⚠️WARNING — Hackers are actively exploiting a critical zero-day vulnerability in the WordPress e-commerce plugin WPGateway & have attacked more than 280,000 sites in the last 30 days, adding malicious admins to the successfully breached sites.
https://thehackernews.com/2022/09/over-280000-wordpress-sites-attacked.html
https://thehackernews.com/2022/09/over-280000-wordpress-sites-attacked.html
🤯65👍29😱28😁11🤔6👏3
< September 2022, Patch Tuesday >
Microsoft issues security patches to fix 64 newly identified vulnerabilities across its software lineup, including a 0-day vulnerability that has been actively exploited in the real world.
https://thehackernews.com/2022/09/microsofts-latest-security-update-fixes.html
Microsoft issues security patches to fix 64 newly identified vulnerabilities across its software lineup, including a 0-day vulnerability that has been actively exploited in the real world.
https://thehackernews.com/2022/09/microsofts-latest-security-update-fixes.html
👍48🔥9🤯4😁3👏1
Researchers have detailed the inner workings of a malware called OriginLogger, which is being traded as a successor to the widespread information stealer and malware known as Agent Tesla.
Read details: https://thehackernews.com/2022/09/researchers-detail-originlogger-rat.html
Read details: https://thehackernews.com/2022/09/researchers-detail-originlogger-rat.html
🤔21👍9👏6🔥5🤯1
SparklingGoblin APT hackers have been spotted using a new Linux variant of the SideWalk backdoor, highlighting the implant's cross-platform capabilities.
Read: https://thehackernews.com/2022/09/sparklinggoblin-apt-hackers-using-new.html
Read: https://thehackernews.com/2022/09/sparklinggoblin-apt-hackers-using-new.html
👍20🔥10🤔5👏2
Cybercriminals behind the Lornenz ransomware attacks exploit a vulnerability in Mitel VoIP phone systems to gain a foothold in targeted companies.
Read details: https://thehackernews.com/2022/09/lorenz-ransomware-exploit-mitel-voip.html
Read details: https://thehackernews.com/2022/09/lorenz-ransomware-exploit-mitel-voip.html
🤯29🔥11👍9😱3🤔2
WANTED BY THE FBI — $10 MILLION Reward!
United States charges 3 Iranian hackers for ransomware attacks against hundreds of organizations around the world and imposes sanctions on them and 7 other individuals and 2 organizations.
https://thehackernews.com/2022/09/us-charges-3-iranian-hackers-and.html
United States charges 3 Iranian hackers for ransomware attacks against hundreds of organizations around the world and imposes sanctions on them and 7 other individuals and 2 organizations.
https://thehackernews.com/2022/09/us-charges-3-iranian-hackers-and.html
👍58🤯34😱28🔥24😁20👏4🤔3
Webworm hackers have used customized versions of three older remote access trojans (RATs), including Trochilus, Gh0st, and 9002, in recent cyber espionage attacks.
Read: https://thehackernews.com/2022/09/webworm-hackers-using-modified-rats-in.html
Read: https://thehackernews.com/2022/09/webworm-hackers-using-modified-rats-in.html
👍21👏7🤔7🔥4⚡2
In an ongoing #cyberespionage campaign, Gamaredon APT Russian hackers are targeting employees of Ukrainian government, defense, and law enforcement agencies with custom malware to steal information.
Read: https://thehackernews.com/2022/09/russian-gamaredon-hackers-target.html
Read: https://thehackernews.com/2022/09/russian-gamaredon-hackers-target.html
🔥19👍14🤯6🤔5
Gamers looking for cheats on YouTube are being targeted with malicious links that install RedLine stealer malware and cryptocurency miners on gaming computers.
Read: https://thehackernews.com/2022/09/researchers-warn-of-self-spreading.html
Read: https://thehackernews.com/2022/09/researchers-warn-of-self-spreading.html
😁82👍16🤯12😱11👏10🔥8🤔4
Uber is investigating a new breach of its network after a hacker appears to have compromised an employee's Slack account and accessed other internal systems.
