What's new arround internet

Last one

Src Date (GMT) Titre Description Tags Stories Notes
bleepingcomputer.webp 2021-09-28 09:25:08 Ukraine takes down call centers behind cryptocurrency investor scams (lien direct) The Security Service of Ukraine (SBU) has taken down a network of six call centers in Lviv, used by a ring of scammers to defraud cryptocurrency and stock market investors worldwide. [...]
bleepingcomputer.webp 2021-09-28 07:30:00 New Microsoft Exchange service mitigates high-risk bugs automatically (lien direct) Microsoft has added a new Exchange Server feature that automatically applies interim mitigations for high-risk (and likely actively exploited) security flaws to secure on-premises servers against incoming attacks and give admins more time to apply security updates. [...]
bleepingcomputer.webp 2021-09-28 07:03:15 Working exploit released for VMware vCenter CVE-2021-22005 bug (lien direct) A complete exploit for the remote code execution vulnerability in VMware vCenter tracked as CVE-2021-22005 is now widely available, and threat actors are taking advantage of it. [...] Vulnerability Threat ★★★
bleepingcomputer.webp 2021-09-27 21:07:31 Bandwidth.com is latest victim of DDoS attacks against VoIP providers (lien direct) Bandwidth.com has become the latest victim of distributed denial of service attacks targeting VoIP providers this month, leading to nationwide voice outages over the past few days. [...] Guideline
bleepingcomputer.webp 2021-09-27 16:03:47 (Déjà vu) Microsoft: Nobelium uses custom malware to backdoor Windows domains (lien direct) Microsoft has discovered new malware used by the Nobelium hacking group to deploy additional payloads and steal sensitive info from Active Directory Federation Services (AD FS) servers. [...] Malware
bleepingcomputer.webp 2021-09-27 16:03:47 Microsoft: Nobelium hackers backdoor AD FS servers for data theft (lien direct) Microsoft has discovered new malware used by the Nobelium hacking group to deploy additional payloads and harvest and exfiltrate sensitive info from Active Directory Federation Services (AD FS) servers. [...] Malware
bleepingcomputer.webp 2021-09-27 15:14:26 Ethereum dev admits to helping North Korea evade crypto sanctions (lien direct) Cryptocurrency expert Virgil Griffith pled guilty today to assisting the Democratic People's Republic of Korea in evading U.S. sanctions by conspiring to violate the International Emergency Economic Powers Act (IEEPA) and Executive Order 13466. [...]
bleepingcomputer.webp 2021-09-27 12:56:16 QNAP fixes critical bugs in QVR video surveillance solution (lien direct) Network-attached storage (NAS) maker QNAP has patched its QVR video management system against two critical-severity issues that could be exploited to run arbitrary commands. [...]
bleepingcomputer.webp 2021-09-27 11:22:58 New malware steals Steam, Epic Games Store, and EA Origin accounts (lien direct) A new malware sold on dark web forums is being used by threat actors to steal accounts for multiple gaming platforms, including Steam, Epic Games Store, and EA Origin. [...] Malware Threat
bleepingcomputer.webp 2021-09-27 07:21:29 Malicious \'Safepal Wallet\' Firefox add-on stole cryptocurrency (lien direct) A malicious Firefox add-on named "Safepal Wallet" lived on the Mozilla add-ons site for seven months and scammed users by emptying out their wallets. Safepal is a cryptocurrency wallet application capable of securely storing a variety of crypto assets, including Bitcoin, Ethereum, and Litecoin. [...]
bleepingcomputer.webp 2021-09-26 17:28:58 (Déjà vu) Hands on with Windows 11\'s new Settings and File Explorer (lien direct) In addition to the new Start Menu and taskbar design overhauls, Windows 11 also comes with a new File Explorer and Settings app. [...]
bleepingcomputer.webp 2021-09-26 10:00:00 Microsoft will disable Basic Auth in Exchange Online in October 2022 (lien direct) Microsoft announced that Basic Authentication will be turned off for all protocols in all tenants starting October 1st, 2022, to protect millions of Exchange Online users. [...]
