BleepingComputer
-
McKesson discloses breach after ShinyHunters claims patient data theft
BleepingComputer
—
-
PaperCut releases second emergency patch for exploited flaws
BleepingComputer
—
-
GiveWP WordPress donation plugin flaw lets hackers execute server commands
BleepingComputer
—
-
68-year-old imprisoned after making $1.3 million by pirating IPTV services
BleepingComputer
—
-
AI Is Accelerating Vulnerability Discovery. Can Defenders Keep Up?
BleepingComputer
—
-
Over 8,300 Gitea servers vulnerable to code execution attacks
BleepingComputer
—
-
Toy-making giant Hasbro disclose data breach affecting employees
BleepingComputer
—
-
ServiceNow warns of three max severity security vulnerabilities
BleepingComputer
—
-
Windows 11 KB5120998 update released with 35 changes and fixes
BleepingComputer
—
-
Nearly 700 rogue AI agents coordinated in the Hugging Face attack
BleepingComputer
—
-
PaperCut warns of NG, MF flaw exploited in zero-day attacks
BleepingComputer
—
-
Manchester Airports Group says hackers stole travelers' data
BleepingComputer
—
-
How Threat Research and MDR Help SMBs Build a Defensive Edge
BleepingComputer
—
-
Android 17 adds ECH support to make web browsing harder to track
BleepingComputer
—
-
Australia arrests alleged TeamPCP hackers behind supply-chain attacks
BleepingComputer
—
-
Microsoft rolls out fix for Windows 11 crashes, gaming issues
BleepingComputer
—
-
Webinar: How Google Workspace breaches happen and what to do next
BleepingComputer
—
-
Carhartt data breach exposes information of 12.9 million accounts
BleepingComputer
—
-
CISA orders feds to patch Citrix NetScaler RCE flaw by Saturday
BleepingComputer
—
-
ATF confirms “major incident” after recent Qilin breach claims
BleepingComputer
—
-
Critical Avada WordPress theme flaw enables zero-click RCE
BleepingComputer
—
-
New GPUThor attack defeats NVIDIA ECC protection for root access
BleepingComputer
—
-
Meta agrees to $18 billion settlement over teen social media harms
BleepingComputer
—
-
Boston Scientific says cyberattack disrupted operations globally
BleepingComputer
—
-
Hackers target Microsoft SharePoint RCE chain with PoC exploit
BleepingComputer
—
-
FBI disrupts proxy network enabling Chinese espionage operations
BleepingComputer
—
-
Snowflake ends service-account passwords. Now comes the hard part
BleepingComputer
—
-
Ubiquiti patches three max severity security vulnerabilities
BleepingComputer
—
-
Microsoft tests new privacy controls for Windows 11 desktop apps
BleepingComputer
—
-
Hackers now exploit critical Gitea flaw in code injection attacks
BleepingComputer
—
-
LACMA data breach last year exposed social security and medical data
BleepingComputer
—
-
Hackers abuse npm mirrors to host phishing redirect pages
BleepingComputer
—
-
AnonyMousKIT PhaaS uses voice AI agents to phish iPhone passcodes
BleepingComputer
—
-
Massive DDoS attack disrupts Norway’s government digital services
BleepingComputer
—
-
Hospital operator Nutex Health says data stolen in cyberattack
BleepingComputer
—
-
From Fake Workers to Account Recovery: The Growing Identity Verification Risk
BleepingComputer
—
-
Microsoft PowerToys adds Alt+Tab-style switching for an app's windows
BleepingComputer
—
-
WhatsApp adds stronger two-step verification, multiple passkeys
BleepingComputer
—
-
Hackers breached over 270 Zimbra servers in ongoing attacks
BleepingComputer
—
-
Police arrests dozens of suspects in global cybercrime crackdown
BleepingComputer
—
-
Unpatched Calix flaw lets hackers bypass NAT to expose internal devices
BleepingComputer
—
-
Hackers target WordPress sites in miniOrange auth bypass attacks
BleepingComputer
—
-
