Category: Bleeping Computer

FBI links North Korean hackers to $308 million crypto heist
24
Dec
2024

FBI links North Korean hackers to $308 million crypto heist

The North Korean hacker group ‘TraderTraitor’ stole $308 million worth of cryptocurrency in the attack on the Japanese exchange DMM Bitcoin…

Clop
24
Dec
2024

Clop ransomware threatens 66 Cleo attack victims with data leak

The Clop ransomware gang started to extort victims of its Cleo data theft attacks and announced on its dark web portal that…

Adobe
23
Dec
2024

Adobe warns of critical ColdFusion bug with PoC exploit code

Adobe has released out-of-band security updates to address a critical ColdFusion vulnerability with proof-of-concept (PoC) exploit code. In an advisory released…

FTC orders Marriott and Starwood to implement strict data security
23
Dec
2024

FTC orders Marriott and Starwood to implement strict data security

The Federal Trade Commission (FTC) has ordered Marriott International and Starwood Hotels to define and implement a robust customer data…

Premium WPLMS WordPress plugins address seven critical flaws
23
Dec
2024

Premium WPLMS WordPress plugins address seven critical flaws

Two WordPress plugins required by the premium WordPress WPLMS theme, which has over 28,000 sales, are vulnerable to more than a dozen…

NSO Group
23
Dec
2024

US court finds spyware maker NSO liable for WhatsApp hacks

A U.S. federal judge has ruled that Israeli spyware maker NSO Group violated U.S. hacking laws by using WhatsApp zero-days…

FlowerStorm Phishing
23
Dec
2024

New FlowerStorm Microsoft phishing service fills void left by Rockstar2FA

A new Microsoft 365 phishing-as-a-service platform called “FlowerStorm” is growing in popularity, filling the void left behind by the sudden shutdown of…

North Korean hackers
23
Dec
2024

North Korean hackers stole $1.3 billion worth of crypto this year

North Korean hackers have stolen $1.34 billion worth of cryptocurrency across 47 cyberattacks that occurred in 2024, according to a…

Microsoft 365
23
Dec
2024

Microsoft fixes bug behind random Office 365 deactivation errors

​Microsoft has rolled out a fix for a known issue that causes random “Product Deactivated” errors for customers using Microsoft 365…

Apache fixes remote code execution bypass in Tomcat web server
23
Dec
2024

Apache fixes remote code execution bypass in Tomcat web server

Apache has released a security update that addresses an important vulnerability in Tomcat web server that could lead to an…

Sophos
21
Dec
2024

Sophos discloses critical Firewall remote code execution flaw

Sophos has addressed three vulnerabilities in its Sophos Firewall product that could allow remote unauthenticated threat actors to perform SQL…

Google Chrome
21
Dec
2024

Google Chrome uses AI to analyze pages in new scam detection feature

Google is using artificial intelligence to power a new Chrome scam protection feature that analyzes brands and the intent of pages…