Category: Bleeping Computer

Ivanti
23
Jan
2024

VPN appliances vulnerable if pushing configs after mitigation

Ivanti warned admins to stop pushing new device configurations to appliances after applying mitigations because this will leave them vulnerable…

Intuit
23
Jan
2024

FTC orders Intuit to stop pushing “free” software that isn’t really free

Today, the U.S. Federal Trade Commission (FTC) ordered Intuit to stop promoting its software products and services as “free” unless…

SEC red flare
23
Jan
2024

SEC confirms X account was hacked in SIM swapping attack

The U.S. Securities and Exchange Commission confirmed today that its X account was hacked through a SIM-swapping attack on the…

Cracked macOS apps drain wallets using scripts fetched from DNS records
23
Jan
2024

Cracked macOS apps drain wallets using scripts fetched from DNS records

Hackers are using a stealthy method to deliver to macOS users information-stealing malware through DNS records that hide malicious scripts….

Malicious web redirect scripts stealth up to hide on hacked sites
22
Jan
2024

Malicious web redirect scripts stealth up to hide on hacked sites

Security researchers looking at more than 10,000 scripts used by the Parrot traffic direction system (TDS) noticed an evolution marked by…

Apple
22
Jan
2024

Apple fixes first zero-day bug exploited in attacks this year

Apple released security updates to address this year’s first zero-day vulnerability exploited in attacks that could impact iPhones, Macs, and…

loanDepot
22
Jan
2024

loanDepot says ransomware gang stole data of 16.6 million people

Mortgage lender loanDepot says that approximately 16.6 million people had their personal information stolen in a ransomware attack disclosed earlier…

Trezor support site breach exposes personal data of 66,000 customers
22
Jan
2024

Trezor support site breach exposes personal data of 66,000 customers

Trezor issued a security alert after identifying a data breach that occurred on January 17 due to unauthorized access to their…

Hackers start exploiting critical Atlassian Confluence RCE flaw
22
Jan
2024

Hackers start exploiting critical Atlassian Confluence RCE flaw

Security researchers are observing exploitation attempts for the CVE-2023-22527 remote code execution flaw vulnerability that affects outdated versions of Atlassian Confluence servers….

Court IT
22
Jan
2024

Court charges dev with hacking after cybersecurity issue disclosure

A German court has charged a programmer investigating an IT problem with hacking and fined them €3,000 ($3,265) for what…

Brave
22
Jan
2024

Brave to end ‘Strict’ fingerprinting protection as it breaks websites

Brave Software has announced plans to deprecate the ‘Strict’ fingerprinting protection mode in its privacy-focused Brave Browser because it causes…

Facebook
22
Jan
2024

Watch out for “I can’t believe he is gone” Facebook phishing posts

A widespread Facebook phishing campaign stating, “I can’t believe he is gone. I’m gonna miss him so much,” leads unsuspecting…