Category: Bleeping Computer

Hand holding a key
01
Oct
2023

New Marvin attack revives 25-year-old decryption flaw in RSA

A flaw related to the PKCS #1 v1.5 padding in SSL servers discovered in 1998 and believed to have been…

Amazon Prime
01
Oct
2023

Amazon sends Mastercard, Google Play gift card order emails by mistake

Amazon mistakenly sent out purchase confirmation emails for Hotels.com, Google Play, and Mastercard gift cards to customers, making many worried…

Hacker holding up hands
01
Oct
2023

Meet LostTrust ransomware — A likely rebrand of the MetaEncryptor gang

The LostTrust ransomware operation is believed to be a rebrand of MetaEncryptor, utilizing almost identical data leak sites and encryptors….

Microsoft Outlook
01
Oct
2023

Microsoft fixes Outlook prompts to reopen closed windows

Microsoft has resolved a known issue that caused Outlook Desktop to unexpectedly prompt users to reopen previously closed windows. “This…

Cloudflare
01
Oct
2023

Cloudflare DDoS protections ironically bypassed using Cloudflare

Cloudflare’s Firewall and DDoS prevention can be bypassed through a specific attack process that leverages logic flaws in cross-tenant security…

A Dark Angel
29
Sep
2023

The Week in Ransomware – September 29th 2023

This week has been a busy ransomware week, with ransomware attacks having a massive impact on organizations and the fallout…

Malicious emails
29
Sep
2023

Millions of Exim mail servers exposed to zero-day RCE attacks

A critical zero-day vulnerability in all versions of Exim mail transfer agent (MTA) software can let unauthenticated attackers gain remote code…

SharePoint
29
Sep
2023

Exploit released for Microsoft SharePoint Server auth bypass flaw

Proof-of-concept exploit code has surfaced on GitHub for a critical authentication bypass vulnerability in Microsoft SharePoint Server, allowing privilege escalation. Tracked…

Justice
29
Sep
2023

ShinyHunters member pleads guilty to $6 million in data theft damages

Sebastien Raoult, a 22-year-old from France, has pleaded guilty in the U.S. District Court of Seattle to conspiracy to commit…

Discord
29
Sep
2023

Discord is investigating cause of ‘You have been blocked’ errors

Many Discord users attempting to access the popular instant messaging and VoIP social platform today have been met with a…

North Korean hackers behind malicious VMConnect PyPI campaign
29
Sep
2023

Lazarus hackers breach aerospace firm with new LightlessCan malware

The North Korean ‘Lazarus’ hacking group targeted employees of an aerospace company located in Spain with fake job opportunities to…

Progress Software
28
Sep
2023

Progress warns of maximum severity WS_FTP Server vulnerability

Progress Software, the maker of the MOVEit Transfer file-sharing platform recently exploited in widespread data theft attacks, warned customers to…