bleepingcomputer.webp 2021-09-25 12:27:30 Windows 10 emergency update resolves KB5005565 app freezes, crashes (lien direct) Microsoft has released an emergency fix for freezing and crashing app issues caused by September's KB5005565  and KB5005101 cumulative updates. [...]
bleepingcomputer.webp 2021-09-25 11:16:08 Microsoft WPBT flaw lets hackers install rootkits on Windows devices (lien direct) Security researchers have found a flaw in the Microsoft Windows Platform Binary Table (WPBT) that could be exploited in easy attacks to install rootkits on all Windows computers shipped since 2012. [...]
bleepingcomputer.webp 2021-09-25 10:00:00 Bitcoin.org hackers steal $17,000 in \'double your cash\' scam (lien direct) This week, threat actors hijacked Bitcoin.org, the authentic website of the Bitcoin project, and altered parts of the website to push a cryptocurrency giveaway scam that unfortunately some users fell for. Although the hack lasted for less than a day, hackers seem to have walked away with a little over $17,000. [...] Hack Threat
bleepingcomputer.webp 2021-09-24 19:27:03 The Week in Ransomware - September 24th 2021 - Targeting crypto (lien direct) This week's biggest news is the USA sanctioning a crypto exchange used by ransomware gangs to convert cryptocurrency into fiat currency. By targeting rogue exchanges, the US government is hoping to disrupt ransomware's payment system. [...] Ransomware
bleepingcomputer.webp 2021-09-24 17:10:17 United Health Centers ransomware attack claimed by Vice Society (lien direct) ​California-based United Health Centers suffered a ransomware attack that reportedly disrupted all of their locations and resulted in patient data theft. [...] Ransomware
bleepingcomputer.webp 2021-09-24 14:57:40 Google apologizes for scaring Cloud users with \'past due\' emails (lien direct) Google has apologized for a wave of emails warning Google Cloud Platform, Firebase, or API customers that their accounts may be suspended for a past due balance. [...]
bleepingcomputer.webp 2021-09-24 14:04:04 Hackers exploiting critical VMware vCenter CVE-2021-22005 bug (lien direct) Exploit code that could be used for remote code execution on VMware vCenter Server vulnerable to CVE-2021-22005 has been released today and attackers are already using it. [...]
bleepingcomputer.webp 2021-09-24 14:04:04 Exploits imminent for critical VMware vCenter CVE-2021-22005 bug (lien direct) Exploit code that could be used to achieve remote code execution on VMware vCenter Server vulnerable to CVE-2021-22005 is currently spreading online. [...]
bleepingcomputer.webp 2021-09-24 13:33:19 Emergency Google Chrome update fixes zero-day exploited in the wild (lien direct) Google has released Chrome 94.0.4606.61 for Windows, Mac, and Linux, an emergency update addressing a high-severity zero-day vulnerability exploited in the wild. [...]
bleepingcomputer.webp 2021-09-24 13:03:52 Microsoft rushes to register Autodiscover domains leaking credentials (lien direct) Microsoft is rushing to register Internet domains used to steal Windows credentials sent from faulty implementations of the Microsoft Exchange Autodiscover protocol. [...]
bleepingcomputer.webp 2021-09-24 12:11:30 EU officially blames Russia for \'Ghostwriter\' hacking activities (lien direct) The European Union has officially linked Russia to a hacking operation known as Ghostwriter that targets high-profile EU officials, journalists, and the general public. [...]
bleepingcomputer.webp 2021-09-24 07:13:20 (Déjà vu) Researcher drops three iOS zero-days that Apple refused to fix (lien direct) Proof-of-concept exploit code for three iOS zero-day vulnerabilities (and a fourth one patched in July) was published on GitHub after Apple delayed patching and failed to credit the researcher. [...] Patching
bleepingcomputer.webp 2021-09-24 07:13:20 Exploit code released for three iOS 0-days that Apple failed to patch (lien direct) Proof-of-concept exploit code for three iOS zero-day vulnerabilities (and a fourth one patched in July) was published on GitHub after Apple delayed patching and failed to credit the researcher. [...] Patching
bleepingcomputer.webp 2021-09-24 03:23:23 Cisco fixes highly critical vulnerabilities in IOS XE Software (lien direct) Cisco has patched three critical vulnerabilities affecting components in its IOS XE internetworking operating system powering routers and wireless controllers, or products running with a specific configuration. [...]
