Skip to content

company

BleepingComputer

BleepingComputer is a technology news website focused on cybersecurity, covering malware, data breaches, vulnerabilities, and IT security incidents.

Known aliases

  • Bleeping Computer
  • bleepingcomputer.com

Relationships

No evidence-backed relationships are recorded.

Current stories

build1 publisher

An autonomous AI agent narrated its own post-exploitation moves into DIVD's logs

DIVD says the autonomous AI agent behind its first security incident in seven years wrote its own reasoning into the system logs. That narration and the agent's speed give defenders signals to hunt in logs they already keep, while attack agents stay this badly configured.

Publishers:dev.to

Reality

Evidence35
Adoption
Insufficient
Hype gap+25
Incentives
Insufficient
Confidence35
security4 publishers

Attackers move the ClickFix paste into Windows Terminal to land a multi-stage intrusion chain

Microsoft's TerminalFix writeup shows the same fake CAPTCHA lure now feeding multi-line PowerShell into Windows Terminal, where it sideloads a signed binary, pulls payloads out of PNG files and leaves a reverse tunnel behind.

Perspective Coverage

4 publishers
Builder
Builder 20%
Operator
Operator 75%
Investor
Investor 5%

Reality

Evidence65
Adoption
Insufficient
Hype gap+20
Incentives30
Confidence65

Earlier coverage

  1. ShinyHunters says a Grav upload path let it deface Clop's leak site

    Build · September 19, 2026 · 2 publishers

  2. FedRAMP's December 7 rules shrink the worst-case remediation window to 12 hours

    Security · September 24, 2026 · 1 publisher

  3. Microsoft patches File History failure caused by September update, but only for Windows 11 so far

    Security · September 24, 2026 · 1 publisher

  4. Always On VPN hangs on Windows 11 clients set to fall back between IKEv2 and SSTP

    Security · September 23, 2026 · 1 publisher

  5. BigDiskBuster reserves the last free bytes on C: to make Defender updates fail

    Build · September 22, 2026 · 1 publisher

  6. GreyNoise ties 18,566 stolen government records and 996 harvested Zyxel switches to one actor

    Build · September 22, 2026 · 1 publisher

  7. A rogue external MFA provider plants a fake Microsoft password prompt in Entra's login flow

    Security · September 22, 2026 · 1 publisher

  8. Click2Shell turns a 5.3-rated WordPress selector injection into PHP on the server

    Build · September 22, 2026 · 1 publisher

  9. Red Hat's interim mitigations cover two of the three kernel flaws CISA lists as exploited

    Build · September 22, 2026 · 1 publisher

  10. ShinyHunters says it controls the private keys to Cl0p's onion address

    Product · September 21, 2026 · 1 publisher

  11. Microsoft ships four manual patches for the Excel paste failure September's updates caused

    Security · September 21, 2026 · 1 publisher

  12. Microsoft: September 2026 update may stop File History from writing backups on some systems

    Security · September 21, 2026 · 1 publisher

  13. ShinyHunters says a Grav upload flaw got it inside Cl0p's leak site

    Product · September 21, 2026 · 1 publisher

  14. Malicious npm package fires its loader from inside BTree.prototype.set()

    Build · September 20, 2026 · 1 publisher

  15. Untrusted JavaScript found Codex's auth token in the shared V8 heap and ran a host command

    Build · September 20, 2026 · 1 publisher

  16. Microsoft's September 17 Defender update ends the false 'antivirus is turned off' notifications

    Security · September 18, 2026 · 1 publisher

  17. Microsoft's Excel paste fix reaches only the installer edition of Office 2016

    Security · September 18, 2026 · 1 publisher

  18. Google flags possible limited exploitation of Pixel modem bypass; CISA says active exploitation confirmed

    Build · September 17, 2026 · 1 publisher

  19. KREMLIN forges Chromium's Secure Preferences HMACs with keys already on the endpoint

    Build · September 17, 2026 · 1 publisher

  20. Two reports price the average ransomware incident at 36 times the median ransom

    Security · September 17, 2026 · 1 publisher

  21. Admin Menu Editor Pro's own update channel delivered the web shell to 1,500 sites

    Build · September 16, 2026 · 1 publisher

  22. Attackers are telling a WooCommerce plugin that PHP is an allowed upload extension

    Build · September 16, 2026 · 1 publisher

  23. KB5124008 is severing Windows 11 machine accounts from their domain controllers

    Security · September 16, 2026 · 1 publisher

  24. A query string walks past server.fs.deny on Vite dev servers left on a public port

    Build · September 15, 2026 · 2 publishers

  25. Attacker with root on the Admin Menu Editor site poisoned the fix as well as the original update

    Security · September 15, 2026 · 1 publisher

  26. Attackers bypassed PaperCut's first emergency patch on the day it shipped

    Security · September 15, 2026 · 1 publisher

  27. Rolling back the update that broke RDS also removes September's 9.8-rated RDS fix

    Build · September 14, 2026 · 1 publisher

  28. An ASN.1 heap overflow puts Check Point management servers in the same patch window as the gateways

    Build · September 12, 2026 · 1 publisher

  29. Three malware campaigns stage their lure pages on Claude and ChatGPT share links

    Build · September 11, 2026 · 1 publisher

  30. Microsoft's August security update kept Teams off freshly imaged ARM Surfaces for 28 days

    Security · September 11, 2026 · 1 publisher

  31. September's Windows Server updates take Remote Desktop down hours after install

    Security · September 10, 2026 · 1 publisher

  32. Excel users are uninstalling KB5002914 to get copy and paste working again

    Security · September 10, 2026 · 1 publisher

  33. Replayed session cookies bypassed the conditional access that blocked stolen passwords

    Security · September 10, 2026 · 1 publisher

  34. A six-hour agent run harvested credentials from behind the victim's own cloud IPs

    Build · September 10, 2026 · 1 publisher

  35. Scattered Spider talks help desks into moving MFA onto attacker-controlled devices

    Security · September 9, 2026 · 1 publisher

  36. Closing N-central's CVSS 10.0 pre-auth RCE takes build 2026.3.1.14

    Build · September 8, 2026 · 1 publisher

  37. Microsoft bundles September's 1,000 Windows 11 fixes with a movable taskbar and new Search defaults

    Security · September 8, 2026 · 1 publisher

  38. BigBear 2.0 breaks WebAuthn in the browser to force a relayable MFA fallback

    Build · September 8, 2026 · 1 publisher

  39. ShinyHunters claims it scraped 200,000 driver records out of Florida's DAVID lookup portal

    Security · September 8, 2026 · 1 publisher

  40. GPUThor opens a root shell on four Ampere cards with ECC switched on

    Product · September 7, 2026 · 1 publisher