Category: Bleeping Computer

Cisco
09
Aug
2024

Cisco warns of critical RCE zero-days in end of life IP phones

Cisco is warning of multiple critical remote code execution zero-days in the web-based management interface of the end-of-life Small Business…

Apache
08
Aug
2024

CISA warns about actively exploited Apache OFBiz RCE flaw

The U.S. Cybersecurity & Infrastructure Security Agency is warning of two vulnerabilities exploited in attacks, including a path traversal impacting…

Cisco
08
Aug
2024

Exploit released for Cisco SSM bug allowing admin password changes

Cisco warns that exploit code is now available for a maximum severity vulnerability that lets attackers change any user password…

Hacker in suit
08
Aug
2024

BlackSuit ransomware behind over $500 million in ransom demands

CISA and the FBI confirmed today that the Royal ransomware rebranded to BlackSuit and has demanded over $500 million from…

CISA
08
Aug
2024

CISA warns of hackers abusing Cisco Smart Install feature

​On Thursday, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) recommended disabling the legacy Cisco Smart Install (SMI) feature after seeing…

0.0.0.0 Day
08
Aug
2024

18-year-old security flaw in Firefox and Chrome exploited in attacks

A vulnerability disclosed 18 years ago, dubbed “0.0.0.0 Day”, allows malicious websites to bypass security in Google Chrome, Mozilla Firefox,…

ADT sign
08
Aug
2024

ADT confirms data breach after customer info leaked on hacking forum

American building security giant ADT confirmed it suffered a data breach after threat actors leaked allegedly stolen customer data on…

Hacker in suit
08
Aug
2024

BlackSuit ransomware made over $500 million in ransom demands

CISA and the FBI confirmed today that the Royal ransomware rebranded to BlackSuit and has demanded over $500 million from…

Smiley face hacker
08
Aug
2024

Ronin Network hacked, $12 million returned by “white hat” hackers

Gambling blockchain Ronin Network suffered a security incident yesterday when white hat hackers exploited an undocumented vulnerability on the Ronin…

SEC ends probe into MOVEit attacks impacting 95 million people
08
Aug
2024

SEC ends probe into MOVEit attacks impacting 95 million people

The SEC has concluded its investigation into Progress Software’s handling of the widespread exploitation of a MOVEit Transfer zero-day flaw…

Russia
08
Aug
2024

New CMoon USB worm targets Russians in data theft attacks

A new self-spreading worm named ‘CMoon,’ capable of stealing account credentials and other data, has been distributed in Russia since…

Windows
07
Aug
2024

Windows Update downgrade attack “unpatches” fully-updated systems

SafeBreach security researcher Alon Leviev revealed at Black Hat 2024 that two zero-days could be exploited in downgrade attacks to…