Bleeping Computer

Syndikovat obsah
BleepingComputer - All Stories
Aktualizace: 23 min 26 sek zpět

ARToken PhaaS exposes EvilTokens' Microsoft 365 phishing toolkit

3 Červenec, 2026 - 16:12
A new phishing-as-a-service (PhaaS) platform dubbed "ARToken" appears to operate as an affiliate of the EvilTokens phishing platform, giving researchers a glimpse into an extensive toolkit designed to compromise Microsoft 365. [...]
Kategorie: Hacking & Security

Claude Fable 5 isn’t permanently leaving subscriptions, Anthropic says

3 Červenec, 2026 - 03:37
Anthropic says Claude Fable 5 won't be accessible via Claude subscriptions after July 7, but it's not a permanent change, and the company expects the model to return outside the usage-based plan soon. [...]
Kategorie: Hacking & Security

Claude Fable relaunch disappoints users with nerfed performance

3 Červenec, 2026 - 02:48
Claude Fable, the company's most powerful model, is now available to all users, but early impressions are disappointing, as it appears to be nowhere near the original release. [...]
Kategorie: Hacking & Security

Google loses final appeal to overturn €4.1 billion EU fine

2 Červenec, 2026 - 17:18
Court of Justice of the European Union (CJEU) has dismissed Google's final appeal against a €4.1 billion ($4.7 billion) antitrust fine over the company's use of Android to promote its Chrome browser and search service. [...]
Kategorie: Hacking & Security

ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 Seconds

2 Červenec, 2026 - 16:00
ConsentFix and ClickFix attacks steal Microsoft 365 tokens in seconds using fake prompts and OAuth flows. Learn how these MFA bypass tactics work and how to defend against them. [...]
Kategorie: Hacking & Security

Microsoft fixes bug that removed Copilot buttons in Outlook

2 Červenec, 2026 - 14:15
Microsoft has fixed a known issue causing the Copilot Chat or Copilot buttons in Classic Outlook to disappear for Windows users with the Copilot Chat (Basic) license. [...]
Kategorie: Hacking & Security

Cisco finally confirms attackers exploiting Unified CM flaw

2 Červenec, 2026 - 13:35
Cisco confirmed that attackers are now exploiting a Unified Communications Manager (Unified CM) vulnerability patched in early June. [...]
Kategorie: Hacking & Security

CISA: Microsoft SharePoint RCE flaw now actively exploited

2 Červenec, 2026 - 12:52
CISA warned on Wednesday that attackers have begun exploiting a high-severity Microsoft SharePoint remote code execution vulnerability patched in May. [...]
Kategorie: Hacking & Security

Opera rolls out Paste Protect feature to fight ClickFix attacks

2 Červenec, 2026 - 12:46
Opera has introduced Paste Protect, a security feature designed to block ClickFix-style attacks that trick users into executing malicious commands through social engineering. [...]
Kategorie: Hacking & Security

Alleged Scattered Spider hacker extradited to the United States

2 Červenec, 2026 - 10:58
A dual United States and Estonian citizen has been extradited to the U.S. to face charges alleging he was a member of the Scattered Spider hacking collective. [...]
Kategorie: Hacking & Security

Medtronic notifies customers impacted by ShinyHunters data breach

2 Červenec, 2026 - 06:25
Healthcare device firm Medtronic is notifying affected customers about a data breach that exposed their personal data to an unauthorized third party. [...]
Kategorie: Hacking & Security

FortiBleed credential-theft campaign linked to Lynx ransomware

1 Červenec, 2026 - 23:37
The massive FortiBleed credential theft campaign has been linked to the INC and Lynx ransomware operations, suggesting the stolen Fortinet credentials were intended to fuel future network intrusions. [...]
Kategorie: Hacking & Security

Kubota says hackers had month-long access to network systems

1 Červenec, 2026 - 23:09
Kubota North America Corporation disclosed that hackers had access to some of its network systems for more than a month earlier this year. [...]
Kategorie: Hacking & Security

New ChocoPoC malware targets researchers via trojanized PoC exploits

1 Červenec, 2026 - 22:08
Multiple weaponized proof-of-concept (PoC) exploits on GitHub were found delivering a Python-based remote access trojan (RAT) named ChocoPoC that can execute commands and steal sensitive data in a campaign believed to target cybersecurity researchers. [...]
Kategorie: Hacking & Security

ChocoPoc malware delivered via trojanized exploits on GitHub

1 Červenec, 2026 - 22:08
Multiple weaponized proof-of-concept (PoC) exploits on GitHub delivered a Python-based remote access trojan (RAT) called ChocoPoC that can execute commands and steal sensitive data. [...]
Kategorie: Hacking & Security

DHS confirms hackers breached HSIN info-sharing platform

1 Červenec, 2026 - 19:32
The Department of Homeland Security is investigating a cyberattack that compromised the Homeland Security Information Network (HSIN), a sensitive information-sharing platform used by federal, state, local, and private-sector partners. [...]
Kategorie: Hacking & Security

Webinar: Why traditional email security is no longer enough

1 Červenec, 2026 - 18:54
Modern phishing, business email compromise, and account takeover attacks increasingly exploit trusted identities and legitimate business workflows, making them harder for traditional email defenses to detect. This webinar explores how behavioral AI can help organizations automate detection and response. [...]
Kategorie: Hacking & Security

Hackers target Microsoft 365 accounts with 81 million login attempts

1 Červenec, 2026 - 18:38
An aggressive password-spraying campaign targeting Microsoft 365 environments generated more than 81 million login attempts over a two-week period. [...]
Kategorie: Hacking & Security

Turning Indicators into Intelligence in OpenCTI with Criminal IP

1 Červenec, 2026 - 16:01
Threat intelligence is only as useful as the context behind it. Criminal IP explains how its integration enriches threat indicators in OpenCTI with risk scoring, infrastructure intelligence, and phishing analysis. [...]
Kategorie: Hacking & Security

Over 900 Oracle E-Business instances exposed to ongoing attacks

1 Červenec, 2026 - 14:30
Over 900 Oracle E-Business Suite (EBS) instances have been found exposed online amid ongoing attacks exploiting a critical security flaw. [...]
Kategorie: Hacking & Security