The Hacker News
βœ”
151K subscribers
1.84K photos
9 videos
3 files
7.75K links
⭐ Official THN Telegram Channel β€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

πŸ“¨ Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
⚠️ Alert: EleKtra-Leak cryptojacking campaign is exploiting exposed AWS IAM credentials on public GitHub repositories.

Find details here: https://thehackernews.com/2023/10/elektra-leak-cryptojacking-attacks.html
πŸ‘22😱7πŸ”₯3
ServiceNow exposes sensitive data due to misconfigurations. Learn how this could've jeopardized your business and the steps to ensure your data is secure.

Read more: https://thehackernews.com/2023/10/servicenow-data-exposure-wake-up-call.html
πŸ‘17πŸ”₯7😁6
Join our expert panel of security veterans Emo Gokay, Multi-Cloud Security Engineer at EY Technologies and George Prichici, VP of products at OPSWAT, as they share insights and strategies gathered from the frontlines of securing critical infrastructure from advanced and persistent malware.

Join: https://thehackernews.com/2023/10/new-webinar-5-must-know-trends.html
πŸ‘26πŸ‘4⚑2
⚑️ Pro-Hamas hacktivist group using a new Linux-based malware, BiBi-Linux Wiper, to target Israeli entities amid ongoing conflict.

Read: https://thehackernews.com/2023/10/pro-hamas-hacktivists-targeting-israeli.html
πŸ‘88πŸ€”21πŸ”₯19😁18🀯14πŸ‘10⚑7
Meta is introducing a paid ad-free subscription for Facebook and Instagram in Europe to comply with data protection laws.

Read details here: https://thehackernews.com/2023/10/meta-launches-paid-ad-free-subscription.html
😁46πŸ‘18πŸ€”6🀯5πŸ‘1
Canada bans WeChat and Kaspersky apps on government devices, citing privacy and security risks.

Read details: https://thehackernews.com/2023/10/canada-bans-wechat-and-kaspersky-apps.html
πŸ”₯38πŸ‘17😁14πŸ‘7😱1
πŸ€– A malvertising scheme is using compromised websites to trick users into downloading malware-laden PyCharm promoted via Google Ads.

Read details: https://thehackernews.com/2023/10/trojanized-pycharm-software-version.html
πŸ‘19πŸ”₯8😱4
⚠️ Alert! Atlassian warns of critical flaw (CVE-2023-22518) in Confluence Data Center and Server. Disconnect publicly accessible instances until patched to avoid data loss.

Learn more: https://thehackernews.com/2023/10/atlassian-warns-of-new-critical.html
πŸ”₯14πŸ‘7🀯6
πŸ›‘οΈ Penetration testing just got a major upgrade. See how PentestPad automates report generation, enhances real-time collaboration, and integrates with your favorite tools.

Read details: https://thehackernews.com/2023/10/pentestpad-platform-for-pentest-teams.html
πŸ‘21πŸ”₯8⚑3
⚠️ Alert: Cybersecurity experts uncover stealthy malware scheme in NuGet package manager. Discover how threat actors deploy SeroXen RAT through rogue packages.

Learn more: https://thehackernews.com/2023/10/malicious-nuget-packages-caught.html
πŸ‘18πŸ”₯8
Arid Viper, a cyber espionage group linked to Hamas, has been spotted targeting Arabic-speaking users with #Android spyware disguised as a dating app.

Learn more: https://thehackernews.com/2023/10/arid-viper-targeting-arabic-android.html
πŸ€”26πŸ‘16😁8🀯7πŸ”₯3πŸ‘2😱2
Russian-linked hacking group Turla evolves with an upgraded Kazuar backdoorβ€”a multi-threaded, modular tool with extensive capabilitiesβ€”focusing on anti-analysis, stealth, and evasion techniques.

Learn more: https://thehackernews.com/2023/11/turla-updates-kazuar-backdoor-with.html
πŸ‘19πŸ”₯10
🚨 ALERT: State-sponsored North Korean hackers are using a sneaky #macOS malware called KANDYKORN to target crypto engineers via Discord.

Learn more: https://thehackernews.com/2023/11/north-korean-hackers-tageting-crypto.html
🀯13πŸ”₯5πŸ‘4
🚨 Security Alert ➜ F5 warns of active exploitation of a critical flaw (CVE-2023-46747) in BIG-IP, enabling attackers to execute system commands.

Learn more: https://thehackernews.com/2023/11/alert-f5-warns-of-active-attacks.html

Protect your networkβ€”patch now!
😱15πŸ‘14
Iranian threat actor "Scarred Manticore" has launched a year-long cyber espionage campaign targeting the Middle East finance, government, military, and telecom sectors.

Learn more: https://thehackernews.com/2023/11/iranian-cyber-espionage-group-targets.html
πŸ‘15πŸ”₯8🀯8⚑1πŸ‘1😁1
Are you an Amazon Web Services (AWS) customer or considering migrating to the cloud?

Then don't miss this #webinar!

Join XMCyber and AWS as we explore the top attack paths and most common #exposures in #AWS, and share best practices for efficiently mitigating these risks.

When: November 2nd, 2023

Register now: https://thn.news/NEhcd6fh
πŸ€”23πŸ‘15🀯5
Meet "Prolific Puma," the secretive threat actor behind a dangerous link shortening service with thousands of malicious domains used for phishing and malware distribution.

Learn how this operation evades detection: https://thehackernews.com/2023/11/dns-abuse-exposes-prolific-pumas.html
πŸ‘17πŸ”₯8
🚨 Urgent: Thousands of internet-accessible ActiveMQ instances are at risk.

HelloKitty ransomware group is actively exploiting a critical Remote Code Execution (RCE) flaw, CVE-2023-46604, in Apache ActiveMQ.

Find details here ➑️ https://thehackernews.com/2023/11/hellokitty-ransomware-group-exploiting.html
πŸ”₯15πŸ‘8😱5πŸ€”3
πŸ“£ FIRST announces CVSS v4.0, the latest version of the Common Vulnerability Scoring System. Discover how this update addresses critical vulnerabilities.

Details here: https://thehackernews.com/2023/11/first-announces-cvss-40-new.html
πŸ‘30
πŸ” Researchers uncover vulnerabilities in 34 Windows drivers that non-privileged hackers can exploit to take control of your device and execute code.

Read details: https://thehackernews.com/2023/11/researchers-find-34-windows-drivers.html
🀯20πŸ‘11πŸ”₯5πŸ‘5⚑2
πŸ•΅οΈβ€β™‚οΈ Iranian state-backed hackers, MuddyWater, has evolved its tactics. They're now using N-able's Advanced Monitoring Agent in their latest spear-phishing campaign.

Read details: https://thehackernews.com/2023/11/irans-muddywater-targets-israel-in-new.html
πŸ”₯26πŸ‘7😱7πŸ‘6😁4⚑1