TikTok reaches $400M settlement with US over COPPA violations
BleepingComputer
—
-
ReliaQuest confirms failed data-theft attack after ShinyHunters breach
BleepingComputer
—
-
Microsoft Teams now lets admins block external bots from meetings
BleepingComputer
—
-
South Korean startup platform breach exposes key management failures
BleepingComputer
—
-
Microsoft: August updates break printing, PDF export in WPF apps
BleepingComputer
—
-
CISA orders urgent patching of actively exploited Zimbra flaw
BleepingComputer
—
-
Microsoft shares temporary fix for Windows 11 gaming issues
BleepingComputer
—
-
ToxicPanda Android malware uses VPN permissions to block Google Play
BleepingComputer
—
-
Hackers infect Android car head units with proxy botnet malware
BleepingComputer
—
-
Named Pipes Under Attack: Securing Windows Interprocess Communication
BleepingComputer
—
-
New SynkLoader malware pushed in Microsoft Teams phishing campaign
BleepingComputer
—
-
Hundreds of leaked AWS keys give full control over corporate accounts
BleepingComputer
—
-
Microsoft blames Windows gaming issues on RGB lighting devices
BleepingComputer
—
-
Is Online Privacy Possible? How Digital Identities Can Help
BleepingComputer
—
-
Microsoft rolls out Classic Outlook theme for New Outlook users
BleepingComputer
—
-
CISA orders feds to patch actively exploited TrueConf Server flaws
BleepingComputer
—
-
Microsoft warns of max severity Entra ID flaw exploited in attacks
BleepingComputer
—
-
Hackers abuse FTP server banners to deliver new Windows malware
BleepingComputer
—
-
SickKids data breach exposes employee and job applicant info
BleepingComputer
—
-
Hackers poison arrayref Rust crate to push infostealer malware
BleepingComputer
—
-
Critical Elementor Pro bug exposes WordPress sites to RCE attacks
BleepingComputer
—
-
How MSPs can catch phishing attacks email filters miss
BleepingComputer
—
-
Citrix urges admins to patch new NetScaler flaws as soon as possible
BleepingComputer
—
-
CISA warns of hackers exploiting critical MLflow vulnerability
BleepingComputer
—
-
New Manic Android malware can exfiltrate data through nearby devices
BleepingComputer
—
-
Critical Zimbra RCE flaw now actively exploited in attacks
BleepingComputer
—
-
Microsoft says August Windows updates may cause gaming issues
BleepingComputer
—
-
OpenAI confirms ChatGPT is down as logins and signups fail
BleepingComputer
—
-
Rogue ransomware affiliate poses as recovery firm to steal payments
BleepingComputer
—
-
Rogue ransomware affiliate poses as data recovery firm to steal payments
BleepingComputer
—
-
Sakura Internet hack exposes data of up to 1.36 million accounts
BleepingComputer
—
-
Healthtech firm CareCloud data breach impacts 3.7 million patients
BleepingComputer
—
-
Hackers compromise 14,500 Dahua web cameras in 35-day campaign
BleepingComputer
—
-
US warns of AI-powered attacks on Siemens PLCs in critical infrastructure
BleepingComputer
—
-
US charges Iranian hackers over $3.4 billion intellectual property theft
BleepingComputer
—
-
Password spraying attacks surge 155x as hackers exploit MFA gaps
BleepingComputer
—
-
Microsoft fixes known issue causing Windows Defender crashes
BleepingComputer
—
-
Critical RCE flaw in Windows IKE Extension now actively exploited
BleepingComputer
—
-
Windows 11 24H2 Home and Pro reach end of support in 2 months
BleepingComputer
—
-
CISA: Medusa ransomware hit over 500 critical infrastructure orgs
BleepingComputer
—
-
Comcast turns your Xfinity WiFi into a home motion detector
BleepingComputer
—
-
Clop created custom web shell for Windchill data theft attacks
BleepingComputer
—
-
Your Controls Block Known Attacks. What About the Behavior?
