Category: Bleeping Computer

Cisco
04
Sep
2024

Cisco fixes root escalation vulnerability with public exploit code

Cisco has fixed a command injection vulnerability with public exploit code that lets attackers escalate privileges to root on vulnerable…

Lock
04
Sep
2024

New Eucleak attack lets threat actors clone YubiKey FIDO keys

A new “EUCLEAK” flaw found in FIDO devices using the Infineon SLE78 security microcontroller, like Yubico’s YubiKey 5 Series, allows attackers…

Hackers inject malicious JS in Cisco store to steal credit cards, credentials
04
Sep
2024

Hackers inject malicious JS in Cisco store to steal credit cards, credentials

Cisco’s site for selling company-themed merchandise is currently offline and under maintenance due to hackers compromising it with JavaScript code…

Android
04
Sep
2024

Google backports fix for Pixel EoP flaw to other Android devices

Google has released the September 2024 Android security updates to fix 34 vulnerabilities, including CVE-2024-32896, an actively exploited elevation of…

Criminal IP PCI DSS compliance
04
Sep
2024

Criminal IP Earns PCI DSS v4.0 Certification for Top-Level Security

AI SPERA, a leading Cyber Threat Intelligence (CTI) company, has achieved PCI DSS v4.0 certification for its flagship search engine…

Revival Hijack supply-chain attack threatens 22,000 PyPI packages
04
Sep
2024

Revival Hijack supply-chain attack threatens 22,000 PyPI packages

Threat actors are utilizing an attack called “Revival Hijack,” where they register new PyPi projects using the names of previously…

Zyxel
04
Sep
2024

Zyxel warns of critical OS command injection flaw in routers

Zyxel has released security updates to address a critical vulnerability impacting multiple models of its business routers, potentially allowing unauthenticated…

Bitcoin
04
Sep
2024

Over $110 million lost to Bitcoin ATM scams in 2023

​The U.S. Federal Trade Commission (FTC) has reported a massive increase in losses to Bitcoin ATM scams, nearly ten times…

Verkada to pay $2.95M for security failures leading to breaches
03
Sep
2024

Verkada to pay $2.95 million for alleged CAN-SPAM Act violations

The Federal Trade Commission (FTC) requires security camera vendor Verkada to create a comprehensive information security program as part of…

Windows
03
Sep
2024

New Windows PowerToy launches, repositions apps to saved layouts

​Microsoft has released a new Workspaces PowerToy that helps launch sets of applications using custom desktop layouts and configurations with…

Hackers
03
Sep
2024

FBI warns crypto firms of aggressive social engineering attacks

​The FBI warned today of North Korean hacking groups aggressively targeting cryptocurrency companies and their employees in sophisticated social engineering…

CCTV
03
Sep
2024

Clearview AI fined €30.5 million for unlawful data collection

The Dutch Data Protection Authority (Dutch DPA) has imposed a fine of €30.5 million ($33.7 million) on Clearview AI for unlawful data…