Bleeping Computer

Syndikovat obsah
BleepingComputer - All Stories
Aktualizace: 0 sekund zpět

Google: New UNC6783 hackers steal corporate Zendesk support tickets

8 Duben, 2026 - 23:46
A threat actor tracked as UNC6783 is compromising business process outsourcing (BPO) providers to gain access to high-value companies across multiple sectors. [...]
Kategorie: Hacking & Security

New macOS stealer campaign uses Script Editor in ClickFix attack

8 Duben, 2026 - 20:55
A new campaign delivering the Atomic Stealer malware to macOS users abuses the Script Editor in a variation of the ClickFix attack that tricked users into executing commands in Terminal. [...]
Kategorie: Hacking & Security

CISA orders feds to patch exploited Ivanti EPMM flaw by Sunday

8 Duben, 2026 - 20:15
CISA has given U.S. government agencies four days to secure their systems against a critical-severity vulnerability in Ivanti Endpoint Manager Mobile (EPMM) that has been exploited in attacks since January. [...]
Kategorie: Hacking & Security

13-year-old bug in ActiveMQ lets hackers remotely execute commands

8 Duben, 2026 - 19:26
Security researchers discovered a remote code execution (RCE) vulnerability in Apache ActiveMQ Classic that has gone undetected for 13 years and could be exploited to execute arbitrary commands. [...]
Kategorie: Hacking & Security

Is a $30,000 GPU Good at Password Cracking?

8 Duben, 2026 - 16:00
A $30,000 AI GPU doesn't outperform consumer GPUs at password cracking. Specops explains why attackers don't need exotic hardware to break weak passwords. [...]
Kategorie: Hacking & Security

Microsoft rolls out fix for broken Windows Start Menu search

8 Duben, 2026 - 09:00
Microsoft has pushed a server-side fix for a known issue that broke the Windows Start Menu search feature on some Windows 11 23H2 devices. [...]
Kategorie: Hacking & Security

Hackers exploit critical flaw in Ninja Forms WordPress plugin

8 Duben, 2026 - 00:03
A critical vulnerability in the Ninja Forms File Uploads premium add-on for WordPress allows uploading arbitrary files without authentication, which can lead to remote code execution. [...]
Kategorie: Hacking & Security

FBI: Americans lost a record $21 billion to cybercrime last year

7 Duben, 2026 - 22:41
U.S. victims lost nearly $21 billion to cyber-enabled crimes last year, driven primarily by investment scams, business email compromise, tech support fraud, and data breaches, the Federal Bureau of Investigation says. [...]
Kategorie: Hacking & Security

Snowflake customers hit in data theft attacks after SaaS integrator breach

7 Duben, 2026 - 21:39
Over a dozen companies have suffered data theft attacks after a SaaS integration provider was breached and authentication tokens stolen. [...]
Kategorie: Hacking & Security

US warns of Iranian hackers targeting critical infrastructure

7 Duben, 2026 - 20:02
Iranian-linked hackers are targeting Internet-exposed Rockwell/Allen-Bradley programmable logic controllers (PLCs) on the networks of U.S. critical infrastructure organizations. [...]
Kategorie: Hacking & Security

Max severity Flowise RCE vulnerability now exploited in attacks

7 Duben, 2026 - 19:02
Hackers are exploiting a maximum-severity vulnerability, tracked as CVE-2025-59528, in the open-source platform Flowise for building custom LLM apps and agentic systems to execute arbitrary code. [...]
Kategorie: Hacking & Security

Authorities disrupt router DNS hijacks used to steal Microsoft 365 logins

7 Duben, 2026 - 17:51
An international operation from law enforcement authorities in partnership with private companies has disrupted FrostArmada, an APT28 campaign hijacking local traffic from MikroTik and TP-Link routers to steal Microsoft account credentials. [...]
Kategorie: Hacking & Security

Why Your Automated Pentesting Tool Just Hit a Wall

7 Duben, 2026 - 16:01
Automated pentesting tools deliver strong early results, then quickly plateau. Picus Security explains how the "PoC cliff" leaves major attack surfaces untested and creates a dangerous validation gap. [...]
Kategorie: Hacking & Security

German authorities identify REvil and GandCrab ransomware bosses

7 Duben, 2026 - 01:54
The Federal Police in Germany (BKA) has identified two Russian nationals as the leaders of GandCrab and REvil ransomware operations between 2019 and 2021. [...]
Kategorie: Hacking & Security

New GPUBreach attack enables system takeover via GPU rowhammer

6 Duben, 2026 - 23:44
A new attack, dubbed GPUBreach, can induce Rowhammer bit-flips on GPU GDDR6 memories to escalate privileges and lead to a full system compromise. [...]
Kategorie: Hacking & Security

Disgruntled researcher leaks “BlueHammer” Windows zero-day exploit

6 Duben, 2026 - 21:19
Exploit code has been released for an unpatched Windows privilege escalation flaw reported privately to Microsoft, allowing attackers to gain SYSTEM or elevated administrator permissions. [...]
Kategorie: Hacking & Security

Microsoft fixes Classic Outlook bug causing email delivery issues

6 Duben, 2026 - 21:19
Microsoft has resolved a known issue that was preventing some Classic Outlook users from sending emails via Outlook.com. [...]
Kategorie: Hacking & Security

Microsoft removes Support and Recovery Assistant from Windows

6 Duben, 2026 - 19:45
Microsoft has deprecated and removed the Support and Recovery Assistant (SaRA) command-line utility from all in-support versions of Windows updates starting March 10. [...]
Kategorie: Hacking & Security

Microsoft links Medusa ransomware affiliate to zero-day attacks

6 Duben, 2026 - 18:56
Microsoft says that Storm-1175, a China-based financially motivated cybercriminal group known for deploying Medusa ransomware payloads, has been deploying n-day and zero-day exploits in high-velocity attacks. [...]
Kategorie: Hacking & Security

Drift $280M crypto theft linked to 6-month in-person operation

6 Duben, 2026 - 18:35
The Drift Protocol says that the $280+ million hack it suffered last week was the result of a long-term, carefully planned operation that included building "a functioning operational presence inside the Drift ecosystem." [...]
Kategorie: Hacking & Security