Category: Bleeping Computer

Magecart
02
May
2025

Magento supply chain attack compromises hundreds of e-stores

A supply chain attack involving 21 backdoored Magento extensions has compromised between 500 and 1,000 e-commerce stores, including one belonging…

Black Kingdom
02
May
2025

US indicts Black Kingdom ransomware admin for Microsoft Exchange attacks

A 36-year-old Yemeni national, who is believed to be the developer and primary operator of ‘Black Kingdom’ ransomware, has been…

United Kingdom
02
May
2025

Cyberattacks impacting UK retailers are a wake-up call

The United Kingdom’s National Cyber Security Centre warned that ongoing cyberattacks impacting multiple UK retail chains should be taken as…

TikTok
02
May
2025

TikTok fined €530 million for sending European user data to China

The Irish Data Protection Commission (DPC) has fined TikTok €530 million (over $601 million) for illegally transferring the personal data…

Exchange Online
02
May
2025

Microsoft fixes Exchange Online bug flagging Gmail emails as spam

​Microsoft has resolved an issue with a machine learning model that mistakenly flagged emails from Gmail accounts as spam in…

Microsoft passwordless
02
May
2025

Microsoft makes all new accounts passwordless by default

Microsoft has announced that all new Microsoft accounts will be “passwordless by default” to secure them against password attacks such…

Disney
02
May
2025

Hacker ‘NullBulge’ pleads guilty to stealing Disney’s Slack data

A California man who used the alias “NullBulge” has pleaded guilty to illegally accessing Disney’s internal Slack channels and stealing over…

Bitcoin in chains
01
May
2025

Ukrainian extradited to US for Nefilim ransomware attacks

A Ukrainian national has been extradited from Spain to the United States to face charges over allegedly conducting Nefilim ransomware…

DDoS
01
May
2025

Pro-Russia hacktivists bombard Dutch public orgs with DDoS attacks

Russia-aligned hacktivists persistently target key public and private organizations in the Netherlands with distributed denial of service (DDoS) attacks, causing…

Harrods
01
May
2025

Harrods the next UK retailer targeted in a cyberattack

London’s iconic department store, Harrods, has confirmed it was targeted in a cyberattack, becoming the third major UK retailer to…

Gmail
01
May
2025

Malicious PyPI packages abuse Gmail, websockets to hijack systems

Seven malicious PyPi packages were found using Gmail’s SMTP servers and WebSockets for data exfiltration and remote command execution. The…

Malware
01
May
2025

Hackers abuse IPv6 networking feature to hijack software updates

A China-aligned APT threat actor named “TheWizards” abuses an IPv6 networking feature to launch adversary-in-the-middle (AitM) attacks that hijack software updates…