BleepingComputer
10.4K subscribers
41 photos
24.6K links
Latest news and stories from BleepingComputer.com

From a bleeping computer to a working computer.
Download Telegram
FEMA Data Leak Exposes Personal Info of 2.3M Disaster Survivors

The Office for the Inspector General for the DHS issued a report today that detailed how FEMA did not appropriately safeguard the personal information of 2.3 million survivors of hurricanes Harvey, Irma, and Maria and the California wildfires in 2017. [...]

https://www.bleepingcomputer.com/news/security/fema-data-leak-exposes-personal-info-of-23m-disaster-survivors/
Chrome 74 Dark Mode Now Syncs with Windows 10 Color Settings

Google has released Chrome 74 into the beta channel and with it comes the browser's highly anticipated Dark Mode feature for Windows 10. In Chrome 74, Google has finally made it possible for Chrome to detect when dark mode is enabled in Windows 10 and switch to dark mode in the browser. [...]

https://www.bleepingcomputer.com/news/google/chrome-74-dark-mode-now-syncs-with-windows-10-color-settings/
VirusTotal Goes Retro with New ASCII Site for Older Browsers

VirusTotal has quietly launched a new retro site this week that is designed for visitors using older browsers, who want a minimalist experience, or wish to feel the nostalgia of how it felt connecting to a console in the past. Due to its reduced page size, this new interface is also ideal for mobile browsers. with slower connections. [...]

https://www.bleepingcomputer.com/news/technology/virustotal-goes-retro-with-new-ascii-site-for-older-browsers/
Microsoft's Leaked Edge Browser Should Make Google Worry

Over the weekend, a leaked build for the Chromium-based Edge browser has been released that is providing users with their first look at the upcoming browser from Microsoft. If you are a Chrome user, reports indicate that this browser feels, performs, and has basically the same features as Google Chrome. [...]

https://www.bleepingcomputer.com/news/microsoft/microsofts-leaked-edge-browser-should-make-google-worry/
Tesla Model 3 Hacked on the Last Day of Pwn2Own

During the last day, Fluoroacetate's Amat Cama and Richard Zhu successfully targeted and successfully hacked their way into a Tesla Model 3's Chromium-based infotainment system as part of their automotive category demo, using "a JIT bug in the renderer to display their message." [...]

https://www.bleepingcomputer.com/news/security/tesla-model-3-hacked-on-the-last-day-of-pwn2own/
ASUS Live Update Infected with Backdoor in Supply Chain Attack

A new advanced persistent threat (APT) campaign detected by Kaspersky Lab in January 2019 and estimated to have run between June and November 2018 has allegedly impacted over 57,000 users who have downloaded the ASUS Live Update Utility on their computers. [...]

https://www.bleepingcomputer.com/news/security/asus-live-update-infected-with-backdoor-in-supply-chain-attack/
Emsisoft has Released a Decryptor for the Hacked Ransomware

A decryptor for the Hacked Ransomware was released today by Emsisoft that allows victims to recover their files for free. This ransomware was active in 2017 and targeted English, Turkish, Spanish, and Italian users. [...]

https://www.bleepingcomputer.com/ransomware/decryptor/emsisoft-has-released-a-decryptor-for-the-hacked-ransomware/
Apple Introduces New Products During 'It's Show Time' Event

During the Apple Special Event held today at the Steve Jobs Theater, Cupertino, CA, Apple announced new ways through which its customers can experience news and magazines, TV shows, and games, as well as a new type of credit card. [...]

https://www.bleepingcomputer.com/news/apple/apple-introduces-new-products-during-its-show-time-event/
ASUS Admits Its Live Update Utility Was Backdoored by APT Group

Asus confirmed today that its Live Update utility has been indeed infected with malicious code by an advanced persistent threat (APT) group as part of a supply chain attack which managed to compromise some of its servers. [...]

https://www.bleepingcomputer.com/news/security/asus-admits-its-live-update-utility-was-backdoored-by-apt-group/
UC Browser for Android, Desktop Exposes 500+ Million Users to MiTM Attacks

The extremely popular UC Browser and UC Browser Mini Android applications with a total of over 600 million installs expose their users to MiTM attacks by downloading and installing extra modules from their own servers using unprotected channels and bypassing Google Play's servers altogether. [...]

https://www.bleepingcomputer.com/news/security/uc-browser-for-android-desktop-exposes-500-million-users-to-mitm-attacks/
NVIDIA Patches High Severity GeForce Experience Vulnerability

NVIDIA released a security update for the NVIDIA GeForce Experience software for Windows to patch a vulnerability that could allow potential local attackers with basic user privileges to elevate privileges, trigger code execution, and perform denial-of-service (DoS) attacks. [...]

https://www.bleepingcomputer.com/news/security/nvidia-patches-high-severity-geforce-experience-vulnerability/
U.S. Federal Reserve System Exposed to Increased Risk of Unauthorized Access

Federal Reserve Bank (FRB) systems are exposed to an increased risk of unauthorized access because of security weaknesses found in the U.S. Treasury Department's computing systems according to a management report issued by the U.S. Government Accountability Office (GAO). [...]

https://www.bleepingcomputer.com/news/security/us-federal-reserve-system-exposed-to-increased-risk-of-unauthorized-access/
Microsoft's Application Guard Extension Protects Chrome and Firefox Users

Microsoft has released a browser extension called Application Guard that protect Chrome and Firefox enterprise users from untrusted sites by opening them in a sandboxed Edge environment that cannot interact with the rest of the computer.  [...]

https://www.bleepingcomputer.com/news/security/microsofts-application-guard-extension-protects-chrome-and-firefox-users/
20% of Industrial Control Systems Affected by Critical Vulnerabilities

Over half of the 415 vulnerabilities found in industrial control systems (ICS) were assigned CVSS v.3.0 base scores over 7 which are designated to security issues of high or critical risk levels, with 20% of vulnerable ICS devices being impacted by critical security issues. [...]

https://www.bleepingcomputer.com/news/security/20-percent-of-industrial-control-systems-affected-by-critical-vulnerabilities/