Fixed Intel
Shield

Malware & Threats

Malware analysis, threat intelligence, and emerging cyber threats

CISA orders feds to patch max-severity Cisco flaw by Sunday
BleepingComputer
Malware & Threats

CISA orders feds to patch max-severity Cisco flaw by Sunday

The Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch a maximum-severity vulnerability, CVE-2026-20131, in Cisco Secure Firewall Management Center (FMC) by Sunday, March 22.

BleepingComputerMar 20, 20263m5
How CISOs Can Survive the Era of Geopolitical Cyberattacks
BleepingComputer
Malware & Threats

How CISOs Can Survive the Era of Geopolitical Cyberattacks

Geopolitical tensions are driving destructive cyberattacks designed to disrupt operations, not demand ransom. CISOs must limit lateral movement and contain breaches to reduce the impact of wiper campaigns.

BleepingComputerMar 20, 20265m5
Musician admits to $10M streaming royalty fraud using AI bots
BleepingComputer
Malware & Threats

Musician admits to $10M streaming royalty fraud using AI bots

North Carolina musician Michael Smith has pleaded guilty to collecting over $10 million in royalty payments through a massive streaming royalty fraud scheme on Spotify, Apple Music, Amazon Music, and YouTube Music.

BleepingComputerMar 20, 20263m5
International joint action disrupts world’s largest DDoS botnets
BleepingComputer
Malware & Threats

International joint action disrupts world’s largest DDoS botnets

Authorities from the United States, Germany, and Canada have taken down Command and Control (C2) infrastructure used by the Aisuru, KimWolf, JackSkid, and Mossad botnets to infect Internet of Things (IoT) devices.

BleepingComputerMar 20, 20263m5
Microsoft: March Windows updates break Teams, OneDrive sign-ins
BleepingComputer
Malware & Threats

Microsoft: March Windows updates break Teams, OneDrive sign-ins

Microsoft says the March Windows 11 update breaks sign-ins with Microsoft accounts across multiple Microsoft apps, including Teams and OneDrive.

BleepingComputerMar 20, 20263m5
Ex-data analyst stole company data in $2.5M extortion scheme
BleepingComputer
Malware & Threats

Ex-data analyst stole company data in $2.5M extortion scheme

A North Carolina man was found guilty of extorting a D.C.-based technology company while still being employed as a data analyst contractor.

BleepingComputerMar 20, 20263m5
Navia discloses data breach impacting 2.7 million people
BleepingComputer
Malware & Threats

Navia discloses data breach impacting 2.7 million people

Navia Benefit Solutions, Inc. (Navia) is informing nearly 2.7 million individuals of a data breach that exposed their sensitive information to attackers.

BleepingComputerMar 19, 20262m5
New ‘PolyShell’ flaw allows unauthenticated RCE on Magento e-stores
BleepingComputer
Malware & Threats

New ‘PolyShell’ flaw allows unauthenticated RCE on Magento e-stores

A newly disclosed vulnerability dubbed 'PolyShell' affects all Magento Open Source and Adobe Commerce stable version 2 installations, allowing unauthenticated code execution and account takeover.

BleepingComputerMar 19, 20262m5
Bitrefill blames North Korean Lazarus group for cyberattack
BleepingComputer
Malware & Threats

Bitrefill blames North Korean Lazarus group for cyberattack

Crypto-powered gift card store Bitrefill says that the attack it suffered at the beginning of the month was likely perpetrated by North Korean hackers of the Bluenoroff group.

BleepingComputerMar 19, 20263m5
FBI seizes Handala data leak site after Stryker cyberattack
BleepingComputer
Malware & Threats

FBI seizes Handala data leak site after Stryker cyberattack

The FBI has seized two websites used by the Handala hacktivist group after the threat actors conducted a destructive cyberattack on medical technology giant Stryker that wiped approximately 80,000 devices.

BleepingComputerMar 19, 20263m5
Russian hackers exploit Zimbra flaw in Ukrainian govt attacks
BleepingComputer
Malware & Threats

Russian hackers exploit Zimbra flaw in Ukrainian govt attacks

Hackers part of APT28, a state-backed threat group linked to Russia's military intelligence service (GRU), are exploiting a Zimbra Collaboration Suite (ZCS) vulnerability in attacks targeting Ukrainian government entities.

BleepingComputerMar 19, 20263m5
7 Ways to Prevent Privilege Escalation via Password Resets
BleepingComputer
Malware & Threats

7 Ways to Prevent Privilege Escalation via Password Resets

Password resets are often weaker than login security, making them a prime target for privilege escalation. Specops Software explains how attackers abuse reset workflows and how to secure them.

BleepingComputerMar 19, 20265m5