Source: www.bleepingcomputer.com – Author: Bill Toulas Australian law firm HWL Ebsworth confirmed to local media outlets that its network was hacked after the ALPHV ransomware gang...
Author:
PoC released for Windows Win32k bug exploited in attacks – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Researchers have released a proof-of-concept (PoC) exploit for an actively exploited Windows local privilege escalation vulnerability fixed as part of...
Asylum Ambuscade hackers mix cybercrime with espionage – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A hacking group tracked as ‘Asylum Ambuscade’ was observed in recent attacks targeting small to medium-sized companies worldwide, combining cyber...
Google Chrome password manager gets new safeguards for your credentials – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Google Chrome is getting new security-enhancing features for the built-in Password Manager, making it easier for users to manage their...
Honda API flaws exposed customer data, dealer panels, internal docs – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Honda’s e-commerce platform for power equipment, marine, lawn & garden, was vulnerable to unauthorized access by anyone due to API...
Lazarus hackers linked to the $35 million Atomic Wallet heist – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas The notorious North Korean hacking group known as Lazarus has been linked to the recent Atomic Wallet hack, resulting in...
New Fractureiser malware used CurseForge Minecraft mods to infect Windows, Linux – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Hackers used the popular Minecraft modding platforms Bukkit and CurseForge to distribute a new ‘Fractureiser’ information-stealing malware through uploaded modifications...
CEO guilty of selling counterfeit Cisco devices to military, govt orgs – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A Florida man has pleaded guilty to importing and selling counterfeit Cisco networking equipment to various organizations, including education, government...
Android security update fixes Mali GPU bug exploited as zero-day – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Google has released the monthly security update for the Android platform, adding fixes for 56 vulnerabilities, five of them with...
Sextortionists are making AI nudes from your social media images – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas The Federal Bureau of Investigation (FBI) is warning of a rising trend of malicious actors creating deepfake content to perform...
Microsoft to pay $20 million for XBOX children privacy violations – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Microsoft has agreed to pay a $20 million fine and change data privacy procedures for children to settle Federal Trade...
Android security update fixes Mali GPU flaw exploited by spyware – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Google has released the monthly security update for the Android platform, adding fixes for 56 vulnerabilities, five of them with...
New ‘PowerDrop’ PowerShell malware targets U.S. aerospace industry – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A new PowerShell malware script named ‘PowerDrop’ has been discovered to be used in attacks targeting the U.S. aerospace defense...
Google fixes new Chrome zero-day flaw with exploit in the wild – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Google has released a security update for Chrome web browser to address the third zero-day vulnerability that hackers exploited this year....
New tool scans iPhones for ‘Triangulation’ malware infection – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Cybersecurity firm Kaspersky has released a tool to detect if Apple iPhones and other iOS devices are infected with a...
SpinOk Android malware found in more apps with 30 million installs – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas The SpinOk malware was found in a new batch of Android apps on Google Play, reportedly installed an additional 30...
KeePass v2.54 fixes bug that leaked cleartext master password – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas KeePass has released version 2.54, fixing the CVE-2023-32784 vulnerability that allows the extraction of the cleartext master password from the...
Hackers hijack legitimate sites to host credit card stealer scripts – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A new Magecart credit card stealing campaign hijacks legitimate sites to act as “makeshift” command and control (C2) servers to...
Zyxel shares tips on protecting firewalls from ongoing attacks – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Zyxel has published a security advisory containing guidance on protecting firewall and VPN devices from ongoing attacks and detecting signs...
NSA and FBI: Kimsuky hackers pose as journalists to steal intel – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas State-sponsored North Korean hacker group Kimsuky (a.ka. APT43) has been impersonating journalists and academics for spear-phishing campaigns to collect intelligence from think...
Malicious Chrome extensions with 75M installs removed from Web Store – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Google has removed from the Chrome Web Store 32 malicious extensions that could alter search results and push spam or...
New Horabot campaign takes over victim’s Gmail, Outlook accounts – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A previously unknown campaign involving the Hotabot botnet malware has targeted Spanish-speaking users in Latin America since at least November...
Harvard Pilgrim Health Care ransomware attack hits 2.5 million people – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Harvard Pilgrim Health Care (HPHC) has disclosed that a ransomware attack it suffered in April 2023 impacted 2,550,922 people, with...
Russia says US hacked thousands of iPhones in iOS zero-click attacks – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Russian cybersecurity firm Kaspersky says some iPhones on its network were hacked using an iOS vulnerability that installed malware via...
Exploit released for RCE flaw in popular ReportLab PDF library – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A researcher has published a working exploit for a remote code execution (RCE) flaw impacting ReportLab Toolkit, a popular Python...
Hackers exploit critical Zyxel firewall flaw in ongoing attacks – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Hackers are performing widespread exploitation of a critical-severity command injection flaw in Zyxel networking devices, tracked as CVE-2023-28771, to install...
Stealthy SeroXen RAT malware increasingly used to target gamers – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas A stealthy remote access trojan (RAT) named ‘SeroXen’ has recently gained popularity as cybercriminals begin using it for its low...
Toyota finds more misconfigured servers leaking customer info – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas Toyota Motor Corporation has discovered two additional misconfigured cloud services that leaked car owners’ personal information for over seven years....
Dark Pink hackers continue to target govt and military organizations – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas The Dark Pink APT hacking group continues to be very active in 2023, observed targeting government, military, and education organizations...
WordPress plugin ‘Gravity Forms’ vulnerable to PHP object injection – Source: www.bleepingcomputer.com
Source: www.bleepingcomputer.com – Author: Bill Toulas The premium WordPress plugin ‘Gravity Forms,’ currently used by over 930,000 websites, is vulnerable to unauthenticated PHP Object Injection. Gravity...