BleepingComputer.com
"Hackers abuse VipNet software to target Russian government agencies."
Views expressed in this cybersecurity, cyber crime update are those of the reporters and correspondents. Accessed on 19 July 2026, 1538 UTC.
Content and Source: "BleepingComputer.com>
URL-- https://www.bleepingcomputer.com/
Please check URL or scroll down to read your selections. Thanks for joining us today.
Russ Roberts (https://www.hawaiicybersecurityjournal.net).
-
Hackers abuse ViPNet software to target Russian govt agencies
An advanced threat actor is abusing the update mechanism for the ViPNet private networking product suite to target Russian organizations, including government agencies.
- July 19, 2026
- 10:23 AM
0
-
Get pro-level edits with little effort—this Luminar Neo deal is $80
For a limited time, you can get the Award-Winning Luminar Neo photo editor Lifetime Bundle for a one-time $79.99 (MSRP $332), which saves you $252 while skipping another recurring subscription.
- July 19, 2026
- 08:10 AM
0
-
[Guide] How to identify risky OAuth grants and MCP server connections

OAuth grants are the quiet back door of modern SaaS, and as the recent Klue breach showed, attackers are taking notice. This checklist gives you a repeatable way to uncover risky OAuth grants and MCP server connections before a permissive scope turns into an incident.
-
Update now: 7-Zip fixes RCE flaw exploitable with malicious archives
7-Zip version 26.02 was released to fix a remote code execution vulnerability that could allow attackers to execute malicious code by convincing users to open specially crafted compressed files.
- July 18, 2026
- 03:32 PM
2
-
WordPress Core "wp2shell" RCE flaws get public exploits, patch now
Public exploits have been released for the critical "wp2shell" remote code execution vulnerabilities affecting WordPress Core, making it imperative that administrators patch their sites immediately.
- July 18, 2026
- 01:22 PM
0
-
Microsoft warns of surge in ACR Stealer attacks on customers
Microsoft has observed a surge in attacks using the ACR Stealer malware to steal browser-stored passwords, authentication tokens, and sensitive documents from its enterprise customers.
- July 18, 2026
- 10:17 AM
0
-
The Future of Age Verification: Your Face Never Leaves Your Device
As age verification laws expand worldwide, organizations face growing pressure to protect users' privacy while meeting regulatory requirements. Incode explains how on-device age estimation verifies age without transmitting or storing facial images, reducing biometric privacy risks while supporting compliance.
- July 18, 2026
- 09:15 AM
0
-
This $79.99 Mac app replaces a whole stack of PDF tools
If you use a Mac, chances are you've opened a PDF only to realize you need to edit text, sign a form, merge files, or convert a document—and suddenly you're searching for another app. PDF Expert Premium is designed to eliminate that cycle.
- July 18, 2026
- 08:12 AM
0
-
Abbott probes two cyber incidents amid extortion claims
Abbott Laboratories is investigating two separate cybersecurity incidents after confirming unauthorized access to internal legacy Exact Sciences systems in its Cancer Diagnostics business, while also investigating a separate claim that attackers breached its LabCentral portal and stole company data.
- July 17, 2026
- 04:45 PM
0
-
HollowByte DDoS flaw bloats OpenSSL server memory with 11-byte payload
A vulnerability dubbed HollowByte allows unauthenticated attackers to trigger a denial-of-service (DoS) condition on OpenSSL servers with a malicious payload of just 11 bytes.
- July 17, 2026
- 01:56 PM
0
-
Ernst & Young discloses data breach after support system hack
Ernst & Young is notifying customers of a data breach caused by the compromise of a third-party support ticket system used by its IT personnel.
- July 17, 2026
- 10:55 AM
3
-
Inside the Search for "Clean" Residential Proxies for Carding
Residential proxies are no longer the silver bullet they once were for carding. Flare explains why cybercriminals increasingly seek "clean" residential proxies and combine them with browser fingerprints, device profiles, and other identity signals to evade modern fraud detection.
- July 17, 2026
- 10:00 AM
0
-
Learn networking, cybersecurity & cloud skills from home for just $50
This Complete 2026 CompTIA Certification Training Bundle helps you build meaningful technical skills. And for a limited time, you can get lifetime access for $49.99, down from $199, saving $149 while unlocking seven comprehensive training courses covering the certifications employers most often ask for.
- July 17, 2026
- 07:12 AM
0
-
New Windows LegacyHive zero-day gives hackers admin privileges
A security researcher using the "Nightmare Eclipse" handle has released a Windows zero-day exploit dubbed LegacyHive that allows attackers to escalate privileges on up-to-date Windows systems.
- July 17, 2026
- 07:05 AM
1
-
Windows Server 2022 reach end of mainstream support in 90 days
Microsoft announced that Windows Server 2022 will reach the mainstream end date in October 2026, but will switch to extended support and continue receiving security updates for five more years.
- July 17, 2026
- 05:10 AM
0
-
US charges two over laundering $43 million from investment fraud
U.S. prosecutors on Thursday charged a New York man and woman for their roles in a large-scale crime ring that laundered money stolen in cyber investment fraud scams.
- July 17, 2026
- 04:13 AM
0
-
CISA urges immediate action on actively exploited Fortinet flaws
CISA on Thursday ordered government agencies to prioritize patching two actively exploited vulnerabilities in the Fortinet FortiSandbox threat detection platform.
- July 17, 2026
- 03:03 AM
0
-
New ClickLock macOS malware traps users into revealing login password
A new macOS information-stealing malware dubbed ClickLock terminates all visible processes to force users into entering their system login password.
- July 16, 2026
- 05:52 PM
0
-
Coca-Cola says Fairlife ransomware attack halts US dairy production
The Coca-Cola Company disclosed today that a ransomware attack impacting its Fairlife dairy subsidiary has disrupted operations, temporarily suspending production of Fairlife products across the United States.
- July 16, 2026
- 05:09 PM
0
-
Claude Chrome extension flaw lets malicious extensions trigger AI actions
A flaw in Anthropic's Claude for Chrome browser extension could allow a malicious extension to trigger predefined AI actions by simulating user clicks, potentially allowing it to abuse Claude's access to connected services such as Gmail, Google Docs, Google Calendar, and Salesforce.
- July 16, 2026
- 03:26 PM
0
-
New OkoBot framework deploys 20 payloads to steal data, crypto
A new malicious framework called OkoBot is delivering more than 20 payloads in attacks focused on stealing cryptocurrency wallet seed phrases, credentials, and other sensitive data.
- July 16, 2026
- 03:09 PM
0

Comments
Post a Comment
Please leave a comment about our recent post.