Skip to main content

BleepingComputer.com.

"Hackers abuse IPv6 networking features to hijack software updates."

Views expressed in this cybersecurity, cyber crime update are those of the reporters and correspondents.  Accessed on 01 May 2025, 1437 UTC.

Content and Source:  "BleepingComputer.com."

Site URL--https://www.bleepingcomputer.com/

Please check URL or scroll down to read your selections.  Thanks for joining us today.

Russ Roberts (https://www.hawaiicybersecurityjournal.net).

Get lifetime access to cybersecurity courses in this $70 deal

  • This cybersecurity training platform gives you lifetime access to a growing library of video lessons, practice tests, exam prep guides, and more, and it's on sale for $69.99 (reg. $280).

    • BleepingComputer Deals
    •  
    • May 01, 2025
    •  
    • 07:11 AM
    •  
    • Comment Count 0
  • Malware
     

Hackers abuse IPv6 networking feature to hijack software updates

  • A China-aligned APT threat actor named "TheWizards" abuses an IPv6 networking feature to launch adversary-in-the-middle (AitM) attacks that hijack software updates to install Windows malware.

  • Push Security
     

2024: A year of identity attacks | Get the new ebook 

  • Identity attacks were rampant in 2024 as attackers doubled down on identity-based TTPs. Prepare to defend your organization in 2025 by looking back at identity-based breaches in 2024.

    Get a free Ebook on the most impactful identity breaches of 2024, and the attacker tooling and techniques that we can expect in 2025.

  • WordPress
     

WordPress plugin disguised as a security tool injects backdoor

WhatsApp unveils 'Private Processing' for cloud-based AI features

  • WhatsApp has announced the introduction of 'Private Processing,' a new technology that enables users to utilize advanced AI features by offloading tasks to privacy-preserving cloud servers.

  • Identity Cybersecurity Framework passwords authentication
     

Kickstart your CISSP prep with this $30 cybersecurity course deal

  • The CISSP certification can be extremely challenging as you have to learn eight domains of security knowledge. This CISSP Security and Risk Management training bundle can make it easier, and it's only $29.97 for lifelong access (reg. $424) for a little while longer.

    • BleepingComputer Deals
    •  
    • April 30, 2025
    •  
    • 02:10 PM
    •  
    • Comment Count 0
  • SonicWall
     

SonicWall warns of more VPN flaws exploited in attacks

  • Cybersecurity company SonicWall has warned customers that several vulnerabilities impacting its Secure Mobile Access (SMA) appliances are now being actively exploited in attacks.

  • Hacker datacenter
     

Commvault says recent breach didn't impact customer backup data

  • Commvault, a leading provider of data protection solutions, says a nation-state threat actor who breached its Azure environment didn't gain access to customer backup data.

  • FBI
     

FBI shares massive list of 42,000 LabHost phishing domains

  • The FBI has shared 42,000 phishing domains tied to the LabHost cybercrime platform, one of the largest global phishing-as-a-service (PhaaS) platforms that was dismantled in April 2024.

  • Co-op
     

UK retailer Co-op shuts down some IT systems after hack attempt

  • British supermarket chain Co-op Food has confirmed to BleepingComputer via a statement that it has suffered limited operational disruption as it responds to a cyberattack.

  • Ascension
     

Ascension discloses new data breach after third-party hacking incident

  • ​Ascension, one of the largest private healthcare systems in the United States, is notifying patients that their personal and health information was stolen in a December 2024 data theft attack, which affected a former business partner.

  • AdGuard VPN
     

Protect your devices and data with this $40 five-year AdGuard VPN plan

  • AdGuard VPN makes it both easy and affordable to enhance your device security. Right now, you can grab a 5-year subscription to AdGuard VPN for just $39.97 (reg. $359.40). That's under $1 a month for serious peace of mind.

    • BleepingComputer Deals
    •  
    • April 30, 2025
    •  
    • 07:09 AM
    •  
    • Comment Count 0
  • Windows 11
     

Microsoft: Windows 11 24H2 updates fail with 0x80240069 errors

  • Microsoft has confirmed that Windows 11 24H2 feature updates via Windows Server Update Services (WSUS) are being blocked after installing the April 2025 security updates.

  • Cryptocurrency
     

Grinex exchange suspected rebrand of sanctioned Garantex crypto firm

  • A new cryptocurrency exchange named Grinex is believed to be a rebrand of Garantex, a Russian cryptocurrency exchange whose domains were seized by the U.S. authorities and an admin arrested.

  • Windows Server
     

Microsoft: Windows Server hotpatching to require subscription

  • Microsoft has announced it will require paid subscriptions for Windows Server 2025 hotpatching, a service that enables admins to install security updates without restarting.

