Category: Bleeping Computer

Google
29
Dec
2023

Malware abuses Google OAuth endpoint to ‘revive’ cookies, hijack accounts

Multiple information-stealing malware families are abusing an undocumented Google OAuth endpoint named “MultiLogin” to restore expired authentication cookies and log…

Steam
29
Dec
2023

Steam game mod breached to push password-stealing malware

Downfall, a fan expansion for the popular Slay the Spire indie strategy game, was breached on Christmas Day to push…

Eagers Automotive
29
Dec
2023

Eagers Automotive halts trading in response to cyberattack

Eagers Automotive has announced it suffered a cyberattack and was forced to halt trading on the stock exchange as it…

Slay the Spire Downfall
29
Dec
2023

Game mod on Steam breached to push password-stealing malware

Downfall, a fan expansion for the popular Slay the Spire indie strategy game, was breached on Christmas Day to push…

EasyPark
28
Dec
2023

EasyPark discloses data breach that may impact millions of users

Parking app developer EasyPark has published a notice on its website warning of a data breach it discovered on December…

Windows
28
Dec
2023

Microsoft disables MSIX protocol handler abused in malware attacks

Microsoft has again disabled the MSIX ms-appinstaller protocol handler after multiple financially motivated threat groups abused it to infect Windows…

Kroll
28
Dec
2023

Kroll reveals FTX customer info exposed in August data breach

Risk and financial advisory company Kroll has released additional details regarding the August data breach, which exposed the personal information…

Sandworm state hackers use living-off-the-land technique to cause power outage
28
Dec
2023

Russian military hackers target Ukraine with new MASEPIE malware

Ukraine’s Computer Emergency Response Team (CERT) is warning of a new phishing campaign that allowed Russia-linked hackers to deploy previously…

Hacker
28
Dec
2023

Apache OFBiz RCE flaw exploited to find vulnerable Confluence servers

A critical Apache OFBiz pre-authentication remote code execution vulnerability is being actively exploited using public proof of concept (PoC) exploits. Apache…

crypto hackers
28
Dec
2023

Blockchain dev’s wallet emptied in “job interview” using npm package

A blockchain developer shares his ordeal over the holidays when he was approached on LinkedIn by a “recruiter” for a web development…

Ohio Lottery
28
Dec
2023

Ohio Lottery hit by cyberattack claimed by DragonForce ransomware

The Ohio Lottery was forced to shut down some key systems after a cyberattack affected an undisclosed number of internal…

Fransiskus
28
Dec
2023

Lockbit ransomware disrupts emergency care at German hospitals

German hospital network Katholische Hospitalvereinigung Ostwestfalen (KHO) has confirmed that recent service disruptions at three hospitals were caused by a…