What's new arround internet

Last one

Src Date (GMT) Titre Description Tags Stories Notes
bleepingcomputer.webp 2022-02-11 12:40:01 Google Project Zero: Vendors are now quicker at fixing zero-days (lien direct) Google's Project Zero has published a report showing that organizations took less time to address the zero-day vulnerabilities that the team reported last year. [...]
bleepingcomputer.webp 2022-02-11 08:01:01 CISA urges orgs to patch actively exploited Windows SeriousSAM bug (lien direct) The U.S. Cybersecurity & Infrastructure Security Agency (CISA) has added to the catalog of vulnerabilities another 15 security issues actively used in cyberattacks. [...]
bleepingcomputer.webp 2022-02-10 19:20:20 Microsoft fixes Defender flaw letting hackers bypass antivirus scans (lien direct) Microsoft has recently addressed a weakness in the Microsoft Defender Antivirus on Windows that allowed attackers to plant and execute malicious payloads without triggering Defender's malware detection engine. [...] Malware
bleepingcomputer.webp 2022-02-10 16:44:21 Microsoft: Support for Windows 10 20H2 ending in May 2022 (lien direct) Microsoft reminded customers today that multiple editions of Windows 10, version 20H2 and Windows 10, version 1909 are quickly approaching end of servicing (EOS). [...]
bleepingcomputer.webp 2022-02-10 15:44:01 Microsoft starts killing off WMIC in Windows, will thwart attacks (lien direct) Microsoft is moving forward with removing the Windows Management Instrumentation Command-line (WMIC) tool, wmic.exe, starting with the latest Windows 11 preview builds in the Dev channel. [...]
bleepingcomputer.webp 2022-02-10 15:02:17 Hacking group \'ModifiedElephant\' evaded discovery for a decade (lien direct) Threat analysts have linked a decade of activity to an APT (advanced persistent threat) actor called 'ModifiedElephant', who has managed to remain elusive to all threat intelligence firms since 2012. [...] Threat
bleepingcomputer.webp 2022-02-10 14:11:02 (Déjà vu) Apple patches new zero-day exploited to hack iPhones, iPads, Macs (lien direct) Apple has released security updates to fix a new zero-day vulnerability exploited in the wild by attackers to hack iPhones, iPads, and Macs. [...] Hack
bleepingcomputer.webp 2022-02-10 11:25:10 Qbot, Lokibot malware switch back to Windows Regsvr32 delivery (lien direct) Malware distributors have turned to an older trick known as Squiblydoo to spread Qbot and Lokibot via Microsoft Office document using regsvr32.exe. [...] Malware
bleepingcomputer.webp 2022-02-10 11:13:44 FTC says Americans lost $547 million to romance scams in 2021 (lien direct) The US Federal Trade Commission (FTC) said that Americans reported record high losses of $547 million to romance scams in 2021, up almost 80% compared to 2020 and over six times compared to losses reported in 2017. [...]
bleepingcomputer.webp 2022-02-10 09:08:24 FritzFrog botnet grows 10x, hits healthcare, edu, and govt systems (lien direct) The FritzFrog botnet that's been active for more than two years has resurfaced with an alarming infection rate, growing ten times in just a month of hitting healthcare, education, and government systems with an exposed SSH server. [...]
bleepingcomputer.webp 2022-02-10 06:57:33 Spain dismantles SIM swapping group who emptied bank accounts (lien direct) Spanish National Police has arrested eight suspects allegedly part of a crime ring who drained bank accounts in a series of SIM swapping attacks. [...]
bleepingcomputer.webp 2022-02-09 16:33:18 PHP Everywhere RCE flaws threaten thousands of WordPress sites (lien direct) Researchers found three critical remote code execution (RCE) vulnerabilities in the PHP Everywhere plugin for WordPress, used by over 30,000 websites worldwide. [...]
bleepingcomputer.webp 2022-02-09 15:05:10 Microsoft Teams now needs 50% less power during meetings (lien direct) Microsoft has drastically reduced Microsoft Teams' power requirements in calls and meetings since June 2020, improving experience consistency and making it more friendly with low-end devices. [...]