BleepingComputer
—
-
Microsoft tests faster Windows File Explorer, new context menu
BleepingComputer
—
-
CISA: Windows Task Host flaw now exploited by ransomware gangs
BleepingComputer
—
-
Microsoft confirms outage affecting search in Microsoft 365 apps
BleepingComputer
—
-
Microsoft starts removing WMIC tool used by cybercriminals
BleepingComputer
—
-
Hacker claims 3.6 million Azure account records stolen from major companies
BleepingComputer
—
-
Pokémon Center data breach exposes customer info, cancels some orders
BleepingComputer
—
-
Microsoft confirms GitHub is down worldwide
BleepingComputer
—
-
Certighost and the Privilege Hiding in Your Certificate Authority
BleepingComputer
—
-
Windows Server 2022 reaches end of mainstream support in 60 days
BleepingComputer
—
-
Philips and GE investigating Clop ransomware data theft claims
BleepingComputer
—
-
French tax authority data breach affects 678,000 individuals
BleepingComputer
—
-
Microsoft working on Defender patch for ShieldBreak zero-day
BleepingComputer
—
-
SafePal data breach impacts 39,798 customers, stolen info for sale
BleepingComputer
—
-
Anthropic confirms Claude is down in major outage affecting multiple services
BleepingComputer
—
-
Large-scale DDoS attacks disrupted Threema secure messaging service
BleepingComputer
—
-
New AmnesiaStealer macOS malware hijacks browser sessions via remote control
BleepingComputer
—
-
New Evooo1Bot Linux botnet turns routers into traffic relay nodes
BleepingComputer
—
-
How Anthropic plans to watermark Claude's AI-generated text
BleepingComputer
—
-
Hackers arrested over €30M bank fraud exploiting service provider flaw
BleepingComputer
—
-
Hackers exploit macOS Screen Sharing flaw to deploy Monero miner
BleepingComputer
—
-
The Modern Attack Chain: Rethinking Google Workspace Security in the Age of AI
BleepingComputer
—
-
Max severity SAP Commerce Cloud flaw now targeted in attacks
BleepingComputer
—
-
Shell investigates 'potential incident' after Clop data theft claims
BleepingComputer
—
-
RingCentral data breach exposed info of 1.6 million accounts
BleepingComputer
—
-
Data analyst sent to prison for stealing data, extorting employer
BleepingComputer
—
-
Apple sends new ‘Threat Notification’ alerts over mercenary spyware attacks
BleepingComputer
—
-
Ukraine shuts down 94 fraudulent call centers, seize millions in cash
BleepingComputer
—
-
Akira hackers disable EDR with Safe Mode, steal data but fail to encrypt
BleepingComputer
—
-
Hackers breach govt webmail while running parallel crypto fraud
BleepingComputer
—
-
Microsoft patches LegacyHive Windows zero-day vulnerability
BleepingComputer
—
-
AI 'watermark removers' flood the web. Almost none can prove they work.
