Fixed Intel
Shield

Malware & Threats

Malware analysis, threat intelligence, and emerging cyber threats

Apple fixes iOS bug that retained deleted notification data
BleepingComputer
Malware & Threats

Apple fixes iOS bug that retained deleted notification data

Apple has released out-of-band security updates for iPhone and iPad devices to fix a Notification Services flaw that could allow notifications marked for deletion to remain stored on the device.

BleepingComputerApr 22, 20263m3
New Mirai campaign exploits RCE flaw in EoL D-Link routers
BleepingComputer
Malware & Threats

New Mirai campaign exploits RCE flaw in EoL D-Link routers

A new Mirai-based malware campaign is actively exploiting CVE-2025-29635, a high-severity command-injection vulnerability affecting D-Link DIR-823X routers, to enlist devices into the botnet.

BleepingComputerApr 22, 20263m3
Kyber ransomware gang toys with post-quantum encryption on Windows
BleepingComputer
Malware & Threats

Kyber ransomware gang toys with post-quantum encryption on Windows

A new Kyber ransomware operation is targeting Windows systems and VMware ESXi endpoints in recent attacks, with one variant implementing Kyber1024 post-quantum encryption.

BleepingComputerApr 22, 20263m3
Spain dismantles major $4.7M manga piracy platform, arrests four
BleepingComputer
Malware & Threats

Spain dismantles major $4.7M manga piracy platform, arrests four

The Spanish police have dismantled the largest Spanish-language manga piracy platform, operating since 2014, with millions of monthly users from around the globe.

BleepingComputerApr 22, 20263m3
Inside Caller-as-a-Service Fraud: The Scam Economy Has a Hiring Process
BleepingComputer
Malware & Threats

Inside Caller-as-a-Service Fraud: The Scam Economy Has a Hiring Process

Fraud operations now operate like call centers, complete with hiring, training, and performance tracking. Flare reveals how cybercriminals manage "Caller-as-a-Service" operations like a professional sales team.

BleepingComputerApr 22, 20267m3
New npm supply-chain attack self-spreads to steal auth tokens
BleepingComputer
Malware & Threats

New npm supply-chain attack self-spreads to steal auth tokens

A new supply chain attack targeting the Node Package Manager (npm) ecosystem is stealing developer credentials and attempting to spread through packages published from compromised accounts.

BleepingComputerApr 22, 20263m3
Microsoft Teams to get efficiency mode on PCs with limited resources
BleepingComputer
Malware & Threats

Microsoft Teams to get efficiency mode on PCs with limited resources

Microsoft is preparing to roll out a new Efficiency Mode for Microsoft Teams for systems with limited CPU and memory resources to improve app responsiveness.

BleepingComputerApr 22, 20263m3
Microsoft traces Universal Print issues to Graph API code change
BleepingComputer
Malware & Threats

Microsoft traces Universal Print issues to Graph API code change

Microsoft says that an ongoing Universal Print sharing issue that prevents users from creating some printer shares is due to a Microsoft Graph API code change.

BleepingComputerApr 22, 20263m3
New GoGra malware for Linux uses Microsoft Graph API for comms
BleepingComputer
Malware & Threats

New GoGra malware for Linux uses Microsoft Graph API for comms

A Linux variant of the GoGra backdoor uses legitimate Microsoft infrastructure, relying on an Outlook inbox for stealthy payload delivery.

BleepingComputerApr 22, 20263m3
Microsoft releases emergency patches for critical ASP.NET flaw
BleepingComputer
Malware & Threats

Microsoft releases emergency patches for critical ASP.NET flaw

Microsoft has released out-of-band (OOB) security updates to patch a critical ASP.NET Core privilege escalation vulnerability.

BleepingComputerApr 22, 20263m3
Over 1,300 Microsoft SharePoint servers vulnerable to spoofing attacks
BleepingComputer
Malware & Threats

Over 1,300 Microsoft SharePoint servers vulnerable to spoofing attacks

Over 1,300 Microsoft SharePoint servers exposed online remain unpatched against a spoofing vulnerability that was exploited as a zero-day and is still being abused in ongoing attacks.

BleepingComputerApr 22, 20263m3
French govt agency confirms breach as hacker offers to sell data
BleepingComputer
Malware & Threats

French govt agency confirms breach as hacker offers to sell data

France Titres, the government agency in France for issuing and managince administrative documents has disclosed a data breach after a threat actor claimed the attack and stealing citizen data.

BleepingComputerApr 21, 20263m3