Category: Bleeping Computer

CrushFTP
25
Apr
2024

Over 1,400 CrushFTP servers vulnerable to actively exploited bug

​Over 1,400 CrushFTP servers exposed online were found vulnerable to attacks currently targeting a critical severity server-side template injection (SSTI) vulnerability…

Android
25
Apr
2024

New Brokewell malware takes over Android devices, steals data

Security researchers have discovered a new Android banking trojan they named Brokewell that can capture every event on the device,…

WordPress
25
Apr
2024

WP Automatic WordPress plugin hit by millions of SQL injection attacks

Hackers have started to target a critical severity vulnerability in the WP Automatic plugin for WordPress to create user accounts…

Crypto
25
Apr
2024

US charges Samourai cryptomixer founders for laundering $100 million

Keonne Rodriguez and William Lonergan Hill have been charged by the U.S. Department of Justice for laundering more than $100…

Top severity Flowmon vulnerability gets public exploit, patch now
24
Apr
2024

Maximum severity Flowmon bug has a public exploit, patch now

Proof-of-concept exploit code has been released for a top-severity security vulnerability in Progress Flowmon, a tool for monitoring network performance…

Cisco
24
Apr
2024

ArcaneDoor hackers exploit Cisco zero-days to breach govt networks

​Cisco warned today that a state-backed hacking group has been exploiting two zero-day vulnerabilities in Adaptive Security Appliance (ASA) and…

Windows 11
24
Apr
2024

Windows 11 KB5036980 update goes live with Start Menu ads

​Microsoft has enabled Start menu ads in the optional KB5036980 preview cumulative update for Windows 11 22H2 and 23H2. The…

Google Meet opens client-side encrypted calls to non Google users
24
Apr
2024

Google Meet opens client-side encrypted calls to non Google users

Google is updating the client-side encryption mechanism for Google Meet to allow external participants, including those without Google accounts, to…

Ring customers get $5.6 million in privacy breach settlement
24
Apr
2024

Ring customers get $5.6 million in privacy breach settlement

The Federal Trade Commission is sending $5.6 million in refunds to Ring users whose private video feeds were accessed without…

Hacker
24
Apr
2024

CoralRaider attacks use CDN cache to push info-stealer malware

A threat actor has been using a content delivery network cache to store information-stealing malware in an ongoing campaign targeting…

Outlook
24
Apr
2024

Microsoft pulls fix for Outlook bug behind ICS security alerts

Microsoft has rolled back a fix for a known Outlook issue that was causing incorrect security alerts when opening ICS…

Microsoft Exchange
23
Apr
2024

Microsoft releases Exchange hotfixes for security update issues

​Microsoft has released hotfix updates to address multiple known issues impacting Exchange servers after installing the March 2024 security updates….