Category: Bleeping Computer

Box
12
Jul
2025

Hackers are exploiting critical RCE flaw in Wing FTP Server

Hackers have started to exploit a critical remote code execution vulnerability in Wing FTP Server just one day after technical details…

McDonald
12
Jul
2025

‘123456’ password exposed chats for 64 million McDonald’s job applicants

Cybersecurity researchers discovered a vulnerability in McHire, McDonald’s chatbot job application platform, that exposed the chats of more than 64…

McDonald
12
Jul
2025

‘123456’ password exposed info for 64 million McDonald’s job applicants

Cybersecurity researchers discovered a vulnerability in McHire, McDonald’s chatbot job application platform, that exposed the personal information of more than…

WordPress
11
Jul
2025

WordPress Gravity Forms developer hacked to push backdoored plugins

The popular WordPress plugin Gravity Forms has been compromised in what seems a supply-chain attack where manual installers from the…

Fortinet
11
Jul
2025

Exploits for pre-auth Fortinet FortiWeb RCE flaw released, patch now

Proof-of-concept exploits have been released for a critical SQLi vulnerability in Fortinet FortiWeb that can be used to achieve pre-authenticated remote…

Arrest
11
Jul
2025

Four arrested in UK over M&S, Co-op, Harrods cyberattacks

The UK’s National Crime Agency (NCA) arrested four people suspected of being involved in cyberattacks on major retailers in the…

CISA tags Citrix Bleed 2 as exploited, gives agencies a day to patch
11
Jul
2025

CISA tags Citrix Bleed 2 as exploited, gives agencies a day to patch

The U.S. Cybersecurity & Infrastructure Security Agency has confirmed active exploitation of the CitrixBleed 2 vulnerability (CVE-2025-5777) in Citrix NetScaler…

NVIDIA shares guidance to defend GDDR6 GPUs against Rowhammer attacks
11
Jul
2025

NVIDIA shares guidance to defend GDDR6 GPUs against Rowhammer attacks

NVIDIA is warning users to activate System Level Error-Correcting Code  mitigation to protect against Rowhammer attacks on graphical processors with GDDR6 memory….

Code editor and developer platform logos
11
Jul
2025

The zero-day that could’ve compromised every Cursor and Windsurf user

A security researcher from Koi Security stumbled upon a critical zero-day buried deep in the infrastructure powering today’s AI coding…

Windows 11
10
Jul
2025

Windows 11 now uses JScript9Legacy engine for improved security

Microsoft announced that it has replaced the default scripting engine JScript with the newer and more secure JScript9Legacy on Windows 11…

10
Jul
2025

PerfektBlue Bluetooth flaws impact Mercedes, Volkswagen, Skoda cars

Four vulnerabilities dubbed PerfektBlue and affecting the BlueSDK Bluetooth stack from OpenSynergy can be exploited to achieve remote code execution and potentially…

Daniil Kasatkin
10
Jul
2025

Russian pro basketball player arrested for alleged role in ransomware attacks

Russian professional basketball player Daniil Kasatkin was arrested in France at the request of the United States for allegedly acting as…