Bleeping Computer

Syndikovat obsah
BleepingComputer - All Stories
Aktualizace: 17 min 44 sek zpět

GM agrees to $12.75M California settlement over sale of drivers’ data

12 Květen, 2026 - 00:40
California Attorney General Rob Bonta announced a proposed $12.75 million settlement agreement with General Motors (GM) over allegations that the company violated the California Consumer Privacy Act (CCPA). [...]
Kategorie: Hacking & Security

Official CheckMarx Jenkins package compromised with infostealer

12 Květen, 2026 - 00:03
Checkmarx warned over the weekend that a rogue version of its Jenkins Application Security Testing (AST) plugin had been published on the Jenkins Marketplace. [...]
Kategorie: Hacking & Security

New GhostLock tool abuses Windows API to block file access

12 Květen, 2026 - 00:02
A security researcher has released a proof-of-concept tool named GhostLock that demonstrates how a legitimate Windows file API can be abused in attacks to block access to files stored locally or on SMB network shares. [...]
Kategorie: Hacking & Security

Instructure confirms hackers used Canvas flaw to deface portals

11 Květen, 2026 - 17:26
Education technology giant Instructure has confirmed that a security vulnerability allowed hackers to modify Canvas login portals and leave an extortion message. [...]
Kategorie: Hacking & Security

Why Changing Passwords Doesn’t End an Active Directory Breach

11 Květen, 2026 - 15:53
Resetting a password doesn't always remove attackers from Active Directory. Specops Software explains how cached credentials and Kerberos tickets can keep attackers authenticated after a reset. [...]
Kategorie: Hacking & Security

Google: Hackers used AI to develop zero-day exploit for web admin tool

11 Květen, 2026 - 15:02
Researchers at Google Threat Intelligence Group (GTIG) say that a zero-day exploit targeting a popular open-source web administration tool was likely generated using AI. [...]
Kategorie: Hacking & Security

Webinar this week: Prevention alone is not enough against modern attacks

11 Květen, 2026 - 14:30
This upcoming webinar explores how organizations need to combine security, backups, and recovery planning to reduce the impact of modern cyberattacks. [...]
Kategorie: Hacking & Security

TrickMo Android banker adopts TON blockchain for covert comms

11 Květen, 2026 - 11:03
A new variant of the TrickMo Android banking malware, delivered in campaigns targeting users across Europe, introduces new commands and uses The Open Network (TON) for stealthy command-and-control communications. [...]
Kategorie: Hacking & Security

Hackers abuse Google ads, Claude.ai chats to push Mac malware

10 Květen, 2026 - 19:52
Attackers are abusing Google Ads and legitimate Claude.ai shared chats in an active malvertising campaign. Users searching for "Claude mac download" may come across sponsored search results that list claude.ai as the target website, but lead to instructions that install malware on their Mac. [...]
Kategorie: Hacking & Security

Police shut down reboot of Crimenetwork marketplace, arrest admin

10 Květen, 2026 - 16:16
German authorities have shut down a relaunch version of the criminal marketplace 'Crimenetwork' that generated more than 3.6 million euros, and arrested its operator. [...]
Kategorie: Hacking & Security

JDownloader site hacked to replace installers with Python RAT malware

9 Květen, 2026 - 21:27
The website for the popular JDownloader download manager was compromised earlier this week to distribute malicious Windows and Linux installers, with the Windows payload found deploying a Python-based remote access trojan. [...]
Kategorie: Hacking & Security

Fake OpenAI repository on Hugging Face pushes infostealer malware

9 Květen, 2026 - 16:26
A malicious Hugging Face repository that reached the platform's trending list impersonated OpenAI's "Privacy Filter" project to deliver information-stealing malware to Windows users. [...]
Kategorie: Hacking & Security

NVIDIA confirms GeForce NOW data breach affecting Armenian users

8 Květen, 2026 - 18:18
NVIDIA has confirmed in a statement for BleepingComputer that GeForce NOW user information has been exposed in a data breach. [...]
Kategorie: Hacking & Security

Why More Analysts Won’t Solve Your SOC’s Alert Problem

8 Květen, 2026 - 16:02
Attackers move faster than overwhelmed SOC teams can realistically investigate alerts. Prophet Security breaks down how AI can help analysts investigate alerts faster and focus on real threats. [...]
Kategorie: Hacking & Security

Trellix source code breach claimed by RansomHouse hackers

8 Květen, 2026 - 15:23
The attack on the Trellix source code repository disclosed last week has been claimed by the RansomHouse threat group, which leaked a small set of images as proof of the intrusion. [...]
Kategorie: Hacking & Security

CISA gives feds four days to patch Ivanti flaw exploited as zero-day

8 Květen, 2026 - 14:16
CISA has given U.S. federal agencies four days to secure their networks against a high-severity vulnerability in Ivanti Endpoint Manager Mobile (EPMM) exploited in zero-day attacks. [...]
Kategorie: Hacking & Security

Zara data breach exposed personal information of 197,000 people

8 Květen, 2026 - 12:42
Hackers who gained access to the databases of Spanish fast-fashion retailer Zara stole data belonging to more than 197,000 customers, according to data breach notification service Have I Been Pwned. [...]
Kategorie: Hacking & Security

Former govt contractor convicted for wiping dozens of federal databases

8 Květen, 2026 - 10:45
A 34-year-old Virginia man was found guilty of conspiring to destroy dozens of government databases after getting fired from his job as a federal contractor. [...]
Kategorie: Hacking & Security

New Linux 'Dirty Frag' zero-day gives root on all major distros

8 Květen, 2026 - 09:45
A new Linux zero-day exploit, named Dirty Frag, allows local attackers to gain root privileges on most major Linux distributions with a single command. [...]
Kategorie: Hacking & Security

Canvas login portals hacked in mass ShinyHunters extortion campaign

8 Květen, 2026 - 00:36
The ShinyHunters extortion gang has breached education technology giant Instructure again, this time exploiting another vulnerability to deface Canvas login portals for hundreds of colleges and universities. [...]
Kategorie: Hacking & Security