Sunday, February 23, 2025

Bleeping Computer: Leaks, Attacks + Security Bulletins (and Sponsored Contents and Deal)

HERE ARE TWO SELECTED HEADLINES REPORTS: (1) Popular and (2) Latest Articles
 
1 Popular Stories 
 

 
2 Latest Articles
  • Fake CS2 tournament streams used to steal crypto, Steam accounts

    Threat actors are exploiting major Counter-Strike 2 (CS2) competitions, like IEM Katowice 2025 and PGL Cluj-Napoca 2025, to defraud gamers and steal their Steam accounts and cryptocurrency.


  • Hacker steals record $1.46 billion from Bybit ETH cold wallet

    Cryptocurrency exchange Bybit revealed today that an unknown attacker stole over $1.46 billion worth of cryptocurrency from one of its ETH cold wallets.


  • CISA flags Craft CMS code injection flaw as exploited in attacks

    The U.S. Cybersecurity & Infrastructure Security Agency (CISA) warns that a Craft CMS remote code execution flaw is being exploited in attacks.

  • Apple pulls iCloud end-to-end encryption feature in the UK

    Apple will no longer offer iCloud end-to-end encryption in the United Kingdom after the government requested a backdoor to access Apple customers' encrypted cloud data.

  • Save over $129 on data privacy with a lifetime AdGuard subscription

    Protect your family and your electronics with a lifetime subscription for AdGuard for $16 exclusively for new users, after you enter code GUARD20 at checkout to save off the already discounted $39.99. 

    • BleepingComputer Deals
    • February 21, 2025
    • 07:07 AM
  • Apiiro unveils free scanner to detect malicious code merges

    Security researchers at Apiiro have released two free, open-source tools designed to detect and block malicious code before they are added to software projects to curb supply chain attacks.

  • Black Basta ransomware gang's internal chat logs leak online

    An unknown leaker has released what they claim to be an archive of internal Matrix chat logs belonging to the Black Basta ransomware operation.

  • Master Excel with this seven-course Excel training bundle

    If you have Microsoft Excel, you should be getting the most from it. This seven-course Excel training bundle shows you how for $34.99.

    • BleepingComputer Deals
    • February 20, 2025
    • 02:07 PM
  • US healthcare org pays $11M settlement over alleged cybersecurity lapses

    Health Net Federal Services (HNFS) and its parent company, Centene Corporation, have agreed to pay $11,253,400 to settle allegations that HNFS falsely certified compliance with cybersecurity requirements under its Defense Health Agency (DHA) TRICARE contract.

  • Chinese hackers use custom malware to spy on US telecom networks

    The Chinese state-sponsored Salt Typhoon hacking group uses a custom utility called JumbledPath to stealthily monitor network traffic and potentially capture sensitive data in cyberattacks on U.S. telecommunication providers.

  • Security· Sponsored Content

    Integrating LLMs into security operations using Wazuh

    Large Language Models (LLMs) can provide many benefits to security professionals by helping them analyze logs, detect phishing attacks, or offering threat intelligence. Learn from Wazuh how to incorporate an LLM, like ChatGPT, into its open source security platform.

    • Sponsored by Wazuh
    • February 20, 2025
    • 10:01 AM
  • Microsoft fixes Power Pages zero-day bug exploited in attacks

    Microsoft has issued a security bulletin for a high-severity elevation of privilege vulnerability in Power Pages, which hackers exploited as a zero-day in attacks.

  • Microsoft testing fix for Windows 11 bug breaking SSH connections

    Microsoft is now testing a fix for a longstanding known issue that is breaking SSH connections on some Windows 11 22H2 and 23H2 systems.

  • No comments: