Researchers have uncovered a new phishing campaign targeting the Kavach two-factor authentication solution used by Indian government officials.
Read details: https://thehackernews.com/2022/12/researchers-warn-of-kavach-2fa-phishing.html
Read details: https://thehackernews.com/2022/12/researchers-warn-of-kavach-2fa-phishing.html
😁9👍8🤔8👏6🤯3🔥2
FrodoPIR — A new privacy-focused system that allows clients to securely query a database without revealing query information to an untrusted server, making it useful for a range of apps, including safe browsing, breached password checks, and more.
https://thehackernews.com/2022/12/frodopir-new-privacy-focused-database.html
https://thehackernews.com/2022/12/frodopir-new-privacy-focused-database.html
👍38🔥10👏8
Cybercriminals are distributing info-stealing malware to developers through Python Package Index (PyPI). These malware variants, such as ANGEL and Celestial Stealer, are based on W4SP Stealer.
Read: https://thehackernews.com/2022/12/w4sp-stealer-discovered-in-multiple.html
Read: https://thehackernews.com/2022/12/w4sp-stealer-discovered-in-multiple.html
🤯34👍25🔥13😱12🤔10😁7⚡4👏2
Alert! PrivateLoader, a pay-per-install malware downloader service, is being used to distribute the information-stealing malware known as RisePro.
Read: https://thehackernews.com/2022/12/privateloader-ppi-service-found.html
Read: https://thehackernews.com/2022/12/privateloader-ppi-service-found.html
👍21🤯10🔥7😱5
GuLoader malware has upped its game, using advanced tactics to bypass security software.
Researchers have uncovered a 3-stage process where VBScript delivers shellcode within itself while performing anti-analysis checks.
Read: https://thehackernews.com/2022/12/guloader-malware-utilizing-new.html
Researchers have uncovered a 3-stage process where VBScript delivers shellcode within itself while performing anti-analysis checks.
Read: https://thehackernews.com/2022/12/guloader-malware-utilizing-new.html
👍25😱11🔥10
Facebook has reached a settlement of $725 million in a lawsuit over the Cambridge Analytica data leak.
Read: https://thehackernews.com/2022/12/facebook-to-pay-725-million-to-settle.html
Read: https://thehackernews.com/2022/12/facebook-to-pay-725-million-to-settle.html
👍49🤯40👏13🤔13😁10⚡8😱7🔥3
Alert! BlueNoroff APT hackers are using new techniques to bypass Windows' Mark of the Web protections, including the use of .ISO and .VHD file formats.
Read: https://thehackernews.com/2022/12/bluenoroff-apt-hackers-using-new-ways.html
Read: https://thehackernews.com/2022/12/bluenoroff-apt-hackers-using-new-ways.html
😱46👍23⚡10🔥9👏5😁4
Hackers are turning to malicious Excel add-in (.XLL) files as their initial attack vector, in response to Microsoft's decision to block VBA macros by default for Office files downloaded from the Internet .
https://thehackernews.com/2022/12/apt-hackers-turn-to-malicious-excel-add.html
https://thehackernews.com/2022/12/apt-hackers-turn-to-malicious-excel-add.html
👍39🤔21🔥12👏7🤯2
BitKeep, a decentralized multi-chain cryptocurrency wallet, has confirmed a cyberattack that led to the distribution of fraudulent versions of its Android app, resulting in the theft of an estimated $9.9 million worth of digital assets.
https://thehackernews.com/2022/12/bitkeep-confirms-cyber-attack-loses.html
https://thehackernews.com/2022/12/bitkeep-confirms-cyber-attack-loses.html
😁30🤯30👍20🔥5
A new malvertising campaign has been discovered that targets people searching for popular #software. This campaign uses Google Ads to spread Trojanized variants that deploy malware, including Raccoon Stealer and Vidar.
