BleepingComputer
10.4K subscribers
41 photos
24.5K links
Latest news and stories from BleepingComputer.com

From a bleeping computer to a working computer.
Download Telegram
CodeFork Group Uses Fileless Malware to Deploy Monero Miners

A group of experienced hackers — tracked under the name of CodeFork — have launched a new malware distribution campaign that uses advanced tools and new techniques to go undetected by security solutions. [...]

https://www.bleepingcomputer.com/news/security/codefork-group-uses-fileless-malware-to-deploy-monero-miners/
Apple and Google Fix Browser Bug. Microsoft Does Not.

Microsoft has declined to patch a security bug Cisco Talos researchers discovered in the Edge browser, claiming the reported issue is by design. Apple and Google patched a similar flaw in Safari (CVE-2017-2419) and Chrome (CVE-2017-5033), respectively. [...]

https://www.bleepingcomputer.com/news/security/apple-and-google-fix-browser-bug-microsoft-does-not-/
13-Year-Old Detained for Selling "Prank" Screen Locker

On Tuesday, police in Japan detained a 13-year-old boy from Osaka on charges of advertising and selling a mobile virus that blocked smartphone screens and prevented users from using their device. [...]

https://www.bleepingcomputer.com/news/security/13-year-old-detained-for-selling-prank-screen-locker/
Hackers Can Use Ultrasounds to Take Control of Alexa, Siri, Cortana, Others

Six scientists from Zhejiang University in China have discovered that they could use ultrasound frequencies — inaudible to human ears — to send commands to speech recognition software and take over devices such as smartphones, smart home assistants, or even cars. [...]

https://www.bleepingcomputer.com/news/security/hackers-can-use-ultrasounds-to-take-control-of-alexa-siri-cortana-others/
Researchers Hack Voting Machines Used in German Elections

Voting machines used to tally and aggregate votes in multiple German states are vulnerable to a wide array of vulnerabilities that researchers say can be exploited to alter election results without too much effort. [...]

https://www.bleepingcomputer.com/news/government/researchers-hack-voting-machines-used-in-german-elections/
Researchers Reveal New Toast Overlay Attack on Android Devices

Mobile security experts from Palo Alto Networks have detailed a new attack on Android devices that uses "Toast" notifications to help malware in obtaining admin rights or access to Android's Accessibility service — often used to take over users' smartphones. [...]

https://www.bleepingcomputer.com/news/security/researchers-reveal-new-toast-overlay-attack-on-android-devices/
European Union Considering Intrusive Upload Filter as "Link Tax" Alternative

A document leaked at the end of August reveal that Estonia — currently holding the EU Presidency — is pushing fellow member states to adopt more intrusive Internet content filtering rules, similar to the ones implemented in China. [...]

https://www.bleepingcomputer.com/news/legal/european-union-considering-intrusive-upload-filter-as-link-tax-alternative/
Highly Sensitive Details of 143 Million Users Stolen in Equifax Hack

Equifax — one of the largest providers of consumer credit reporting and other financial services in the US — said last night it was the victim of a hack during which attackers made off with details on over 143 million of its customers. [...]

https://www.bleepingcomputer.com/news/security/highly-sensitive-details-of-143-million-users-stolen-in-equifax-hack/
The Week in Ransomware - September 8th 2017 - Locky and Small Releases

We have good news for once, which is a really slow week when it comes to ransomware. While we still had our share of smaller ransomware variants being release, overall there was not a lot of activity. The biggest activity is the continued by Locky distributors to become more widespread through the use of a variety of SPAM campaigns. [...]

https://www.bleepingcomputer.com/news/security/the-week-in-ransomware-september-8th-2017-locky-and-small-releases/
Bitcoin Price Takes a Tumble Amid Rumors of China Banning Cryptocurrency Trading

Bitcoin price took a huge fall on Friday after Caixin, a Chinese financial magazine, reported that Chinese Central Bank officials are working on rules to ban the trading of Bitcoin and all other cryptocurrencies on Chinese exchanges. [...]

https://www.bleepingcomputer.com/news/government/bitcoin-price-takes-a-tumble-amid-rumors-of-china-banning-cryptocurrency-trading/
Admin Accounts With No Passwords at the Heart of Recent MongoDB Ransom Attacks

The recent wave of ransom attacks on MongoDB databases happened because database owners forgot to set passwords on their administrator accounts, according to Davi Ottenheimer, Senior Director of Product Security at MongoDB, Inc. [...]

https://www.bleepingcomputer.com/news/security/admin-accounts-with-no-passwords-at-the-heart-of-recent-mongodb-ransom-attacks/
Intra-Library Collusion Attacks Open the Door for a Whole New Kind of Android Malware

A team of Oxford and Cambridge researchers is the latest to join a chorus of voices sounding the alarm on a new attack vector named Intra-Library Collusion (ILC) that could make identifying Android malware much harder in the upcoming future. [...]

https://www.bleepingcomputer.com/news/security/intra-library-collusion-attacks-open-the-door-for-a-whole-new-kind-of-android-malware/
Google Accused of Trying to Patent Public Domain Technology

A Polish academic is accusing Google of trying to patent technology he invented and that he purposely released into the public domain so companies like Google couldn't trap it inside restrictive licenses. [...]

https://www.bleepingcomputer.com/news/google/google-accused-of-trying-to-patent-public-domain-technology/
Paradise Ransomware Uses RSA Encryption to Encrypt Your Files

Today, a victim of a new ransomware called Paradise posted in our forums and uploaded a sample so we could take a look at it. While this ransomware is not revolutionary by any means, since it is in active distribution and a Ransomware as a Service (RaaS), I thought I would provide a brief analysis of how this ransomware works. [...]

https://www.bleepingcomputer.com/news/security/paradise-ransomware-uses-rsa-encryption-to-encrypt-your-files/
Apache Struts Vulnerabilities May Affect Many of Cisco's Products

Cisco has initiated a mass security audit of all its products that incorporate a version of the Apache Struts framework, recently affected by a series of vulnerabilities, one of which is under active exploitation. [...]

https://www.bleepingcomputer.com/news/security/apache-struts-vulnerabilities-may-affect-many-of-ciscos-products/