Category: Bleeping Computer

Bitwarden adds passkey support to log into web password vaults
22
Feb
2024

Bitwarden’s new auto-fill option adds phishing resistance

The Bitwarden open-source password management service has introduced a new inline auto-fill menu that addresses the risk of user credentials being…

LockBit
22
Feb
2024

ScreenConnect servers hacked in LockBit ransomware attacks

Attackers are exploiting a maximum severity authentication bypass vulnerability to breach unpatched ScreenConnect servers and deploy LockBit ransomware payloads on…

Massive Verizon, AT&T, and T-Mobile mobile outage impacts US customers
22
Feb
2024

Massive AT&T, Verizon, and T-Mobile outage impacts US customers

Tens of thousands of U.S. customers from Verizon, T-Mobile, and AT&T are complaining Thursday morning about the lack of wireless…

New SSH-Snake malware steals SSH keys to spread across the network
22
Feb
2024

New SSH-Snake malware steals SSH keys to spread across the network

A threat actor is using an open-source network mapping tool named SSH-Snake to look for private keys undetected and move laterally…

Hackers abuse Google Cloud Run in massive banking trojan campaign
22
Feb
2024

Hackers abuse Google Cloud Run in massive banking trojan campaign

Security researchers are warning of hackers abusing the Google Cloud Run service to distribute massive volumes of banking trojans like…

Microsoft
22
Feb
2024

Microsoft expands free logging capabilities after May breach

Microsoft has expanded free logging capabilities for all Purview Audit standard customers, including U.S. federal agencies, six months after disclosing…

Joomla fixes XSS flaws that could expose sites to RCE attacks
22
Feb
2024

Joomla fixes XSS flaws that could expose sites to RCE attacks

Five vulnerabilities have been discovered in the Joomla content management system that could be leveraged to execute arbitrary code on…

Apple
22
Feb
2024

Fraudsters tried to scam Apple out of 5,000 iPhones worth over $3 million

Two Chinese nationals face 20 years in prison after being caught and convicted of submitting over 5,000 fake iPhones worth…

Hacker water
21
Feb
2024

US govt shares cyberattack defense tips for water utilities

CISA, the FBI, and the Environmental Protection Agency (EPA) shared a list of defense measures U.S. water utilities should implement…

ScreenConnect critical bug now under attack as exploit code emerges
21
Feb
2024

ScreenConnect critical bug now under attack as exploit code emerges

Both technical details and proof-of-concept exploits are available for the two vulnerabilities ConnectWise disclosed earlier this week for ScreenConnect, its…

US State Department
21
Feb
2024

US offers $15 million bounty for info on LockBit ransomware gang

The U.S. State Department is now also offering rewards of up to $15 million to anyone who can provide information…

Critical infrastructure software maker confirms ransomware attack   Bill   16:29
21
Feb
2024

Critical infrastructure software maker confirms ransomware attack

PSI Software SE, a German software developer for complex production and logistics processes, has confirmed that the cyber incident it disclosed…