Bleeping Computer
695 articles tracked since Apr 6 · 23:54 UTC. 21 in the last 7 days, 70 in the last 30.
Top coverage areas
Most-mentioned entities
Aggregated across the most recent 200 articles from Bleeping Computer.
Recent articles
- CISA orders urgent patching of actively exploited Zimbra flaw
The Cybersecurity and Infrastructure Security Agency (CISA) has ordered U.S. government agencies to patch a vulnerability. This directive addresses an actively exploited flaw found in Zimbra Collaboration Suite (ZCS), requiring action within three days.
- Microsoft shares temporary fix for Windows 11 gaming issues
Microsoft has provided a temporary fix for gaming issues that are ongoing. These technical difficulties were reportedly caused by Windows 11 updates that were released during the August 2026 Patch Tuesday.
- Microsoft warns of max severity Entra ID flaw exploited in attacks
Microsoft has issued a warning and subsequently patched a maximum-severity vulnerability found within the Entra ID identity and access management (IAM) platform. This critical flaw had been actively exploited in attacks, prompting the immediate security response from Microsoft.
- Hackers abuse FTP server banners to deliver new Windows malware
Threat actors are currently abusing FTP server banners to conceal commands. This method is used to deliver two previously undocumented types of malware, namely the remote access trojans E4del and PINHOLE, which target Windows.
- SickKids data breach exposes employee and job applicant info
Toronto's Hospital for Sick Children (SickKids) confirmed a cybersecurity incident exposed personal information belonging to current and former employees and job applicants. This exposure resulted from a flaw found in third-party software. The hospital stated that clinical systems and patient records were not affected.
- Citrix urges admins to patch new NetScaler flaws as soon as possible
Citrix has issued a warning to customers regarding two newly discovered vulnerabilities affecting NetScaler Gateway secure remote access solutions and NetScaler ADC networking appliances. The company urges administrators to patch their systems immediately to secure them against these flaws.
- CISA warns of hackers exploiting critical MLflow vulnerability
The Cybersecurity and Infrastructure Security Agency (CISA) warned federal agencies that threat actors are currently exploiting a critical vulnerability. This vulnerability resides within the MLflow open-source AI engineering platform.
- New Manic Android malware can exfiltrate data through nearby devices
A new malware named Manic has been identified for the Android platform. This malicious software specifically targets users located in multiple European countries. It possesses a sophisticated fallback data exfiltration mechanism that utilizes nearby infected devices.
- Critical Zimbra RCE flaw now actively exploited in attacks
CERT Polska warned that attackers have begun actively exploiting a critical vulnerability in Zimbra Collaboration Suite (ZCS). This flaw represents a Remote Code Execution (RCE) vulnerability. The warning highlights an ongoing threat from malicious actors.
- Microsoft says August Windows updates may cause gaming issues
Microsoft is investigating a potential issue concerning the August 2026 updates. These updates may affect affected Windows 11 systems by potentially preventing some games from launching or causing them to crash.
- Microsoft fixes known issue causing Windows Defender crashes
Microsoft has resolved a bug that caused Windows Defender to crash following a recent security update. The issue resulted in 0xc0000005 access violation errors on some systems.
- Critical RCE flaw in Windows IKE Extension now actively exploited
CISA warned that hackers are actively exploiting a critical-severity remote code execution (RCE) flaw. This vulnerability resides within the Windows Internet Key Exchange (IKE) Service Extensions component.
- Windows 11 24H2 Home and Pro reach end of support in 2 months
Microsoft has notified customers that certain systems running Windows 11 24H2 Home and Pro editions will cease receiving updates. This end of support is scheduled to happen in two months.
- CISA: Medusa ransomware hit over 500 critical infrastructure orgs
The FBI reported that the Medusa ransomware gang has breached more than 500 critical infrastructure organizations in the United States since June 2021. The incident was highlighted by CISA, noting the significant threat posed to these crucial sectors.
- Microsoft tests faster Windows File Explorer, new context menu
Microsoft has started testing several enhancements for Windows 11, including a faster File Explorer and a more customizable context menu. These updates are contained within Windows 11 preview builds that are rolling out to Insiders this week.
- CISA: Windows Task Host flaw now exploited by ransomware gangs
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that ransomware gangs are actively exploiting a high-severity flaw. This vulnerability concerns Windows Task Host, which had previously been flagged as being exploited in April.
- Microsoft confirms outage affecting search in Microsoft 365 apps
Microsoft has confirmed that some users are experiencing service issues related to searching within Microsoft 365 applications. The outage affects multiple services, specifically including Outlook on the web, Outlook desktop, SharePoint Online, and OneDrive.
- Microsoft starts removing WMIC tool used by cybercriminals
Microsoft announced the removal of the Windows Management Instrumentation Command-line (WMIC) tool. This removal effort affects multiple versions, including Windows 11 24H2 and 25H2. The action was taken because the WMIC tool is known to be used by cybercriminals.
- Philips and GE investigating Clop ransomware data theft claims
Tech giants General Electric (GE) and Philips confirmed that they are investigating data theft claims. These claims allege that the Clop ransomware gang breached their systems and stole sensitive data.
- French tax authority data breach affects 678,000 individuals
The French Ministry of the Economy and Finance disclosed a data breach involving an attacker who accessed the General Directorate of Public Finances (DGFiP) systems. This security incident resulted in the theft of data belonging to 678,000 individuals.
The Nexus tracks 230+ news outlets plus 48 government data feeds. View the full source index or read today’s briefing for synthesis across all of them.