Category: Bleeping Computer

Volumetric DDoS attack peaks at 3.7Tbps, largest in public record
03
Oct
2024

Cloudflare blocks largest recorded DDoS attack peaking at 3.8Tbps

During a distributed denial-of-service campaign targeting organizations in the financial services, internet, and telecommunications sectors, volumetric attacks peaked at 3.8…

Russian hackers
03
Oct
2024

Microsoft and DOJ disrupt Russian FSB hackers’ attack infrastructure

Microsoft and the Justice Department have seized over 100 domains used by the Russian ColdRiver hacking group to target United…

Over 4,000 Adobe Commerce, Magento shops hacked in CosmicSting attacks
03
Oct
2024

Over 4,000 Adobe Commerce, Magento shops hacked in CosmicSting attacks

Adobe Commerce and Magento online stores are being targeted in “CosmicSting” attacks at an alarming rate, with threat actors hacking approximately…

Apple
03
Oct
2024

Fraudsters imprisoned for scamming Apple out of 6,000 iPhones

Two Chinese nationals were sentenced to prison for scamming Apple out of more than $2.5 million after exchanging over 6,000…

Specops Password Dictionary
03
Oct
2024

Why your password policy should include a custom dictionary

If your organization is like many, your employees may be relying on weak or easily guessable passwords — and inadvertently…

Tux malware
03
Oct
2024

Linux malware “perfctl” behind years-long cryptomining campaign

A Linux malware named “perfctl” has been targeting Linux servers and workstations for at least three years, remaining largely undetected…

AI-generated woman
02
Oct
2024

FIN7 hackers launch deepfake nude “generator” sites to spread malware

Image: Midjourney The notorious APT hacking group known as FIN7 has launched a network of fake AI-powered deepnude generator sites to…

Ivanti
02
Oct
2024

Critical Ivanti RCE flaw with public exploit now used in attacks

CISA warned today that a critical Ivanti vulnerability that can let threat actors gain remote code execution on vulnerable Endpoint Manager…

Cookies
02
Oct
2024

Fake browser updates spread updated WarmCookie malware

A new ‘FakeUpdate’ campaign targeting users in France leverages compromised websites to show fake browser and application updates that spread…

Office 2024
02
Oct
2024

Microsoft Office 2024 now available for Windows and macOS users

Microsoft has released Office 2024 for small businesses and consumers who want a standalone version without a Microsoft 365 subscription….

DrayTek
02
Oct
2024

DrayTek fixed critical flaws in over 700,000 exposed routers

DrayTek has released security updates for multiple router models to address 14 vulnerabilities of varying severity, including a remote code…

Malicious email
02
Oct
2024

Critical Zimbra RCE flaw exploited to backdoor servers using emails

Hackers are actively exploiting a recently disclosed RCE vulnerability in Zimbra email servers that can be triggered simply by sending specially…