Category: Bleeping Computer

Zimbra
13
Jul
2023

Zimbra urges admins to manually fix zero-day exploited in attacks

Zimbra urged admins today to manually fix a zero-day vulnerability actively exploited to target and compromise Zimbra Collaboration Suite (ZCS)…

Specops Browser Extensions
13
Jul
2023

Cyberattacks through Browser Extensions – the Importance of MFA

There are many avenues of attack that a threat actor can take. One that has been increasing in recent years…

Motherboard
13
Jul
2023

Source code for BlackLotus Windows UEFI malware leaked on GitHub

The source code for the BlackLotus UEFI bootkit has leaked online, allowing greater insight into a malware that has caused…

Computer face smiling
13
Jul
2023

USB drive malware attacks spiking again in first half of 2023

What’s old is new again, with researchers seeing a threefold increase in malware distributed through USB drives in the first…

Cryptocurrency falling
12
Jul
2023

New PyLoose Linux malware mines crypto directly from memory

A new fileless malware named PyLoose has been targeting cloud workloads to hijack their computational resources for Monero cryptocurrency mining….

Apple
12
Jul
2023

Apple re-releases zero-day patch after fixing browsing issue

Apple fixed and re-released emergency security updates addressing a WebKit zero-day vulnerability exploited in attacks. The initial patches had to…

SonicWall
12
Jul
2023

SonicWall warns admins to patch critical auth bypass bugs immediately

SonicWall warned customers today to urgently patch multiple critical vulnerabilities impacting the company’s Global Management System (GMS) firewall management and…

Windows 11
12
Jul
2023

New Windows 11 build ships with more Rust-based Kernel features

Microsoft announced that the latest Windows 11 build shipping to Insiders in the Canary channel comes with additional Windows Kernel…

Hacker
12
Jul
2023

Russian state hackers lure Western diplomats with BMW car ads

The Russian state-sponsored hacking group ‘APT29’ (aka Nobelium, Cloaked Ursa) has been using unconventional lures like car listings to entice…

GitHub
12
Jul
2023

GitHub goes passwordless, announces passkeys beta preview

GitHub announced today the introduction of passwordless authentication support in public beta, allowing users to upgrade from security keys to…

Tux dressed as a ghost
12
Jul
2023

Critical RCE found in popular Ghostscript open-source PDF library

Image: Bing Create Ghostscript, an open-source interpreter for PostScript language and PDF files widely used in Linux, has been found…

Fortinet
12
Jul
2023

Fortinet warns of critical RCE flaw in FortiOS, FortiProxy devices

Fortinet has disclosed a critical severity flaw impacting FortiOS and FortiProxy, allowing a remote attacker to perform arbitrary code execution…