BleepingComputer
10.4K subscribers
41 photos
24.6K links
Latest news and stories from BleepingComputer.com

From a bleeping computer to a working computer.
Download Telegram
Libssh CVE-2018-10933 Scanners & Exploits Released - Apply Updates Now

Last week a vulnerability was disclosed regarding a ridiculously easy authentication bypass vulnerability in libssh. Since then, multiple tools and scripts have been released that allow attackers to remotely exploit this vulnerability in order to remotely execute commands on vulnerable devices. [...]

https://www.bleepingcomputer.com/news/security/libssh-cve-2018-10933-scanners-and-exploits-released-apply-updates-now/
Skype Preview for Windows 10 is Getting Split View Mode

Microsoft is currently working hard to update the new modern Skype 8 with all necessary features as the company plans to end support for Skype Classic on November 1. Today, Microsoft announced that the Split View mode is now available in Skype preview for Windows 10. [...]

https://www.bleepingcomputer.com/news/microsoft/skype-preview-for-windows-10-is-getting-split-view-mode/
Firefox Targeting Competing VPN Sites With ProtonVPN Offer in New Test

Mozilla has announced a study where Firefox will promote the ProtonVPN service as a new revenue source. BleepingComputer was able to gain access to the study's extension and it appears that the ProtonVPN will be recommended when visiting competing VPN providers, streaming services, or when connecting to insecure wireless gateways. [...]

https://www.bleepingcomputer.com/news/software/firefox-targeting-competing-vpn-sites-with-protonvpn-offer-in-new-test/
Critical Infrastructure & Supply Chain Remain Highly Vulnerable to Attacks

Additionally, cybercriminals have been targeting the commercial sector with as much aggression and skill as their attacks against the government. Unfortunately, some attacks against the government. Unfortunately, some attacks against corporations have national security ramifications, a fact not yet fully realized by all businesses. [...]

https://www.bleepingcomputer.com/news/security/critical-infrastructure-and-supply-chain-remain-highly-vulnerable-to-attacks/
Windows 10 Build 18267 Released With a New Enhanced Mode for Search Indexer

Microsoft has released the Windows 10 Insider Preview Build 18267 (19H1) to insiders in both the Fast and Skip Ahead rings. This build contains input and accessibility improvements. It also contains a new feature called "Enhanced Mode" for the Search Indexer. [...]

https://www.bleepingcomputer.com/news/microsoft/windows-10-build-18267-released-with-a-new-enhanced-mode-for-search-indexer/
Unusual Remote Execution Bug in Cisco WebEx Discovered by Researchers

While remote code execution vulnerabilities are pretty common, a new one discovered in Cisco's WebEx online and video collaboration software is definitely different. That is because users can remotely execute commands through a component of the WebEx client even when WebEx does not listen for remote connections. [...]

https://www.bleepingcomputer.com/news/security/unusual-remote-execution-bug-in-cisco-webex-discovered-by-researchers/
Windows 10 KB4462933 Cumulative Update Released With Fixes and Improvements

Windows 10 Build 17134.376 is currently rolling out via Windows Update or you can download the patch directly from Microsoft's Update Catalog website. Windows 10 Build 17134.376 comes with a huge changelog and it includes several improvements that you may not notice.  [...]

https://www.bleepingcomputer.com/news/microsoft/windows-10-kb4462933-cumulative-update-released-with-fixes-and-improvements/
Malware Distributors Adopt DKIM to Bypass Mail Filters

A US-CERT alert provided recommendations on how businesses can mitigate their exposure to the Emotet Trojan. Unfortunately, it looks like criminals also reading the US-CERT's warnings as they have adopted new techniques to bypass these recommendations. [...]

https://www.bleepingcomputer.com/news/security/malware-distributors-adopt-dkim-to-bypass-mail-filters/
Microsoft Acknowledges Zip File Overwrite Bug - Fix Coming in November

In a post to the Microsoft Answers forum, Microsoft has acknowledged the built-in zip bug and has stated that it will be fixed in an early November. This fix will most likely be pushed out via a cumulative update or via Microsoft's November Patch Tuesday updates. [...]

https://www.bleepingcomputer.com/news/microsoft/microsoft-acknowledges-zip-file-overwrite-bug-fix-coming-in-november/