Category: Bleeping Computer

Fortinet
23
Oct
2024

Fortinet warns of new critical FortiManager flaw used in zero-day attacks

Fortinet publicly disclosed today a critical FortiManager API vulnerability, tracked as CVE-2024-47575, that was exploited in zero-day attacks to steal sensitive files…

Pwn2Own Ireland
23
Oct
2024

Hackers exploit 52 zero-days on the first day of Pwn2Own Ireland

On the first day of Pwn2Own Ireland, participants demonstrated 52 zero-day vulnerabilities across a range of devices, earning a total of…

CISA proposes new security requirements to protect govt, personal data
23
Oct
2024

CISA proposes new security requirements to protect govt, personal data

The U.S. Cybersecurity & Infrastructure Security Agency (CISA) is proposing security requirements to prevent adversary states from accessing American’s personal…

Windows 10
23
Oct
2024

Windows 10 KB5045594 update fixes multi-function printer bugs

Microsoft has released the optional KB5045594 preview cumulative update for Windows 10 22H2 with fixes for problems printing to multi-function…

AWS, Azure auth keys found in Android and iOS apps used by millions
22
Oct
2024

AWS, Azure auth keys found in Android and iOS apps used by millions

Multiple popular mobile applications for iOS and Android come with hardcoded, unencrypted credentials for cloud services like Amazon Web Services (AWS)…

SEC
22
Oct
2024

SEC charges tech companies for downplaying SolarWinds breaches

The SEC has charged four companies—Unisys Corp, Avaya Holdings, Check Point Software, and Mimecast—for allegedly misleading investors about the impact…

Exploit released for new Windows Server "WinReg" NTLM Relay attack
22
Oct
2024

Exploit released for new Windows Server “WinReg” NTLM Relay attack

Proof-of-concept exploit code is now public for a vulnerability in Microsoft’s Remote Registry client that could be used to take control of…

VMware
22
Oct
2024

VMware fixes bad patch for critical vCenter Server RCE flaw

VMware has released another security update for CVE-2024-38812, a critical VMware vCenter Server remote code execution vulnerability that was not…

Hackers exploit Roundcube webmail flaw to steal email, credentials
22
Oct
2024

Hackers exploit Roundcube webmail flaw to steal email, credentials

Threat actors have been exploiting a vulnerability in the Roundcube Webmail client to target government organizations in the Commonwealth of…

Bumblebee malware returns after recent law enforcement disruption
22
Oct
2024

Bumblebee malware returns after recent law enforcement disruption

The Bumblebee malware loader has been spotted in new attacks recently, more than four months after Europol disrupted it during…

Microsoft blocks Windows 11 24H2 on two ASUS models due to crashes
21
Oct
2024

Microsoft blocks Windows 11 24H2 on two ASUS models due to crashes

Microsoft is warning of Windows crashing with the blue screen of death on some ASUS laptop models when trying to upgrade to…

WordPress logo on a red background
21
Oct
2024

Over 6,000 WordPress hacked to install plugins pushing infostealers

WordPress sites are being hacked to install malicious plugins that display fake software updates and errors to push information-stealing malware….