<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
        xmlns:content="http://purl.org/rss/1.0/modules/content/"
        xmlns:wfw="http://wellformedweb.org/CommentAPI/"
        xmlns:dc="http://purl.org/dc/elements/1.1/"
        xmlns:atom="http://www.w3.org/2005/Atom"
        >

<channel>
        <title>BleepingComputer</title>

        <link>https://www.bleepingcomputer.com/</link>
        <description>BleepingComputer - All Stories</description>
        <pubDate>Wed, 05 Feb 2025 18:31:33 EST</pubDate>
        <generator>https://www.bleepingcomputer.com/</generator>
        <language>en</language>
        <atom:link href="https://www.bleepingcomputer.com/feed/" rel="self" type="application/rss+xml" />
	
 <item>
        <title>Microsoft script updates bootable media for BlackLotus bootkit fixes</title>
        <link>https://www.bleepingcomputer.com/news/microsoft/microsoft-script-updates-bootable-media-for-blacklotus-bootkit-fixes/</link>
        <pubDate>Wed, 05 Feb 2025 18:16:04 -0500</pubDate>
        <dc:creator>Lawrence Abrams</dc:creator>

        
        <category><![CDATA[Microsoft]]></category>

        <category><![CDATA[Security]]></category>


        <guid>https://www.bleepingcomputer.com/news/microsoft/microsoft-script-updates-bootable-media-for-blacklotus-bootkit-fixes/</guid>
	<description><![CDATA[Microsoft has released a PowerShell script to help Windows users and admins update bootable media so it utilizes the new "Windows UEFI CA 2023" certificate before the mitigations of the BlackLotus UEFI bootkit are enforced later this year. [...]]]></description>
 </item>

 <item>
        <title>Robocallers posing as FCC fraud prevention team call FCC staff</title>
        <link>https://www.bleepingcomputer.com/news/security/robocallers-posing-as-fcc-fraud-prevention-team-call-fcc-staff/</link>
        <pubDate>Wed, 05 Feb 2025 16:26:23 -0500</pubDate>
        <dc:creator>Sergiu Gatlan</dc:creator>

        
        <category><![CDATA[Security]]></category>

        <category><![CDATA[Technology]]></category>


        <guid>https://www.bleepingcomputer.com/news/security/robocallers-posing-as-fcc-fraud-prevention-team-call-fcc-staff/</guid>
	<description><![CDATA[The FCC has proposed a $4,492,500 fine against VoIP service provider Telnyx for allegedly allowing customers to make robocalls posing as fictitious FCC "Fraud Prevention Team," by failing to comply with Know Your Customer (KYC) rules. However, Telnyx says the FCC is mistaken and denies the accusations. [...]]]></description>
 </item>

 <item>
        <title>Ransomware payments fell by 35% in 2024, totalling $813,550,000</title>
        <link>https://www.bleepingcomputer.com/news/security/ransomware-payments-fell-by-35-percent-in-2024-totalling-813-550-000/</link>
        <pubDate>Wed, 05 Feb 2025 15:34:56 -0500</pubDate>
        <dc:creator>Bill Toulas</dc:creator>

        
        <category><![CDATA[Security]]></category>

        <category><![CDATA[CryptoCurrency]]></category>


        <guid>https://www.bleepingcomputer.com/news/security/ransomware-payments-fell-by-35-percent-in-2024-totalling-813-550-000/</guid>
	<description><![CDATA[Payments to ransomware actors decreased 35% year-over-year in 2024, totaling $813.55 million, down from $1.25 billion recorded in 2023. [...]]]></description>
 </item>

 <item>
        <title>CISA orders agencies to patch Linux kernel bug exploited in attacks</title>
        <link>https://www.bleepingcomputer.com/news/security/cisa-orders-agencies-to-patch-linux-kernel-bug-exploited-in-attacks/</link>
        <pubDate>Wed, 05 Feb 2025 13:58:29 -0500</pubDate>
        <dc:creator>Sergiu Gatlan</dc:creator>

