{"version": "https://jsonfeed.org/version/1.1", "title": "BleepingComputer", "feed_url": "https://www.bleepingcomputer.com/", "home_page_url": "102", "description": "BleepingComputer - All Stories", "icon": null, "favicon": null, "authors": [{"name": "Unknown", "url": null, "avatar": null}], "language": "en", "expired": null, "hub": null, "items": [{"id": "https://www.bleepingcomputer.com/news/security/hackers-target-us-firms-in-fastjson-rce-zero-day-attacks/", "url": "https://www.bleepingcomputer.com/news/security/hackers-target-us-firms-in-fastjson-rce-zero-day-attacks/", "external_url": null, "title": "Hackers target US firms in FastJson RCE zero-day attacks", "content_text": "", "content_html": "Hackers are actively exploiting a vulnerability in the FastJson open-source Java library, allowing remote code execution without user interaction or elevated privileges. [...]", "summary": "Hackers are actively exploiting a vulnerability in the FastJson open-source Java library, allowing remote code execution without user interaction or elevated privileges. [...]", "image": null, "banner_image": null, "date_published": "2026-07-27T15:49:44Z", "date_modified": "2026-07-27T15:49:44Z", "authors": ["Bill Toulas"], "tags": [], "language": null, "attachments": ["\n                            {\"url\": string, \n                            'mime_type': string, \n                            'title': strinrg,\n                            'size_in_bytes': int,\n                            'duration_in_seconds': int\n                            "]}, {"id": "https://www.bleepingcomputer.com/news/security/arista-patches-velocloud-orchestrator-zero-day-exploited-in-attacks/", "url": "https://www.bleepingcomputer.com/news/security/arista-patches-velocloud-orchestrator-zero-day-exploited-in-attacks/", "external_url": null, "title": "Arista patches VeloCloud Orchestrator zero-day exploited in attacks", "content_text": "", "content_html": "Arista has patched a maximum-severity command injection vulnerability in on-premises VeloCloud Orchestrator deployments that is being actively exploited in attacks. [...]", "summary": "Arista has patched a maximum-severity command injection vulnerability in on-premises VeloCloud Orchestrator deployments that is being actively exploited in attacks. [...]", "image": null, "banner_image": null, "date_published": "2026-07-27T14:49:44Z", "date_modified": "2026-07-27T14:49:44Z", "authors": ["Lawrence Abrams"], "tags": [], "language": null, "attachments": ["\n                            {\"url\": string, \n                            'mime_type': string, \n                            'title': strinrg,\n                            'size_in_bytes': int,\n                            'duration_in_seconds': int\n                            "]}, {"id": "https://www.bleepingcomputer.com/news/security/new-dysphoria-ddos-botnet-spreads-to-200k-devices-worldwide/", "url": "https://www.bleepingcomputer.com/news/security/new-dysphoria-ddos-botnet-spreads-to-200k-devices-worldwide/", "external_url": null, "title": "New Dysphoria DDoS botnet spreads to 200k devices worldwide", "content_text": "", "content_html": "A botnet called Dysphoria has compromised around 200,000 devices across the world and is using them for distributed denial of service (DDoS) attacks and traffic relay operations. [...]", "summary": "A botnet called Dysphoria has compromised around 200,000 devices across the world and is using them for distributed denial of service (DDoS) attacks and traffic relay operations. [...]", "image": null, "banner_image": null, "date_published": "2026-07-27T13:08:15Z", "date_modified": "2026-07-27T13:08:15Z", "authors": ["Bill Toulas"], "tags": [], "language": null, "attachments": ["\n                            {\"url\": string, \n                            'mime_type': string, \n                            'title': strinrg,\n                            'size_in_bytes': int,\n                            'duration_in_seconds': int\n                            "]}, {"id": "https://www.bleepingcomputer.com/news/security/new-certighost-poc-exploit-lets-attackers-hijack-windows-domains/", "url": "https://www.bleepingcomputer.com/news/security/new-certighost-poc-exploit-lets-attackers-hijack-windows-domains/", "external_url": null, "title": "New Certighost PoC exploit lets attackers hijack