The Hacker News
151K subscribers
1.84K photos
10 videos
3 files
7.76K links
Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

📨 Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
🔒 🕵️‍♂️ Identifying and categorizing third-party connections is key to understanding security threats.

Discover how SaaS Security Posture Management (SSPM) can shed light on your risks.

Read here ➥ https://thehackernews.com/2023/11/this-free-solution-provides-essential.html
👍13🔥3👏2🤯1
🔐 Discover 7 incredible ways AI is transforming security operations:

Information Management
Malware Analysis
Tool Development
Risk Evaluation
Tabletop Exercises
Incident Response
Threat Intelligence

Learn more ➥ https://thehackernews.com/2023/11/7-uses-for-generative-ai-to-enhance.html
👍18😁6👏5🔥3
🚨 Urgent: Update your devices ASAP!

Two critical security flaws in iOS, macOS, and Safari are under attack. Learn about CVE-2023-42916 & CVE-2023-42917 and how they can expose your sensitive data while browsing.

Details here ➥ https://thehackernews.com/2023/12/zero-day-alert-apple-rolls-out-ios.html
👍21🔥9😁5👏2🤔1
🚨 Attention: Zyxel released patches for 15 security issues in NAS, firewall, and AP devices. Includes 3 critical flaws allowing authentication bypass and command injection.

Details here ➥ https://thehackernews.com/2023/12/zyxel-releases-patches-to-fix-15-flaws.html
👍14
U.S. Treasury's OFAC sanctions North Korea-linked prolific hacking group Kimsuky and 8 foreign-based agents for gathering intelligence and processing stolen assets.

🔗 Read more ➥ https://thehackernews.com/2023/12/us-treasury-sanctions-north-korean.html
👍10👏5
🔐 PRIVACY ALERT:

WhatsApp has introduced a new feature called 'Secret Code' that now lets you set custom unique passwords for your private chats, adding an extra layer of security.

Learn how to enable it ➥ https://thehackernews.com/2023/12/whatsapps-new-secret-code-feature-lets.html
👍33😁1
🛡️ Gcore, a security provider, faced two massive DDoS attacks in November 2023, with peak strengths of 📈 1.1 and 1.6 Tbps.

Learn how attackers used 💥 SYN flood and PSH, ACK traffic to attack targeted servers.

Find details here ➥ https://thehackernews.com/2023/12/discover-how-gcore-thwarted-powerful.html
👍8😱5🤔4
🚨 Chinese-speaking threat actor targeting Uzbekistan Ministry of Foreign Affairs and South Korean users with dangerous SugarGh0st RAT.

Read more about this latest cyber incident ➥ https://thehackernews.com/2023/12/chinese-hackers-using-sugargh0st-rat-to.html
🔥7🤯7😁6👍5
New Android #malware called FjordPhantom is defrauding banking customers in Indonesia, Thailand, and Vietnam.

It steals sensitive information by loading legitimate banking apps in a virtual container.

Learn more about FjordPhantom ➥ https://thehackernews.com/2023/12/new-fjordphantom-android-malware.html
👍16🔥7👏32
💻 DOJ and FBI dismantle Qakbot #malware and botnet, but is the threat really gone? Find out the aftermath and mitigation strategies.

Learn more ➥ https://thehackernews.com/2023/12/qakbot-takedown-aftermath-mitigations.html
🤔15👍5
Russian national Vladimir Dunaev found guilty for developing TrickBot #malware, facing up to 35 years in prison.

Details here ➥ https://thehackernews.com/2023/12/russian-hacker-vladimir-dunaev.html
👍23😱85🔥3
🕵️ 🚨 Agent Racoon malware infiltrates organizations in the U.S., Middle East, and Africa. Learn how this malware leverages DNS to create a secret channel for backdoor access.

Details here ➥ https://thehackernews.com/2023/12/agent-racoon-backdoor-targets.html
🤯20👍147🔥2😱1
Microsoft warns of new CACTUS ransomware attacks using malvertising lures to deploy DanaBot as an initial access vector.

Learn more ➥ https://thehackernews.com/2023/12/microsoft-warns-of-malvertising-scheme.html
👍9🤔8👏3
🚨 LogoFAIL: Critical vulnerabilities in UEFI Code from multiple firmware/BIOS vendors can be exploited by threat actors to bypass security technologies and deliver a malicious payload.

Learn more ➥ https://thehackernews.com/2023/12/logofail-uefi-vulnerabilities-expose.html
🤔13🔥7👍5😁3👏2🤯1
🤖 A new variant of the P2PInfect botnet has emerged, now compiled for MIPS architecture, and it's targeting routers and IoT devices.

Learn more: ➥ https://thehackernews.com/2023/12/new-p2pinfect-botnet-mips-variant.html
👍15🤯1
Researchers found novel attacks called BLUFFS on Bluetooth Classic, undermining its forward secrecy and future secrecy guarantees.

These attacks enable adversary-in-the-middle scenarios between connected peers.

Learn more: ➥ https://thehackernews.com/2023/12/new-bluffs-bluetooth-attack-expose.html
👍14🤔5🔥4🤯3👏1
🔐 Secure Your SaaS Apps: Year-end is the perfect time to review user access, remove unnecessary permissions, and reduce SaaS risk.

Learn how to start the new year with a clean user list: https://thehackernews.com/2023/12/make-fresh-start-for-2024-clean-out.html
👍17🔥6
🚨 New cyber threat actor "AeroBlade" discovered involved in cyberattack on U.S. aerospace organization using spear-phishing.

Learn more: https://thehackernews.com/2023/12/new-threat-actor-aeroblade-emerges-in.html
👍10
🚨 Microsoft found Kremlin-backed nation-state activity exploiting a security flaw in Outlook, risking victims' accounts.

Learn how folder permissions were used to extract valuable info: https://thehackernews.com/2023/12/microsoft-warns-of-kremlin-backed-apt28.html
👍10👏4😁3🤔2😱2
🚨 ALERT — Over 15,000 Go module repositories on GitHub are vulnerable to repojacking attacks.

Find out why and what actions need to be taken to address this issue.

Details here ➥ https://thehackernews.com/2023/12/15000-go-module-repositories-on-github.html
🤯9🔥5👍4😁42
🚨 Webinar alert!

SoFi+ Sentra = Successful Data Security Posture Management (DSPM) for Fintech and Regulated Data.

🗓 Date: December 13
🕝 Time: 12:00 PM EST

Get ready for a fascinating discussion with SoFi, an innovative cloud-native financial services provider, about navigating data challenges while staying compliant with regulations and seamlessly managing third-party integrations.

Find out how they achieved all this through successfully implementing Sentra's DSPM solution.

🎙️ Featured Speakers:

➥ Pritam H Mungse , Director of Product Security at SoFi
➥ Zachary Schulze, Sr. Staff Application Security Engineer at SoFi
➥ Aviv Zisso, Director of Customer Success at Sentra

Register here — https://thn.news/sofi-webinar
👍16