BleepingComputer
10.7K subscribers
41 photos
24.7K links
Latest news and stories from BleepingComputer.com

From a bleeping computer to a working computer.
Download Telegram
New Bluetooth KNOB Flaw Lets Attackers Manipulate Connections

A new Bluetooth vulnerability named "KNOB" has been disclosed that allow attackers to more easily brute force the encryption key used during pairing to monitor or manipulate the data transferred between two paired devices. [...]

https://www.bleepingcomputer.com/news/security/new-bluetooth-knob-flaw-lets-attackers-manipulate-connections/
Intel Updates NUC Firmware to Patch High Severity Bug

Intel today released a firmware update for multiple NUC Kit models to patch a high-severity issue that could be exploited to achieve privilege escalation, cause a denial-of-service (DoS) condition, or information disclosure. [...]

https://www.bleepingcomputer.com/news/security/intel-updates-nuc-firmware-to-patch-high-severity-bug/
Windows 7 SHA-2 Updates Blocked If Symantec, Norton AVs Installed

Microsoft is blocking Windows 7 and Windows Server 2008 R2 updates from being installed if they are code signed using a SHA-2 certificate and the machine has Symantec or Norton antivirus installed. This is because the antivirus software is deleting the updates during installation and causing Windows to not start. [...]

https://www.bleepingcomputer.com/news/microsoft/windows-7-sha-2-updates-blocked-if-symantec-norton-avs-installed/
Windows CTF Flaws Enable Attackers to Fully Compromise Systems

Several critical design flaws were found by Google Project Zero security researcher Tavis Ormandy in the CTF subsystem (MSCTF) of the Windows Text Services Framework (MSCTF), present in all versions going back as far as Windows XP. [...]

https://www.bleepingcomputer.com/news/microsoft/windows-ctf-flaws-enable-attackers-to-fully-compromise-systems/
Lateral Phishing Attacks: A Growing Threat to the Enterprise

A growing threat targeting the enterprise are phishing scams targeting users from compromised email accounts in the same organization. This type of attack is called lateral phishing as it is conducted from an email address within, rather than outside, the organization. [...]

https://www.bleepingcomputer.com/news/security/lateral-phishing-attacks-a-growing-threat-to-the-enterprise/
Microsoft Edge Now Reads Web Pages in 24 Different Voices

The Chromium-based Microsoft Edge Dev and Canary builds now have the ability to read aloud selected text on a web page in 24 different voices from 21 different locales. Included are cloud powered "neural" voices that sound more natural when reading text. [...]

https://www.bleepingcomputer.com/news/microsoft/microsoft-edge-now-reads-web-pages-in-24-different-voices/
Google Estimates 1.5% of Web Logins Exposed in Data Breaches

A study released by Google estimates that a 1.5% of all logins used across the web are vulnerable to credential stuffing attacks due to being disclosed in data breaches. While this percentage is quite small, when you take into consideration the total of amount of users and login credentials being used on the web, the number gets quit [...]

https://www.bleepingcomputer.com/news/security/google-estimates-15-percent-of-web-logins-exposed-in-data-breaches/
Google Has Started Removing FTP Support From Chrome

Google developers have wanted to remove FTP support from the Chrome browser for quite some time and have been slowly whittling away at its support. In a series of proposed code changes and an "Intent to Remove", the end is near for the FTP protocol in Chrome. [...]

https://www.bleepingcomputer.com/news/google/google-has-started-removing-ftp-support-from-chrome/