§Source · Bleeping Computer
Bleeping Computer
Every dispatch we have aggregated from Bleeping Computer.
All dispatches
Loading
§Source · Bleeping Computer
Every dispatch we have aggregated from Bleeping Computer.
All dispatchesMultiple Chrome and Edge extensions delivered malware modules that steal crypto wallets, browser data, and inject ClickFix social engineering.
ATF confirms a system compromise linked to Qilin ransomware claims affecting investigation-related data access.
Critical Avada WordPress theme vulnerability enables unauthenticated zero-click PHP remote code execution on affected sites.
PaperCut NG/MF zero-day is actively exploited across all versions; vendor issued emergency patches and confirmed customer incidents.
CISA mandates immediate patching of Citrix NetScaler (CVE-2026-8452) after active exploitation; federal agencies have an urgent deadline.
Nutex Health reports unauthorized access and exfiltration of sensitive healthcare data from company servers.
Over 270 Zimbra servers compromised via CVE-2026-73570 RCE; CISA issued a rapid patch directive.
Over 9,300 exposed AWS access keys remain active between 2022-2026, enabling potential full control over corporate accounts.
Supply-chain compromise of Android car head unit updater spreads malware to build ad-fraud and proxy botnet on vehicles.
ToxicPanda Android malware abuses VPN permissions to block Google Play and expand remote command control across apps.
CISA ordered immediate patching of TrueConf Server vulnerabilities that are being actively abused to deploy malware.
Sakura Internet breach exposed sales management system data affecting up to 1.36 million accounts and contracts.
CERT Polska reports active exploitation of critical Zimbra RCE (CVE-2026-73570) targeting collaboration servers.
CISA warns threat actors are actively exploiting a critical MLflow flaw to steal cloud credentials and internal data.
Microsoft developing a Defender patch for ShieldBreak zero-day (CVE-2026-69414) disclosed by researcher 'Nightmare Eclipse'.
Clop gang developed a Java web shell tailored for PTC Windchill and FlexPLM to decrypt credentials and exfiltrate files.
Get these articles delivered to your inbox.
Subscribe free