Threatline

Cyber Security News From Around The World

Latest news as of 4/21/2025, 5:10:34 AM

The Register

6 days ago

Don't delete that mystery empty folder. Windows put it there as a security fix

Copilot vibe coding for OS development? Why not Canny Windows users who've spotted a mysterious folder on hard drives after applying last week's security patches for the operating system can rest assured – it's perfectly benign. In fact, it's recommended you leave the directory there.…

Bleeping Computer

6 days ago

Hertz confirms customer info and drivers' licenses stolen in data breach

Car rental giant Hertz Corporation warns it suffered a data breach after customer data for its Hertz, Thrifty, and Dollar brands was stolen in the Cleo zero-day data theft attacks. [...]

Dark Reading

6 days ago

AI Code Tools Widely Hallucinate Packages

The hallucination problem is not just pervasive, it is persistent as well, according to new research.

The Register

6 days ago

New SSL/TLS cert to live no longer than 47 days by 2029

IT admins, get ready to grumble CA/Browser Forum – a central body of web browser makers, security certificate issuers, and friends – has voted to cut the maximum lifespan of new SSL/TLS certs to just 47 days by March 15, 2029.…

Bleeping Computer

6 days ago

Govtech giant Conduent confirms client data stolen in January cyberattack

American business services giant and government contractor Conduent disclosed today that client data was stolen in a January 2025 cyberattack. [...]

Dark Reading

6 days ago

Threat Intel Firm Offers Crypto in Exchange for Dark Web Accounts

Prodaft is currently buying accounts from five Dark Web forums and offers to pay extra for administrator or moderator accounts. The idea is to infiltrate forums to boost its threat intelligence.

Bleeping Computer

6 days ago

Cybersecurity firm buying hacker forum accounts to spy on cybercriminals

Swiss cybersecurity firm Prodaft has launched a new initiative called 'Sell your Source' where the company purchases verified and aged accounts on cybercrime forums to conduct threat intelligence operations. [...]

The Register

6 days ago

Cyber congressman demands answers before CISA gets cut down to size

What's the goal here, Homeland Insecurity or something? As drastic cuts to the US govt's Cybersecurity and Infrastructure Security Agency loom, Rep Eric Swalwell (D-CA), the ranking member of the House's cybersecurity subcommittee, has demanded that CISA brief the subcommittee "prior to any significant changes to CISA's workforce or organizational structure."…

Bleeping Computer

6 days ago

SSL/TLS certificate lifespans reduced to 47 days by 2029

The CA/Browser Forum has voted to significantly reduce the lifespan of SSL/TLS certificates over the next 4 years, with a final lifespan of just 47 days starting in 2029. [...]

Dark Reading

6 days ago

Fortinet Zero-Day Bug May Lead to Arbitrary Code Execution

A threat actor posted about the zero-day exploit on the same day that Fortinet published a warning about known vulnerabilities under active exploitation.