Bleeping Computer

Syndikovat obsah
BleepingComputer - All Stories
Aktualizace: 4 min 8 sek zpět

Broadcom warns of authentication bypass in VMware Windows Tools

25 Březen, 2025 - 21:17
Broadcom released security updates today to fix a high-severity authentication bypass vulnerability in VMware Tools for Windows. [...]
Kategorie: Hacking & Security

New Windows zero-day leaks NTLM hashes, gets unofficial patch

25 Březen, 2025 - 20:22
Free unofficial patches are available for a new Windows zero-day vulnerability that can let remote attackers steal NTLM credentials by tricking targets into viewing malicious files in Windows Explorer. [...]
Kategorie: Hacking & Security

EncryptHub linked to MMC zero-day attacks on Windows systems

25 Březen, 2025 - 18:51
A threat actor known as EncryptHub has been linked to Windows zero-day attacks exploiting a Microsoft Management Console vulnerability patched this month. [...]
Kategorie: Hacking & Security

Browser-in-the-Browser attacks target CS2 players' Steam accounts

25 Březen, 2025 - 17:52
A new phishing campaign targets Counter-Strike 2 players utilizing Browser-in-the-Browser (BitB) attacks that display a realistic window that mimics Steam's login page. [...]
Kategorie: Hacking & Security

New Android malware uses Microsoft’s .NET MAUI to evade detection

25 Březen, 2025 - 15:52
New Android malware campaigns use Microsoft's cross-platform framework .NET MAUI while disguising as legitimate services to evade detection. [...]
Kategorie: Hacking & Security

23andMe files for bankruptcy, customers advised to delete DNA data

24 Březen, 2025 - 22:21
​California-based genetic testing provider 23andMe has filed for Chapter 11 bankruptcy and plans to sell its assets following years of financial struggles. [...]
Kategorie: Hacking & Security

New VanHelsing ransomware targets Windows, ARM, ESXi systems

24 Březen, 2025 - 21:43
A new multi-platform ransomware-as-a-service (RaaS) operation named VanHelsing has emerged, targeting Windows, Linux, BSD, ARM, and ESXi systems. [...]
Kategorie: Hacking & Security

Cyberattack takes down Ukrainian state railway’s online services

24 Březen, 2025 - 20:25
Ukrzaliznytsia, Ukraine's national railway operator, has been hit by a massive cyberattack that disrupted online services for buying tickets both through mobile apps and the website. [...]
Kategorie: Hacking & Security

DrayTek routers worldwide go into reboot loops over weekend

24 Březen, 2025 - 20:15
Many Internet service providers (ISPs) worldwide are alerting customers of an outage that started Saturday night and triggered DrayTek router connectivity problems. [...]
Kategorie: Hacking & Security

Chinese Weaver Ant hackers spied on telco network for 4 years

24 Březen, 2025 - 19:53
A China-linked advanced threat group named Weaver Ant spent more than four years in the network of a telecommunications services provider, hiding traffic and infrastructure with the help of compromised Zyxel CPE routers.  [...]
Kategorie: Hacking & Security

Police arrests 300 suspects linked to African cybercrime rings

24 Březen, 2025 - 18:17
African law enforcement authorities have arrested 306 suspects as part of 'Operation Red Card,' an INTERPOL-led international crackdown targeting cross-border cybercriminal networks. [...]
Kategorie: Hacking & Security

Critical flaw in Next.js lets hackers bypass authorization

24 Březen, 2025 - 18:15
A critical severity vulnerability has been discovered in the Next.js open-source web development framework, potentially allowing attackers to bypass authorization checks. [...]
Kategorie: Hacking & Security

Hidden Threats: How Microsoft 365 Backups Store Risks for Future Attacks

24 Březen, 2025 - 16:01
Acronis Threat Research found 2M+ malicious URLs & 5,000+ malware instances in Microsoft 365 backup data—demonstrating how built-in security isn't always enough. Don't let threats persist in your cloud data. Strengthen your defenses. [...]
Kategorie: Hacking & Security

Google Gemini's Astra (screen sharing) rolls out on Android for some users

24 Březen, 2025 - 06:08
At MWC 2025, Google confirmed it was working on screen and video share capabilities for Gemini Live, codenamed "Project Astra". At that time, Google promised that the feature would begin rolling out soon, and now some users have spotted it in the wild. [...]
Kategorie: Hacking & Security

FBI warnings are true—fake file converters do push malware

23 Březen, 2025 - 16:09
The FBI is warning that fake online document converters are being used to steal people's information and, in worst-case scenarios, lead to ransomware attacks. [...]
Kategorie: Hacking & Security

Cloudflare now blocks all unencrypted traffic to its API endpoints

22 Březen, 2025 - 17:35
Cloudflare announced that it closed all HTTP connections and it is now accepting only secure, HTTPS connections for api.cloudflare.com. [...]
Kategorie: Hacking & Security

Microsoft Trusted Signing service abused to code-sign malware

22 Březen, 2025 - 16:30
Cybercriminals are abusing Microsoft's Trusted Signing platform to code-sign malware executables with short-lived three-day certificates. [...]
Kategorie: Hacking & Security

Microsoft Trust Signing service abused to code-sign malware

22 Březen, 2025 - 16:30
Cybercriminals are abusing Microsoft's Trusted Signing platform to code-sign malware executables with short-lived three-day certificates. [...]
Kategorie: Hacking & Security

Coinbase was primary target of recent GitHub Actions breaches

22 Březen, 2025 - 01:35
Researchers have determined that Coinbase was the primary target in a recent GitHub Actions cascading supply chain attack that compromised secrets in hundreds of repositories. [...]
Kategorie: Hacking & Security

Oracle denies breach after hacker claims theft of 6 million data records

21 Březen, 2025 - 22:43
Oracle denies it was breached after a threat actor claimed to be selling 6 million data records allegedly stolen from the company's Oracle Cloud federated SSO login servers [...]
Kategorie: Hacking & Security