Category: Bleeping Computer

CISA
26
Jun
2024

Most critical open source projects not using memory safe code

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has published research looking into 172 key open-source projects and whether they…

Fortra
26
Jun
2024

Exploit for critical Fortra FileCatalyst Workflow SQLi flaw released

The Fortra FileCatalyst Workflow is vulnerable to an SQL injection vulnerability that could allow remote unauthenticated attackers to create rogue…

Windows 11
26
Jun
2024

Windows 11 KB5039302 update released with 9 changes or fixes

Microsoft has released the Windows 11 KB5039302 preview update for Windows 11 version 22H2, bringing several new features and fixes. Since…

Hackers target new MOVEit Transfer critical auth bypass bug
26
Jun
2024

Hackers target new MOVEit Transfer critical auth bypass bug

Threat actors are already trying to exploit a critical authentication bypass flaw in Progress MOVEit Transfer, less than a day…

Windows 10
26
Jun
2024

Windows 10 KB5039299 update released with 10 changes or fixes

The June 2024 optional update for Windows 10 is now available. Today’s update brings KB5039299 for Windows 10 version 22H2 with up…

Snowblind malware abuses Android security feature to bypass security
26
Jun
2024

Snowblind malware abuses Android security feature to bypass security

A novel Android attack vector from a piece of malware tracked as Snowblind is abusing a security feature to bypass…

Plugins on WordPress.org backdoored in supply chain attack
25
Jun
2024

Plugins on WordPress.org backdoored in supply chain attack

A threat actor modified the source code of at least five plugins hosted on WordPress.org to include malicious PHP scripts that…

Supply chain attack
25
Jun
2024

Polyfill.io JavaScript supply chain attack impacts over 100K sites

Over 100,000 sites have been impacted in a supply chain attack by the Polyfill.io service after a Chinese company acquired the domain…

New Medusa malware variants target Android users in seven countries
25
Jun
2024

New Medusa malware variants target Android users in seven countries

The Medusa banking trojan for Android has re-emerged after almost a year of keeping a lower profile in campaigns targeting…

Neiman Marcus
25
Jun
2024

Neiman Marcus confirms data breach after Snowflake account hack

Luxury retailer Neiman Marcus confirmed it suffered a data breach after hackers attempted to sell the company’s database stolen in…

FBI warns of fake law firms targeting crypto scam victims
25
Jun
2024

FBI warns of fake law firms targeting crypto scam victims

The FBI is warning of cybercriminals posing as law firms and lawyers that offer cryptocurrency recovery services to victims of…

P2PInfect botnet targets REdis servers with new ransomware module
25
Jun
2024

P2PInfect botnet targets REdis servers with new ransomware module

P2PInfect, originally a dormant peer-to-peer malware botnet with unclear motives, has finally come alive to deploy a ransomware module and…