Category: Bleeping Computer

CLI
28
Jul
2025

Flaw in Gemini CLI AI coding assistant allowed stealthy code execution

A vulnerability in Google’s Gemini CLI allowed attackers to silently execute malicious commands and exfiltrate data from developers’ computers using…

Endgame Gear
28
Jul
2025

Endgame Gear mouse config tool infected users with malware

Gaming peripherals maker Endgame Gear is warning that malware was hidden in its configuration tool for the OP1w 4k v2…

Apple
28
Jul
2025

macOS Sploitlight flaw leaks Apple Intelligence data

Attackers could use a recently patched macOS vulnerability to bypass Transparency, Consent, and Control (TCC) security checks and steal sensitive…

Cisco
28
Jul
2025

Exploit available for critical Cisco ISE bug exploited in attacks

Security researcher Bobby Gould has published a blog post demonstrating a complete exploit chain for CVE-2025-20281, an unauthenticated remote code…

PaperCut
28
Jul
2025

CISA flags PaperCut RCE bug as exploited in attacks, patch now

CISA warns that threat actors are exploiting a high-severity vulnerability in PaperCut NG/MF print management software, which can allow them…

GPT-5
28
Jul
2025

OpenAI prepares GPT-5 for roll out

OpenAI’s ChatGPT-5 could drop in the coming days, and it could be one of the best models from the Microsoft-backed…

Windows 11
28
Jul
2025

Microsoft will stop supporting Windows 11 22H2 in October

Microsoft has reminded customers today that the last supported editions of Windows 11 22H2 will reach their end of servicing on October 14….

Autoswagger header
28
Jul
2025

Free Tool Autoswagger Finds The API Flaws Attackers Hope You Miss

APIs: Still Easy Targets in 2025 APIs are the backbone of modern applications – and one of the most exposed…

Scattered Spider is running a VMware ESXi hacking spree
27
Jul
2025

Scattered Spider is running a VMware ESXi hacking spree

Scattered Spider hackers have been aggressively targeting virtualized environments by attacking VMware ESXi hypervisors at U.S. companies in the retail, airline,…

Post SMTP plugin flaw exposes 200K WordPress sites to hijacking attacks
26
Jul
2025

Post SMTP plugin flaw exposes 200K WordPress sites to hijacking attacks

More than 200,000 WordPress websites are using a vulnerable version of the Post SMTP plugin that allows hackers to take…

Allianz logo
26
Jul
2025

Allianz Life confirms data breach impacts majority of 1.4 million customers

Insurance company Allianz Life has confirmed that the personal information for the “majority” of its 1.4 million customers was exposed…

Artificial Intelligence
25
Jul
2025

Amazon AI coding agent hacked to inject data wiping commands

A hacker planted data wiping code in a version of Amazon’s generative AI-powered assistant, the Q Developer Extension for Visual Studio…