FUBAR.news

πŸ”’
❌ About FreshRSS
There are new articles available, click to refresh the page.
Yesterday β€” 5 November 2024BleepingComputer

Google Cloud to make MFA mandatory by the end of 2025

5 November 2024 at 15:07
Google has announced that multi-factor authentication (MFA) will be mandatory on all Cloud accounts by the end of 2025 to enhance security. [...]

Interpol disrupts cybercrime activity on 22,000 IP addresses, arrests 41

5 November 2024 at 13:55
Interpol announced it arrested 41 individuals and taken down 1,037 servers and infrastructure running on 22,000 IP addresses facilitating cybercrime in an international law enforcement action titled Operation Synergia II. [...]

US warns of last-minute Iranian and Russian election influence ops

5 November 2024 at 11:23
The U.S. Cybersecurity & Infrastructure Security Agency is warning about last-minute influence operations conducted by Iranian and Russian actors to undermine the public trust in the integrity and fairness of the upcoming presidential election. [...]

Suspect behind Snowflake data-theft attacks arrested in Canada

5 November 2024 at 10:20
Canadian authorities have arrested a man suspected of having stolen the data of hundreds of millions after targeting over 165 organizations, all of them customers of cloud storage company Snowflake. [...]

Google fixes two Android zero-days used in targeted attacks

5 November 2024 at 09:30
Google fixed two actively exploited Android zero-day flaws as part of its November security updates, addressing a total of 51 vulnerabilities. [...]
Before yesterdayBleepingComputer

Nokia investigates breach after hacker claims to steal source code

4 November 2024 at 18:47
Nokia is investigating whether a third-party vendor was breached after a hacker claimed to be selling the company's stolen source code. [...]

DocuSign's Envelopes API abused to send realistic fake invoices

4 November 2024 at 15:18
Threat actors are abusing DocuSign's Envelopes API to create and mass-distribute fake invoices that appear genuine, impersonating well-known brands like Norton and PayPal. [...]

Schneider Electric confirms dev platform breach after hacker steals data

4 November 2024 at 14:22
Schneider Electric has confirmed a developer platform was breached after a threat actor claimed to steal 40GB of data from the company's JIRA server. [...]

Windows Server 2025 releasedβ€”here are the new features

4 November 2024 at 13:31
​Microsoft has announced that Windows Server 2025, the latest version of its server operating system, is generally available starting Friday, November 1st. [...]

Custom "Pygmy Goat" malware used in Sophos Firewall hack on govt network

4 November 2024 at 12:46
UK's National Cyber Security Centre (NCSC) has published an analysis ofΒ a Linux malware named "Pigmy Goat" created to backdoor Sophos XG firewall devices as part of recently disclosed attacks by Chinese threat actors. [...]

Windows infected with backdoored Linux VMs in new phishing attacks

4 November 2024 at 10:53
A new phishing campaign dubbed 'CRON#TRAP' infects Windows with a Linux virtual machine that contains a built-in backdoor to give stealthy access to corporate networks. [...]

Solving the painful password problem with better policies

4 November 2024 at 10:01
Weak and reused credentials continue to plague users and organizations. Learn from Specops software about why passwords are so easy to hack and how organizations can fortify their security efforts. [...]

City of Columbus: Data of 500,000 stolen in July ransomware attack

4 November 2024 at 09:52
​The City of Columbus, Ohio, notified 500,000 individuals that a ransomware gang stole their personal and financial information in a July 2024 cyberattack. [...]

Microsoft confirms Windows Server 2025 blue screen, install issues

4 November 2024 at 07:14
​Microsoft has confirmed several bugs causing install and Blue Screen of Death (BSOD) issues impacting Windows Server 2025 systems with more than 256 logical processors. [...]

Cisco says DevHub site leak won’t enable future breaches

4 November 2024 at 04:14
​Cisco says that non-public files recently downloaded by a threat actor from a misconfigured public-facing DevHub portal don't contain information that could be exploited in future breaches of the company's systems. [...]

Meet Interlock β€” The new ransomware targeting FreeBSD servers

3 November 2024 at 16:09
A relatively new ransomware operation named Interlock attacks organizations worldwide, taking the unusual approach of creating an encryptor to target FreeBSD servers. [...]

ChatGPT-4o can be used for autonomous voice-based scams

3 November 2024 at 10:12
Researchers have shown that it's possible to abuse OpenAI's real-time voice API for ChatGPT-4o, an advanced LLM chatbot, to conduct financial scams with low to moderate success rates. [...]

Microsoft SharePoint RCE bug exploited to breach corporate network

2 November 2024 at 11:19
A recently disclosed Microsoft SharePoint remote code execution (RCE) vulnerability tracked as CVE-2024-38094 is being exploited to gain initial access to corporate networks. [...]

Microsoft Outlook workaround fixes freezes when copying text

2 November 2024 at 10:20
​Microsoft is investigating a known issue that affects Microsoft 365 customers and causes classic Outlook to hang or freeze when copying text. [...]
❌