BleepingComputer
—
-
Critical VMware vCenter RCE flaw exploited for reverse SSH access
BleepingComputer
—
-
Trezor discloses data breach affecting nearly 14,000 customers
BleepingComputer
—
-
Who Vets AI’s Code? The Scale Challenge Facing Open Source Ingestion
BleepingComputer
—
-
White House taps security firms for offensive hack-back operations
BleepingComputer
—
-
WhatsApp rolls out new feature that flags potential scam messages
BleepingComputer
—
-
"City-Forum" data-theft attacks target Salesforce, ServiceNow portals
BleepingComputer
—
-
Android malware combo takes out loans and relays victims' credit cards
BleepingComputer
—
-
Hackers exploit critical Adobe Commerce flaw to hijack customer accounts
BleepingComputer
—
-
Hundreds of fake Chrome VPN extensions route traffic through a proxy
BleepingComputer
—
-
Plug and Pwn attack uses fake USB devices for Windows SYSTEM access
BleepingComputer
—
-
Lazarus hackers exploited Windows zero-day to target defense firms
BleepingComputer
—
-
FBI: Hackers target online accounts to steal nude photos
BleepingComputer
—
-
The Threat Hiding in Your Hiring Process: How Fake Remote Workers Get In
BleepingComputer
—
-
Hackers leverage new Microsoft SharePoint exploit in attacks
BleepingComputer
—
-
Signal adds new security feature to thwart man-in-the-middle attacks
BleepingComputer
—
-
New Microsoft Defender 'ShieldBreak' zero-day grants SYSTEM privileges
BleepingComputer
—
-
Google says Chrome cuts 7 billion unwanted Android notifications a day to fight abuse
BleepingComputer
—
-
DeadLock ransomware uses blockchain to resist infrastructure takedown
BleepingComputer
—
-
Sandworm hackers target IT pros with trojanized WireGuard VPN client
BleepingComputer
—
-
Cisco warns of ASA and FTD VPN flaw exploited to crash devices
BleepingComputer
—
-
Delta probes Wi-Fi deauth attack on flight carrying DEF CON attendees
BleepingComputer
—
-
Microsoft releases Windows 10 KB5120249 extended security update
BleepingComputer
—
-
Hackers breach TrueConf to trojanize client installers with backdoors
BleepingComputer
—
-
Metabase SQLi zero-day exploited in customer data-theft attacks
BleepingComputer
—
-
Unlimited Technology Systems breach impacts 3.8 million people
BleepingComputer
—
-
Levi Strauss & Co. says hackers stole corporate data in cyberattack
BleepingComputer
—
-
Real emails, hijacked payments: Two H1 2026 attack chains
BleepingComputer
—
-
North Carolina Ports confirms cyberattack disrupting operations
BleepingComputer
—
-
OpenAI rolls out a major ChatGPT upgrade, even if you don’t pay for it
BleepingComputer
—
-
ClickFix attack pushes macOS infostealer for crypto theft attacks
BleepingComputer
—
-
Hedge fund cyberattacks tied to BlackFile-linked UNC6671 extortion group
BleepingComputer
—
-
Swiss government SharePoint breach compromised 200 accounts
BleepingComputer
—
-
New TONTOU CPU attack bypasses Spectre v2 fixes, leaks Linux password hashes
BleepingComputer
—
-
Meta AI model hacked a company during misconfigured cyber test
BleepingComputer
—
-
How AI Exposed a Browser Security Gap that Enterprises Cannot Ignore
BleepingComputer
—
-
Ransom Cartel ransomware creator sentenced to 16 years in prison
BleepingComputer
—
-
Canadian pleads guilty to Snowflake cloud data-theft attacks
BleepingComputer
—
-
Hackers run khunt post-exploitation toolkit from Oracle database
BleepingComputer
—
-
OpenAI teases Astra, its next major AI model, after it solves 10 long-standing math problems
BleepingComputer
—
-
COLDCARD wallet RNG flaw likely linked to $88 million Bitcoin theft
BleepingComputer
—
-
Google Chrome may soon block New Tab hijacker extensions by default
BleepingComputer
—
-