bleepingcomputer.webp 2022-02-09 13:24:08 Wave of MageCart attacks target hundreds of outdated Magento sites (lien direct) Analysts have found the source of a mass breach of over 500 e-commerce stores running the Magento 1 platform and involves a single domain loading a credit card skimmer on all of them. [...]
bleepingcomputer.webp 2022-02-09 11:55:32 CISA warns admins to patch maximum severity SAP vulnerability (lien direct) The US Cybersecurity and Infrastructure Security Agency (CISA) has warned admins to patch a set of severe security flaws dubbed ICMAD (Internet Communication Manager Advanced Desync) and impacting SAP business apps using Internet Communication Manager (ICM). [...] Vulnerability
bleepingcomputer.webp 2022-02-09 10:26:31 Ransomware dev releases Egregor, Maze master decryption keys (lien direct) The master decryption keys for the Maze, Egregor, and Sekhmet ransomware operations were released last night on the BleepingComputer forums by the alleged malware developer. [...] Ransomware Malware
bleepingcomputer.webp 2022-02-09 10:10:59 Meta and Chime sue Nigerians behind Facebook, Instagram phishing (lien direct) Meta (formerly known as Facebook) has filed a joint lawsuit with Chime, a financial technology and digital banking company, against two Nigerian individuals who allegedly used Instagram and Facebook accounts to impersonate Chime and target its users in phishing attacks. [...]
bleepingcomputer.webp 2022-02-09 07:58:50 Fake Windows 11 upgrade installers infect you with RedLine malware (lien direct) Threat actors have started distributing fake Windows 11 upgrade installers to users of Windows 10, tricking them into downloading and executing RedLine stealer malware. [...] Malware Threat
bleepingcomputer.webp 2022-02-09 07:30:09 FBI warns of criminals escalating SIM swap attacks to steal millions (lien direct) The Federal Bureau of Investigation (FBI) says criminals have escalated SIM swap attacks to steal millions by hijacking victims' phone numbers. [...]
bleepingcomputer.webp 2022-02-09 03:17:34 Molerats hackers deploy new malware in highly evasive campaign (lien direct) The Palestinian-aligned APT group tracked as TA402 (aka Molerats) was spotted using a new implant named 'NimbleMamba' in a cyber-espionage campaign that leverages geofencing and URL redirects to legitimate websites. [...] Malware
bleepingcomputer.webp 2022-02-08 16:25:48 Google fixes remote escalation of privileges bug on Android (lien direct) Google has released the February 2022 Android security updates, addressing two critical vulnerabilities, one being a remote escalation of privilege that requires no user interaction. [...]
bleepingcomputer.webp 2022-02-08 15:35:47 Kimsuki hackers use commodity RATs with custom Gold Dragon malware (lien direct) South Korean researchers have spotted a new wave of activity from the Kimsuky hacking group, involving commodity open-source remote access tools dropped with their custom backdoor, Gold Dragon. [...] Malware APT 43
bleepingcomputer.webp 2022-02-08 13:57:39 (Déjà vu) Windows 10 KB5010342 & KB5010345 updates released (lien direct) The new update is now available for Windows 10 21H2, version 21H1, and version 20H2 As per the official release notes, Microsoft has published two main cumulative updates for Windows 10 - KB5010342 and KB5010345. [...]
bleepingcomputer.webp 2022-02-08 13:57:27 (Déjà vu) Windows 11 KB5010386 update released with performance fixes (lien direct) Microsoft has released the Windows 11 KB5010386 cumulative update with security updates, performance improvements, and fixes for an LDAP bug. [...]
