Hackers abuse OAuth 2.0 workflows to hijack Microsoft 365 accounts

Russian threat actors have been abusing legitimate OAuth 2.0 authentication workflows to hijack Microsoft 365 accounts of employees of organizations related to Ukraine and human rights.

BleepingComputer
Is your Roku TV spying on you? Probably, but here's how to put an end to it

Your Amazon Fire Stick, Chromecast, and other streaming devices collect your personal data for various reasons. If you're uncomfortable with that, here's how to get peace of mind.

ZDNET
#cybernews #cybersecurity #malware
North Korean Hackers Spread Malware via Fake Crypto Firms and Job Interview Lures
https://thehackernews.com/2025/04/north-korean-hackers-spread-malware-via.html?m=1
North Korean Hackers Spread Malware via Fake Crypto Firms and Job Interview Lures

North Korean hackers use fake crypto firms and job interview lures to spread cross-platform malware targeting IT professionals globally.

The Hacker News
Baltimore City Public Schools data breach affects over 31,000 people

​Baltimore City Public Schools notified tens of thousands of employees and students of a data breach following an incident in February when unknown attackers hacked into its network.

BleepingComputer
Craft CMS RCE exploit chain used in zero-day attacks to steal data

Two vulnerabilities impacting Craft CMS were chained together in zero-day attacks to breach servers and steal data, with exploitation ongoing, according to CERT Orange Cyberdefense.

BleepingComputer

This has to be the most amusing way to get your #breach updates.

From #aijoe and #cybernews

We have no affiliation, just sharing.

#IT #infosec #security #itsecurity

https://youtu.be/1mVqUuJ8Olw

RFID Malware, BreachForums Update & Nintendo Switch 2 | cybernews.com

YouTube

Software om werknemers te monitoren lekt 21 miljoen screenshots

Miljoenen heimelijk genomen screenshots van zeker 200.000 werknemers zijn op straat komen te liggen. Het gaat om werknemers van bedrijven die het programma #WorkComposer gebruiken om de productiviteit van hun personeel te monitoren.

#cyber
#Cybernews
#datalek
#security
#tech

KI könnte Apps ablösen, sagte Metas Chief Technology Officer Andrew Bosworth. Derzeit suchen sich die Menschen Software aus einem „Garten voller Anwendungen“ aus, sagte er gestern in einer Podcast-Folge. Anstatt eine bestimmte App wie Spotify zu öffnen, um Musik zu hören, sagte Bosworth, würde er lieber einer KI einfach sagen, was er will, und sie den Rest erledigen lassen.

#ki #ai #apps #cybernews #technews #spotify #meta

https://www.businessinsider.com/ai-app-model-irrelevant-consumer-meta-tech-chief-andrew-bosworth-2025-4

AI could turn the app model on its head, says Meta's tech chief

AI could replace apps as the main way people use technology, said Andrew Bosworth.

Business Insider
#cybersecurity #cybernews #vulnerability #exploit
Kimsuky Exploits BlueKeep RDP Vulnerability to Breach Systems in South Korea and Japan
https://thehackernews.com/2025/04/kimsuky-exploits-bluekeep-rdp.html?m=1
Kimsuky Exploits BlueKeep RDP Vulnerability to Breach Systems in South Korea and Japan

Kimsuky exploited CVE-2019-0708 and CVE-2017-11882 since Oct 2023 to target 15 countries.

The Hacker News