Vue normale
-
BleepingComputer
-
New U-Boot flaws could enable stealthy firmware attacks
Six vulnerabilities in the widely used U-Boot bootloader have been discovered that could allow attackers to execute malicious code during device boot, potentially enabling stealthy firmware attacks that compromise security protections and install persistent malware. [...]
-
BleepingComputer
-
Ryuk ransomware member pleads guilty in the US, faces 15 years in prison
A 34-year-old Armenian man has pleaded guilty to hacking U.S. companies and deploying the infamous Ryuk ransomware to encrypt their systems. [...]
Ryuk ransomware member pleads guilty in the US, faces 15 years in prison
-
BleepingComputer
-
Police suspects Dutch hackers were involved in Odido breach
The Dutch National Police (Politie) says it has found "strong indications" that Dutch hackers have been involved in a February breach at the telecommunications provider Odido. [...]
Police suspects Dutch hackers were involved in Odido breach
-
BleepingComputer
-
Progress urges ShareFile admins to shut down servers over “credible” threat
Progress Software is emailing ShareFile customers who use Storage Zone Controllers to immediately shut down their servers after identifying what it describes as a "credible external security threat" targeting the on-premises secure file-sharing software. [...]
Progress urges ShareFile admins to shut down servers over “credible” threat
-
BleepingComputer
-
Hackers exploit critical auth bypass in Gitea Docker image
Hackers are actively exploiting a critical vulnerability in the official Docker image for the Gitea self-hosted Git service that allows attackers to impersonate any user, including administrators. [...]
Hackers exploit critical auth bypass in Gitea Docker image
-
BleepingComputer
-
Money launderer accused of stealing seized crypto while in prison
A Bulgarian national has been charged with stealing $290,000 in government-seized cryptocurrency while serving 121 months in prison for helping launder millions stolen from American fraud victims. [...]
Money launderer accused of stealing seized crypto while in prison
-
BleepingComputer
-
The Replicant in Your Directory: AI Agents and the Identity Security Gap
AI agents are accelerating the growth of non-human identities, making it harder for organizations to understand what exists, who owns it, and what it can access. Netwrix explains why stronger visibility and identity governance are essential as AI expands the enterprise attack surface. [...]
The Replicant in Your Directory: AI Agents and the Identity Security Gap
-
BleepingComputer
-
Zimbra urges customers to patch critical web client XSS flaw
The Zimbra security team urged customers to patch a critical vulnerability affecting the Classic Web Client used to access the Zimbra Collaboration suite. [...]
Zimbra urges customers to patch critical web client XSS flaw
-
BleepingComputer
-
Former ransomware negotiator gets 4 years for BlackCat attacks
A former employee of cybersecurity incident response company DigitalMint was sentenced to 70 months in prison for targeting U.S. companies in BlackCat (ALPHV) ransomware attacks. [...]
Former ransomware negotiator gets 4 years for BlackCat attacks
-
BleepingComputer
-
OpenMandriva Linux says contributor tried to sabotage the project
The OpenMandriva Linux project announced that it was the target of an attempted act of internal sabotage after a dispute among contributors. [...]
OpenMandriva Linux says contributor tried to sabotage the project
-
BleepingComputer
-
Injective SDK on npm infected with cryptocurrency wallet stealer
Hackers compromised the Injective Labs SDK project's GitHub repository and used it to publish a malicious package on the Node Package Manager (npm) that stole cryptocurrency wallet private keys and mnemonic seed phrases. [...]
Injective SDK on npm infected with cryptocurrency wallet stealer
-
BleepingComputer
-
New Helix vishing group emerges in SharePoint data theft attacks
A new data-extortion group called Helix is using identity-focused tactics such as voice phishing (vishing), device code phishing, and multi-factor authentication (MFA) abuse to steal data from SharePoint environments. [...]
New Helix vishing group emerges in SharePoint data theft attacks
-
BleepingComputer
-
Microsoft expects more Windows security updates from AI-discovered flaws
Microsoft says Windows users should expect to see an increase in security updates as the company increasingly relies on artificial intelligence to discover vulnerabilities in its codebase. [...]