Read: https://thehackernews.com/2022/09/uber-says-its-investigating-potential.html
Read: https://thehackernews.com/2022/09/uber-says-its-investigating-potential.html
😱37🔥21⚡17👍10😁9🤔6👏5🤯4
Researchers have uncovered two separate malicious cryptocurrency mining campaigns; one exploiting Oracle WebLogic to control vulnerable servers, while the other targets misconfigured Docker containers.
Read: https://thehackernews.com/2022/09/hackers-targeting-weblogic-servers-and.html
Read: https://thehackernews.com/2022/09/hackers-targeting-weblogic-servers-and.html
🤯29👍14👏5😁5
North Korean hackers have been found leveraging a "novel spear-phish method" that involves making use of trojanized versions of the PuTTY SSH and Telnet client.
Read: https://thehackernews.com/2022/09/north-korean-hackers-spreading.html
Read: https://thehackernews.com/2022/09/north-korean-hackers-spreading.html
👍32🔥8🤔5👏1
New connections between two widely used pay-per-install (PPI) malware distribution services have been discovered, revealing that PrivateLoader is the proprietary loader for Ruzki's PPI service.
Read: https://thehackernews.com/2022/09/researchers-find-link-bw-privateloader.html
Read: https://thehackernews.com/2022/09/researchers-find-link-bw-privateloader.html
👍38🤔3👏2
A recent breach at password management solution LastPass gave hackers access to the company's systems for a 4-days, but "there is no evidence that customer data or encrypted password vaults were accessed."
Read: https://thehackernews.com/2022/09/hackers-had-access-to-lastpasss.html
Read: https://thehackernews.com/2022/09/hackers-had-access-to-lastpasss.html
😁46😱23🤔21👍20⚡9🔥9
Uber claims to have found "no evidence" that users' private data was compromised in the recent breach, but screenshots and information from other sources suggest there may be more to this story.
Read: https://thehackernews.com/2022/09/uber-claims-no-sensitive-data-exposed.html
Read: https://thehackernews.com/2022/09/uber-claims-no-sensitive-data-exposed.html
🔥59😁31🤔26👍21⚡7
Microsoft warns of an ongoing large-scale CLICK fraud campaign targeting gamers by secretly installing browser extensions on compromised systems.
Read: https://thehackernews.com/2022/09/microsoft-warns-of-large-scale-click.html
Read: https://thehackernews.com/2022/09/microsoft-warns-of-large-scale-click.html
👍46😁11👏4
Bitdefender has released a free decryptor for LockerGoga ransomware in collaboration with Europol and Zurich law enforcement.
Read: https://thehackernews.com/2022/09/europol-and-bitdefender-release-free.html
Read: https://thehackernews.com/2022/09/europol-and-bitdefender-release-free.html
👏50👍21⚡11🔥4
After Conti group officially withdrew from the threat landscape, ransomware-as-a-service groups such as Quantum and BlackCat have recently been spotted using the Emotet botnet to expand their reach.
Read: https://thehackernews.com/2022/09/emotet-botnet-started-distributing.html
Read: https://thehackernews.com/2022/09/emotet-botnet-started-distributing.html
👍36⚡8🤔3
American video game publisher Rockstar Games has confirmed that a hacker illegally downloaded early footage of Grand Theft Auto VI.
Read: https://thehackernews.com/2022/09/rockstar-games-confirms-hacker-stole.html
Read: https://thehackernews.com/2022/09/rockstar-games-confirms-hacker-stole.html
😁75🔥27👍22⚡15🤯14😱11👏3🤔1
Uber says the hacker responsible for the latest security breach is linked to the Lapsus$ extortion group.
Read: https://thehackernews.com/2022/09/uber-blames-lapsus-hacking-group-for.html
Read: https://thehackernews.com/2022/09/uber-blames-lapsus-hacking-group-for.html
🤔42🔥15⚡7👍7😁7
Researchers have discovered a threat cluster associated with Sandworm that continues to attack Ukraine with off-the-shelf #malware masquerading as telecommunications providers.
Read: https://thehackernews.com/2022/09/russian-sandworm-hackers-impersonate.html
Read: https://thehackernews.com/2022/09/russian-sandworm-hackers-impersonate.html
😁23🤔16👍14🔥5