BleepingComputer
10.4K subscribers
41 photos
24.6K links
Latest news and stories from BleepingComputer.com

From a bleeping computer to a working computer.
Download Telegram
AlphaBay "PR Guy" Trappy Charged in the US

Authorities in Atlanta, Georgia, have filed official charges against Ronald L. Wheeler, III, a 24-year-old Illinois man known mainly for his online persona of Trappy, or Trappy_AB (Reddit username), the official spokesperson for the AlphaBay Dark Web market. [...]

https://www.bleepingcomputer.com/news/security/alphabay-pr-guy-trappy-charged-in-the-us/
Cryptojacking Script Found in Live Help Widget, Impacts Around 1,500 Sites

Security is a round-the-clock affair. Instead of spending Thanksgiving with family and friends, Las Vegas-based security researcher Troy Mursch was busy all day digging into the code of hundreds of websites to discover the source of a massive cryptojacking campaign that was set in motion today. [...]

https://www.bleepingcomputer.com/news/security/cryptojacking-script-found-in-live-help-widget-impacts-around-1-500-sites/
Mirai Activity Picks up Once More After Publication of PoC Exploit Code

The publication of proof-of-concept (PoC) exploit code in a public vulnerabilities database has lead to increased activity from Mirai-based IoT botnets, Li Fengpei, a security researcher with Qihoo 360 Netlab, told Bleeping Computer today. [...]

https://www.bleepingcomputer.com/news/security/mirai-activity-picks-up-once-more-after-publication-of-poc-exploit-code/
The Week in Ransomware - November 24th 2017 - qkG, Scarab, Necurs, and More

Not much to report this week other than Necurs starting to push the Scarab Ransomware and a new office document infecting ransomware called qkG. Otherwise, it has been a week of small variants that are in various stages of development. [...]

https://www.bleepingcomputer.com/news/security/the-week-in-ransomware-november-24th-2017-qkg-scarab-necurs-and-more/
Imgur Suffered a Small Data Breach in 2014

Late Friday night, Imgur came clean about a security breach that took place in 2014. During the incident, Imgur says an unknown attacker managed to steal details on 1.7 million users, representing about 1.13% of Imgur's total 150 million users. [...]

https://www.bleepingcomputer.com/news/security/imgur-suffered-a-small-data-breach-in-2014/
Golden SAML Attack Lets Attackers Forge Authentication to Cloud Apps

A new technique called "Golden SAML" lets attackers forge authentication requests and access the cloud-based apps of companies that use SAML-compatible domain controllers (DCs) for the authentication of users against cloud services. [...]

https://www.bleepingcomputer.com/news/security/golden-saml-attack-lets-attackers-forge-authentication-to-cloud-apps/
Keybase Bug Might Have Backed up Your Private Encryption Key on Google's Servers

Keybase is notifying Android users of a bug in its mobile app that might have unintentionally included the users' private key β€”used to encrypt conversations and other private dataβ€” into the automatic backups created by the Android OS and uploaded on Google's servers. [...]

https://www.bleepingcomputer.com/news/security/keybase-bug-might-have-backed-up-your-private-encryption-key-on-googles-servers/