Read: https://thehackernews.com/2022/12/new-malvertising-campaign-via-google.html
Read: https://thehackernews.com/2022/12/new-malvertising-campaign-via-google.html
👍33😁8⚡3
Thousands of Citrix ADC and Gateway endpoints have not yet been patched for two critical vulnerabilities (CVE-2022-27510 and CVE-2022-27518), leaving several organisations vulnerable to potential cyberattacks.
https://thehackernews.com/2022/12/thousands-of-citrix-servers-still.html
https://thehackernews.com/2022/12/thousands-of-citrix-servers-still.html
🤔24👍16🔥13⚡6👏6😱1
CISA has added two-year-old vulnerabilities in TIBCO Software's JasperReports product to its KEV catalog after discovering evidence of active exploitation by cybercriminals.
Read: https://thehackernews.com/2022/12/cisa-warns-of-active-exploitation-of.html
Read: https://thehackernews.com/2022/12/cisa-warns-of-active-exploitation-of.html
👍37🤔11👏7⚡4🔥4
Google has agreed to pay $29.5 million to settle lawsuits brought by Indiana and Washington, D.C. over its "deceptive" location tracking practices.
Read: https://thehackernews.com/2023/01/google-to-pay-295-million-to-settle.html
Read: https://thehackernews.com/2023/01/google-to-pay-295-million-to-settle.html
🔥26👍20👏11😱10😁5🤯5⚡4
A new strain of Linux malware is targeting WordPress sites, taking advantage of vulnerabilities in various plugins and themes to infiltrate and compromise vulnerable systems.
Read: https://thehackernews.com/2023/01/wordpress-security-alert-new-linux.html
Read: https://thehackernews.com/2023/01/wordpress-security-alert-new-linux.html
🤯32🔥18👍9😁9👏7⚡4😱1
PyTorch, a machine learning framework project, fell victim to a supply chain attack between Dec. 25 and Dec.30, 2022, involving a malicious dependency that affected users who downloaded the affected versions.
Read: https://thehackernews.com/2023/01/pytorch-machine-learning-framework.html
Read: https://thehackernews.com/2023/01/pytorch-machine-learning-framework.html
😱35😁13👍8🔥5🤯5⚡3👏3🤔1
Chinese international students in the U.K. have been facing persistent scams for over a year by Chinese-speaking fraudsters belonging to a group called RedZei (also known as RedThief).
Read: https://thehackernews.com/2023/01/redzei-chinese-scammers-targeting.html
Read: https://thehackernews.com/2023/01/redzei-chinese-scammers-targeting.html
👍28🤯7🔥6⚡3👏2🤔1
Raspberry Robin worm is targeting financial and insurance sectors in Europe, and has evolved its post-exploitation capabilities to resist analysis and collect more data from infected computers.
Read: https://thehackernews.com/2023/01/raspberry-robin-worm-evolves-to-attack.html
Read: https://thehackernews.com/2023/01/raspberry-robin-worm-evolves-to-attack.html
😱19👍13🔥6👏6🤯3😁1
Attention: A new malware campaign has been detected using sensitive information stolen from a bank to trick people into downloading a remote access trojan called BitRAT.
Read: https://thehackernews.com/2023/01/hackers-using-stolen-bank-information.html
Read: https://thehackernews.com/2023/01/hackers-using-stolen-bank-information.html
🔥38👍13🤯11😱9👏5😁5
Synology has released security updates to address a critical RCE vulnerability (CVE-2022-43931) impacting VPN Plus Server that could be exploited to take over affected systems.
Read: https://thehackernews.com/2023/01/synology-releases-patch-for-critical.html
Read: https://thehackernews.com/2023/01/synology-releases-patch-for-critical.html
👍24🤯12🔥5🤔3👏1
Attention Linux users! There is a new malware that has been created using the Shell Script Compiler (shc) and it is deploying a cryptocurrency miner on infected systems.
Read: https://thehackernews.com/2023/01/new-shc-based-linux-malware-targeting.html
Read: https://thehackernews.com/2023/01/new-shc-based-linux-malware-targeting.html
🤯52👍27😱13🔥11🤔10
Irish regulators have fined Meta a hefty $414 million for violating data protection laws by forcing Facebook and Instagram users to accept targeted ads.
Read: https://thehackernews.com/2023/01/irish-regulators-fine-facebook-414.html
Read: https://thehackernews.com/2023/01/irish-regulators-fine-facebook-414.html
👍40👏13🔥9😁9