  • Hacker Screens
     

Hackers ramp up scans for leaked Git tokens and secrets

  • Threat actors are intensifying internet-wide scanning for Git configuration files that can reveal sensitive secrets and authentication tokens used to compromise cloud services and source code repositories.

  • Russian Bear France
     

France ties Russian APT28 hackers to 12 cyberattacks on French orgs

  • Today, the French foreign ministry blamed the APT28 hacking group linked to Russia's military intelligence service (GRU) for targeting or breaching a dozen French entities over the last four years.

  • Lenovo
     

Deal alert: This Lenovo Chromebook is under $75 and doubles as a tablet

  • Right now, you can pick up a refurbished Lenovo 2-in-1 300e Chromebook for just $74.99—a steep discount off its original price of $475.99 and a great value for students, remote workers, or anyone needing a reliable secondary device.

    • BleepingComputer Deals
    •  
    • April 29, 2025
    •  
    • 02:10 PM
    •  
    • Comment Count 0
  • Apple
     

Apple 'AirBorne' flaws can lead to zero-click AirPlay RCE attacks

  • ​A set of security vulnerabilities in Apple's AirPlay Protocol and AirPlay Software Development Kit (SDK) exposed unpatched third-party and Apple devices to various attacks, including remote code execution.

  • SIM Card
     

SK Telecom cyberattack: Free SIM replacements for 25 million customers

  • South Korean mobile provider SK Telecom has announced free SIM card replacements to its 25 million mobile customers following a recent USIM data breach, but only 6 million cards are available through May.

  • Outlook
     

Microsoft fixes Outlook paste, blank calendar rendering issues

  • Microsoft has confirmed several issues affecting Microsoft 365 customers using the "paste special' option and the calendar feature in the classic Outlook email client.

 

Comments

Popular posts from this blog

Cyber War News Today.

"International Defence Cooperation:  A key to regional stability." Views expressed in this cybersecurity, cyber espionage, and cyber crime update are those of the reporters and correspondents.  Accessed on 15 December 2024, 0134 UTC. Content and Source:   https://cyberwar.einnews.com/news/cyber-war-news?n=2&code=FA9GNesSTpp2rjO1&utm_source=NewsletterNews&utm_medium=email&utm_campaign=Cyber+War+News&utm_content=navig Please check link or scroll down to read your selections.  Thanks for joining us today. Russ Roberts (https://www.hawaiicybersecurityjournal.net). Cyber War News Monitoring Get by    Email    •     RSS Published on  Dec 13, 2024 The Cyber Warfare Market Size Reach USD 127.1 Billion by 2032 Exhibiting CAGR at 13.3% WILMINGTON, DE, UNITED STATES, December 13, 2024 /⁨EINPresswire.com⁩/ -- According to the report, The Cyber Warfare Market Size Reach USD 127.1 Billion by 2032 Exhibiting CAGR at 1...

The Cyberwire Daily Briefing

"Fortinet confirms breach of customer data." Views expressed in this cybersecurity, cyber crime update are those of the reporters and correspondents.  Accessed on 15 September 2024, 1339 UTC. Content and Source:   https://thecyberwire.com/newsletters/daily-briefing/13/176 Please check link or scroll down to read your selections.  Thanks for joining us today. Russ Roberts (https://www.hawaiicybersecurityjournal.net). V13 | Issue 176 | 9.13.24 Daily Briefing for 09.13.24 Announcement Cloud Security in the Age of Generative AI. Artificial Intelligence is revolutionizing business, but it also introduces new risks. Join us on Wednesday, September 18th at 2pm EDT for a compelling live webinar on "Good vs. Evil: Cloud Security in the Age of Generative AI" with N2K CyberWire’s Dave Bittner and Sysdig’s Loris Degioanni.  Learn more and register now . Summary By the CyberWire staff At a glance. Fortinet confirms breach of customer data. Iran's Scarred Manticore deplo...

SecurityWeek Briefing

"New RAMBO attack allows air-gapped data theft." Views expressed in this cybersecurity, cyber crime update are those of the reporters and correspondents.  Accessed on 10 September 2024, 0035 UTC. Content and Source:  https://www.securityweek.com Please check link or scroll down to read your selections.  Thanks for joining us today. Russ Roberts (https://www.hawaiicybersecurityjournal.net).   Monday, September 9 , 2024 Are you worried about unmanaged devices and apps? LATEST CYBERSECURITY HEADLINES New RAMBO Attack Allows Air-Gapped Data Theft Predator Spyware Resurfaces With Fresh Infrastructure Google Pushes Rust in Legacy Firmware to Tackle Memory Safety Flaws 300,000 Impacted by Data Breach at Car Rental Firm Avis One Million US Kaspersky Customers Transferred to Pango’s UltraAV Two Indicted in US for Running Dark Web Marketplaces Offering Stolen Information Critical SonicWall Vulnerability Possibly Exploited in Ransomware Attacks CISA Breaks Silence on Controvers...