bleepingcomputer.webp 2022-02-08 13:27:31 Microsoft February 2022 Patch Tuesday fixes 48 flaws, 1 zero-day (lien direct) Today is Microsoft's February 2022 Patch Tuesday, and with it comes fixes for one zero-day vulnerability and a total of 48 flaws. [...] Vulnerability
bleepingcomputer.webp 2022-02-08 12:51:37 US seizes $3.6 billion stolen in 2016 Bitfinex cryptoexchange hack (lien direct) The US Department of Justice announced that law enforcement seized billions worth of cryptocurrency linked to the 2016 Bitfinex cryptocurrency exchange hack. [...] Hack
bleepingcomputer.webp 2022-02-08 11:56:33 Mozilla fixes Firefox bug letting you get Windows admin privileges (lien direct) Mozilla released a security update to address a high severity privilege escalation vulnerability found in the Mozilla Maintenance Service. [...]
bleepingcomputer.webp 2022-02-08 11:18:53 ExpressVPN offering $100,000 to first person who hacks its servers (lien direct) ExpressVPN has updated its bug bounty program to make it more inviting to ethical hackers, now offering a one-time $100,000 bug bounty to whoever can compromise its systems. [...]
bleepingcomputer.webp 2022-02-08 10:49:10 Vodafone Portugal 4G and 5G services down after cyberattack (lien direct) Vodafone Portugal suffered a cyberattack causing country-wide service outages, including the disruption of 4G/5G data networks, SMS texts, and television services. [...] ★★
bleepingcomputer.webp 2022-02-08 07:45:04 NetWalker ransomware affiliate sentenced to 80 months in prison (lien direct) Sebastien Vachon-Desjardins, a Canadian man charged by the US for his involvement in NetWalker ransomware attacks, was sentenced to 6 years and 8 months in prison after pleading guilty before an Ontario judge to multiple offenses linked to attacks on 17 Canadian victims. [...] Ransomware Guideline
bleepingcomputer.webp 2022-02-08 06:00:00 Google sees 50% security boost for 150M users after 2FA enroll (lien direct) After accelerating its efforts to auto-enroll as many accounts as possible in two-factor authentication (2FA), Google announced that an additional 150 million users now have 2FA enabled. [...]
bleepingcomputer.webp 2022-02-08 03:12:24 Qbot needs only 30 minutes to steal your credentials, emails (lien direct) The widespread malware known as Qbot (aka Qakbot or QuakBot) has recently returned to light-speed attacks, and according to analysts, it only takes around 30 minutes to steal sensitive data after the initial infection. [...] Malware
bleepingcomputer.webp 2022-02-07 17:30:15 DPD Group parcel tracking flaw may have exposed customer data (lien direct) An unauthenticated API call vulnerability in DPD Group's package tracking system could have been exploited to access the personally identifiable details of its clients. [...] Vulnerability
bleepingcomputer.webp 2022-02-07 16:39:38 (Déjà vu) Russia arrests third hacking group, reportedly seizes carding forums (lien direct) Russia arrested six people today, allegedly part of a hacking group that was involved in the theft and selling of stolen credit cards. [...]
bleepingcomputer.webp 2022-02-07 16:39:38 Russia arrests third hacking group, seizes carding forums (lien direct) Russia arrested six people today, allegedly part of a hacking group that was involved in the theft and selling of stolen credit cards. [...]
bleepingcomputer.webp 2022-02-07 15:49:03 Puma hit by data breach after Kronos ransomware attack (lien direct) Sportswear manufacturer Puma was hit by a data breach following the ransomware attack that hit Kronos, one of its North American workforce management service providers, in December 2021. [...] Ransomware Data Breach
bleepingcomputer.webp 2022-02-07 13:35:05 (Déjà vu) Microsoft plans to kill malware delivery via Office macros (lien direct) Microsoft announced today that it will make it difficult to enable VBA macros downloaded from the Internet in several Microsoft Office apps starting in early April, effectively killing a popular distribution method for malware. [...] Malware
bleepingcomputer.webp 2022-02-07 13:35:05 Microsoft to make it difficult to enable macros in downloaded docs (lien direct) Microsoft announced today that it will make it difficult to enable VBA macros downloaded from the Internet in several Microsoft Office apps starting in early April, effectively killing a popular distribution method for malware. [...]
