BleepingComputer
10.6K subscribers
41 photos
24.6K links
Latest news and stories from BleepingComputer.com

From a bleeping computer to a working computer.
Download Telegram
Cisco Fixes High Severity Flaws in Industrial, Enterprise Tools

Cisco patched two high severity improper input validation vulnerabilities found in the update feature of the Cisco Industrial Network Director (IND) software and the authentication service of Cisco Unified Presence (Cisco Unified CM IM&P Service, Cisco VCS, and Cisco Expressway Series). [...]

https://www.bleepingcomputer.com/news/security/cisco-fixes-high-severity-flaws-in-industrial-enterprise-tools/
Tor Browser 8.5.1 Released With WebGL Fingerprinting Fix

The Tor Project has released Tor Browser 8.5.1 and it is now available for Windows, Mac, Linux, and Android. This release is the first bug fix since 8.5 was released and also includes a temporary fix for a known WebGL fingerprinting technique. [...]

https://www.bleepingcomputer.com/news/software/tor-browser-851-released-with-webgl-fingerprinting-fix/
The RIG Exploit Kit is Now Pushing the Buran Ransomware

The RIG exploit kit is now infecting victim's computers with a new ransomware variant called Buran. This ransomware is a variant of the Vega ransomware that was previously being distributed through Russian malvertising campaigns. [...]

https://www.bleepingcomputer.com/news/security/the-rig-exploit-kit-is-now-pushing-the-buran-ransomware/
The MuddyWater APT Group Adds New Tools to Their Arsenal

The Iranian MuddyWater cyber-espionage group added new attack vectors to use as part of hacking campaigns targeting telecommunication and governmental organizations according to an analysis from the Clearsky Security threat intelligence outfit. [...]

https://www.bleepingcomputer.com/news/security/the-muddywater-apt-group-adds-new-tools-to-their-arsenal/
Another Hacker Selling Access to Charity, Antivirus Firm Networks

A threat actor observed on underground hacker forums peddling internal network access to various entities claims to have breached the infrastructure of notable organizations such as UNICEF or cybersecurity companies Symantec and Comodo. [...]

https://www.bleepingcomputer.com/news/security/another-hacker-selling-access-to-charity-antivirus-firm-networks/
Over 400,000 Opko Health Clients Impacted by AMCA Data Breach

Medical tests and medication firm OPKO Health Inc present in over 30 countries says that one of its subsidiaries, BioReference Laboratories Inc, was notified by American Medical Collection Agency (AMCA) of unauthorized activity on its web payment page. [...]

https://www.bleepingcomputer.com/news/security/over-400-000-opko-health-clients-impacted-by-amca-data-breach/
Millions of Exim Mail Servers Exposed to Local, Remote Attacks

A critical severity vulnerability present in multiple versions of the Exim mail transfer agent (MTA) software makes it possible for unauthenticated remote attackers to execute arbitrary commands on mail servers for some non-default server configurations. [...]

https://www.bleepingcomputer.com/news/security/millions-of-exim-mail-servers-exposed-to-local-remote-attacks/
Phishing Email Warns: Add Recovery Number or Account Deleted

BleepingComputer has been focusing on alerting our readers to interesting phishing email campaigns that stand out from the normal invoices, summons, parking tickets, and shipping notifications that we see so often. [...]

https://www.bleepingcomputer.com/news/security/phishing-email-warns-add-recovery-number-or-account-deleted/
Tech Art Piece Delivers Quick Fix For Social Following Hoarders

An art installation created by Belgium artist Dries Depoorter and commissioned by the Pixelache in Helsinki allows one to easily buy followers and likes on the Instagram, Facebook, YouTube, Twitter social networking platforms. [...]

https://www.bleepingcomputer.com/news/technology/tech-art-piece-delivers-quick-fix-for-social-following-hoarders/
Google Chrome is Getting Closer to Working Tab Groups

Google Chrome is getting closer to a working Tab Group implementation with the ability to add tabs to groups, headers for each group being displayed, and in the latest Chrome Canary build, groups being saved between browser sessions. [...]

https://www.bleepingcomputer.com/news/software/google-chrome-is-getting-closer-to-working-tab-groups/
Internet Explorer Mode Now Works in Microsoft Edge Dev Builds

In the Microsoft Edge Dev builds, users can now launch web pages in an Internet Explorer tab for backwards compatibility. This launches a web page in a full functional Internet Explorer 11 session, with the features and capabilities of that browser. [...]

https://www.bleepingcomputer.com/news/microsoft/internet-explorer-mode-now-works-in-microsoft-edge-dev-builds/
New Windows 10 Zero-Day Bug Emerges From Bypassing Patched Flaw

Demo exploit code and details are now available about a new zero-day vulnerability in Windows 10 that allows elevating the privileges of a normal user to those of an administrator. An attacker can use it to install programs, view, change or delete data. [...]

https://www.bleepingcomputer.com/news/security/new-windows-10-zero-day-bug-emerges-from-bypassing-patched-flaw/
Google Chrome to Limit Referer Header Size to Block Attacks

In order to prevent attacks such as cache probing, Google Chrome will begin to limit the HTTP Referer header to 4KiB in size. Other browsers such as Microsoft Edge and Mozilla Firefox have indicated that they will adopt this change as well. [...]

https://www.bleepingcomputer.com/news/security/google-chrome-to-limit-referer-header-size-to-block-attacks/
Man Gets 51 Months in Prison for $10M BEC Fraud, Romance Scam

Muftau Adamu was sentenced today to 51 months in prison β€” 4 years and three months β€” for stealing more than $10 million through romance scams and business email compromise (BEC) fraud schemes aided by four other co-conspirators, between 2014 and 2018. [...]

https://www.bleepingcomputer.com/news/security/man-gets-51-months-in-prison-for-10m-bec-fraud-romance-scam/
Google Search Ads Infiltrated Again by Tech Support Scams

If you are planning on doing any shopping over the weekend, you may want to be careful when doing searches in Google.  This is because scammers have infiltrated Google's ad network to redirect users to tech support scams when they click on popular search terms such as Lowes and PayPal. [...]

https://www.bleepingcomputer.com/news/security/google-search-ads-infiltrated-again-by-tech-support-scams/