Rails patches critical Active Storage flaw with RCE potential
BleepingComputer
—
-
Amgen says cloud data breach exposed patient health, proprietary info
BleepingComputer
—
-
Arch Linux disables AUR package adoption to stop malware flood
BleepingComputer
—
-
Online ad firm Adform’s script compromised to steal cryptocurrency
BleepingComputer
—
-
OpenAI says its new GPT 5.6 models are becoming more cost-efficient
BleepingComputer
—
-
Hacker uses DeepSeek AI to autonomously attack vulnerable servers
BleepingComputer
—
-
CISA warns of cyberattacks disrupting U.S. water utilities
BleepingComputer
—
-
ESET tracks rise in malicious AI skills and adaptable malware
BleepingComputer
—
-
Anthropic's Claude breached 3 orgs, uploaded PyPI malware during tests
BleepingComputer
—
-
Claude uploaded malware to PyPI in Anthropic's botched test
BleepingComputer
—
-
South Korea fines telco giant KT $39 million for customer data breach
BleepingComputer
—
-
JetBrains warns of critical TeamCity remote code execution flaw
BleepingComputer
—
-
Amazon links Debug, Chalk NPM supply-chain attacks to North Korean hackers
BleepingComputer
—
-
VMware fixes three critical flaws allowing auth bypass, VM escapes
BleepingComputer
—
-
Google says AI helped Chrome fix 1,072 security bugs in two releases
BleepingComputer
—
-
ShinyHunters claims Brinks Home breach, threatens to leak stolen data
BleepingComputer
—
-
Microsoft Teams vishing attacks lead to Chaos ransomware attacks
BleepingComputer
—
-
Analog Devices discloses data breach, says operations unaffected
BleepingComputer
—
-
After the Break-In: What Attackers Do Once They're Already Inside
BleepingComputer
—
-
Russian hackers exploit Exchange OWA zero-day for long-term mailbox access
BleepingComputer
—
-
Cisco warns of FMC static credential flaw exploited in zero-day attacks
BleepingComputer
—
-
Anthropic confirms Claude is down worldwide
BleepingComputer
—
-
Health-ISAC warns of rising ShinyHunters data theft attacks on healthcare
BleepingComputer
—
-
OpenAI agent used exposed credentials at 4 services in Hugging Face breach
BleepingComputer
—
-
Hackers target over 30 Minnesota water utilities in coordinated OT attack
BleepingComputer
—
-
Your AI Agents Are Guessing at Scale: Permissions Decide the Damage
BleepingComputer
—
-
Windows 11 KB5101684 update released with 42 changes and fixes
BleepingComputer
—
-
These near-mint ASUS Chromebook refurbs are only $145
BleepingComputer
—
-
CubePilot drone software dev hit by DNS hijacking to intercept traffic
BleepingComputer
—
-
OpenAI models used Artifactory zero-days to escape to the internet
BleepingComputer
—
-
CISA shares advice on isolating vital systems during cyberattacks
BleepingComputer
—
-
vBulletin fixes critical pre-auth RCE flaw with public exploit
BleepingComputer
—
-
Is Your SSO Protected Against Modern Credential Attacks?
BleepingComputer
—
-
Over 24,000 exposed server BMCs leak password hash via decades-old flaw
BleepingComputer
—
-
Data breach at medical billing firm MCBS affects 1.26 million people
BleepingComputer
—
-
Hackers target US firms in FastJson RCE zero-day attacks
BleepingComputer
—
-
Arista patches VeloCloud Orchestrator zero-day exploited in attacks
BleepingComputer
—
-
New Dysphoria DDoS botnet spreads to 200k devices worldwide
BleepingComputer
—
-
New Certighost PoC exploit lets attackers hijack Windows domains
BleepingComputer
—
-
Apple sued over fake App Store crypto wallet app stealing $1.8M in Bitcoin
BleepingComputer
—
-
Coca-Cola confirms data theft in Fairlife ransomware attack
BleepingComputer
—
-
Ernst & Young data breach claimed by ShinyHunters extortion gang
BleepingComputer
—
-
Shadow AI agents are multiplying. Here's how to find and secure them.
