Fixed Intel
Shield

Malware & Threats

Malware analysis, threat intelligence, and emerging cyber threats

Telus Digital confirms breach after hacker claims 1 petabyte data theft
BleepingComputer
Malware & Threats

Telus Digital confirms breach after hacker claims 1 petabyte data theft

Canadian business process outsourcing giant Telus Digital has confirmed it suffered a security incident after threat actors claimed to have stolen nearly 1 petabyte of data from the company in a multi-month breach.

BleepingComputerMar 12, 20265m8
Going the Extra Mile: Travel Rewards Turn into Underground Currency.
BleepingComputer
Malware & Threats

Going the Extra Mile: Travel Rewards Turn into Underground Currency.

Stolen airline miles are converted into flights and hotel stays, then resold as discounted travel. Flare shows how cybercriminals and underground markets treat loyalty accounts like tradable currency.

BleepingComputerMar 12, 20265m8
Apple patches older iPhones and iPads against Coruna exploits
BleepingComputer
Malware & Threats

Apple patches older iPhones and iPads against Coruna exploits

​Apple has released security updates to patch older iPhones and iPads against a set of vulnerabilities targeted in cyberespionage and crypto-theft attacks using the Coruna exploit kit.

BleepingComputerMar 12, 20263m8
US charges another ransomware negotiator linked to BlackCat attacks
BleepingComputer
Malware & Threats

US charges another ransomware negotiator linked to BlackCat attacks

The U.S. Department of Justice charged another former DigitalMint employee for his involvement in an insider scheme in which ransomware negotiators secretly partnered with the BlackCat (ALPHV) ransomware operation.

BleepingComputerMar 12, 20263m8
WhatsApp introduces parent-managed accounts for pre-teens
BleepingComputer
Malware & Threats

WhatsApp introduces parent-managed accounts for pre-teens

WhatsApp has begun rolling out parent-managed accounts for pre-teens, allowing parents and guardians to decide who can contact them and which groups they can join.

BleepingComputerMar 11, 20263m8
SQLi flaw in Elementor Ally plugin impacts 250k+ WordPress sites
BleepingComputer
Malware & Threats

SQLi flaw in Elementor Ally plugin impacts 250k+ WordPress sites

An SQL injection vulnerability in Ally, a WordPress plugin from Elementor for web accessibility and usability with more than 400,000 installations, could be exploited to steal sensitive data without authentication.

BleepingComputerMar 11, 20263m8
CISA orders feds to patch n8n RCE flaw exploited in attacks
BleepingComputer
Malware & Threats

CISA orders feds to patch n8n RCE flaw exploited in attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) ordered government agencies on Wednesday to patch their systems against an actively exploited n8n vulnerability.

BleepingComputerMar 11, 20263m8
Medtech giant Stryker offline after Iran-linked wiper malware attack
BleepingComputer
Malware & Threats

Medtech giant Stryker offline after Iran-linked wiper malware attack

Leading medical technology company Stryker has been hit by a wiper malware attack claimed by Handala, an Iranian-linked and pro-Palestinian hacktivist group.

BleepingComputerMar 11, 20263m8
New PhantomRaven NPM attack wave steals dev data via 88 packages
BleepingComputer
Malware & Threats

New PhantomRaven NPM attack wave steals dev data via 88 packages

New attack waves from the 'PhantomRaven' supply-chain campaign are hitting the npm registry, with dozens of malicious packages that exfiltrate sensitive data from JavaScript developers.

BleepingComputerMar 11, 20263m8
Meta adds new WhatsApp, Facebook, and Messenger anti-scam tools
BleepingComputer
Malware & Threats

Meta adds new WhatsApp, Facebook, and Messenger anti-scam tools

Meta is introducing new anti-scam protections across its platforms, deploying systems and user-facing warnings to protect users against scammers.

BleepingComputerMar 11, 20263m8
New ‘BlackSanta’ EDR killer spotted targeting HR departments
BleepingComputer
Malware & Threats

New ‘BlackSanta’ EDR killer spotted targeting HR departments

For more than a year, a Russian-speaking threat actor targeted human resource (HR) departments with malware that delivers a new EDR killer named BlackSanta.

BleepingComputerMar 10, 20264m8
New BeatBanker Android malware poses as Starlink app to hijack devices
BleepingComputer
Malware & Threats

New BeatBanker Android malware poses as Starlink app to hijack devices

A new Android malware named BeatBanker can hijack devices and tricks users into installing it by posing as a Starlink app on websites masquerading as the official Google Play Store.

BleepingComputerMar 10, 20263m12