BleepingComputer
10.5K subscribers
41 photos
24.6K links
Latest news and stories from BleepingComputer.com

From a bleeping computer to a working computer.
Download Telegram
CrowdStrike to Pay Up to $1 Million Warranty If Its Clients Suffer a Data Breach

US cyber-security firm CrowdStrike announced yesterday a new warranty program for its customers, offering to cover up to $1 million in expenses if a customer protected by its top-tier endpoint protection solution (aka fancy word for antivirus program) suffers a security breach. [...]

https://www.bleepingcomputer.com/news/security/crowdstrike-to-pay-up-to-1-million-warranty-if-its-clients-suffer-a-data-breach/
Malware Infection at HR Company Triggers Flurry of Data Breach Notifications

A security breach at one of the world's largest human resources providers, Australian company PageUp, has resulted in tens of companies that were using their services notifying employees and applicants today that their personal data might have been stolen last month. [...]

https://www.bleepingcomputer.com/news/security/malware-infection-at-hr-company-triggers-flurry-of-data-breach-notifications/
Patches Available for Dangerous Bugs in Popular Brand of IP Cameras

Chinese firm Foscam has published firmware updates to address three vulnerabilities in multiple models of IP-based cameras. The flaws, when exploited, allow an attacker to take control of vulnerable cameras, and especially those left connected online via a public IP address. [...]

https://www.bleepingcomputer.com/news/security/patches-available-for-dangerous-bugs-in-popular-brand-of-ip-cameras/
Google Changing the Look of Their Sign-In Screens

Google has announced that they are changing the look of their sign-in screens on June 14th 2018. These changes are purely cosmetic, but as some may be concerned that they are at the wrong site or are being phished, it is important to recognize what is being changed. [...]

https://www.bleepingcomputer.com/news/google/google-changing-the-look-of-their-sign-in-screens/
LOL: BabaYaga WordPress Malware Updates Your Site

Security researchers have spotted a malware strain targeting WordPress sites that includes some pretty clever self-preservation techniques, such as removing competing malware and updating the victim's site. [...]

https://www.bleepingcomputer.com/news/security/lol-babayaga-wordpress-malware-updates-your-site/
Firmware Vulnerabilities Disclosed in Supermicro Server Products

Security researchers have uncovered vulnerabilities affecting the firmware of Supermicro server products. Discovered by the Eclypsium team, these vulnerabilities affect both older and newer models of Supermicro products, but the vendor is working on addressing the issues. [...]

https://www.bleepingcomputer.com/news/security/firmware-vulnerabilities-disclosed-in-supermicro-server-products/
You Can File Complaints About Cryptojacking With the FTC

The US Federal Trade Commission (FTC) is now open to taking complaints from US users about cryptojacking β€”the practice of using JavaScript code to mine cryptocurrencies inside users' browsers without notifying them in advance or requesting permission. [...]

https://www.bleepingcomputer.com/news/security/you-can-file-complaints-about-cryptojacking-with-the-ftc/
Malspam Campaigns Using IQY Attachments to Bypass AV Filters and Install RATs

Malspam campaigns, such as ones being distributed by Necurs, are utilizing a new attachment type that is doing a good job in bypassing antivirus and mail filters.  These IQY attachments are called Excel Web Query files and when opened will attempt to pull data from external sources.  [...]

https://www.bleepingcomputer.com/news/security/malspam-campaigns-using-iqy-attachments-to-bypass-av-filters-and-install-rats/
Cisco Removes Backdoor Account, Fourth in the Last Four Months

For the fourth time in as many months, Cisco has removed hardcoded credentials that were left inside one of its products, which an attacker could have exploited to gain access to devices and inherently to customer networks. [...]

https://www.bleepingcomputer.com/news/security/cisco-removes-backdoor-account-fourth-in-the-last-four-months/