BleepingComputer
—
-
GitHub, PyPI add time-absed defenses against supply chain attacks
BleepingComputer
—
-
Steam forum ClickFix attacks infect gamers with XMRig cryptominers
BleepingComputer
—
-
Malicious sites use JavaScript to build malware in browser memory
BleepingComputer
—
-
ShinyHunters data leaks fuel $2,000 sextortion email scam
BleepingComputer
—
-
OpenAI confirms ChatGPT is down worldwide
BleepingComputer
—
-
OnTrac notifies customers of data breach after network hack
BleepingComputer
—
-
Hermes AI agent used to automate attack on Thai Finance Ministry
BleepingComputer
—
-
Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accounts
BleepingComputer
—
-
Microsoft blames massive Microsoft 365 outage on maintenance bug
BleepingComputer
—
-
Chick-fil-A data breach affects more than 13,000 customers
BleepingComputer
—
-
Slopsquatting, Phantom Domains, and HalluSquatting Are the Same AI Attack
BleepingComputer
—
-
Europol flags 4,340 URLs for removal in 'The Com' crackdown
BleepingComputer
—
-
Man gets six years for hacking 750 women's Snapchat accounts
BleepingComputer
—
-
Clop ransomware targets Windchill, FlexPLM in data theft attacks
BleepingComputer
—
-
New Dolphin X malware uses AI to rank high-value targets
BleepingComputer
—
-
Australian energy provider Origin says data breach exposes client data
BleepingComputer
—
-
Fake Claude app promoted by Bing ads pushes SectopRAT malware
BleepingComputer
—
-
Russian hackers exploit Zimbra zero-click flaw for email theft
BleepingComputer
—
-
Hackers abuse Notepad++ plugins to stealthily install malware
BleepingComputer
—
-
Microsoft 365 outage affects Teams, SharePoint and other services
BleepingComputer
—
-
FedRAMP Rev5 Is Ending: What the 20x Transition Really Requires
BleepingComputer
—
-
EU fines Google $1 billion for search, app store antitrust violations
BleepingComputer
—
-
New RefluXFS Linux flaw lets attackers gain root privileges
BleepingComputer
—
-
New msaRAT malware uses Chrome, Edge browsers to route C2 traffic
BleepingComputer
—
-
Microsoft working to fix Exchange Online mailbox quarantine issue
BleepingComputer
—
-
Check Point warns of SmartConsole zero-day exploited in attacks
BleepingComputer
—
-
Upbound says hack caused $13 million in fraudulent Acima leases
BleepingComputer
—
-
South Korea discloses data breach impacting diplomats worldwide
BleepingComputer
—
-
Swiss rail giant Stadler rejects $12.3M ransom demand after cyberattack
BleepingComputer
—
-
How enterprise GenAI can amplify ransomware risk — and how to contain it
BleepingComputer
—
-
New InfraTrust report reveals infrastructure flaws admins should patch first
BleepingComputer
—
-
Adobe Chrome extension flaw let sites access private WhatsApp chats
BleepingComputer
—
-
CISA orders urgent action on actively exploited Langflow RCE flaw
BleepingComputer
—
-
Stop renting storage space — this lifetime 2TB plan is yours for $59
BleepingComputer
—
-
Microsoft to stop Exchange 2016 / 2019 security updates in October
BleepingComputer
—
-
Chick-fil-A discloses data breach after credential stuffing attacks
BleepingComputer
—
-
OpenAI says its AI models hacked Hugging Face during testing
BleepingComputer
—
-
Police dismantle Kratos phishing platform, arrest developer
BleepingComputer
—
-
FakeGit campaign uses 7,600 GitHub repos to push SmartLoader malware
BleepingComputer
—
-
Critical SharePoint RCE flaw exploited to steal machine keys
BleepingComputer
—
-
Anubis ransomware claims Coca-Cola Fairlife attack, threatens data leak
BleepingComputer
—
-
Critical wp2shell WordPress flaws exploited to install webshells
BleepingComputer
—
-
Closing the Identity Gaps in Critical Infrastructure Security
BleepingComputer
—
-
US seizes over 1,000 websites in FIFA World Cup piracy crackdown
BleepingComputer
—
-
Critical Palo Alto VPN bug now exploited by Qilin ransomware gang
BleepingComputer
—
-
Microsoft shares manual fix for WSUS sync delays and timeouts
BleepingComputer
—
-
Windows LegacyHive zero-day flaw gets free, unofficial patches
BleepingComputer
—
-
Estée Lauder discloses data breach via Oracle E-Business flaw
BleepingComputer
—
-
SonicWall SMA1000 flaws exploited as zero-days to push custom malware
BleepingComputer
—
-
Hackers steal $23.7 million in crypto from Ostium in off-chain attack
BleepingComputer
—