Category: Bleeping Computer

Fortinet fixes critical FortiNAC remote command execution flaw
07
Feb
2024

Critical FortiSIEM CVEs are duplicates, issued in error

NVD published two advisories this week for critical command injection vulnerabilities purportedly impacting Fortinet’s FortiSIEM products, but there’s more to what meets…

Retail chain Hot Topic discloses wave of credential-stuffing attacks
07
Feb
2024

Hackers steal data of 2 million in SQL injection, XSS attacks

A threat group named ‘ResumeLooters’ has stolen the personal data of over two million job seekers after compromising 65 legitimate…

Data breach at healthcare tech firm impacts 4.5 million patients
06
Feb
2024

Data breach at French healthcare services firm puts millions at risk

French healthcare services firm Viamedis suffered a cyberattack that exposed the data of policyholders and healthcare professionals in the country….

Hacker
06
Feb
2024

Chinese hackers infect Dutch military network with malware

A Chinese cyber-espionage group breached the Dutch Ministry of Defence last year and deployed malware on compromised devices, according to the…

JetBrains
06
Feb
2024

JetBrains warns of new TeamCity auth bypass vulnerability

JetBrains urged customers today to patch their TeamCity On-Premises servers against a critical authentication bypass vulnerability that can let attackers…

Google
06
Feb
2024

Google says spyware vendors behind most zero-days it discovers

Commercial spyware vendors (CSV) were behind 80% of the zero-day vulnerabilities Google’s Threat Analysis Group (TAG) discovered in 2023 and…

Verizon
06
Feb
2024

Verizon insider data breach hits over 63,000 employees

Verizon Communications is warning that an insider data breach impacts almost half its workforce, exposing sensitive employee information. Verizon is…

Criminal IP
06
Feb
2024

A new cybersecurity listing on Microsoft Azure

AI SPERA, a leader in Cyber Threat Intelligence (CTI)-based solutions, today announced that Criminal IP ASM (Attack Surface Management) is…

Outlook
06
Feb
2024

Microsoft Outlook December updates trigger ICS security alerts

Microsoft is investigating an issue that triggers Outlook security alerts when trying to open .ICS calendar files after installing December…

US State Department
05
Feb
2024

US announces visa ban on those linked to commercial spyware

Secretary of State Antony J. Blinken announced today a new visa restriction policy that will enable the Department of State…

HPE
05
Feb
2024

HPE investigates new breach after data for sale on hacking forum

Hewlett Packard Enterprise (HPE) is investigating a potential new breach after a threat actor put allegedly stolen data up for…

Ivanti
05
Feb
2024

Newest Ivanti SSRF zero-day now under mass exploitation

An Ivanti Connect Secure and Ivanti Policy Secure server-side request forgery (SSRF) vulnerability tracked as CVE-2024-21893 is currently under mass exploitation by…