BleepingComputer
10.6K subscribers
41 photos
24.6K links
Latest news and stories from BleepingComputer.com

From a bleeping computer to a working computer.
Download Telegram
US Govt Says Iran's Cyberattacks Can Disrupt Critical Infrastructure

The U.S. Department of Homeland Security (DHS) warned in a terrorism threat alert issued through the National Terrorism Advisory System (NTAS) that potential cyberattacks carried out by Iranian-backed actors against the U.S. have the potential to disrupt critical infrastructure. [...]

https://www.bleepingcomputer.com/news/security/us-govt-says-irans-cyberattacks-can-disrupt-critical-infrastructure/
Sodinokibi Ransomware Hits Travelex, Demands $3 Million

It's been more than six days since a cyber attack took down the services of the international foreign currency exchange company Travelex and BleepingComputer was able to confirm that the company systems were infected with Sodinokibi ransomware. [...]

https://www.bleepingcomputer.com/news/security/sodinokibi-ransomware-hits-travelex-demands-3-million/
IT Executive Steals $6 Million, Busted by Word Doc Metadata

A former corporate executive for integrated marketing solutions firm Rakuten Marketing swindled roughly $6 million between August 2015 and at least May 2019 using a shell company named Interactive Systems. [...]

https://www.bleepingcomputer.com/news/security/it-executive-steals-6-million-busted-by-word-doc-metadata/
InfoTrax Gets Slap on The Wrist After Being Breached 20+ Times

The Federal Trade Commission (FTC) finalized a settlement with a Utah-based tech company that got hacked and had the personal info of over a million clients stolen following a series of more than 20 undetected network intrusions. [...]

https://www.bleepingcomputer.com/news/security/infotrax-gets-slap-on-the-wrist-after-being-breached-20-times/
MP Says Austria Unprepared After Cyberattack on Foreign Ministry

The Austrian State Department' IT systems were under a 'serious attack' suspected to be carried out by a state-backed threat group according to a joint statement from the Foreign Ministry (BMEIA) and the Ministry of the Interior (BMI). [...]

https://www.bleepingcomputer.com/news/security/mp-says-austria-unprepared-after-cyberattack-on-foreign-ministry/
Microsoft Releases January 2020 Office Updates With Crash Fixes

Microsoft released the January 2020 non-security Microsoft Office updates that come with crash and memory leak fixes, as well as performance and stability improvements for Windows Installer (MSI) editions of Office 2016. [...]

https://www.bleepingcomputer.com/news/security/microsoft-releases-january-2020-office-updates-with-crash-fixes/
Tails 4.2 Fixes Numerous Security Flaws, Improves Direct Upgrades

The Tails Project released a new version of the security-focused Tails Linux distribution and advises users to upgrade as soon as possible to fix multiple security vulnerabilities impacting the previous Tails 4.1.1 version. [...]

https://www.bleepingcomputer.com/news/linux/tails-42-fixes-numerous-security-flaws-improves-direct-upgrades/
SNAKE Ransomware Is the Next Threat Targeting Business Networks

Since network administrators didn't already have enough on their plate, they now have to worry about a new ransomware called SNAKE that is targeting their networks and aiming to encrypt all of the devices connected to it [...]

https://www.bleepingcomputer.com/news/security/snake-ransomware-is-the-next-threat-targeting-business-networks/
TikTok Flaws Allowed Hackers to Delete Videos, Steal User Info

Security researchers found several vulnerabilities within TikTok's infrastructure that made it possible for potential attackers to hijack accounts to manipulate users' videos and steal their personal information. [...]

https://www.bleepingcomputer.com/news/security/tiktok-flaws-allowed-hackers-to-delete-videos-steal-user-info/
Attackers Are Scanning for Vulnerable Citrix Servers, Secure Now

Security researchers have observed ongoing scans for Citrix Application Delivery Controller (NetScaler ADC) and Citrix Gateway (NetScaler Gateway) servers vulnerable to attacks exploiting CVE-2019-19781 during the last week. [...]

https://www.bleepingcomputer.com/news/security/attackers-are-scanning-for-vulnerable-citrix-servers-secure-now/
Mozilla Firefox 72.0.1 Patches Actively Exploited Zero-Day

Mozilla released Firefox 72.0.1 and Firefox ESR 68.4.1 to patch a critical and actively exploited severity vulnerability that could potentially allow attackers to execute code or trigger crashes on machines running vulnerable Firefox versions. [...]

https://www.bleepingcomputer.com/news/security/mozilla-firefox-7201-patches-actively-exploited-zero-day/
Windows 10 Insider Build 19541 Warns If Apps Are Using Your Location

Microsoft has released Windows 10 Insider Preview Build 19541 to Insiders in the Fast ring, which now allows you to list the architecture of processes listed in Task Manager and Windows will now notify you when an application is using location services. [...]

https://www.bleepingcomputer.com/news/microsoft/windows-10-insider-build-19541-warns-if-apps-are-using-your-location/
TrickBot Gang Created a Custom Post-Exploitation Framework

Instead of relying on premade and well-known toolkits, the threat actors behind the TrickBot trojan decided to develop a private post-exploitation toolkit called PowerTrick to spread malware laterally throughout a network. [...]

https://www.bleepingcomputer.com/news/security/trickbot-gang-created-a-custom-post-exploitation-framework/