Hackers have stolen the personal and contact information belonging to over 29.8 million SoundCloud user accounts after breaching the audio streaming platform's systems.
Notices by BleepingComputer (bleepingcomputer@infosec.exchange), page 2
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Tuesday, 27-Jan-2026 21:29:39 JST
BleepingComputer
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Thursday, 22-Jan-2026 05:01:10 JST
BleepingComputer
Fortinet admins are seeing attackers exploiting a patch bypass for a previously fixed FortiGate authentication bypass (CVE-2025-59718) to hack patched firewalls.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Tuesday, 06-Jan-2026 21:40:50 JST
BleepingComputer
Microsoft has pushed back against claims that multiple prompt injection and sandbox-related issues raised by a security engineer in its Copilot AI assistant constitute security vulnerabilities. The development highlights a growing divide between how vendors and researchers define risk in generative AI systems.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Saturday, 20-Dec-2025 05:59:30 JST
BleepingComputer
Microsoft Teams is experiencing issues, with thousands reporting problems sending messages, including delays.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Saturday, 20-Dec-2025 02:23:57 JST
BleepingComputer
Multiple threat actors are compromising Microsoft 365 accounts in phishing attacks that leverage the OAuth device code authorization mechanism.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Tuesday, 16-Dec-2025 07:49:24 JST
BleepingComputer
A new malware-as-a-service (MaaS) information stealer named SantaStealer is being advertised on Telegram and hacker forums as operating in memory to avoid file-based detection.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Thursday, 11-Dec-2025 22:21:04 JST
BleepingComputer
An unpatched zero-day vulnerability (CVE-2025-8110) in Gogs, a popular self-hosted Git service, has enabled attackers to gain remote code execution on Internet-facing instances and compromise hundreds of servers.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Friday, 05-Dec-2025 02:27:38 JST
BleepingComputer
A maximum severity vulnerability, dubbed 'React2Shell', in the React Server Components (RSC) 'Flight' protocol allows remote code execution without authentication in React and Next.js applications.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Friday, 28-Nov-2025 03:41:19 JST
BleepingComputer
GreyNoise Labs has launched a free tool called GreyNoise IP Check that lets users check if their IP address has been observed in malicious scanning operations, like botnet and residential proxy networks.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Wednesday, 26-Nov-2025 18:18:32 JST
BleepingComputer
Thousands of credentials, authentication keys, and configuration data impacting organizations in sensitive sectors have been sitting in publicly accessible JSON snippets submitted to the JSONFormatter and CodeBeautify online tools that format and structure code.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Monday, 24-Nov-2025 00:34:28 JST
BleepingComputer
Google has added interoperability support between Android Quick Share and Apple AirDrop, to let users share files between Pixel devices and iPhones.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Tuesday, 18-Nov-2025 21:26:08 JST
BleepingComputer
Cloudflare is investigating an outage affecting its global network services, with users encountering "internal server error" messages when attempting to access affected websites and online platforms.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Saturday, 15-Nov-2025 05:31:18 JST
BleepingComputer
Fortinet has silently patched a critical zero-day vulnerability in its FortiWeb web application firewall, which is now being widely exploited.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Wednesday, 12-Nov-2025 09:25:28 JST
BleepingComputer
The Rhadamanthys infostealer operation has been disrupted, with numerous "customers" of the malware-as-a-service reporting that they no longer have access to their servers.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Saturday, 08-Nov-2025 07:34:37 JST
BleepingComputer
Several malicious packages on NuGet have sabotage payloads scheduled to activate in 2027 and 2028, targeting database implementations and Siemens S7 industrial control devices.
https://www.bleepingcomputer.com/news/security/malicious-nuget-packages-drop-disruptive-time-bombs/
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Sunday, 02-Nov-2025 05:00:28 JST
BleepingComputer
OpenAI is planning to introduce ads on ChatGPT, as it continues to struggle with revenue from paid users.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Thursday, 30-Oct-2025 04:07:53 JST
BleepingComputer
Microsoft is investigating an ongoing DNS outage affecting customers worldwide, preventing them from accessing Microsoft Azure and Microsoft 365 services.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Tuesday, 21-Oct-2025 06:05:32 JST
BleepingComputer
Microsoft says that this month's security updates disable USB mice and keyboards in the Windows Recovery Environment (WinRE), making it unusable.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Thursday, 16-Oct-2025 05:11:13 JST
BleepingComputer
An ongoing phishing campaign is targeting LastPass and Bitwarden users with fake emails claiming that the companies were hacked, urging them to download a supposedly more secure desktop version of the password manager.
-
Embed this notice
BleepingComputer (bleepingcomputer@infosec.exchange)'s status on Friday, 10-Oct-2025 00:18:49 JST
BleepingComputer
SonicWall has confirmed that all customers that used the company's cloud backup service are affected by the security breach last month.