Fixed Intel
Shield

Malware & Threats

Malware analysis, threat intelligence, and emerging cyber threats

Device code phishing attacks surge 37x as new kits spread online
BleepingComputer
Malware & Threats

Device code phishing attacks surge 37x as new kits spread online

Device code phishing attacks that abuse the OAuth 2.0 Device Authorization Grant flow to hijack accounts have surged more than 37 times this year.

BleepingComputerApr 4, 20264m5
LinkedIn secretly scans for 6,000+ Chrome extensions, collects data
BleepingComputer
Malware & Threats

LinkedIn secretly scans for 6,000+ Chrome extensions, collects data

A new report dubbed "BrowserGate" warns that Microsoft's LinkedIn is using hidden JavaScript scripts on its website to scan visitors' browsers for installed extensions and collect device data.

BleepingComputerApr 3, 20265m5
LinkedIn secretely scans for 6,000+ Chrome extensions, collects data
BleepingComputer
Malware & Threats

LinkedIn secretely scans for 6,000+ Chrome extensions, collects data

A new report dubbed "BrowserGate" warns that Microsoft's LinkedIn is using hidden JavaScript scripts on its website to scan visitors' browsers for installed extensions and collect device data.

BleepingComputerApr 3, 20265m5
Hims & Hers warns of data breach after Zendesk support ticket breach
BleepingComputer
Malware & Threats

Hims & Hers warns of data breach after Zendesk support ticket breach

Telehealth giant Hims & Hers Health is warning that it suffered a data breach after support tickets were stolen from a third-party customer service platform.

BleepingComputerApr 3, 20263m5
Die Linke German political party confirms data stolen by Qilin ransomware
BleepingComputer
Malware & Threats

Die Linke German political party confirms data stolen by Qilin ransomware

The Qilin ransomware group has claimed responsibility for an attack against Die Linke ('The Left'), forcing an IT systems outage at the political party, and threatening sensitive data leak.

BleepingComputerApr 3, 20262m5
Evolution of Ransomware: Multi-Extortion Ransomware Attacks
BleepingComputer
Malware & Threats

Evolution of Ransomware: Multi-Extortion Ransomware Attacks

Multi-extortion ransomware relies on stolen data to pressure victims with public leaks. Penta Security explains how its D.AMO platform keeps exfiltrated files encrypted and useless to attackers.

BleepingComputerApr 3, 20264m5
Microsoft still working to fix Exchange Online mailbox access issues
BleepingComputer
Malware & Threats

Microsoft still working to fix Exchange Online mailbox access issues

Microsoft is investigating and working to resolve Exchange Online mailbox access issues that have intermittently affected Outlook mobile and macOS users for weeks.

BleepingComputerApr 3, 20262m5
Man admits to locking thousands of Windows devices in extortion plot
BleepingComputer
Malware & Threats

Man admits to locking thousands of Windows devices in extortion plot

A former core infrastructure engineer has pleaded guilty to locking Windows admins out of 254 servers as part of a failed extortion plot targeting his employer, an industrial company headquartered in Somerset County, New Jersey.

BleepingComputerApr 3, 20263m5
Microsoft now force upgrades unmanaged Windows 11 24H2 PCs
BleepingComputer
Malware & Threats

Microsoft now force upgrades unmanaged Windows 11 24H2 PCs

Starting this week, Microsoft has begun force-upgrading unmanaged devices running Windows 11 24H2 Home and Pro editions to Windows 11 25H2.

BleepingComputerApr 3, 20263m5
CERT-EU: European Commission hack exposes data of 30 EU entities
BleepingComputer
Malware & Threats

CERT-EU: European Commission hack exposes data of 30 EU entities

The European Union's Cybersecurity Service (CERT-EU) has attributed the European Commission cloud hack to the TeamPCP threat group, saying the resulting breach exposed the data of at least 29 other Union entities.

BleepingComputerApr 3, 20263m5
Claude Code leak used to push infostealer malware on GitHub
BleepingComputer
Malware & Threats

Claude Code leak used to push infostealer malware on GitHub

Threat actors are exploiting the recent Claude Code source code leak by using fake GitHub repositories to deliver Vidar information-stealing malware.

BleepingComputerApr 2, 20263m7
Drift loses $280 million as hackers seize Security Council powers
BleepingComputer
Malware & Threats

Drift loses $280 million as hackers seize Security Council powers

The Drift Protocol lost at least $280 million after a threat actor took control of its Security Council administrative powers in a planned, sophisticated operation.

BleepingComputerApr 2, 20262m5