        
        <category><![CDATA[Security]]></category>


        <guid>https://www.bleepingcomputer.com/news/security/cisa-orders-agencies-to-patch-linux-kernel-bug-exploited-in-attacks/</guid>
	<description><![CDATA[​CISA has ordered federal agencies to secure their systems within three weeks against a high-severity Linux kernel flaw actively exploited in attacks. [...]]]></description>
 </item>

 <item>
        <title>Hackers spoof Microsoft ADFS login pages to steal credentials</title>
        <link>https://www.bleepingcomputer.com/news/security/hackers-spoof-microsoft-adfs-login-pages-to-steal-credentials/</link>
        <pubDate>Wed, 05 Feb 2025 13:41:27 -0500</pubDate>
        <dc:creator>Bill Toulas</dc:creator>

        
        <category><![CDATA[Security]]></category>


        <guid>https://www.bleepingcomputer.com/news/security/hackers-spoof-microsoft-adfs-login-pages-to-steal-credentials/</guid>
	<description><![CDATA[A help desk phishing campaign targets an organization's Microsoft Active Directory Federation Services (ADFS) using spoofed login pages to steal credentials and bypass multi-factor authentication (MFA) protections. [...]]]></description>
 </item>

 <item>
        <title>AMD fixes bug that lets hackers load malicious microcode patches</title>
        <link>https://www.bleepingcomputer.com/news/security/amd-fixes-bug-that-lets-hackers-load-malicious-microcode-patches/</link>
        <pubDate>Wed, 05 Feb 2025 13:30:05 -0500</pubDate>
        <dc:creator>Sergiu Gatlan</dc:creator>

        
        <category><![CDATA[Security]]></category>


        <guid>https://www.bleepingcomputer.com/news/security/amd-fixes-bug-that-lets-hackers-load-malicious-microcode-patches/</guid>
	<description><![CDATA[​AMD has released mitigation and firmware updates to address a high-severity vulnerability that can be exploited to load malicious CPU microcode on unpatched devices. [...]]]></description>
 </item>

 <item>
        <title>CISA tags Microsoft .NET and Apache OFBiz bugs as exploited in attacks</title>
        <link>https://www.bleepingcomputer.com/news/security/cisa-tags-microsoft-net-and-apache-ofbiz-bugs-as-exploited-in-attacks/</link>
        <pubDate>Wed, 05 Feb 2025 11:45:33 -0500</pubDate>
        <dc:creator>Bill Toulas</dc:creator>

        
        <category><![CDATA[Security]]></category>


        <guid>https://www.bleepingcomputer.com/news/security/cisa-tags-microsoft-net-and-apache-ofbiz-bugs-as-exploited-in-attacks/</guid>
	<description><![CDATA[The US Cybersecurity & Infrastructure Security Agency (CISA) has added four vulnerabilities to its Known Exploited Vulnerabilities catalog, urging federal agencies and large organizations to apply the available security updates as soon as possible. [...]]]></description>
 </item>

 <item>
        <title>Spain arrests suspected hacker of US and Spanish military agencies</title>
        <link>https://www.bleepingcomputer.com/news/legal/spain-arrests-suspected-hacker-of-us-and-spanish-military-agencies/</link>
        <pubDate>Wed, 05 Feb 2025 10:37:41 -0500</pubDate>
        <dc:creator>Bill Toulas</dc:creator>

        
        <category><![CDATA[Legal]]></category>

        <category><![CDATA[Security]]></category>


        <guid>https://www.bleepingcomputer.com/news/legal/spain-arrests-suspected-hacker-of-us-and-spanish-military-agencies/</guid>
	<description><![CDATA[The Spanish police have arrested a suspected hacker in Alicante for allegedly conducting 40 cyberattacks targeting critical public and private organizations, including the Guardia Civil, the Ministry of Defense, NATO, the US Army, and various universities. [...]]]></description>
 </item>

 <item>
        <title>How attackers abuse S3 Bucket Namesquatting — And How to Stop Them</title>
        <link>https://www.bleepingcomputer.com/news/security/how-attackers-abuse-s3-bucket-namesquatting-and-how-to-stop-them/</link>
        <pubDate>Wed, 05 Feb 2025 10:00:10 -0500</pubDate>
        <dc:creator>Sponsored by Varonis</dc:creator>

