Category: Bleeping Computer

NSA encryption
06
Mar
2024

NSA shares zero-trust guidance to limit adversaries on the network

  The National Security Agency is sharing new guidance to help organizations limit an adversary’s movement on the internal network…

Facebook
06
Mar
2024

Facebook and Instagram outage logs out users, passwords not working

Facebook and Instagram users worldwide have been logged out of the sites and are having trouble logging in, receiving errors…

Apple
06
Mar
2024

Apple fixes two new iOS zero-days exploited in attacks on iPhones

Apple released emergency security updates to fix two iOS zero-day vulnerabilities that were exploited in attacks on iPhones. “Apple is…

Rat
05
Mar
2024

New WogRAT malware abuses online notepad service to store malware

A new malware dubbed ‘WogRAT’ targets both Windows and Linux in attacks abusing an online notepad platform named ‘aNotepad’ as…

Android
05
Mar
2024

Microsoft is killing off the Android apps in Windows 11 feature

Microsoft has unexpectedly announced they are ending support for the Windows Subsystem for Android next year on March 5th. The Windows…

Spyware
05
Mar
2024

U.S. sanctions Predator spyware operators for spying on Americans

The U.S. has imposed sanctions on two individuals and five entities linked to the development and distribution of the Predator…

Hand
05
Mar
2024

Hackers abuse QEMU to covertly tunnel network traffic in cyberattacks

Malicious actors were detected abusing the open-source hypervisor platform QEMU as a tunneling tool in a cyberattack against a large…

BlackCat ransomware exit scams and blames the feds
05
Mar
2024

BlackCat ransomware shuts down in exit scam, blames the “feds”

The BlackCat ransomware gang is pulling an exit scam, trying to shut down and run off with affiliates’ money by…

Shark
05
Mar
2024

ScreenConnect flaws exploited to drop new ToddleShark malware

The North Korean APT hacking group Kimsuky is exploiting ScreenConnect flaws, particularly CVE-2024-1708 and CVE-2024-1709, to infect targets with a…

JetBrains
05
Mar
2024

Exploit available for new critical TeamCity auth bypass bug, patch now

A critical vulnerability (CVE-2024-27198) in the TeamCity On-Premises CI/CD solution from JetBrains can let a remote unauthenticated attacker take control…

Fake in-browser Windows updates push Aurora info-stealer malware
05
Mar
2024

Hackers steal Windows NTLM authentication hashes in phishing attacks

The hacking group known as TA577 has recently shifted tactics by using phishing emails to steal NT LAN Manager (NTLM) authentication hashes…

American Express credit card
05
Mar
2024

American Express credit cards exposed in third-party data breach

3/4/24: Article updated with further clarification from American Express that it was a merchant processor who was hacked, not one…