Category: Bleeping Computer

Apple
13
Dec
2025

Apple fixes two zero-day flaws exploited in ‘sophisticated’ attacks

Apple has released emergency updates to patch two zero-day vulnerabilities that were exploited in an “extremely sophisticated attack” targeting specific…

Coupang
12
Dec
2025

Coupang data breach traced to ex-employee who retained system access

A data breach at Coupang that exposed the information of 33.7 million customers has been tied to a former employee…

Cinema
12
Dec
2025

Fake ‘One Battle After Another’ torrent hides malware in subtitles

A fake torrent for Leonardo DiCaprio’s ‘One Battle After Another’ hides malicious PowerShell malware loaders inside subtitle files that ultimately…

Grist header image
12
Dec
2025

The security gap your tools can’t see

Your IT team just wrapped an exhaustive security test. The network is locked down. Your organization’s tech stack has MFA…

Kali Linux
12
Dec
2025

Kali Linux 2025.4 released with 3 new tools, desktop updates

Kali Linux has released version 2025.4, its final update of the year, introducing three new tools, desktop environment improvements, and…

Windows
12
Dec
2025

New Windows RasMan zero-day flaw gets free, unofficial patches

Free unofficial patches are available for a new Windows zero-day vulnerability that allows attackers to crash the Remote Access Connection…

CISA
12
Dec
2025

CISA orders feds to patch actively exploited Geoserver flaw

CISA has ordered U.S. federal agencies to patch a critical GeoServer vulnerability now actively exploited in XML External Entity (XXE)…

Bugs
12
Dec
2025

MITRE shares 2025’s top 25 most dangerous software weaknesses

MITRE has shared this year’s top 25 list of the most dangerous software weaknesses behind over 39,000 security vulnerabilities disclosed…

Pirate
12
Dec
2025

MKVCinemas streaming piracy service with 142M visits shuts down

An anti-piracy coalition has dismantled one of India’s most popular streaming piracy services, which has provided free access to movies…

Brave browser starts testing agentic AI mode for automated tasks
12
Dec
2025

Brave browser starts testing agentic AI mode for automated tasks

Brave has introduced a new AI browsing feature that leverages Leo, its privacy-respecting AI assistant, to perform automated tasks for…

Malicious VSCode Marketplace extensions hid trojan in fake PNG file
12
Dec
2025

Malicious VSCode Marketplace extensions hid trojan in fake PNG file

A stealthy campaign with 19 extensions on the VSCode Marketplace has been active since February, targeting developers with malware hidden…

Hackers exploit Gladinet CentreStack cryptographic flaw in RCE attacks
12
Dec
2025

Hackers exploit Gladinet CentreStack cryptographic flaw in RCE attacks

Hackers are exploiting a new, undocumented vulnerability in the implementation of the cryptographic algorithm present in Gladinet’s CentreStack and Triofox products…