Category: Bleeping Computer

Ivanti
24
Aug
2023

Exploit released for Ivanti Sentry bug abused as zero-day in attacks

Proof-of-concept exploit code is now available for a critical Ivanti Sentry authentication bypass vulnerability that enables attackers to execute code…

Lazarus
24
Aug
2023

Hackers use public ManageEngine exploit to breach internet org

The North Korean state-backed hacker group tracked as Lazarus has been exploiting a critical vulnerability (CVE-2022-47966) in Zoho’s ManageEngine ServiceDesk…

Hacker
23
Aug
2023

Lapsus$ teen hackers convicted of high-profile cyberattacks

A London jury has found that an 18-year-old member of the Lapsus$ data extortion gang helped hack multiple high-profile companies, stole…

Outpost24 hacker header
23
Aug
2023

The MOVEit hack and what it taught us about application security

When a cyberattack like the 2023 MOVEit hack makes global news headlines, attention often focuses on the names of the…

Windows 10
23
Aug
2023

Windows 10 KB5029331 update introduces a new Backup app

Microsoft has released the optional KB5029331 Preview cumulative update for Windows 10 22H2 with sixteen improvements or fixes, including the…

Bitwarden
23
Aug
2023

Bitwarden releases free and open-source E2EE Secrets Manager

Bitwarden, the maker of the popular open-source password manager tool, has released ‘Secrets Manager,’ an end-to-end encrypted secrets manager for…

OpenFire
23
Aug
2023

Over 3,000 Openfire servers vulnerable to takover attacks

Thousands of Openfire servers remain vulnerable to CVE-2023-32315, an actively exploited and path traversal vulnerability that allows an unauthenticated user…

Discord
23
Aug
2023

Discord starts notifying users affected by March data breach

Starting on Monday, Discord has been reaching out to users affected by a data breach disclosed earlier this year to…

Fake in-browser Windows updates push Aurora info-stealer malware
23
Aug
2023

New stealthy techniques let hackers gain Windows SYSTEM privileges

Security researchers have released NoFilter, a tool that abuses the Windows Filtering Platform to elevate a user’s privileges to increases…

Ethereum
23
Aug
2023

US charges founders of Tornado Cash mixer used by Lazarus hackers

The U.S. Justice Department charged two Tornado Cash founders with helping criminals, including the notorious North Korean Lazarus hacking group,…

Google
23
Aug
2023

Google Workspace will require two admins to sign off on critical changes

Google announced today new cybersecurity defense controls that will allow security teams to thwart social engineering attacks like phishing targeting…

Kali Linux
23
Aug
2023

Kali Linux 2023.3 released with 9 new tools, internal changes

Kali Linux 2023.3, the third version of 2023, is now available for download, with nine new tools and internal optimizations….