Skip to main content

Security News

Filter by:

Apple Geolocation API Exposes Wi-Fi Access Points Worldwide

Beyond the devices that use them, Wi-Fi hubs themselves can leak interesting data, thanks to some quirks in Apple's geolocation system.
Dark Reading 9 Jul 2024 1299 Views

Avast releases free decryptor for DoNex ransomware and past variants

Antivirus company Avast have discovered a weakness in the cryptographic scheme of the DoNex ransomware family and released a decryptor so victims can recover their files for free. [...]
Bleepingcomputer 9 Jul 2024 1370 Views

Notepad finally gets spellcheck, autocorrect for all Windows 11 users

Microsoft has finally released a spell check and autocorrect feature in Notepad for all Windows 11 users, forty-one years after the program was introduced in 1983. [...]
Bleepingcomputer 9 Jul 2024 1308 Views

New Eldorado ransomware targets Windows, VMware ESXi VMs

A new ransomware-as-a-service (RaaS) called Eldorado emerged in March and comes with locker variants for VMware ESXi and Windows. [...]
Bleepingcomputer 5 Jul 2024 1480 Views

Australian charged for ‘Evil Twin’ WiFi attack on plane

An Australian man was charged by Australia's Federal Police (AFP) for allegedly conducting an 'evil twin' WiFi attack on various domestic flights and airports in Perth, Melbourne, and Adelaide to steal other people's email or social media credentials.
Bleeping Computer 3 Jul 2024 1981 Views

Latest Intel CPUs impacted by new Indirector side-channel attack

Modern Intel processors, including chips from the Raptor Lake and the Alder Lake generations are susceptible to a new type of a high-precision Branch Target Injection (BTI) attack dubbed 'Indirector,' which could be used to steal sensitive information from the CPU. [...
Bleepingcomputer 2 Jul 2024 1833 Views

A new MOVEit vulnerability is igniting hacking attempts. Companies should patch ASAP

MOVEit, a popular file transfer platform used by thousands of companies and government entities, is once again in the news for all the wrong reasons. [...]
ZDnet 28 Jun 2024 2581 Views

Critical GitLab bug lets attackers run pipelines as any user

A critical vulnerability is affecting certain versions of GitLab Community and Enterprise Edition products, which could be exploited to run pipelines as any user. [...]
Bleepingcomputer 27 Jun 2024 2334 Views

LockBit lied: Stolen data is from a bank, not US Federal Reserve

Recently-disrupted LockBit ransomware group, in a desperate attempt to make a comeback, claimed this week that it had hit the Federal Reserve, the central bank of the United States. Except, the rumor has been quashed. [...]
Bleepingcomputer 27 Jun 2024 2371 Views

Polyfill.io JavaScript supply chain attack impacts over 100K sites

Over 100,000 sites have been impacted in a supply chain attack by the Polyfill.io service after a Chinese company acquired the domain and the script was modified to redirect users to malicious and scam sites.
Bleeping Computer 26 Jun 2024 2551 Views