Windows domains", "content_text": "", "content_html": "A proof-of-concept exploit for \"Certighost,\" a Windows Active Directory Certificate Services vulnerability, has been released that can allow authenticated attackers to potentially compromise a Windows domain. [...]", "summary": "A proof-of-concept exploit for \"Certighost,\" a Windows Active Directory Certificate Services vulnerability, has been released that can allow authenticated attackers to potentially compromise a Windows domain. [...]", "image": null, "banner_image": null, "date_published": "2026-07-27T13:00:25Z", "date_modified": "2026-07-27T13:00:25Z", "authors": ["Lawrence Abrams"], "tags": [], "language": null, "attachments": ["\n                            {\"url\": string, \n                            'mime_type': string, \n                            'title': strinrg,\n                            'size_in_bytes': int,\n                            'duration_in_seconds': int\n                            "]}, {"id": "https://www.bleepingcomputer.com/news/apple/apple-sued-over-fake-app-store-crypto-wallet-app-stealing-18m-in-bitcoin/", "url": "https://www.bleepingcomputer.com/news/apple/apple-sued-over-fake-app-store-crypto-wallet-app-stealing-18m-in-bitcoin/", "external_url": null, "title": "Apple sued over fake App Store crypto wallet app stealing $1.8M in Bitcoin", "content_text": "", "content_html": "Apple is being sued by three\u00a0people who claim approximately $1.8 million in Bitcoin was stolen after downloading and using a fraudulent Sparrow Wallet application from the App Store. [...]", "summary": "Apple is being sued by three\u00a0people who claim approximately $1.8 million in Bitcoin was stolen after downloading and using a fraudulent Sparrow Wallet application from the App Store. [...]", "image": null, "banner_image": null, "date_published": "2026-07-27T09:29:07Z", "date_modified": "2026-07-27T09:29:07Z", "authors": ["Lawrence Abrams"], "tags": [], "language": null, "attachments": ["\n                            {\"url\": string, \n                            'mime_type': string, \n                            'title': strinrg,\n                            'size_in_bytes': int,\n                            'duration_in_seconds': int\n                            "]}, {"id": "https://www.bleepingcomputer.com/news/security/coca-cola-confirms-data-theft-in-fairlife-ransomware-attack/", "url": "https://www.bleepingcomputer.com/news/security/coca-cola-confirms-data-theft-in-fairlife-ransomware-attack/", "external_url": null, "title": "Coca-Cola confirms data theft in Fairlife ransomware attack", "content_text": "", "content_html": "The Coca-Cola Company has confirmed that hackers stole data from its dairy subsidiary, Fairlife, during a ransomware attack earlier this month. [...]", "summary": "The Coca-Cola Company has confirmed that hackers stole data from its dairy subsidiary, Fairlife, during a ransomware attack earlier this month. [...]", "image": null, "banner_image": null, "date_published": "2026-07-27T07:39:51Z", "date_modified": "2026-07-27T07:39:51Z", "authors": ["Bill Toulas"], "tags": [], "language": null, "attachments": ["\n                            {\"url\": string, \n                            'mime_type': string, \n                            'title': strinrg,\n                            'size_in_bytes': int,\n                            'duration_in_seconds': int\n                            "]}, {"id": "https://www.bleepingcomputer.com/news/security/ernst-and-young-data-breach-claimed-by-shinyhunters-extortion-gang/", "url": "https://www.bleepingcomputer.com/news/security/ernst-and-young-data-breach-claimed-by-shinyhunters-extortion-gang/", "external_url": null, "title": "Ernst & Young data breach claimed by ShinyHunters extortion gang", "content_text": "", "content_html": "The ShinyHunters extortion gang has claimed responsibility for a recently disclosed Ernst & Young data breach, saying it obtained credentials for some of the company's systems via a supply-chain attack. [...]", "summary": "The ShinyHunters extortion gang has claimed responsibility for a recently disclosed Ernst & Young data breach, saying it obtained credentials for some of the company's systems via a supply-chain attack. [...]", "image": null, "banner_image": null, "date_published": "2026-07-27T07:12:27Z", "date_modified": "2026-07-27T07:12:27Z", "authors": ["Lawrence