Bleeping Computer

Syndikovat obsah
BleepingComputer - All Stories
Aktualizace: 28 min 43 sek zpět

Critical Marimo pre-auth RCE flaw now under active exploitation

12 Duben, 2026 - 16:20
A critical pre-authentication remote code execution (RCE) vulnerability in Marimo is now under active exploitation, leveraged for credential theft. [...]
Kategorie: Hacking & Security

Over 20,000 crypto fraud victims identified in international crackdown

11 Duben, 2026 - 16:20
An international law enforcement action led by the U.K.'s National Crime Agency (NCA) has identified over 20,000 victims of cryptocurrency fraud across Canada, the United Kingdom, and the United States. [...]
Kategorie: Hacking & Security

ChatGPT rolls out new $100 Pro subscription to challenge Claude

11 Duben, 2026 - 04:08
OpenAI has rolled out a new Pro subscription that costs $100 and is in line with Claude's pricing, which also has a $100 subscription, in addition to the $200 Max monthly plan. [...]
Kategorie: Hacking & Security

Nearly 4,000 US industrial devices exposed to Iranian cyberattacks

10 Duben, 2026 - 17:52
The attack surface targeted by Iranian-linked hackers in cyberattacks against U.S. critical infrastructure networks includes thousands of Internet-exposed programmable logic controllers (PLCs) manufactured by Rockwell Automation. [...]
Kategorie: Hacking & Security

Analysis of one billion CISA KEV remediation records exposes limits of human-scale security

10 Duben, 2026 - 16:01
Analysis of 1 billion CISA KEV remediation records reveal a breaking point for human-scale security. Qualys shows most critical flaws are exploited before defenders can patch them. [...]
Kategorie: Hacking & Security

CPUID hacked to deliver malware via CPU-Z, HWMonitor downloads

10 Duben, 2026 - 15:12
Hackers gained access to an API for the CPUID project and changed the download links on the official website to serve malicious executables for the popular CPU-Z and HWMonitor tools. [...]
Kategorie: Hacking & Security

Microsoft: Canadian employees targeted in payroll pirate attacks

10 Duben, 2026 - 13:56
A financially motivated threat actor tracked as Storm-2755 is stealing Canadian employees' salary payments after hijacking their accounts in payroll pirate attacks. [...]
Kategorie: Hacking & Security

Google rolls out Gmail end-to-end encryption on mobile devices

10 Duben, 2026 - 12:44
Google says Gmail end-to-end encryption (E2EE) is now available on all Android and iOS devices, allowing enterprise users to read and compose emails without additional tools. [...]
Kategorie: Hacking & Security

New ‘LucidRook’ malware used in targeted attacks on NGOs, universities

10 Duben, 2026 - 00:04
A new Lua-based malware, called LucidRook, is being used in spear-phishing campaigns targeting non-governmental organizations and universities in Taiwan. [...]
Kategorie: Hacking & Security

New VENOM phishing attacks steal senior executives' Microsoft logins

9 Duben, 2026 - 23:37
Threat actors using a previously undocumented phishing-as-a-service (PhaaS) platform called "VENOM" are targeting credentials of C-suite executives across multiple industries. [...]
Kategorie: Hacking & Security

Healthcare IT solutions provider ChipSoft hit by ransomware attack

9 Duben, 2026 - 21:46
Dutch healthcare software vendor ChipSoft has been impacted by a ransomware attack that forced the company to take offline its website and digital services for patients and healthcare providers. [...]
Kategorie: Hacking & Security

Google Chrome adds infostealer protection against session cookie theft

9 Duben, 2026 - 20:33
Google has rolled out Device Bound Session Credentials (DBSC) protection in Chrome 146 for Windows, designed to block info-stealing malware from harvesting session cookies. [...]
Kategorie: Hacking & Security

Smart Slider updates hijacked to push malicious WordPress, Joomla versions

9 Duben, 2026 - 18:15
Hackers hijacked the update system for the Smart Slider 3 Pro plugin for WordPress and Joomla, and pushed a malicious version with multiple backdoors. [...]
Kategorie: Hacking & Security

When attackers already have the keys, MFA is just another door to open

9 Duben, 2026 - 16:02
Stolen credentials turn authentication systems into the attack surface. Token shows how wearable biometric authentication verifies the user—not the session—blocking phishing relays and MFA bypass. [...]
Kategorie: Hacking & Security

Webinar: From noise to signal - What threat actors are targeting next

9 Duben, 2026 - 14:20
Threat actors often signal their intentions before launching attacks, from dark web chatter to access-broker listings and credential requests. Join our upcoming webinar with Flare Systems to learn how to turn those early warning signs into proactive defensive action before an intrusion begins. [...]
Kategorie: Hacking & Security

Eurail says December data breach impacts 300,000 individuals

9 Duben, 2026 - 12:31
Eurail B.V., a European travel operator that provides digital passes covering 33 national railways, says attackers stole the personal information of over 300,000 individuals in a December 2025 data breach. [...]
Kategorie: Hacking & Security

Hackers exploiting Acrobat Reader zero-day flaw since December

9 Duben, 2026 - 11:22
Attackers have been exploiting a zero-day vulnerability in Adobe Reader using maliciously crafted PDF documents since at least December. [...]
Kategorie: Hacking & Security

Hackers steal $3.6 million from crypto ATM giant Bitcoin Depot

9 Duben, 2026 - 09:44
Bitcoin Depot, which operates one of the largest Bitcoin ATM networks, says attackers stole $3.665 million worth of Bitcoin from its crypto wallets after breaching its systems last month. [...]
Kategorie: Hacking & Security

Microsoft suspends dev accounts for high-profile open source projects

9 Duben, 2026 - 08:46
Microsoft has suspended developer accounts used to maintain multiple high-profile open-source projects without proper notification and no way to quickly reinstate them, effectively blocking them from publishing new software builds and security patches for Windows users. [...]
Kategorie: Hacking & Security

Hackers use pixel-large SVG trick to hide credit card stealer

9 Duben, 2026 - 00:34
A massive campaign impacting nearly 100 online stores using the Magento e-commerce platform hides credit card-stealing code in a pixel-sized Scalable Vector Graphics (SVG) image. [...]
Kategorie: Hacking & Security