Category: Bleeping Computer

qBittorrent
31
Oct
2024

qBittorrent fixes flaw exposing users to MitM attacks for 14 years

qBittorrent has addressed a remote code execution flaw caused by the failure to validate SSL/TLS certificates in the application’s DownloadManager,…

Windows
31
Oct
2024

Microsoft fixes Windows 10 bug causing apps to stop working

Microsoft has fixed a known issue that prevents some apps launched from non-admin accounts from starting on Windows 10 22H2…

Shop
31
Oct
2024

Over a thousand online shops hacked to show fake product listings

A phishing campaign dubbed ‘Phish n’ Ships’ has been underway since at least 2019, infecting over a thousand legitimate online…

Chain
31
Oct
2024

LottieFiles hit in npm supply chain attack targeting users’ crypto

LottieFiles announced that specific versions of its npm package carry malicious code that prompts users to connect their cryptocurrency wallets…

Interbank
31
Oct
2024

Interbank confirms data breach following failed extortion, data leak

​Interbank, one of Peru’s leading financial institutions, has confirmed a data breach after a threat actor who hacked into its…

Microsoft
30
Oct
2024

Microsoft Entra “security defaults” to make MFA setup mandatory

​Microsoft says it will improve security across Entra tenants where security defaults are enabled by making multifactor authentication (MFA) registration…

QNAP
30
Oct
2024

QNAP patches second zero-day exploited at Pwn2Own to get root

QNAP has released security patches for a second zero-day bug exploited by security researchers during last week’s Pwn2Own hacking contest….

North Korea
30
Oct
2024

North Korean govt hackers linked to Play ransomware attack

The North Korean state-sponsored hacking group tracked as ‘Andariel’ has been linked to the Play ransomware operation, using the RaaS…

Android
30
Oct
2024

Android malware “FakeCall” now reroutes bank calls to attackers

A new version of the FakeCall malware for Android hijacks outgoing calls from a user to their bank, redirecting them…

Cloud
30
Oct
2024

Hackers steal 15,000 cloud credentials from exposed Git config files

A large-scale malicious operation named “EmeraldWhale” scanned for exposed Git configuration files to steal over 15,000 cloud account credentials from…

Election
30
Oct
2024

Upcoming U.S. general election fuel multiple fraud schemes

The Federal Bureau of Investigation (FBI) is warning of multiple schemes taking advantage of the upcoming U.S. general election to…

Hacker looking at screens
30
Oct
2024

Massive PSAUX ransomware attack targets 22,000 CyberPanel instances

Over 22,000 CyberPanel instances exposed online to a critical remote code execution (RCE) vulnerability were mass-targeted in a PSAUX ransomware…