Bleeping Computer

Syndikovat obsah
BleepingComputer - All Stories
Aktualizace: 26 min 1 sek zpět

Surfshark VPN says hackers breached internal testing, proxy servers

10 Září, 2026 - 21:15
Surfshark disclosed that hackers accessed one of its internal test servers after a configuration error exposed it to the internet. [...]
Kategorie: Hacking & Security

Microsoft Excel KB5002914 update breaks copy and paste for some users

10 Září, 2026 - 21:07
Microsoft Excel users report that this week's KB5002914 Office security update is breaking copy-and-paste operations and formula dragging, with affected users saying that removing or rolling back the update restores normal functionality. [...]
Kategorie: Hacking & Security

AI-powered attack exploited PaperCut flaws to hack 395 organizations

10 Září, 2026 - 17:55
A threat actor, likely Russian-speaking, used hundreds of AI agents to develop and launch a global exploitation campaign targeting vulnerable PaperCut NG/MF servers. [...]
Kategorie: Hacking & Security

Cisco FMC flaws exploited by ransomware gang, state-sponsored hackers

10 Září, 2026 - 17:43
Cisco Talos says two recently patched Secure Firewall Management Center (FMC) vulnerabilities have been exploited by three separate threat clusters linked to ransomware and state-sponsored attacks. [...]
Kategorie: Hacking & Security

IDScan confirms breach tied to 153 million stolen driver’s licenses

10 Září, 2026 - 16:55
Identity verification company IDScan has confirmed that hackers accessed customer data stored in its cloud platform, days after reports linked the company to a massive database containing more than 153 million driver's license scans. [...]
Kategorie: Hacking & Security

New 'BlueMoon' kit exploited Windows and Chrome zero-day flaws

10 Září, 2026 - 16:11
Multiple cyber-espionage groups deployed an exploit kit dubbed "BlueMoon" that leveraged zero-day vulnerabilities in Microsoft Windows and Google Chrome. [...]
Kategorie: Hacking & Security

The Top 4 Threats We Found by Investigating Every Alert for a Quarter

10 Září, 2026 - 16:00
Identity was the target in roughly half of all confirmed malicious activity. Prophet Security breaks down the four main attack patterns seen across customer environments between May and July 2026, and explains why some attacks succeeded while others were blocked. [...]
Kategorie: Hacking & Security

Microsoft says September updates fix mouse settings reset issues

10 Září, 2026 - 13:14
Microsoft has fixed a known issue that wiped mouse settings on some Windows 11 systems after installing the KB5120998 August 2026 preview update. [...]
Kategorie: Hacking & Security

CISA: WatchGuard RCE flaw now exploited in ransomware attacks

10 Září, 2026 - 11:10
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that ransomware gangs are also exploiting a critical WatchGuard Firebox firewall vulnerability, which it flagged as actively exploited in December. [...]
Kategorie: Hacking & Security

Microsoft fixes bug that wiped Windows desktop settings

10 Září, 2026 - 10:08
Microsoft says the September 2026 Patch Tuesday updates fix a known issue causing desktop settings to be lost or reset on some Windows devices. [...]
Kategorie: Hacking & Security

Trezor warns users of email provider breach, phishing attacks

10 Září, 2026 - 08:56
Trezor warned customers on Wednesday that threat actors who breached its third-party email provider are targeting them in phishing attacks. [...]
Kategorie: Hacking & Security

Cisco confirms CVE-2026-20079 Secure FMC flaw exploited in attacks

9 Září, 2026 - 23:40
Cisco has confirmed that a maximum-severity authentication bypass vulnerability tracked as CVE-2026-20079 in its Secure Firewall Management Center (FMC) software is being actively exploited in attacks. [...]
Kategorie: Hacking & Security

AdaptHealth confirms 4.1 million people exposed in July cyberattack

9 Září, 2026 - 23:30
Healthcare company AdaptHealth has confirmed that data of 4.1 million people was exposed in a cyberattack discovered in July that was attributed to the ShinyHunters threat group. [...]
Kategorie: Hacking & Security

Skullcandy Dime 3 earbuds expose users to Bluetooth hijacking

9 Září, 2026 - 23:02
The Carnegie Mellon University CERT Coordination Center (CERT/CC) is warning that Skullcandy Dime 3 wireless earbuds accept Bluetooth pairing requests from nearby unpaired devices without requiring user interaction. [...]
Kategorie: Hacking & Security

US says Chinese firms extracted billions of tokens from frontier AI models

9 Září, 2026 - 18:48
U.S. cybersecurity and intelligence agencies say that six Chinese AI companies conducted industrial-scale distillation attacks on American frontier AI models since at least late 2024. [...]
Kategorie: Hacking & Security

Veradigm warns of patient data breach after ransomware gang claims attack

9 Září, 2026 - 17:31
Healthcare technology company Veradigm disclosed a data breach after a cybersecurity incident at one of its third-party vendors exposed patients' personal data. [...]
Kategorie: Hacking & Security

MFA's Weakest Link: Account Recovery Is the New Attack Path

9 Září, 2026 - 16:01
MFA makes account takeover harder, but attackers are increasingly targeting the recovery processes used to reset passwords and authentication methods. Specops explains why stronger identity verification at the service desk is critical to preventing social engineering attacks from turning account recovery into account takeover. [...]
Kategorie: Hacking & Security

Over 36,000 exposed Plex servers vulnerable to recent flaws

9 Září, 2026 - 12:11
Over 36,000 Plex Media servers exposed online remain unpatched against multiple security vulnerabilities and are vulnerable to attacks. [...]
Kategorie: Hacking & Security

Man gets 15 years for extorting women with AI-generated porn videos

9 Září, 2026 - 10:44
An Ohio man was sentenced to 15 years in prison for multiple cybercrimes, including sextortion and cyberstalking of numerous victims using AI-generated sexually explicit content. [...]
Kategorie: Hacking & Security

New Microsoft Defender 'ShieldCrash' zero-day grants SYSTEM access

9 Září, 2026 - 09:30
An anonymous security researcher known as Nightmare Eclipse has released a new Microsoft Defender zero-day exploit named "ShieldCrash" right after Microsoft rolled out its September 2026 Patch Tuesday security updates. [...]
Kategorie: Hacking & Security