BleepingComputer.com

"Proofpoint setting exploited to send millions of phishing emails daily."

Views expressed in this cybersecurity, cyber espionage, and cyber crime update are those of the reporters and correspondents.  Accessed on 29 July 2024, 1500 UTC.

Content and Source:   https://www.bleepingcomputer.com/

Please check link or scroll down to read your selections.  Thanks for joining us today.

Russ Roberts (https://www.hawaiicybersecurityjournal.net).

Proofpoint settings exploited to send millions of phishing emails daily

  • A massive phishing campaign dubbed "EchoSpoofing" exploited a security gap in Proofpoint's email protection service to dispatch millions of spoofed emails impersonating big entities like Disney, Nike, IBM, and Coca-Cola, to target Fortune 100 companies.

  • Data Visualization
     

Start studying data analysis in this $35 course bundle deal

  • Join over 1,000 other students in studying data analysis, Excel, Power BI, and more. Get the 2023 Ultimate Excel and Power BI Certification Bundle on sale for $34.99.

    • BleepingComputer Deals
    •  
    • July 29, 2024
    •  
    • 07:19 AM
    •  
    • Comment Count 0
  • Hackers cryptocurrency
     

Misconfigured Selenium Grid servers abused for Monero mining

  • Threat actors are exploiting a misconfiguration in Selenium Grid, a popular web app testing framework, to deploy a modified XMRig tool for mining Monero cryptocurrency.

  • Costco
     

Get a Costco Gold Star Membership plus a $40 Shop Card for $60

  • See how far your budget can go. Get a Costco One-Year Gold Star Membership plus a $40 Digital Costco Shop Card* for $60. 

    • BleepingComputer Deals
    •  
    • July 28, 2024
    •  
    • 08:19 AM
    •  
    • Comment Count 0
  • Windows 11
     

Windows 11 taskbar has a hidden "End Task" feature, how to turn it on

X begins training Grok AI with your posts, here's how to disable

  • X has quietly begun training its Grok AI chat platform using members' public posts without first alerting anyone that it is doing it by default. Here's how to block Grok from using your data.

  • WhatsApp
     

WhatsApp for Windows lets Python, PHP scripts execute with no warning

  • A security issue in the latest version of WhatsApp for Windows allows sending Python and PHP attachments that are executed without any warning when the recipient opens them.

  • Microsoft Office
     

Get Microsoft Office 2019 for life for Windows or Mac for $25

  • If you're looking for a budget friendly alternative to paying your Microsoft 365 subscription every month, Microsoft Office 2019 works great on Windows or Mac, and you only have to pay for it once. Get a lifetime Microsoft 2019 subscription for Windows and Macs for $25.

    • BleepingComputer Deals
    •  
    • July 27, 2024
    •  
    • 08:11 AM
    •  
    • Comment Count 1
  • Gemini
     

Crypto exchange Gemini discloses third-party data breach

  • Cryptocurrency exchange Gemini is warning it suffered a data breach incident caused by a cyberattack at its Automated Clearing House (ACH) service provider, whose name was not disclosed.

  • Google Chrome
     

Google fixes Chrome Password Manager bug that hides credentials

  • Google has fixed a bug in Chrome's Password Manager that caused user credentials to disappear temporarily for more than 18 hours.

  • Data Breach
     

FBCS data breach impact now reaches 4.2 million people

  • Debt collection agency Financial Business and Consumer Solutions (FBCS) has again increased the number of people impacted by a February data breach, now saying it affects 4.2 million people in the US.

  • Windows Server
     

July Windows Server updates break Remote Desktop connections

  • Microsoft has confirmed that July's security updates break remote desktop connections in organizations where Windows servers are configured to use the legacy RPC over HTTP protocol in the Remote Desktop Gateway.

  • Acronis
     

Acronis warns of Cyber Infrastructure default password abused in attacks

  • ​Acronis warned customers to patch a critical Cyber Infrastructure security flaw that lets attackers bypass authentication on vulnerable servers using default credentials.

  • Russian hacker
     

Russian ransomware gangs account for 69% of all ransom proceeds

  • Russian-speaking threat actors accounted for at least 69% of all crypto proceeds linked to ransomware throughout the previous year, exceeding $500,000,000.

  • Project Management
     

Study project management and more in this $30 course bundle deal

  • Productivity and project management are skills like any other. Learn how to use them by getting the 2024 Career Productivity Hacker Bundle on sale for $29.99.

    • BleepingComputer Deals
    •  
    • July 26, 2024
    •  
    • 07:19 AM
    •  
    • Comment Count 0
  • PKFail
     

PKfail Secure Boot bypass lets attackers install UEFI malware

  • Hundreds of UEFI products from 10 vendors are susceptible to compromise due to a critical firmware supply-chain issue known as PKfail, which allows attackers to bypass Secure Boot and install malware.

  • Hacker
     

Critical ServiceNow RCE flaws actively exploited to steal credentials

  • Threat actors are chaining together ServiceNow flaws using publicly available exploits to breach government agencies and private firms in data theft attacks.

  • Windows 11
     

Windows 11 KB5040527 update fixes Windows Backup failures

  • Microsoft has released the optional KB5040527 preview cumulative update for Windows 11 23H2 and 22H2, which includes fixes for Windows Backup and upgrade failures.

  • Cybersecurity ethical hacking penetration testing
     

Study PenTesting and hacking in this $45 course bundle

  • Start studying ethical hacking and penetration testing on your own schedule. For a limited time, you can get the Complete 2024 Penetration Testing and Ethical Hacking Certification Training Bundle on sale for $44.97.

    • BleepingComputer Deals
    •  
    • July 25, 2024
    •  
    • 02:06 PM
    •  
    • Comment Count 0
  • North Korean hackers
     

US offers $10M for tips on DPRK hacker linked to Maui ransomware attacks

  • The U.S. State Department is offering a reward of up to $10 million for information that could help capture a North Korean military hacker.

View More

Comments

Popular posts from this blog

Cyber War News Today.

Cyber War News Today.

SecurityWeek Briefing