BleepingComputer
10.3K subscribers
41 photos
24.5K links
Latest news and stories from BleepingComputer.com

From a bleeping computer to a working computer.
Download Telegram
Thunderclap Vulnerabilities Allow Attacks Using Thunderbolt Peripherals

Modern computers that come with a Thunderbolt interface and run Windows, macOS, Linux, or FreeBSD are vulnerable to a range of Direct Memory Access (DMA) attacks performed by potential attackers with physical access to the device using malicious peripherals. [...]

https://www.bleepingcomputer.com/news/security/thunderclap-vulnerabilities-allow-attacks-using-thunderbolt-peripherals/
28 Billion Credential Stuffing Attempts During Second Half of 2018

During the second half of 2018, between May and December 2018, roughly 28 billion credential stuffing attempts have been detected, with retail websites being the main target of credential abuse with 10 billion attempts. [...]

https://www.bleepingcomputer.com/news/security/28-billion-credential-stuffing-attempts-during-second-half-of-2018/
AltFS Fileless File System Aims to Evades Detection by Security Software

Exclusive: Researchers from SafeBreach have developed an open source library that creates a fileless file system residing in operating system resources such as the Windows Registry, WMI, or the user defaults system in macOS. This system was created to illustrate how a fileless file system framework could be created to help security s [...]

https://www.bleepingcomputer.com/news/security/altfs-fileless-file-system-aims-to-evades-detection-by-security-software/
Social Media Attacks Generate $3.25 Billion for Crooks Each Year

Cybercriminals are becoming more clever every year when it comes to exploiting the trust of social media users and this translates into increased earnings, with malicious activities targeting social media platforms netting criminals roughly $3.25 billion per year. [...]

https://www.bleepingcomputer.com/news/security/social-media-attacks-generate-325-billion-for-crooks-each-year/
Outlook and Microsoft Account Phishing Emails Utilize Azure Blob Storage

Researchers have found two ongoing phishing campaigns utilizing Microsoft's Azure Blob Storage in order to steal recipient's Outlook and Microsoft account credentials. Both of these campaigns use convincing landing pages that utilize SSL certificates and the windows.net domain to appear legitimate. [...]

https://www.bleepingcomputer.com/news/security/outlook-and-microsoft-account-phishing-emails-utilize-azure-blob-storage/
MageCart Group Evolves Tactics To Better Steal Your Credit Cards

There are at least a dozen Magecart groups that try to plant their code for skimming payment card data on online stores, but not all of them are equally advanced. Group 4 has taken cybercrime activity to a professional level. [...]

https://www.bleepingcomputer.com/news/security/magecart-group-evolves-tactics-to-better-steal-your-credit-cards/
Microsoft Releases Windows 10 Build 18845 (20H1) With Emoji 12.0 and Fixes

Microsoft has released Windows 10 Insider Preview Build 18845 for Insiders in the Skip Ahead ring. This 20H1 build is mostly bug fixes, but does include the finalized Emoji 12.0 emojis and Microsoft has associated keywords with them so you can search for particular ones. [...]

https://www.bleepingcomputer.com/news/microsoft/microsoft-releases-windows-10-build-18845-20h1-with-emoji-120-and-fixes/
YouTube Disables Comments on Videos with Young Children

YouTube announced that comments on videos featuring young minors are being disabled all across the platform to counteract predatory behavior, with only a few exceptions where the YouTube team will closely work with the channels to actively moderate comments. [...]

https://www.bleepingcomputer.com/news/security/youtube-disables-comments-on-videos-with-young-children/
App Security Improvement Alerts Android Devs of 6 New Vulnerabilities

Google announced the addition of six extra vulnerability warnings to the Application Security Improvement (ASI) program after previously announcing updates for the Google Play Protect, the built-in malware protection for Android. [...]

https://www.bleepingcomputer.com/news/security/app-security-improvement-alerts-android-devs-of-6-new-vulnerabilities/
Wireshark 3 Released with New Npcap Windows Packet Capturing Driver

Wireshark 3.0.0 was released today, replacing the no longer maintained WinPcap packet capture library with the Npcap packet sniffing and sending library for Windows, created by Gordon Lyon the founder of the Nmap project. [...]

https://www.bleepingcomputer.com/news/software/wireshark-3-released-with-new-npcap-windows-packet-capturing-driver/