Abrams"], "tags": [], "language": null, "attachments": ["\n                            {\"url\": string, \n                            'mime_type': string, \n                            'title': strinrg,\n                            'size_in_bytes': int,\n                            'duration_in_seconds': int\n                            "]}, {"id": "https://www.bleepingcomputer.com/news/security/shadow-ai-agents-are-multiplying-heres-how-to-find-and-secure-them/", "url": "https://www.bleepingcomputer.com/news/security/shadow-ai-agents-are-multiplying-heres-how-to-find-and-secure-them/", "external_url": null, "title": "Shadow AI agents are multiplying. Here's how to find and secure them.", "content_text": "", "content_html": "Shadow AI agents are rapidly spreading across enterprise platforms, often without IT or security visibility. Nudge Security explains how organizations can discover, assess, and govern AI agents before unmanaged permissions and autonomous actions create security risks. [...]", "summary": "Shadow AI agents are rapidly spreading across enterprise platforms, often without IT or security visibility. Nudge Security explains how organizations can discover, assess, and govern AI agents before unmanaged permissions and autonomous actions create security risks. [...]", "image": null, "banner_image": null, "date_published": "2026-07-27T06:01:11Z", "date_modified": "2026-07-27T06:01:11Z", "authors": ["Sponsored by Nudge Security"], "tags": [], "language": null, "attachments": ["\n                            {\"url\": string, \n                            'mime_type': string, \n                            'title': strinrg,\n                            'size_in_bytes': int,\n                            'duration_in_seconds': int\n                            "]}, {"id": "https://www.bleepingcomputer.com/news/security/github-pypi-add-time-absed-defenses-against-supply-chain-attacks/", "url": "https://www.bleepingcomputer.com/news/security/github-pypi-add-time-absed-defenses-against-supply-chain-attacks/", "external_url": null, "title": "GitHub, PyPI add time-based defenses against supply chain attacks", "content_text": "", "content_html": "GitHub and PyPI (Python Package Index) have introduced a time-based mechanism in the Dependabot dependency management tool to protect against supply-chain attacks and to limit their impact. [...]", "summary": "GitHub and PyPI (Python Package Index) have introduced a time-based mechanism in the Dependabot dependency management tool to protect against supply-chain attacks and to limit their impact. [...]", "image": null, "banner_image": null, "date_published": "2026-07-26T06:13:39Z", "date_modified": "2026-07-26T06:13:39Z", "authors": ["Bill Toulas"], "tags": [], "language": null, "attachments": ["\n                            {\"url\": string, \n                            'mime_type': string, \n                            'title': strinrg,\n                            'size_in_bytes': int,\n                            'duration_in_seconds': int\n                            "]}, {"id": "https://www.bleepingcomputer.com/news/security/steam-forum-clickfix-attacks-infect-gamers-with-xmrig-cryptominers/", "url": "https://www.bleepingcomputer.com/news/security/steam-forum-clickfix-attacks-infect-gamers-with-xmrig-cryptominers/", "external_url": null, "title": "Steam forum ClickFix attacks infect gamers with XMRig cryptominers", "content_text": "", "content_html": "Steam discussion forums are being abused in ClickFix attacks that pretend to be fixes for game and computer problems but actually infect devices with cryptominers. [...]", "summary": "Steam discussion forums are being abused in ClickFix attacks that pretend to be fixes for game and computer problems but actually infect devices with cryptominers. [...]", "image": null, "banner_image": null, "date_published": "2026-07-25T14:37:47Z", "date_modified": "2026-07-25T14:37:47Z", "authors": ["Lawrence Abrams"], "tags": [], "language": null, "attachments": ["\n                            {\"url\": string, \n                            'mime_type': string, \n                            'title': strinrg,\n                            'size_in_bytes': int,\n                            'duration_in_seconds': int\n                            "]}]}