Bleeping Computer

Syndikovat obsah
BleepingComputer - All Stories
Aktualizace: 29 min 3 sek zpět

CISA orders feds to patch exploited Fortinet EMS flaw by Friday

6 Duben, 2026 - 18:02
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) ordered federal agencies to secure FortiClient Enterprise Management Server (EMS) instances against an actively exploited vulnerability by Friday. [...]
Kategorie: Hacking & Security

Why Simple Breach Monitoring is No Longer Enough

6 Duben, 2026 - 16:02
Infostealers are harvesting credentials and session cookies at scale, bypassing traditional defenses. Lunar explains why simple breach monitoring alone can't keep up with modern credential-based attacks. [...]
Kategorie: Hacking & Security

Traffic violation scams switch to QR codes in new phishing texts

5 Duben, 2026 - 21:44
Scammers are sending fake "Notice of Default" traffic violation text messages impersonating state courts across the U.S., pressuring recipients to scan a QR code that leads to a phishing site demanding a $6.99 payment while stealing personal and financial information. [...]
Kategorie: Hacking & Security

New FortiClient EMS flaw exploited in attacks, emergency patch released

5 Duben, 2026 - 20:45
Fortinet has released an emergency weekend security update for a new critical FortiClient Enterprise Management Server (EMS) vulnerability that is actively exploited in attacks. [...]
Kategorie: Hacking & Security

Hackers exploit React2Shell in automated credential theft campaign

5 Duben, 2026 - 16:17
Hackers are running a large-scale campaign to steal credentials in an automated way after exploiting React2Shell (CVE-2025-55182) in vulnerable Next.js apps. [...]
Kategorie: Hacking & Security

Axios npm hack used fake Teams error fix to hijack maintainer account

4 Duben, 2026 - 22:30
The maintainers of the popular Axios HTTP client have published a detailed post-mortem describing how one of its developers was targeted by a social engineering campaign believed to have been conducted by North Korean threat actors. [...]
Kategorie: Hacking & Security

Device code phishing attacks surge 37x as new kits spread online

4 Duben, 2026 - 16:17
Device code phishing attacks that abuse the OAuth 2.0 Device Authorization Grant flow to hijack accounts have surged more than 37 times this year. [...]
Kategorie: Hacking & Security

LinkedIn secretly scans for 6,000+ Chrome extensions, collects data

3 Duben, 2026 - 22:40
A new report dubbed "BrowserGate" warns that Microsoft's LinkedIn is using hidden JavaScript scripts on its website to scan visitors' browsers for installed extensions and collect device data. [...]
Kategorie: Hacking & Security

LinkedIn secretely scans for 6,000+ Chrome extensions, collects data

3 Duben, 2026 - 22:40
A new report dubbed "BrowserGate" warns that Microsoft's LinkedIn is using hidden JavaScript scripts on its website to scan visitors' browsers for installed extensions and collect device data. [...]
Kategorie: Hacking & Security

Hims & Hers warns of data breach after Zendesk support ticket breach

3 Duben, 2026 - 19:41
Telehealth giant Hims & Hers Health is warning that it suffered a data breach after support tickets were stolen from a third-party customer service platform. [...]
Kategorie: Hacking & Security

Die Linke German political party confirms data stolen by Qilin ransomware

3 Duben, 2026 - 18:36
The Qilin ransomware group has claimed responsibility for an attack against Die Linke ('The Left'), forcing an IT systems outage at the political party, and threatening sensitive data leak. [...]
Kategorie: Hacking & Security

Evolution of Ransomware: Multi-Extortion Ransomware Attacks

3 Duben, 2026 - 16:05
Multi-extortion ransomware relies on stolen data to pressure victims with public leaks. Penta Security explains how its D.AMO platform keeps exfiltrated files encrypted and useless to attackers. [...]
Kategorie: Hacking & Security

Microsoft still working to fix Exchange Online mailbox access issues

3 Duben, 2026 - 13:25
Microsoft is investigating and working to resolve Exchange Online mailbox access issues that have intermittently affected Outlook mobile and macOS users for weeks. [...]
Kategorie: Hacking & Security

Man admits to locking thousands of Windows devices in extortion plot

3 Duben, 2026 - 11:04
A former core infrastructure engineer has pleaded guilty to locking Windows admins out of 254 servers as part of a failed extortion plot targeting his employer, an industrial company headquartered in Somerset County, New Jersey. [...]
Kategorie: Hacking & Security

Microsoft now force upgrades unmanaged Windows 11 24H2 PCs

3 Duben, 2026 - 09:55
Starting this week, Microsoft has begun force-upgrading unmanaged devices running Windows 11 24H2 Home and Pro editions to Windows 11 25H2. [...]
Kategorie: Hacking & Security

CERT-EU: European Commission hack exposes data of 30 EU entities

3 Duben, 2026 - 08:33
The European Union's Cybersecurity Service (CERT-EU) has attributed the European Commission cloud hack to the TeamPCP threat group, saying the resulting breach exposed the data of at least 29 other Union entities. [...]
Kategorie: Hacking & Security

Claude Code leak used to push infostealer malware on GitHub

2 Duben, 2026 - 22:30
Threat actors are exploiting the recent Claude Code source code leak by using fake GitHub repositories to deliver Vidar information-stealing malware. [...]
Kategorie: Hacking & Security

Drift loses $280 million as North Korean hackers seize Security Council powers

2 Duben, 2026 - 21:03
The Drift Protocol lost at least $280 million after a threat actor took control of its Security Council administrative powers in a planned, sophisticated operation. [...]
Kategorie: Hacking & Security

Drift loses $280 million as hackers seize Security Council powers

2 Duben, 2026 - 21:03
The Drift Protocol lost at least $280 million after a threat actor took control of its Security Council administrative powers in a planned, sophisticated operation. [...]
Kategorie: Hacking & Security

Residential proxies evaded IP reputation checks in 78% of 4B sessions

2 Duben, 2026 - 17:21
Researchers warn that residential proxies used to route malicious traffic are a big problem for IP reputation systems, as there is no clear distinction between attackers and legitimate users. [...]
Kategorie: Hacking & Security