Skip to main content

Security News

Filter by:

KeePass exploit helps retrieve cleartext master password, fix coming soon

The popular KeePass password manager is vulnerable to extracting the master password from the application's memory, allowing attackers who compromise a device to retrieve the password even with the database is locked. [...]
Bleepingcomputer 19 May 2023 513 Views

Microsoft investigates slow Windows VPN speeds after May updates

Microsoft is investigating major speed issues affecting L2TP/IPsec VPN connections after installing recent Windows 11 updates. [...]
Bleepingcomputer 17 May 2023 931 Views

New ZIP domains sparks debate among cybersecurity experts

Cybersecurity researchers and IT admins have raised concerns over Google's new ZIP and MOV Internet domains, warning that threat actors could use them for phishing attacks and malware delivery. [...]
Bleepingcomputer 17 May 2023 6502 Views

Ongoing Facebook phishing campaign without a sender and (almost) without links

At the Internet Storm Center, we often receive examples of current malspam and phishing e-mails from our readers. Most of them are fairly uninteresting, but some turn out to be notable for one reason or another. This was the case with several messages that...
SANS Internet Storm Center 16 May 2023 715 Views

Discord discloses data breach after support agent got hacked

Discord is notifying users of a data breach that occurred after the account of a third-party support agent was compromised. [...]
Bleepingcomputer 13 May 2023 722 Views

New Phishing-as-a-Service Platform Lets Cybercriminals Generate Convincing Phishing Pages

A new phishing-as-a-service (PhaaS or PaaS) platform named Greatness has been leveraged by cybercriminals to target business users of the Microsoft 365 cloud service since at least mid-2022, effectively lowering the bar to entry for phishing attacks...
The Hacker News 13 May 2023 767 Views

Microsoft patches bypass for recently fixed Outlook zero-click bug

Microsoft fixed a security vulnerability this week that could be used by remote attackers to bypass recent patches for a critical Outlook zero-day security flaw abused in the wild. [...]
Bleepingcomputer 12 May 2023 711 Views

Millions of mobile phones come pre-infected with malware, say researchers

The threat is coming from inside the supply chain Black Hat Asia  Miscreants have infected millions of Androids worldwide with malicious firmware before the devices even shipped from their factories, according to Trend Micro researchers at Black Hat Asia.…
The Register 12 May 2023 7502 Views

Stealthier version of Linux BPFDoor malware spotted in the wild

A new, stealthier variant of the Linux malware 'BPFDoor' has been discovered, featuring more robust encryption and reverse shell communications. [...]
Bleepingcomputer 12 May 2023 699 Views

23-year-old Brit linked to 2020 Twitter attack and SIM-swap scheme pleads guilty

Admits to cyberstalking, wire fraud charges as Feds take $700k off him A 23-year-old British citizen has confessed to "multiple schemes" involving computer crimes, including playing a part in the July 2020 Twitter attack that saw the accounts of Amazon...
The Register 11 May 2023 7543 Views