Microsoft expects more Windows security updates from AI-discovered flaws
-
BleepingComputer
-
New Forg365 phishing platform uses AI to target Microsoft 365 accounts
A new phishing-as-a-service (PhaaS) operation called Forg365 focuses on stealing Microsoft 365 accounts by combining adversary-in-the-middle (AiTM) and device code methods with AI-assisted lure generation. [...]
New Forg365 phishing platform uses AI to target Microsoft 365 accounts
-
BleepingComputer
-
The Hidden Security Risks of Reduced Summer IT Coverage
Security operations don't slow down when IT teams take vacation, but staffing levels often do. Kaseya explains how AI-driven automation can help organizations maintain consistent security operations and reduce reliance on manual processes year-round. [...]
The Hidden Security Risks of Reduced Summer IT Coverage
-
Articles on TechRepublic
-
Exposed Server Reveals 25,000 Compromised WordPress Websites
An exposed WP-SHELLSTORM server revealed tools, logs, cloud credentials, and thousands of webshells used in a large website hacking campaign. The post Exposed Server Reveals 25,000 Compromised WordPress Websites appeared first on TechRepublic.
Exposed Server Reveals 25,000 Compromised WordPress Websites
An exposed WP-SHELLSTORM server revealed tools, logs, cloud credentials, and thousands of webshells used in a large website hacking campaign.
The post Exposed Server Reveals 25,000 Compromised WordPress Websites appeared first on TechRepublic.
-
Articles on TechRepublic
-
Claude Code Espionage Campaign Exposes a New Enterprise AI Risk
Anthropic’s AI-run espionage report shows why enterprises need stronger governance for AI agents, MCP connectors, and enterprise data access. The post Claude Code Espionage Campaign Exposes a New Enterprise AI Risk appeared first on TechRepublic.
Claude Code Espionage Campaign Exposes a New Enterprise AI Risk
Anthropic’s AI-run espionage report shows why enterprises need stronger governance for AI agents, MCP connectors, and enterprise data access.
The post Claude Code Espionage Campaign Exposes a New Enterprise AI Risk appeared first on TechRepublic.
-
Articles on TechRepublic
-
Massive Telstra Outage Hits Mobile Networks, Rail, and Payments in Australia
A Telstra software defect disrupted mobile services, rail communications, payments, and emergency calls across Australia, exposing infrastructure risks. The post Massive Telstra Outage Hits Mobile Networks, Rail, and Payments in Australia appeared first on TechRepublic.
Massive Telstra Outage Hits Mobile Networks, Rail, and Payments in Australia
A Telstra software defect disrupted mobile services, rail communications, payments, and emergency calls across Australia, exposing infrastructure risks.
The post Massive Telstra Outage Hits Mobile Networks, Rail, and Payments in Australia appeared first on TechRepublic.
-
Articles on TechRepublic
-
Chrome 150 Adds Android Back Button, Major Security Fixes
Chrome 150 adds an in-menu back button to Android, reorganizes several controls, and delivers important browser security fixes. The post Chrome 150 Adds Android Back Button, Major Security Fixes appeared first on TechRepublic.
Chrome 150 Adds Android Back Button, Major Security Fixes
Chrome 150 adds an in-menu back button to Android, reorganizes several controls, and delivers important browser security fixes.
The post Chrome 150 Adds Android Back Button, Major Security Fixes appeared first on TechRepublic.
-
Articles on TechRepublic
-
New York Bans Smart Glasses Across 1,240 Courts
New York will ban Meta and other smart glasses from all 1,240 state courts starting July 20 over privacy and recording concerns. The post New York Bans Smart Glasses Across 1,240 Courts appeared first on TechRepublic.
New York Bans Smart Glasses Across 1,240 Courts
New York will ban Meta and other smart glasses from all 1,240 state courts starting July 20 over privacy and recording concerns.
The post New York Bans Smart Glasses Across 1,240 Courts appeared first on TechRepublic.