Skip to main content

Security News

Filter by:

EnemyBot malware adds exploits for critical VMware, F5 BIG-IP flaws

EnemyBot, a botnet based on code from multiple malware pieces, is expanding its reach by quickly adding exploits for recently disclosed critical vulnerabilities in web servers, content management systems, IoT, and Android devices. [...]
Bleepingcomputer 30 May 2022 407 Views

Nearly 100,000 NPM Users' Credentials Stolen in GitHub OAuth Breach

Cloud-based repository hosting service GitHub on Friday shared additional details into the theft of its integration OAuth tokens last month, noting that the attacker was able to access internal NPM data and its customer information. "Using stolen OAuth user tokens originating from two third-party...
The Hacker News 28 May 2022 427 Views

How to stop spam messages on your iPhone with this almost-secret hidden switch

Are you getting a ton of spam text messages? How annoying is it to be interrupted with a notification on your iPhone, only for it to be yet another junk message? Here's a secret: you can make these go away using a feature already...
ZDNet 27 May 2022 414 Views

Microsoft to force better security defaults for all Azure AD tenants

Microsoft has announced that it will force enable stricter secure default settings known as 'security defaults' on all existing Azure Active Directory (Azure AD) tenants starting in late June 2022. [...]
Bleepingcomputer 27 May 2022 717 Views

New ChromeLoader malware surge threatens browsers worldwide

The ChromeLoader malware is seeing an uptick in detections this month, following a relatively stable operation volume since the start of the year, which means that the malvertiser is now becoming a widespread threat. [...]
Bleepingcomputer 26 May 2022 483 Views

New ‘Cheers’ Linux ransomware targets VMware ESXi servers

A new ransomware named 'Cheers' has appeared in the cybercrime space and has started its operations by targeting vulnerable VMware ESXi servers. [...]
Bleepingcomputer 26 May 2022 746 Views

Researchers to release exploit for new VMware auth bypass, patch now

Proof-of-concept exploit code is about to be published for a vulnerability that allows administrative access without authentication in several VMware products.
BleepingComputer 25 May 2022 464 Views

Cisco Issues Patch for New IOS XR Zero-Day Vulnerability Exploited in the Wild

Cisco on Friday rolled out fixes for a medium-severity vulnerability affecting IOS XR Software that it said has been exploited in real-world attacks.
The Hacker News 23 May 2022 552 Views

Microsoft sounds the alarm on – wait for it – a Linux botnet

Redmond claims the numbers are scary, but won't release them Microsoft has sounded the alarm on DDoS malware called XorDdos that targets Linux endpoints and servers.…
The Register 23 May 2022 4720 Views

PDF smuggles Microsoft Word doc to drop Snake Keylogger malware

Threat analysts have discovered a recent malware distribution campaign using PDF attachments to smuggle malicious Word documents that infect users with malware. [...]
Bleepingcomputer 23 May 2022 430 Views