BleepingComputer.com

"Over a thousand online shops hacked to show fake product listings."

Views expressed in this cybersecurity, cyber crime update are those of the reporters and correspondents.  Accessed on 31 October 2024, 1333 UTC.

Content and Source:   https://www.bleepingcomputer.com/

Please check link or scroll down to read your selections.  Thanks for joining us today.

Russ Roberts (https://hawaiisciencejournal.blogspot.com).

Over a thousand online shops hacked to show fake product listings

  • A phishing campaign dubbed 'Phish n' Ships' has been underway since at least 2019, infecting over a thousand legitimate online stores to promote fake product listings for hard-to-find items.

  • AdGuard Home
     

A five-year subscription to the popular AdGuard VPN is only $35

  • AdGuard VPN has over 60 server locations across the globe, so you can bypass geographic restrictions seamlessly. Whether you need to stream a new show or access local news while you travel, this VPN makes global access simple and user-friendly, and it's only $34.97 for a five-year subscription.

    • BleepingComputer Deals
    •  
    • October 31, 2024
    •  
    • 07:12 AM
    •  
    • Comment Count 0
  • Cynet delivers 426% ROI in Forrester Total Economic Impact Study
     
    Security· Sponsored Content

Cynet delivers 426% ROI in Forrester Total Economic Impact Study

  • A commissioned study conducted by Forrester Consulting on behalf of Cynet in October 2024 found that Cynet's All-in-One Cybersecurity Platform generated $2.73 million in savings, paying for itself in under six months, for a return on investment of 426%.

    • Sponsored by Cynet
    •  
    • October 31, 2024
    •  
    • 07:00 AM
    •  
    • Comment Count 0
  • NPM
     

LottieFiles hit in npm supply chain attack targeting users' crypto

  • LottieFiles announced that specific versions of its npm package carry malicious code that prompts users to connect their cryptocurrency wallets so they can be emptied.

  • Interbank
     

Interbank confirms data breach following failed extortion, data leak

  • ​Interbank, one of Peru's leading financial institutions, has confirmed a data breach after a threat actor who hacked into its systems leaked stolen data online.

  • Microsoft passwordless
     

Microsoft Entra "security defaults" to make MFA setup mandatory

  • ​Microsoft says it will improve security across Entra tenants where security defaults are enabled by making multifactor authentication (MFA) registration mandatory.

  • Microsoft Office
     

Get $20 off Microsoft Office 2024 and ditch those monthly subscriptions

  • Unlock a lifetime of productivity without paying for it every month. Get Microsoft Office 2024 Home for Mac or PC for only $129.97. 

    • BleepingComputer Deals
    •  
    • October 30, 2024
    •  
    • 02:09 PM
    •  
    • Comment Count 0
  • QNAP
     

QNAP patches second zero-day exploited at Pwn2Own to get root

  • QNAP has fixed a second zero-day vulnerability exploited at the Pwn2Own Ireland 2024 hacking contest to gain a root shell and take over a TS-464 NAS device.

  • North Korean Hackers
     

North Korean govt hackers linked to Play ransomware attack

  • The North Korean state-sponsored hacking group tracked as 'Andariel' has been linked to the Play ransomware operation, using the RaaS to work behind the scenes and evade sanctions.

  • Android
     

Android malware "FakeCall" now reroutes bank calls to attackers

  • A new version of the FakeCall malware for Android hijacks outgoing calls from a user to their bank, redirecting them to the attacker's phone number instead.

  • Cloud Hacker
     

Hackers steal 15,000 cloud credentials from exposed Git config files

  • A global large-scale dubbed "EmeraldWhale" exploited misconfigured Git configuration files to steal over 15,000 cloud account credentials from thousands of private repositories.

  • Election
     

FBI: Upcoming U.S. general election fuel multiple fraud schemes

  • The Federal Bureau of Investigation (FBI) is warning of multiple schemes taking advantage of the upcoming U.S. general election to scam people out of their money or personal data.

  • Lenovo
     

Save nearly $199 on this refurbished 2024 Lenovo touchscreen laptop

  • This refurbished Lenovo two-in-one laptop is built for productivity or play, and it's a grade "A" refurb, so there are virtually no signs of use. The biggest sign that this is a refurbished computer is the price, which is down to $649.99 (reg. $849). 

    • BleepingComputer Deals
    •  
    • October 30, 2024
    •  
    • 07:17 AM
    •  
    • Comment Count 0
  • Windows red
     

New Windows Themes zero-day gets free, unofficial patches

  • Free unofficial patches are now available for a new Windows Themes zero-day vulnerability that allows attackers to steal a target's NTLM credentials remotely.

  • Hacker VR Spyware Surveillance
     

Massive PSAUX ransomware attack targets 22,000 CyberPanel instances

  • Over 22,000 CyberPanel instances exposed online to a critical remote code execution (RCE) vulnerability were mass-targeted in a PSAUX ransomware attack that took almost all instances offline.

  • Identity Cybersecurity Framework passwords authentication
     

This $50 course helps prepare you for four in-demand IT certifications

  • This training bundle comprises 46 lectures and 108 hours of content, focusing on four key certifications: CISA, CISM, CISSP, and COBIT 5. Each of these certifications corresponds to distinct career paths in cybersecurity. During this limited-time sale, you can get unlimited access to all course materials for one year for $49.99 (reg.

    • BleepingComputer Deals
    •  
    • October 29, 2024
    •  
    • 02:11 PM
    •  
    • Comment Count 0
  • QNAP
     

QNAP fixes NAS backup software zero-day exploited at Pwn2Own

  • QNAP has fixed a critical zero-day vulnerability exploited by security researchers on Thursday to hack a TS-464 NAS device during the Pwn2Own Ireland 2024 competition.

  • Department of Justice DOJ
     

Russian charged by U.S. for creating RedLine infostealer malware

  • The United States announced charges today against Maxim Rudometov, a Russian national, for being the suspected developer and administrator of the RedLine malware operation, one of the most prolific infostealers over the past few years.

  • Costco
     

Get a Costco Gold Star Membership and a $45 Shop Card for $65

  • With a Costco Gold Star Membership, you get access to more than 500 Costco warehouses across the US, and that's just the beginning. Now, when you get a Costco 1-Year Gold Star Membership, you'll also get a $45 Digital Costco Shop Card*, and it's still just $65.

    • BleepingComputer Deals
    •  
    • October 29, 2024
    •  
    • 07:16 AM
    •  
    • Comment Count 0
  • Best vulnerability management tools: Prevent security breaches
     

Best vulnerability management tools: Prevent security breaches

  • Discover the best vulnerability management tools to identify, assess, and mitigate security vulnerabilities within an organization's IT infrastructure.

Comments

Popular posts from this blog

Cyber War News Today.

The Cyberwire Daily Briefing

BleepingComputer.com