Category: Bleeping Computer

CISA
06
May
2025

Critical Langflow RCE flaw exploited to hack AI app servers

The U.S. Cybersecurity & Infrastructure Security Agency (CISA) has tagged a Langflow remote code execution vulnerability as actively exploited, urging organizations…

Samsung
06
May
2025

Samsung MagicINFO 9 Server RCE flaw now exploited in attacks

Hackers are exploiting an unauthenticated remote code execution (RCE) vulnerability in the Samsung MagicINFO 9 Server to hijack devices and…

Justice
06
May
2025

UK Legal Aid Agency investigates cybersecurity incident

The Legal Aid Agency (LAA), an executive agency of the UK’s Ministry of Justice that oversees billions in legal funding,…

Microsoft 365
06
May
2025

New Microsoft 365 outage impacts Teams and other services

Microsoft is investigating a new Microsoft 365 outage affecting multiple services across North America, including the company’s Teams collaboration platform….

AI robot
06
May
2025

Microsoft unveils new AI agents that can modify Windows settings

Today, Microsoft announced new Windows experiences for Copilot+ PCs, including AI agents that will make changing settings on your Windows…

Cyber world with a lock in it
06
May
2025

Why EASM is vital to modern digital risk protection

Modern organizations face mounting challenges in securing their public-facing assets. From the rise of shadow IT to third-party supplier exposures,…

Android
06
May
2025

Google fixes actively exploited FreeType flaw on Android

Google has released the May 2025 security updates for Android with fixes for 45 security flaws, including an actively exploited…

Destructive Linux malware hides in malicious Go modules on GitHub
06
May
2025

Linux wiper malware hidden in malicious Go modules on GitHub

A supply-chain attack targets Linux servers with disk-wiping malware hidden in Golang modules published on GitHub. The campaign was detected…

Windows 11
06
May
2025

Microsoft pushes fix for Windows 11 update 0x80240069 errors

​Microsoft has fixed a known issue preventing Windows 11 24H2 feature updates from being delivered via Windows Server Update Services…

Mothman
06
May
2025

Luna Moth extortion hackers pose as IT help desks to breach US firms

The data-theft extortion group known as Luna Moth, aka Silent Ransom Group, has ramped up callback phishing campaigns in attacks…

Phishing
06
May
2025

Darcula PhaaS steals 884,000 credit cards via phishing texts

The Darcula phishing-as-a-service (PhaaS) platform stole 884,000 credit cards from 13 million clicks on malicious links sent via text messages…

Hacker with arms raised
05
May
2025

New “Bring Your Own Installer” EDR bypass used in ransomware attack

A new “Bring Your Own Installer” EDR bypass technique is exploited in attacks to bypass SentinelOne’s tamper protection feature, allowing threat…