BleepingComputer
10.4K subscribers
41 photos
24.5K links
Latest news and stories from BleepingComputer.com

From a bleeping computer to a working computer.
Download Telegram
New Apache Struts Vulnerability Puts Many Fortune Companies at Risk

An estimated 65% of Fortune 100 companies could be vulnerable to a security bug discovered in Apache Struts, a popular Java MVC framework used in the development of many top-grade enterprise applications. [...]

https://www.bleepingcomputer.com/news/security/new-apache-struts-vulnerability-puts-many-fortune-companies-at-risk/
UK's Facial Recognition System Dumber Than a Box of Rocks, Privacy Group Argues

A real-time facial recognition software tested by London Metropolitan Police at this year's Notting Hill Carnival was labeled as a "resounding success" by police officers, but privacy groups members who were invited to view it in action called it "inaccurate and painfully crude." [...]

https://www.bleepingcomputer.com/news/security/uks-facial-recognition-system-dumber-than-a-box-of-rocks-privacy-group-argues/
Sabotage Warning Issued on Hackers Hiding Deep Inside Energy Sector

US cyber-security firm Symantec has issued a warning today against a group of nation-state hackers that have managed to infiltrate several US and European energy firms, and are now in the dangerous position of sabotaging critical infrastructure if they wished to. [...]

https://www.bleepingcomputer.com/news/security/sabotage-warning-issued-on-hackers-hiding-deep-inside-energy-sector/
CodeFork Group Uses Fileless Malware to Deploy Monero Miners

A group of experienced hackers β€” tracked under the name of CodeFork β€” have launched a new malware distribution campaign that uses advanced tools and new techniques to go undetected by security solutions. [...]

https://www.bleepingcomputer.com/news/security/codefork-group-uses-fileless-malware-to-deploy-monero-miners/
Apple and Google Fix Browser Bug. Microsoft Does Not.

Microsoft has declined to patch a security bug Cisco Talos researchers discovered in the Edge browser, claiming the reported issue is by design. Apple and Google patched a similar flaw in Safari (CVE-2017-2419) and Chrome (CVE-2017-5033), respectively. [...]

https://www.bleepingcomputer.com/news/security/apple-and-google-fix-browser-bug-microsoft-does-not-/
13-Year-Old Detained for Selling "Prank" Screen Locker

On Tuesday, police in Japan detained a 13-year-old boy from Osaka on charges of advertising and selling a mobile virus that blocked smartphone screens and prevented users from using their device. [...]

https://www.bleepingcomputer.com/news/security/13-year-old-detained-for-selling-prank-screen-locker/
Hackers Can Use Ultrasounds to Take Control of Alexa, Siri, Cortana, Others

Six scientists from Zhejiang University in China have discovered that they could use ultrasound frequencies β€” inaudible to human ears β€” to send commands to speech recognition software and take over devices such as smartphones, smart home assistants, or even cars. [...]

https://www.bleepingcomputer.com/news/security/hackers-can-use-ultrasounds-to-take-control-of-alexa-siri-cortana-others/
Researchers Reveal New Toast Overlay Attack on Android Devices

Mobile security experts from Palo Alto Networks have detailed a new attack on Android devices that uses "Toast" notifications to help malware in obtaining admin rights or access to Android's Accessibility service β€” often used to take over users' smartphones. [...]

https://www.bleepingcomputer.com/news/security/researchers-reveal-new-toast-overlay-attack-on-android-devices/
European Union Considering Intrusive Upload Filter as "Link Tax" Alternative

A document leaked at the end of August reveal that Estonia β€” currently holding the EU Presidency β€” is pushing fellow member states to adopt more intrusive Internet content filtering rules, similar to the ones implemented in China. [...]

https://www.bleepingcomputer.com/news/legal/european-union-considering-intrusive-upload-filter-as-link-tax-alternative/
Highly Sensitive Details of 143 Million Users Stolen in Equifax Hack

Equifax β€” one of the largest providers of consumer credit reporting and other financial services in the US β€” said last night it was the victim of a hack during which attackers made off with details on over 143 million of its customers. [...]

https://www.bleepingcomputer.com/news/security/highly-sensitive-details-of-143-million-users-stolen-in-equifax-hack/
The Week in Ransomware - September 8th 2017 - Locky and Small Releases

We have good news for once, which is a really slow week when it comes to ransomware. While we still had our share of smaller ransomware variants being release, overall there was not a lot of activity. The biggest activity is the continued by Locky distributors to become more widespread through the use of a variety of SPAM campaigns. [...]

https://www.bleepingcomputer.com/news/security/the-week-in-ransomware-september-8th-2017-locky-and-small-releases/