Category: Bleeping Computer

Zoho
18
Jan
2023

Researchers to release PoC exploit for critical ManageEngine RCE bug, patch now

Proof-of-concept exploit code will be released later this week for a critical vulnerability allowing remote code execution (RCE) without authentication…

Hackers use Google search ads to deliver info-stealing malware
18
Jan
2023

Hackers turn to Google search ads to push info-stealing malware

Hackers are setting up fake websites for popular free and open-source software to promote malicious downloads through advertisements in Google…

Git
18
Jan
2023

Git patches two critical remote code execution security flaws

Git has patched two critical severity security vulnerabilities that could allow attackers to execute arbitrary code after successfully exploiting heap-based…

Sophos
17
Jan
2023

Over 4,000 Sophos Firewall devices vulnerable to RCE attacks

Over 4,000 Sophos Firewall devices exposed to Internet access are vulnerable to attacks targeting a critical remote code execution (RCE)…

GitHub
17
Jan
2023

Hackers can use GitHub Codespaces to host and deliver malware

Researchers have demonstrated how threat actors can abuse the GitHub Codespaces’ port forwarding’ feature to host and distribute malware and…

Worker strained at their computer
17
Jan
2023

IT Burnout may be Putting Your Organization at Risk

The heavy responsibility of securing organizations against cyber-attacks is overwhelming and weighs heavier on security professionals, recent data shows. In…

Nissan building
17
Jan
2023

Nissan North America data breach caused by vendor-exposed database

Nissan North America has begun sending data breach notifications informing customers of a breach at a third-party service provider that…

Datadog
17
Jan
2023

Datadog rotates RPM signing key exposed in CircleCI hack

Cloud security firm Datadog says that one of its RPM GPG signing keys and its passphrase have been exposed during…

Zoho
17
Jan
2023

Researchers to release PoC exploit for critical Zoho RCE bug, patch now

Proof-of-concept exploit code will be released later this week for a critical vulnerability allowing remote code execution (RCE) without authentication…

MSI
16
Jan
2023

MSI accidentally breaks Secure Boot for hundreds of motherboards

Over 290 MSI motherboards are reportedly affected by an insecure default UEFI Secure Boot setting settings that allows any operating…

UDE
16
Jan
2023

Vice Society ransomware leaks University of Duisburg-Essen’s data

The Vice Society ransomware gang has claimed responsibility for a November 2022 cyberattack on the University of Duisburg-Essen (UDE) that…

Python
16
Jan
2023

Malicious ‘Lolip0p’ PyPi packages install info-stealing malware

A threat actor has uploaded to the PyPI (Python Package Index) repository three malicious packages that carry code to drop info-stealing…