Category: Bleeping Computer

Robot reading compliance manuals
28
Jan
2026

AI Is Rewriting Compliance Controls and CISOs Must Take Notice

By Itamar Apelblat, CEO & Co-Founder, Token Security For decades, compliance frameworks were built on an assumption that now feels…

Hackers hijack exposed LLM endpoints in Bizarre Bazaar operation
28
Jan
2026

Hackers hijack exposed LLM endpoints in Bizarre Bazaar operation

A malicious campaign is actively targeting exposed LLM (Large Language Model) service endpoints to commercialize unauthorized access to AI infrastructure. Over a…

Hacker
28
Jan
2026

Slovakian man pleads guilty to operating darknet marketplace

A Slovakian national admitted on Tuesday to helping operate a darknet marketplace that sold narcotics, cybercrime tools and services, fake…

WhatsApp
28
Jan
2026

New WhatsApp lockdown feature protects high-risk users from hackers

Meta has started rolling out a new WhatsApp lockdown-style security feature designed to protect journalists, public figures, and other high-risk…

GPT
28
Jan
2026

OpenAI’s ChatGPT ad costs are on par with live NFL broadcasts

OpenAI plans to begin rolling out ads on ChatGPT in the United States if you have a free or $8…

Fortinet
28
Jan
2026

Fortinet blocks exploited FortiCloud SSO zero day until patch is ready

Fortinet has confirmed a new, actively exploited critical FortiCloud single sign-on (SSO) authentication bypass vulnerability, tracked as CVE-2026-24858, and says…

Chinese Mustang Panda hackers deploy infostealers via CoolClient backdoor
28
Jan
2026

Chinese Mustang Panda hackers deploy infostealers via CoolClient backdoor

The Chinese espionage threat group Mustang Panda has updated its CoolClient backdoor to a new variant that can steal login data…

WinRAR path traversal flaw still exploited by numerous hackers
27
Jan
2026

WinRAR path traversal flaw still exploited by numerous hackers

Multiple threat actors, both state-sponsored and financially motivated, are exploiting the CVE-2025-8088 high-severity vulnerability in WinRAR for initial access and to deliver various…

Bank ATMs
27
Jan
2026

US charges 31 more suspects linked to ATM malware attacks

A Nebraska federal grand jury charged 31 additional defendants for their involvement in an ATM jackpotting operation allegedly orchestrated by…

Critical sandbox escape flaw discovered in popular vm2 NodeJS library
27
Jan
2026

Critical sandbox escape flaw found in popular vm2 NodeJS library

A critical-severity vulnerability in the vm2 Node.js sandbox library, tracked as CVE-2026-22709, allows escaping the sandbox and executing arbitrary code on the…

Nike
27
Jan
2026

Nike investigates data breach after extortion gang leaks files

Nike is investigating what it described as a “potential cyber security incident” after the World Leaks ransomware gang leaked 1.4…

Flare
27
Jan
2026

The psychology behind modern ransomware extortion

For years, security teams treated ransomware as a technological problem. Security teams hardened backup systems, deployed endpoint detection, practiced incident…