07 Jun Microsoft makes Windows Recall opt-in, secures data with Windows Hello Following massive customer pushback after it announced the new AI-powered Recall for Copilot+ PCs last month, Microsoft says it will update the feature to be more secure and require customers to opt in to enable it. […]
07 Jun PHP fixes critical RCE flaw impacting all versions for Windows A new PHP for Windows remote code execution (RCE) vulnerability has been disclosed, impacting all releases since version 5.x, potentially impacting a massive number of servers worldwide. […]
06 Jun Los Angeles Unified School District investigates data theft claims Los Angeles Unified School District (LAUSD) officials are investigating a threat actor’s claims that they’re selling stolen databases containing records belonging to millions of students and thousands of teachers. […]
06 Jun Hackers exploit 2018 ThinkPHP flaws to install ‘Dama’ web shells Chinese threat actors are targeting ThinkPHP applications vulnerable to CVE-2018-20062 and CVE-2019-9082 to install a persistent web shell named Dama. […]
06 Jun Ukraine says hackers abuse SyncThing tool to steal data The Computer Emergency Response Team of Ukraine (CERT-UA) reports about a new campaign dubbed “SickSync,” launched by the UAC-0020 (Vermin) hacking group in attacks on the Ukrainian defense forces. […]
06 Jun New Gitloker attacks wipe GitHub repos in extortion scheme Attackers are targeting GitHub repositories, wiping their contents, and asking the victims to reach out on Telegram for more information. […]
06 Jun PandaBuy pays ransom to hacker only to get extorted again Chinese shopping platform Pandabuy told BleepingComputer it previously paid a a ransom demand to prevent stolen data from being leaked, only for the same threat actor to extort the company again this week. […]
05 Jun Linux version of TargetCompany ransomware focuses on VMware ESXi Researchers observed a new Linux variant of the TargetCompany ransomware family that targets VMware ESXi environments using a custom shell script to deliver and execute payloads. […]
05 Jun FBI recovers 7,000 LockBit keys, urges ransomware victims to reach out The FBI urges past victims of LockBit ransomware attacks to come forward after revealing that it has obtained over 7,000 LockBit decryption keys that they can use to recover encrypted data for free. […]
05 Jun Qilin ransomware gang linked to attack on London hospitals A ransomware attack that hit pathology services provider Synnovis on Monday and impacted several major NHS hospitals in London has now been linked to the Qilin ransomware operation. […]