Category: Bleeping Computer

Chain
31
Oct
2024

LottieFiles hit in npm supply chain attack targeting users’ crypto

LottieFiles announced that specific versions of its npm package carry malicious code that prompts users to connect their cryptocurrency wallets…

Interbank
31
Oct
2024

Interbank confirms data breach following failed extortion, data leak

​Interbank, one of Peru’s leading financial institutions, has confirmed a data breach after a threat actor who hacked into its…

Microsoft
30
Oct
2024

Microsoft Entra “security defaults” to make MFA setup mandatory

​Microsoft says it will improve security across Entra tenants where security defaults are enabled by making multifactor authentication (MFA) registration…

QNAP
30
Oct
2024

QNAP patches second zero-day exploited at Pwn2Own to get root

QNAP has released security patches for a second zero-day bug exploited by security researchers during last week’s Pwn2Own hacking contest….

North Korea
30
Oct
2024

North Korean govt hackers linked to Play ransomware attack

The North Korean state-sponsored hacking group tracked as ‘Andariel’ has been linked to the Play ransomware operation, using the RaaS…

Android
30
Oct
2024

Android malware “FakeCall” now reroutes bank calls to attackers

A new version of the FakeCall malware for Android hijacks outgoing calls from a user to their bank, redirecting them…

Cloud
30
Oct
2024

Hackers steal 15,000 cloud credentials from exposed Git config files

A large-scale malicious operation named “EmeraldWhale” scanned for exposed Git configuration files to steal over 15,000 cloud account credentials from…

Election
30
Oct
2024

Upcoming U.S. general election fuel multiple fraud schemes

The Federal Bureau of Investigation (FBI) is warning of multiple schemes taking advantage of the upcoming U.S. general election to…

Hacker looking at screens
30
Oct
2024

Massive PSAUX ransomware attack targets 22,000 CyberPanel instances

Over 22,000 CyberPanel instances exposed online to a critical remote code execution (RCE) vulnerability were mass-targeted in a PSAUX ransomware…

Windows
29
Oct
2024

New Windows Themes zero-day gets free, unofficial patches

Free unofficial patches are now available for a new Windows Themes zero-day vulnerability that allows attackers to steal a target’s…

QNAP
29
Oct
2024

QNAP fixes NAS backup software zero-day exploited at Pwn2Own

QNAP has fixed a critical zero-day vulnerability exploited by security researchers on Thursday to hack a TS-464 NAS device during…

DoJ
29
Oct
2024

Russian charged by U.S. for creating RedLine infostealer malware

The United States announced charges today against Maxim Rudometov, a Russian national, for being the suspected developer and administrator of…