Category: Bleeping Computer

Calvia
17
Jan
2024

Majorca city Calvià extorted for $11M in ransomware attack

The Calvià City Council in Majorca announced it was targeted by a ransomware attack on Saturday, which impacted municipal services….

GitHub rotates keys to mitigate impact of credential-exposing flaw
17
Jan
2024

GitHub rotates keys to mitigate impact of credential-exposing flaw

GitHub rotated keys potentially exposed by a vulnerability patched in December that could let attackers access credentials within production containers via environment…

Data
17
Jan
2024

MacOS info-stealers quickly evolve to evade XProtect detection

Multiple information stealers for the macOS platform have demonstrated the capability to evade detection even when security companies follow and…

Citrix
16
Jan
2024

Citrix warns of new Netscaler zero-days exploited in attacks

Citrix urged customers on Tuesday to immediately patch Netscaler ADC and Gateway appliances exposed online against two actively exploited zero-day…

Google Chrome
16
Jan
2024

Google fixes first actively exploited Chrome zero-day of 2024

Google has released security updates to fix the first Chrome zero-day vulnerability exploited in the wild since the start of…

Hacker
16
Jan
2024

Androxgh0st malware botnet steals AWS, Microsoft credentials

CISA and the FBI warned today that threat actors using Androxgh0st malware are building a botnet focused on cloud credential…

Network cables plugged into a switch
16
Jan
2024

PixieFail flaws impact PXE network boot in enterprise systems

A set of nine vulnerabilities, collectively called ‘PixieFail,’ impact the IPv6 network protocol stack of Tianocore’s EDK II, the open-source…

Outpost24 Artificial Intelligence
16
Jan
2024

The Dual Role AI Plays in Cybersecurity: How to Stay Ahead

There’s a wide range of AI-enabled solutions available for various business use cases, and organizations are increasingly recognizing their value….

Atlassian
16
Jan
2024

Atlassian warns of critical RCE flaw in older Confluence versions

Atlassian Confluence Data Center and Confluence Server are vulnerable to a critical remote code execution (RCE) vulnerability that impacts versions…

Ivanti
16
Jan
2024

Ivanti Connect Secure zero-days now under mass exploitation

Two zero-day vulnerabilities affecting Ivanti’s Connect Secure VPN and Policy Secure network access control (NAC) appliances are now under mass…

SonicWall
16
Jan
2024

Over 178K SonicWall firewalls vulnerable to DoS, potential RCE attacks

Security researchers have found over 178,000 SonicWall next-generation firewalls (NGFW) with the management interface exposed online are vulnerable to denial-of-service…

Microsoft Copilot
16
Jan
2024

Windows Copilot autostart tests limited to 27″ displays or larger

Microsoft says that tests of a controversial new Windows 11 feature that automatically opens the AI-powered Copilot assistant after Windows…