BleepingComputer.com

"Greasy Opal's CAPTCHA solver still serving cybercrime after 16 years."

Views expressed in this cybersecurity, cyber crime update are those of the reporters and correspondents.  Accessed on 23 August 2024, 1400 UTC.

Content and Source:   https://www.bleepingcomputer.com/

Please check link or scroll down to read your selections.  Thanks for joining us today.

Russ Roberts (https://www.hawaiicybersecurityjournal.net).

Greasy Opal's CAPTCHA solver still serving cybercrime after 16 years

  • A developer that researchers now track as Greasy Opal, operating as a seemingly legitimate business, has been fueling the cybercrime-as-a-service industry with a tool that bypasses account security solutions and allows bot-led CAPTCHA solving at scale.

  • Get this open-box Apple Pencil for $59 in this deal
     

Get this open-box Apple Pencil for $59 in this deal

  • Whether you're sketching the next big design concept, annotating a complex document, or just jotting down ideas during a meeting, the Apple Pencil can elevate the experience. Here's how to get one for $58.99 (reg. $79).

    • BleepingComputer Deals
    •  
    • August 23, 2024
    •  
    • 07:14 AM
    •  
    • Comment Count 0
  • WordPress
     

Hackers are exploiting critical bug in LiteSpeed Cache plugin

  • Hackers have already started to exploit the critical severity vulnerability that affects LiteSpeed Cache, a WordPress plugin used for accelerating response times, a day after technical details become public.

  • Google Chrome
     

Qilin ransomware now steals credentials from Chrome browsers

  • The Qilin ransomware group has been using a new tactic and deploys a custom stealer to steal account credentials stored in Google Chrome browser.

  • Windows Server
     

Microsoft: August updates cause Windows Server boot issues, freezes

  • Microsoft has confirmed and fixed a known issue causing performance issues, boot problems, and freezes on Windows Server 2019 systems after installing the August 2024 security updates.

  • Android
     

New NGate Android malware uses NFC chip to steal credit card data

  • A new Android malware named NGate can steal money from payment cards by relaying to an attacker's device the data read by the near-field communication (NFC) chip.

  • Linux
     

Microsoft confirms August updates break Linux boot in dual-boot systems

  • Microsoft has confirmed the August 2024 Windows security updates are causing Linux booting issues on dual-boot systems with Secure Boot enabled.

  • Solarwinds
     

SolarWinds fixes hardcoded credentials flaw in Web Help Desk

  • SolarWinds has released a hotfix for a critical Web Help Desk vulnerability that allows attackers to log into unpatched systems using hardcoded credentials.

  • extortion money theft man red
     

U.S. charges Karakurt extortion gang’s “cold case” negotiator

  • A member of the Russian Karakurt ransomware group has been charged in the U.S. for money laundering, wire fraud, and extortion crimes.

  • Justice
     

Man sentenced for hacking state registry to fake his own death

  • A 39-year old man from Somerset, Kentucky, was sentenced to 81 months in federal prison for identity theft and faking his own death in government registry systems.

  • Google Chrome
     

Google fixes ninth Chrome zero-day tagged as exploited this year

  • ​​Today, Google released a new Chrome emergency security update to patch a zero-day vulnerability, the ninth one tagged as exploited this year.

  • Smartphone
     

Hackers steal banking creds from iOS, Android users via PWA apps

  • Threat actors started to use progressive web applications to impersonate banking apps and steal credentials from Android and iOS users.

  • Windows 11 Recall
     

Microsoft to roll out Windows Recall to Insiders in October

  • Microsoft announced today that it will start rolling out its AI-powered Windows Recall feature to Insiders with Copilot+ PCs in October.

  • QNAP
     

QNAP adds NAS ransomware protection to latest QTS version

  • ​Taiwanese hardware vendor QNAP has added a Security Center with ransomware protection capabilities to the latest version of its QTS operating system for network-attached storage (NAS) devices.

  • Migrate your data easily during PC upgrades with this low-cost solution
     

Migrate your data easily during PC upgrades with this low-cost solution

  • If you want a simple, comprehensive way to take the hassle out of upgrading to a new computer, use the PC Transfer Kit Bundle. This suite of tools simplifies everything from computer migration to security, and it's marked down to $34.99 from $129.

    • BleepingComputer Deals
    •  
    • August 21, 2024
    •  
    • 02:07 PM
    •  
    • Comment Count 0
  • WordPress
     

Litespeed Cache bug exposes millions of WordPress sites to takeover attacks

  • A critical vulnerability in the LiteSpeed Cache WordPress plugin can let attackers take over millions of websites after creating rogue admin accounts.

  • Phrack
     

Phrack hacker zine publishes new edition after three years

  • Phrack #71 has been released online and is available to read for free. This issue is the first to be released since 2021, marking a new chapter in the influential online magazine's history.

  • GitHub
     

GitHub Enterprise Server vulnerable to critical auth bypass flaw

  • A critical vulnerability affecting multiple versions of GitHub Enterprise Server could be exploited to bypass authentication and enable an attacker to gain administrator privileges on the machine.

  • Microsoft Office
     

Get ready for a new job with this Microsoft Office 2021 deal

  • Across industries, job hunting is rigorous and frustrating, but it can be more manageable if you have intuitive and familiar tools to help along the way. Get a Lifetime License to Microsoft Office Professional 2021 for Windows for $39.97 (reg. $219).

    • BleepingComputer Deals
    •  
    • August 21, 2024
    •  
    • 07:06 AM
    •  
    • Comment Count 0
  • CannonDesign
     

CannonDesign confirms Avos Locker ransomware data breach

  • The Cannon Corporation dba CannonDesign is sending notices of a data breach to more than 13,000 of current and former employees, informing that hackers breached and stole data from its network in an attack in early 2023.

Comments

Popular posts from this blog

The Cyberwire Daily Briefing

Cyber War News Today.

SecurityWeek Briefing