BleepingComputer
10.6K subscribers
41 photos
24.6K links
Latest news and stories from BleepingComputer.com

From a bleeping computer to a working computer.
Download Telegram
Windows EFS Feature May Help Ransomware Attackers

Security researchers have created concept ransomware that takes advantage of a feature in Windows that encrypts files and folders to protect them from unauthorized physical access to the computer. [...]

https://www.bleepingcomputer.com/news/security/windows-efs-feature-may-help-ransomware-attackers/
Microsoft Tests Office 'Ads' in Windows 10 Wordpad

Microsoft is testing promotions for the free Office web apps being displayed directly in the menu bar for the Windows 10 Wordpad application. As you can imagine, the reaction to this news has been mixed, with some not thinking it's a big deal and others not happy with this approach. [...]

https://www.bleepingcomputer.com/news/microsoft/microsoft-tests-office-ads-in-windows-10-wordpad/
Actively Exploited IE 11 Zero-Day Bug Gets Temporary Patch

A micropatch implementing Microsoft's workaround for the actively exploited zero-day remote code execution (RCE) vulnerability impacting Internet Explorer is now available via the 0patch platform until an official fix will be released. [...]

https://www.bleepingcomputer.com/news/security/actively-exploited-ie-11-zero-day-bug-gets-temporary-patch/
UPS Store Phishing Incident Exposes Customer Personal Info

Sensitive personal and financial information of UPS Store customers was exposed in a phishing incident affecting roughly 100 local store locations between September 29, 2019, and January 13, 2020. [...]

https://www.bleepingcomputer.com/news/security/ups-store-phishing-incident-exposes-customer-personal-info/
This Citibank Phishing Scam Could Trick Many People

A new Citibank phishing scam is underway that utilizes a convincing domain name, TLS certs, and even requests OTP codes that could easily cause people to believe they are submitting their personal information on a legitimate page. [...]

https://www.bleepingcomputer.com/news/security/this-citibank-phishing-scam-could-trick-many-people/
ProtonVPN Apps Open Sourced for Added Transparency and Security

The code for ProtonVPN apps on all supported platforms - Android, iOS, macOS, and Windows - is now open source, the maker announces today, a move that follows a security audit from an independent party. [...]

https://www.bleepingcomputer.com/news/security/protonvpn-apps-open-sourced-for-added-transparency-and-security/
Microsoft Exposes 250M Customer Support Records on Leaky Servers

Microsoft disclosed a security breach caused by a misconfigured internal customer support database that led to the accidental exposure of roughly 250 million customer support and service records, some of them containing personally identifiable information. [...]

https://www.bleepingcomputer.com/news/security/microsoft-exposes-250m-customer-support-records-on-leaky-servers/
Microsoft to Force Bing Search in Chrome for Office 365 ProPlus Users

Microsoft is planning to start installing a new Chrome extension for some Office 365 ProPlus customers that will make Bing the default search engine in Google Chrome "to access relevant workplace information directly from the browser address bar." [...]

https://www.bleepingcomputer.com/news/microsoft/microsoft-to-force-bing-search-in-chrome-for-office-365-proplus-users/
Citrix Releases Scanner to Detect Hacked Citrix ADC Appliances

Citrix released a free scanner for detecting compromised Citrix Application Delivery Controller (ADC), Citrix Gateway, and Citrix SD-WAN WANOP appliances by digging for indicators of compromise (IoC) collected in incident response engagements related to CVE-2019-19781 exploitation. [...]

https://www.bleepingcomputer.com/news/security/citrix-releases-scanner-to-detect-hacked-citrix-adc-appliances/
Thousands of WordPress Sites Hacked to Fuel Scam Campaign

Over 2,000 Wordpress sites have been hacked to fuel a campaign to redirect visitors to scam sites containing unwanted browser notification subscriptions, fake surveys, giveaways, and fake Adobe Flash downloads. [...]

https://www.bleepingcomputer.com/news/security/thousands-of-wordpress-sites-hacked-to-fuel-scam-campaign/
Euro Cup and Olympics Ticket Reseller Hit by MageCart

Site belonging to a reseller of tickets for Euro Cup and the Tokyo Summer Olympics, two major sports events happening later this year, have been infected with JavaScript that steals payment card details. [...]

https://www.bleepingcomputer.com/news/security/euro-cup-and-olympics-ticket-reseller-hit-by-magecart/