Bleeping Computer
681 articles tracked since Apr 6 · 23:54 UTC. 16 in the last 7 days, 85 in the last 30.
Top coverage areas
Most-mentioned entities
Aggregated across the most recent 200 articles from Bleeping Computer.
Recent articles
- Microsoft tests faster Windows File Explorer, new context menu
Microsoft has started testing several enhancements for Windows 11, including a faster File Explorer and a more customizable context menu. These updates are contained within Windows 11 preview builds that are rolling out to Insiders this week.
- CISA: Windows Task Host flaw now exploited by ransomware gangs
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that ransomware gangs are actively exploiting a high-severity flaw. This vulnerability concerns Windows Task Host, which had previously been flagged as being exploited in April.
- Microsoft confirms outage affecting search in Microsoft 365 apps
Microsoft has confirmed that some users are experiencing service issues related to searching within Microsoft 365 applications. The outage affects multiple services, specifically including Outlook on the web, Outlook desktop, SharePoint Online, and OneDrive.
- Microsoft starts removing WMIC tool used by cybercriminals
Microsoft announced the removal of the Windows Management Instrumentation Command-line (WMIC) tool. This removal effort affects multiple versions, including Windows 11 24H2 and 25H2. The action was taken because the WMIC tool is known to be used by cybercriminals.
- Philips and GE investigating Clop ransomware data theft claims
Tech giants General Electric (GE) and Philips confirmed that they are investigating data theft claims. These claims allege that the Clop ransomware gang breached their systems and stole sensitive data.
- French tax authority data breach affects 678,000 individuals
The French Ministry of the Economy and Finance disclosed a data breach involving an attacker who accessed the General Directorate of Public Finances (DGFiP) systems. This security incident resulted in the theft of data belonging to 678,000 individuals.
- Microsoft working on Defender patch for ShieldBreak zero-day
Microsoft is developing a security patch to address the 'ShieldBreak' zero-day vulnerability. This vulnerability was disclosed last week by security researcher Nightmare Eclipse and has been assigned the identifier CVE-2026-69414.
- SafePal data breach impacts 39,798 customers, stolen info for sale
Cryptocurrency hardware wallet provider SafePal has issued a warning regarding a data breach impacting approximately 39,798 customers. The incident occurred after a flaw was exploited to steal customer order information. Furthermore, a threat actor is reportedly claiming to be selling this stolen data.
- RingCentral data breach exposed info of 1.6 million accounts
The ShinyHunters extortion group stole personal information from 1.6 million RingCentral accounts after hacking the company in July. The data breach details were exposed, according to the data breach notification service Have I Been Pwned.
- Data analyst sent to prison for stealing data, extorting employer
A former data analyst contractor for Brightly Software was sentenced to two years in prison. The individual faced charges related to a $2.5 million extortion scheme for stealing data from his employer.
- WhatsApp rolls out new feature that flags potential scam messages
WhatsApp is rolling out a new optional feature called 'Scam Alert.' This function uses a local machine learning model to provide warnings and alert users when they are being targeted by scammers.
- Signal adds new security feature to thwart man-in-the-middle attacks
Signal has introduced Automatic Key Verification, a new security feature designed to enhance user safety. This feature provides users with an improved method for ensuring that their encrypted chats have not been intercepted or compromised.
- New Microsoft Defender 'ShieldBreak' zero-day grants SYSTEM privileges
Nightmare Eclipse released a zero-day exploit called "ShieldBreak," which targets Microsoft Defender and grants SYSTEM privileges. The exploit was released following the August 2026 Patch Tuesday security updates issued by Microsoft.
- CISA: Microsoft SharePoint flaw now exploited in ransomware attacks
CISA confirmed that ransomware gangs have begun abusing a high-severity vulnerability in Microsoft SharePoint. This remote code execution flaw has been actively exploited since early July.
- Cisco warns of high-severity ClamAV flaws with public exploits
Cisco has issued a warning regarding two high-severity vulnerabilities affecting its Secure Endpoint Connector. These flaws allow threat actors to execute denial-of-service (DoS) attacks by crashing the ClamAV scanning process.
- US and South Korea warn of Gunra ransomware targeting govt agencies
U.S. federal agencies and South Korea's National Policy Agency issued warnings concerning cyber threats worldwide. These organizations advised government and critical infrastructure sectors globally. The warning specifically urged securing systems against potential Gunra ransomware attacks.
- Valve notifies Steam hardware customers of a data breach
Video game publisher Valve is notifying its Steam hardware customers in Europe of a data breach. Hackers stole customer data after compromising the shipping partner, CEVA Logistics.
- Critical Progress LoadMaster flaw now actively exploited in attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has warned about an active threat exploiting a critical-severity flaw. The vulnerability resides in Progress Kemp LoadMaster, which is identified as a command injection weakness.
- Hackers run khunt post-exploitation toolkit from Oracle database
Hackers exploited a SQL injection vulnerability to install the khunt post-exploitation toolkit inside an Oracle database, which was used to breach a corporate network.
- COLDCARD security audit phishing attack installs remote access tool
A phishing campaign is exploiting concerns about a COLDCARD wallet vulnerability and a suspected $88.6 million Bitcoin theft to trick users into installing ScreenConnect remote access software. The attack leverages fears surrounding the security audit to deploy malicious tools.
The Nexus tracks 230+ news outlets plus 48 government data feeds. View the full source index or read today’s briefing for synthesis across all of them.