bleepingcomputer.webp 2021-09-24 02:19:57 SonicWall fixes critical bug allowing SMA 100 device takeover (lien direct) SonicWall has patched a critical security flaw impacting several Secure Mobile Access (SMA) 100 series products that can let unauthenticated attackers remotely gain admin access on targeted devices. [...]
bleepingcomputer.webp 2021-09-23 18:08:25 Google: Manifest V2 Chrome extensions to stop working in 2023 (lien direct) Google has shared the phase-out timeline for Manifest V2 Chrome extensions and its plans to bring Manifest V3 to full feature parity. [...]
bleepingcomputer.webp 2021-09-23 17:34:05 (Déjà vu) Microsoft gets Windows 11 ready for release with new build (lien direct) Microsoft has moved Windows 11 to the Windows Insider 'Release' channel in anticipation of its upcoming launch on October 5th. [...]
bleepingcomputer.webp 2021-09-23 17:34:05 Windows 11 is now available in the Insider \'Release\' channel (lien direct) Microsoft has moved Windows 11 to the Windows Insider 'Release' channel in anticipation of its upcoming launch on October 5th. [...]
bleepingcomputer.webp 2021-09-23 15:50:32 Hacking group used ProxyLogon exploits to breach hotels worldwide (lien direct) A newly discovered cyberespionage group has been targeting hotels worldwide around the world since at least 2019, as well as higher-profile targets such as governments, international organizations, law firms, and engineering companies. [...]
bleepingcomputer.webp 2021-09-23 14:23:32 (Déjà vu) Apple patches new zero-day bug used to hack iPhones and Macs (lien direct) Apple has released security updates to fix a zero-day vulnerability exploited in the wild by attackers to hack into iPhones and Macs running older iOS and macOS versions. [...] Hack
bleepingcomputer.webp 2021-09-23 14:23:32 Apple fixes another zero-day used to deploy NSO iPhone spyware (lien direct) Apple has released security updates to fix three zero-day vulnerabilities exploited in the wild by attackers to hack into iPhones and Macs running older iOS and macOS versions. [...] Hack
bleepingcomputer.webp 2021-09-23 12:24:41 Malware devs trick Windows validation with malformed certs (lien direct) Google researchers spotted malware developers creating malformed code signatures seen as valid in Windows to bypass security software. [...] Malware
bleepingcomputer.webp 2021-09-23 09:30:22 Google tests if \'Chrome/100.0\' user agent breaks websites (lien direct) Google is testing whether changing the Chrome user agent to three-digit 'Chrome/100' will cause loss of functionality on websites that are expecting a two digit version number. [...]
bleepingcomputer.webp 2021-09-23 02:26:00 REVil ransomware devs added a backdoor to cheat affiliates (lien direct) Cybercriminals are slowly realizing that the REvil ransomware operators have been hijacking ransom negotiations, to cut affiliates out of payments. [...] Ransomware
bleepingcomputer.webp 2021-09-22 18:03:52 Microsoft announces new Windows 11-powered Surface devices (lien direct) At its Surface event, Microsoft announced four new devices - Surface Duo 2, Surface Go 3, Surface Laptop Studio, and Surface Pro 8. [...]
