Bleeping Computer

Syndikovat obsah
BleepingComputer - All Stories
Aktualizace: 26 min 28 sek zpět

Hackers exploit info disclosure bug in Gravity SMTP WordPress plugin

19 Červen, 2026 - 22:25
Threat actors are exploiting an unauthenticated information disclosure vulnerability in the WordPress plugin Gravity SMTP, active on 100,000 sites. [...]
Kategorie: Hacking & Security

Texas govt data breach exposes over 3 million driver’s licenses

19 Červen, 2026 - 18:12
The Texas Parks and Wildlife Department (TPWD) disclosed a data breach at its license system vendor that exposed personal information for more than three million individuals. [...]
Kategorie: Hacking & Security

Every AI Agent Is an Identity. Most Organizations Don't Treat Them That Way

19 Červen, 2026 - 15:10
AI agents can access data, trigger workflows, deploy code, and interact with critical business systems, often with little oversight. Token Security breaks down why AI agents are becoming a new identity and governance challenge. [...]
Kategorie: Hacking & Security

Webinar: How attackers bypass MFA and how defenders can respond

19 Červen, 2026 - 14:12
Modern phishing attacks, including Device Code phishing, can undermine MFA protections and grant attackers access to corporate accounts without stealing passwords. This webinar explores how behavioral AI can help security teams detect compromised accounts faster and automate response workflows. [...]
Kategorie: Hacking & Security

Microsoft: June 2026 Windows updates break Recycle Bin prompts

19 Červen, 2026 - 13:32
Microsoft has confirmed a confusing Windows bug that causes different filenames to appear in the confirmation dialog when deleting a file from the Recycle Bin. [...]
Kategorie: Hacking & Security

CISA: Splunk Enterprise flaw actively exploited, patch by Sunday

19 Červen, 2026 - 12:39
CISA has urged U.S. federal agencies to secure their systems by Sunday against a critical Splunk Enterprise vulnerability that is being exploited in attacks. [...]
Kategorie: Hacking & Security

NY man charged after harassing college student with AI-generated nudes

19 Červen, 2026 - 10:44
A New York man faces cyberstalking charges after allegedly sharing AI-generated nude images and fabricated racist messages using fake social media profiles to harass a Georgia college student. [...]
Kategorie: Hacking & Security

CISA warns Fortinet users to secure devices after FortiBleed leak

19 Červen, 2026 - 08:47
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) urged Fortinet customers to secure their devices after nearly 74,000 firewall and VPN credentials were exposed in a data leak dubbed "FortiBleed." [...]
Kategorie: Hacking & Security

Gentlemen ransomware uses multiple EDR killers to disable defenses

19 Červen, 2026 - 00:31
The Gentlemen ransomware-as-a-service (RaaS) is actively developing and maintaining a suite of endpoint detection and response (EDR) killers to help affiliates evade detection in attacks. [...]
Kategorie: Hacking & Security

Nintendo confirms data stolen in WebMD subsidiary cyberattack

18 Červen, 2026 - 20:31
Nintendo of America has confirmed to BleepingComputer that threat actors stole survey data from the third-party TinyPulse service used internally, but its systems were not compromised. [...]
Kategorie: Hacking & Security

USB worm spreads crypto-stealing malware via Windows shortcut files

18 Červen, 2026 - 18:20
Threat actors targeting cryptocurrency wallets have been distributing clipboard-stealing malware with self-spreading capabilities and using the Tor network to conceal communication. [...]
Kategorie: Hacking & Security

Klue OAuth breach linked to 'Icarus' Salesforce data theft attacks

18 Červen, 2026 - 16:19
Market intelligence platform Klue suffered a OAuth breach that enabled the "Icarus" threat actors to steal Salesforce CRM data from multiple organizations in an ongoing extortion campaign. [...]
Kategorie: Hacking & Security

5 reasons Microsoft 365 backup isn’t enough for business data protection

18 Červen, 2026 - 15:48
Microsoft 365 helps keep services running, but protecting and recovering business data remains your responsibility. Acronis breaks down five gaps organizations should consider when evaluating Microsoft 365 data protection. [...]
Kategorie: Hacking & Security

Police cleans nearly 15,000 SocGholish-infected sites tied to Evil Corp

18 Červen, 2026 - 15:25
International law enforcement agencies cleaned nearly 15,000 malware-infected WordPress websites and took down more than 100 servers linked to the SocGholish botnet and the Evil Corp Russian cybercrime group. [...]
Kategorie: Hacking & Security

ShapedPlugin update flow hacked to infect WordPress sites

18 Červen, 2026 - 14:55
Multiple WordPress plugins from ShapedPlugin were compromised in a supply chain attack that distributed infected releases to paying customers via the vendor's official update system. [...]
Kategorie: Hacking & Security

FortiBleed leak exposes Fortinet VPN credentials for 73,000 devices.

18 Červen, 2026 - 14:54
A newly discovered data leak dubbed "FortiBleed" has exposed what appears to be a collection of Fortinet and FortiGate VPN credentials for 73,932 firewall URLs at organizations worldwide. [...]
Kategorie: Hacking & Security

Apple fixes Beats Studio Buds flaw that let hackers spy on conversations

18 Červen, 2026 - 14:23
Apple has released security updates to patch a high-severity flaw affecting the Beats Studio Buds wireless earbuds that could allow attackers in Bluetooth range to spy on users' conversations. [...]
Kategorie: Hacking & Security

Telegram admits it couldn't police exam-leak channels, India tells court

18 Červen, 2026 - 14:18
India's government has told the Delhi High Court that Telegram was warned about two weeks before it was blocked, and that the platform admitted it could not proactively detect the channels selling leaked exam papers. Telegram says it cooperated and the ban is unlawful. [...]
Kategorie: Hacking & Security

F5 issues out-of-band patches for critical NGINX vulnerabilities

18 Červen, 2026 - 13:33
Cybersecurity company F5 has released out-of-band security updates to address multiple NGINX web server vulnerabilities, including two critical-severity flaws that could allow attackers to execute code on vulnerable systems. [...]
Kategorie: Hacking & Security

Microsoft fixes Windows Server 2016 security update failures

18 Červen, 2026 - 12:14
Microsoft has fixed a known issue causing the June 2026 security updates to fail on Windows Server 2016 systems that weren't up to date. [...]
Kategorie: Hacking & Security