Category: Bleeping Computer

Microsoft 365
24
Feb
2025

Botnet targets Basic Auth in Microsoft 365 password spray attacks

A massive botnet of over 130,000 compromised devices is conducting password-spray attacks against Microsoft 365 (M365) accounts worldwide, targeting basic…

Kaspersky
24
Feb
2025

Australia bans all Kaspersky products on government systems

The Australian government has banned all Kaspersky Lab products and web services from its systems and devices following an analysis…

Hackers
24
Feb
2025

North Korean hackers linked to $1.5 billion ByBit crypto heist

​Over the weekend, blockchain security companies and experts have linked North Korea’s Lazarus hacking group to the theft of over…

Parallels
24
Feb
2025

Exploits for unpatched Parallels Desktop flaw give root on Macs

Two different exploits for an unpatched Parallels Desktop privilege elevation vulnerability have been publicly disclosed, allowing users to gain root…

Google
24
Feb
2025

Google Cloud introduces quantum-safe digital signatures in KMS

Google Cloud has introduced quantum-safe digital signatures to its Cloud Key Management Service (Cloud KMS), making them available in preview….

Counter Strike
23
Feb
2025

Fake CS2 tournament streams used to steal crypto, Steam accounts

Threat actors are exploiting major Counter-Strike 2 (CS2) competitions, like IEM Katowice 2025 and PGL Cluj-Napoca 2025, to defraud gamers…

PayPal
23
Feb
2025

PayPal “New Address” feature abused to send phishing emails

An ongoing PayPal email scam exploits the platform’s address settings to send fake purchase notifications, tricking users into granting remote…

Google Chrome
22
Feb
2025

Google Chrome disables uBlock Origin for some in Manifest v3 rollout

Google continues its rollout of gradually disabling uBlock Origin and other Manifest V2-based extensions in the Chrome web browser as…

Android
21
Feb
2025

SpyLend Android malware downloaded 100,000 times from Google Play

An Android malware app called SpyLend has been downloaded over 100,000 times from Google Play, where it masqueraded as a…

Apple
21
Feb
2025

Apple pulls iCloud end-to-end encryption feature in the UK

Apple will no longer offer iCloud end-to-end encryption in the United Kingdom after the government requested a backdoor to access…

Cryptocurrency
21
Feb
2025

Hacker steals record $1.46 billion from Bybit ETH cold wallet

Cryptocurrency exchange Bybit revealed today that an unknown attacker stole over $1.46 billion worth of cryptocurrency from one of its…

Craft CMS
21
Feb
2025

CISA flags Craft CMS code injection flaw as exploited in attacks

The U.S. Cybersecurity & Infrastructure Security Agency (CISA) warns that a Craft CMS remote code execution flaw is being exploited…