for the Florida Department of Motor Vehicles database known as "DAVID" and stole over 200,000 records about drivers in the state. [...]
Kategorie: Hacking & Security

OpenAI says ChatGPT outage causes image generation errors

8 Září, 2026 - 18:28
OpenAI is investigating an ongoing incident causing ChatGPT image generation failures and delays when uploading files. [...]
Kategorie: Hacking & Security

August updates trigger 0xc0000409 errors on Windows Server 2016

8 Září, 2026 - 17:22
Microsoft says the August 2026 security update may trigger 0xc0000409 errors on Windows Server 2016 systems where the Compatibility Appraiser diagnostic service is enabled. [...]
Kategorie: Hacking & Security

SAP warns of maximum severity 'OVERPASS' kernel vulnerability

8 Září, 2026 - 16:55
SAP has addressed 20 vulnerabilities across multiple products in its September 2026 security updates, including a maximum-severity memory corruption flaw in the SAP Kernel code. [...]
Kategorie: Hacking & Security

OpenAI says GPT-6 Astra can find zero-days, but is also harder to monitor

8 Září, 2026 - 16:40
OpenAI confirmed that GPT-6 Astra is the first model it has broadly deployed to reach the "Critical level" for cybersecurity capabilities. [...]
Kategorie: Hacking & Security

Adobe fixes critical Magento zero-day exploited to backdoor servers

8 Září, 2026 - 15:34
Adobe has released an emergency fix for CVE-2026-75650, an actively exploited max-severity zero-day vulnerability dubbed StyleSmuggler, that impacts multiple versions of Magento and Adobe Commerce. [...]
Kategorie: Hacking & Security

Webinar: The forgotten Google Workspace access that can lead to a breach

8 Září, 2026 - 14:40
Third-party applications connected to Google Workspace can retain access long after their original purpose is forgotten. This webinar examines how overly permissive integrations contribute to breaches and which security controls can help fast-growing companies reduce their exposure. [...]
Kategorie: Hacking & Security

Hackers build AI frameworks for widescale credential theft

8 Září, 2026 - 14:03
Threat actors are increasingly switching from AI-powered coding assistants to multi-agent frameworks that automate every stage of an attack. [...]
Kategorie: Hacking & Security