bleepingcomputer.webp 2022-02-07 12:08:23 (Déjà vu) Free decryptor released for TargetCompany ransomware victims (lien direct) Czech cybersecurity software firm Avast has released a decryption utility to help TargetCompany ransomware victims recover their files for free. [...] Ransomware
bleepingcomputer.webp 2022-02-07 12:05:03 Google Cloud hypervisor modified to detect cryptominers without agents (lien direct) Google has announced the public preview of a new Virtual Machine Threat Detection (VMTD) system that can detect cryptocurrency miners and other malware without the need for software agents. [...] Malware Threat
bleepingcomputer.webp 2022-02-07 11:38:44 Medusa malware ramps up Android SMS phishing attacks (lien direct) The Medusa Android banking Trojan is seeing increased infection rates as it targets more geographic regions to steal online credentials and perform financial fraud. [...] Malware
bleepingcomputer.webp 2022-02-07 10:00:00 Microsoft fixes Windows Active Directory bug caused by Jan updates (lien direct) Microsoft says it has fixed a known issue triggered by last month's Windows updates that would cause apps using Microsoft .NET to experience problems, close, or throw errors when acquiring or setting Active Directory Forest Trust Information. [...]
bleepingcomputer.webp 2022-02-07 09:47:54 Roaming Mantis Android malware campaign sets sights on Europe (lien direct) The Roaming Mantis SMS phishing campaign has finally reached Europe, as researchers detect campaigns targeting Android and iPhone users in Germany and France with malicious apps and phishing pages. [...] Malware
bleepingcomputer.webp 2022-02-06 10:17:34 Law enforcement action push ransomware gangs to surgical attacks (lien direct) The numerous law enforcement operations leading to the arrests and takedown of ransomware operations in 2021 have forced threat actors to narrow their targeting scope and maximize the efficiency of their operations. [...] Ransomware Threat Guideline
bleepingcomputer.webp 2022-02-05 17:29:54 BlackCat (ALPHV) ransomware linked to BlackMatter, DarkSide gangs (lien direct) The Black Cat ransomware gang, also known as ALPHV, has confirmed they are former members of the notorious BlackMatter/DarkSide ransomware operation. [...] Ransomware
bleepingcomputer.webp 2022-02-05 12:17:08 What\'s new in Windows 11 Sun Valley 2 Update, arriving this year (lien direct) In 2022, Microsoft is planning to launch the first big update for Windows 11. The update is reportedly codenamed "Sun Valley 2" and it is expected to ship with a new Task Manager, improvements to Start Menu and Taskbar, and more. [...]
bleepingcomputer.webp 2022-02-05 10:00:00 FBI shares Lockbit ransomware technical details, defense tips (lien direct) The Federal Bureau of Investigation (FBI) has released technical details and indicators of compromise associated with Lockbit ransomware attacks in a new flash alert published this Friday. [...] Ransomware
bleepingcomputer.webp 2022-02-04 19:15:26 The Week in Ransomware - February 4th 2022 - Critical Infrastructure (lien direct) Critical infrastructure suffered ransomware attacks, with threat actors targeting an oil petrol distributor and oil terminals in major ports in different attacks. [...] Ransomware Threat
bleepingcomputer.webp 2022-02-04 19:10:06 Microsoft disables MSIX protocol handler abused in Emotet attacks (lien direct) Microsoft has disabled the MSIX ms-appinstaller protocol handler exploited in malware attacks to install malicious apps directly from a website via a Windows AppX Installer spoofing vulnerability. [...] Malware
bleepingcomputer.webp 2022-02-04 15:17:11 Microsoft: Russian FSB hackers hitting Ukraine since October (lien direct) Microsoft said today that a Russian hacking group known as Gamaredon has been behind a streak of spear-phishing emails targeting Ukrainian entities and organizations related to Ukrainian affairs since October 2021. [...] ★★★
Last update at: 2024-05-10 07:07:54
See our sources.
My email:

To see everything: Our RSS (filtrered) Twitter