Fixed Intel

Latest Cybersecurity News

Stay informed with real-time threat intelligence, vulnerability disclosures, and expert analysis from the cybersecurity community.

HPE warns of critical AOS-CX flaw allowing admin password resets
BleepingComputer
Malware & Threats

HPE warns of critical AOS-CX flaw allowing admin password resets

Hewlett Packard Enterprise (HPE) has patched multiple security vulnerabilities in the Aruba Networking AOS-CX operating system, including several authentication and code execution issues.

BleepingComputerMar 10, 20263m8
Microsoft brings phishing-resistant Windows sign-ins via Entra passkeys
BleepingComputer
Malware & Threats

Microsoft brings phishing-resistant Windows sign-ins via Entra passkeys

Microsoft is rolling out passkey support for Microsoft Entra on Windows devices, adding phishing-resistant passwordless authentication via Windows Hello.

BleepingComputerMar 10, 20262m8
New KadNap botnet hijacks ASUS routers to fuel cybercrime proxy network
BleepingComputer
Malware & Threats

New KadNap botnet hijacks ASUS routers to fuel cybercrime proxy network

A newly discovered botnet malware called KadNap is targeting ASUS routers and other edge networking devices to turn them into proxies for malicious traffic.

BleepingComputerMar 10, 20263m8
The New Turing Test: How Threats Use Geometry to Prove 'Humanness'
BleepingComputer
High
Malware & Threats
78/10

The New Turing Test: How Threats Use Geometry to Prove 'Humanness'

Malware is evolving to evade sandboxes by pretending to be a real human behind the keyboard. The Picus Red Report 2026 shows 80% of top attacker techniques now focus on evasion and persistence, including geometry-based cursor tests and CPU timing checks.

LummaC2Financial ServicesHealthcare
BleepingComputerMar 10, 20267m8
CISA: Recently patched Ivanti EPM flaw now actively exploited
BleepingComputer
High
Malware & Threats
78/10

CISA: Recently patched Ivanti EPM flaw now actively exploited

CISA flagged a high-severity Ivanti Endpoint Manager (EPM) vulnerability as actively exploited in attacks and ordered U.S. federal agencies to patch systems within three weeks.

GovernmentFederal Agencies
BleepingComputerMar 10, 20263m8
Microsoft to enable Windows hotpatch security updates by default
BleepingComputer
Malware & Threats

Microsoft to enable Windows hotpatch security updates by default

Microsoft will turn on hotpatch security updates by default for all eligible Windows devices managed through Microsoft Intune and the Microsoft Graph API, beginning with the May 2026 Windows security update.

BleepingComputerMar 10, 20263m8
APT28 hackers deploy customized variant of Covenant open-source tool
BleepingComputer
Malware & Threats

APT28 hackers deploy customized variant of Covenant open-source tool

The Russian state-sponsored APT28 threat group is using a custom variant of the open-source Covenant post-exploitation framework for long-term espionage operations.

BleepingComputerMar 10, 20263m8
Microsoft Teams phishing targets employees with A0Backdoor malware
BleepingComputer
Malware & Threats

Microsoft Teams phishing targets employees with A0Backdoor malware

Hackers contacted employees at financial and healthcare organizations over Microsoft Teams to trick them into granting remote access through Quick Assist and deploy a new piece of malware called A0Backdoor.

BleepingComputerMar 9, 20263m11
Google: Cloud attacks exploit flaws more than weak credentials
BleepingComputer
Malware & Threats

Google: Cloud attacks exploit flaws more than weak credentials

Hackers are increasingly exploiting newly disclosed vulnerabilities in third-party software to gain initial access to cloud environments, with the window for attacks shrinking from weeks to just days.

BleepingComputerMar 9, 20266m9
Dutch govt warns of Signal, WhatsApp account hijacking attacks
BleepingComputer
High
Malware & Threats
82/10

Dutch govt warns of Signal, WhatsApp account hijacking attacks

Russian state-sponsored hackers have been linked to an ongoing Signal and WhatsApp phishing campaign targeting government officials, military personnel, and journalists to gain access to sensitive messages.

Russian State-Sponsored Threat ActorsGovernmentDefense
BleepingComputerMar 9, 20265m9
Ericsson US discloses data breach after service provider hack
BleepingComputer
Malware & Threats

Ericsson US discloses data breach after service provider hack

Ericsson Inc., the U.S. subsidiary of Swedish networking and telecommunications giant Ericsson, says attackers have stolen data belonging to an undisclosed number of employees and customers after hacking one of its service providers.

BleepingComputerMar 9, 20263m9
Microsoft Teams will tag third-party bots trying to join meetings
BleepingComputer
Malware & Threats

Microsoft Teams will tag third-party bots trying to join meetings

Microsoft says Teams will soon automatically tag third-party bots in lobbies, allowing organizers to control whether they can join meetings.

BleepingComputerMar 9, 20262m9