        
        <category><![CDATA[Security]]></category>


        <guid>https://www.bleepingcomputer.com/news/security/how-attackers-abuse-s3-bucket-namesquatting-and-how-to-stop-them/</guid>
	<description><![CDATA[AWS S3 bucket names are global with predictable names that can be exploited in "S3 bucket namesquatting" attacks to access or hijack S3 buckets. In this article, Varonis explains how these attacks work and how you can prevent them. [...]]]></description>
 </item>

 <item>
        <title>Zyxel won’t patch newly exploited flaws in end-of-life routers</title>
        <link>https://www.bleepingcomputer.com/news/security/zyxel-wont-patch-newly-exploited-flaws-in-end-of-life-routers/</link>
        <pubDate>Tue, 04 Feb 2025 16:22:52 -0500</pubDate>
        <dc:creator>Bill Toulas</dc:creator>

        
        <category><![CDATA[Security]]></category>

        <category><![CDATA[Hardware]]></category>


        <guid>https://www.bleepingcomputer.com/news/security/zyxel-wont-patch-newly-exploited-flaws-in-end-of-life-routers/</guid>
	<description><![CDATA[Zyxel has issued a security advisory about actively exploited flaws in CPE Series devices, warning that it has no plans to issue fixing patches and urging users to move to actively supported models. [...]]]></description>
 </item>

 <item>
        <title>Crypto-stealing apps found in Apple App Store for the first time</title>
        <link>https://www.bleepingcomputer.com/news/mobile/crypto-stealing-apps-found-in-apple-app-store-for-the-first-time/</link>
        <pubDate>Tue, 04 Feb 2025 15:16:19 -0500</pubDate>
        <dc:creator>Bill Toulas</dc:creator>

        
        <category><![CDATA[Mobile]]></category>

        <category><![CDATA[CryptoCurrency]]></category>


        <guid>https://www.bleepingcomputer.com/news/mobile/crypto-stealing-apps-found-in-apple-app-store-for-the-first-time/</guid>
	<description><![CDATA[A new campaign dubbed 'SparkCat' has been uncovered, targeting the cryptocurrency wallet recovery phrases of Android and iOS users using optical character recognition (OCR) stealers. [...]]]></description>
 </item>

 <item>
        <title>Cyber agencies share security guidance for network edge devices</title>
        <link>https://www.bleepingcomputer.com/news/security/cyber-agencies-share-security-guidance-for-network-edge-devices/</link>
        <pubDate>Tue, 04 Feb 2025 13:24:20 -0500</pubDate>
        <dc:creator>Sergiu Gatlan</dc:creator>

        
        <category><![CDATA[Security]]></category>


        <guid>https://www.bleepingcomputer.com/news/security/cyber-agencies-share-security-guidance-for-network-edge-devices/</guid>
	<description><![CDATA[Five Eyes cybersecurity agencies in the UK, Australia, Canada, New Zealand, and the U.S. have issued guidance urging makers of network edge devices and appliances to improve forensic visibility to help defenders detect attacks and investigate breaches. [...]]]></description>
 </item>

 <item>
        <title>Chinese cyberspies use new SSH backdoor in network device hacks</title>
        <link>https://www.bleepingcomputer.com/news/security/chinese-cyberspies-use-new-ssh-backdoor-in-network-device-hacks/</link>
        <pubDate>Tue, 04 Feb 2025 12:39:40 -0500</pubDate>
        <dc:creator>Bill Toulas</dc:creator>

        
        <category><![CDATA[Security]]></category>


        <guid>https://www.bleepingcomputer.com/news/security/chinese-cyberspies-use-new-ssh-backdoor-in-network-device-hacks/</guid>
	<description><![CDATA[A Chinese hacking group is hijacking the SSH daemon on network appliances by injecting malware into the process for persistent access and covert operations. [...]]]></description>
 </item>

</channel>
</rss>