bleepingcomputer.webp 2021-09-22 17:44:24 Hackers are scanning for VMware CVE-2021-22005 targets, patch now! (lien direct) Threat actors have already started targeting Internet-exposed VMware vCenter servers unpatched against a critical arbitrary file upload vulnerability patched yesterday that could lead to remote code execution. [...] Vulnerability Threat Guideline
bleepingcomputer.webp 2021-09-22 13:24:43 FBI, CISA, and NSA warn of escalating Conti ransomware attacks (lien direct) CISA, the Federal Bureau of Investigation (FBI), and the National Security Agency (NSA) warned today of an increased number of Conti ransomware attacks targeting US organizations. [...] Ransomware
bleepingcomputer.webp 2021-09-22 12:59:05 Apple will disable insecure TLS in future iOS, macOS releases (lien direct) Apple has deprecated the insecure Transport Layer Security (TLS) 1.0 and 1.1 protocols in recently launched iOS and macOS versions and plans to remove support in future releases altogether. [...]
bleepingcomputer.webp 2021-09-22 12:09:02 Second farming cooperative shut down by ransomware this week (lien direct) Minnesota farming supply cooperative Crystal Valley has suffered a ransomware attack, making it the second farming cooperative attacked this weekend. [...] Ransomware
bleepingcomputer.webp 2021-09-22 09:43:39 Phishing-as-a-service operation uses double theft to boost profits (lien direct) Microsoft says BulletProofLink, a large-scale phishing-as-a-service operation it spotted while investigating recent phishing attacks, is the driving force behind many phishing campaigns that have targeted many corporate organizations lately. [...]
bleepingcomputer.webp 2021-09-22 08:05:54 RaidForums data marketplace accidentally exposes private staff page (lien direct) Underground marketplace and hacker forum, Raidforums, recently exposed internal pages from its website, meant for staff members only. Raidforums is a data breach marketplace where threat actors often sell or leak illicitly obtained data dumps. [...] Threat ★★★★★
bleepingcomputer.webp 2021-09-21 16:01:41 (Déjà vu) New macOS zero-day bug lets attackers run commands remotely (lien direct) Security researchers disclosed today a new vulnerability in Apple's macOS Finder, which makes it possible for attackers to run arbitrary commands on Macs running any macOS version up to the latest release, Big Sur. [...] Vulnerability
bleepingcomputer.webp 2021-09-21 16:01:41 New zero-day bug lets attackers run arbitrary commands on Macs (lien direct) Security researchers disclosed today a new vulnerability in Apple's macOS Finder, which makes it possible for attackers to run arbitrary commands on Macs running any macOS version up to the latest release, Big Sur. [...] Vulnerability
bleepingcomputer.webp 2021-09-21 14:54:13 Microsoft PC Health Check adds detailed Windows 11 compatibility info (lien direct) Microsoft has released an updated PC Health Check tool that provides detailed information about whether a device's hardware is compatible with Windows 11. [...] Tool
bleepingcomputer.webp 2021-09-21 13:40:19 VMware warns of critical bug in default vCenter Server installs (lien direct) VMware warns customers to immediately patch a critical arbitrary file upload vulnerability in the Analytics service, impacting all appliances running default vCenter Server 6.7 and 7.0 deployments. [...] Vulnerability
bleepingcomputer.webp 2021-09-21 12:35:14 US sanctions cryptocurrency exchange used by ransomware gangs (lien direct) The US Treasury Department announced the first-ever sanctions against a cryptocurrency exchange, the Russian-linked Suex, for facilitating ransom transactions for ransomware gangs and helping them evade sanctions. [...] Ransomware
bleepingcomputer.webp 2021-09-21 11:54:56 Russian state hackers use new TinyTurla malware as secondary backdoor (lien direct) Russian state-sponsored hackers known as the Turla APT group have been using new malware over the past year that acted as a secondary persistence method on compromised systems in the U.S., Germany, and Afghanistan. [...] Malware ★★★★
bleepingcomputer.webp 2021-09-21 11:52:10 Atlassian Trello is down - second outage this week (lien direct) Trello is down for many users around the world, second time this week. Trello is a web-based TODO list-style platform owned by Atlassian, makers of Jira and Confluence. [...] ★★★★
Last update at: 2024-07-31 12:19:02
See our sources.
My email:

To see everything: Our RSS (filtrered) Twitter