Skip to main content

Security News

Filter by:

AlphV/BlackCat hits back as Feds offer decryptor to ransomware victims

Domain seized while gang shrugs at loss of 'stupid old key' The US Justice Department is passing a decryptor to more than 500 victims of AlphV/BlackCat's ransomware following a disruption campaign.…
The Register 20 Dec 2023 2270 Views

Microsoft confirms Windows 11 Wi-Fi issues, asks for user feedback

Microsoft has confirmed that some Windows 11 devices experience Wi-Fi connectivity issues after installing recent cumulative updates. [...]
Bleepingcomputer 20 Dec 2023 1169 Views

Microsoft discovers critical RCE flaw in Perforce Helix Core Server

Four vulnerabilities, one of which is rated critical, have been discovered in the Perforce Helix Core Server, a source code management platform widely used by the gaming, government, military, and technology sectors. [...]
Bleepingcomputer 19 Dec 2023 1380 Views

Millions of Microsoft Accounts Power Lattice of Automated Cyberattacks

Crimeware-as-a-service (CaaS) gang flies past CAPTCHAs, creating fraudulent accounts to sell to the likes of Scattered Spider; Microsoft mounts a counterattack.
Dark Reading 19 Dec 2023 1217 Views

QNAP VioStor NVR vulnerability actively exploited by malware botnet

A Mirai-based botnet named 'InfectedSlurs' is exploiting a remote code execution (RCE) vulnerability in QNAP VioStor NVR (Network Video Recorder) devices to hijack and make them part of its DDoS (distributed denial of service) swarm.
Bleeping Computer 18 Dec 2023 1240 Views

WordPress hosting service Kinsta targeted by Google phishing ads

WordPress hosting provider Kinsta is warning customers that Google ads have been observed promoting phishing sites to steal hosting credentials.
Bleeping Computer 18 Dec 2023 1313 Views

Microsoft seizes websites used to sell phony email accounts to Scattered Spider and other crims

That should solve the global cybercrime problem, right? Microsoft has taken down US-based infrastructure and websites used by a cybercrime group to sell fraudulent online accounts to other crooks including Scattered Spider, the infamous social-engineering and extortion crew that hacked two Las Vegas...
The Register 15 Dec 2023 1867 Views

New NKAbuse malware abuses NKN blockchain for stealthy comms

A new Go-based multi-platform malware identified as 'NKAbuse' is the first malware abusing NKN (New Kind of Network) technology for data exchange, making it a stealthy threat. [...]
Bleepingcomputer 15 Dec 2023 1296 Views

UniFi devices broadcasted private video to other users’ accounts

"I was presented with 88 consoles from another account," one user reports.
Ars Technica 15 Dec 2023 1238 Views

BazarCall attacks abuse Google Forms to legitimize phishing emails

A new wave of BazarCall attacks uses Google Forms to generate and send payment receipts to victims, attempting to make the phishing attempt appear more legitimate. [...]
Bleepingcomputer 14 Dec 2023 1336 Views