The Hacker News
βœ”
151K subscribers
1.86K photos
10 videos
3 files
7.77K links
⭐ Official THN Telegram Channel β€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

πŸ“¨ Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
FTC fined Avast $16.5 million for collecting and selling users' browsing data despite privacy promises.

Full story: https://thehackernews.com/2024/02/ftc-slams-avast-with-165-million-fine.html
πŸ‘22πŸ”₯9⚑7🀯7πŸ‘5😁3😱3
Researchers uncovered details of a major vulnerability (CVE-2024-23204) in the Apple Shortcuts app that could have exposed sensitive user data without consent on older iOS, iPadOS, macOS, and watchOS devices.

Learn more: https://thehackernews.com/2024/02/researchers-detail-apples-recent-zero.html
πŸ”₯21πŸ‘8⚑2πŸ‘1
Hacktivism is reshaping the battlefield in digital age wars. Witness how cyber-activism is playing a pivotal role in geopolitical conflicts. Dive deeper into the transformation of hacktivism into a mainstream political tool.

Read: https://thehackernews.com/2024/02/a-new-age-of-hacktivism.html
πŸ”₯16⚑6πŸ‘6πŸ‘4πŸ€”3
Microsoft releases PyRIT, an automation tool designed to proactively identify risks and ethical concerns in Generative AI systems, including security and #privacy threats.

Learn more: https://thehackernews.com/2024/02/microsoft-releases-pyrit-red-teaming.html
πŸ”₯19😁8πŸ‘7⚑1
Ever wondered how top security teams stay ahead?

It's all about automation! Learn from the SOC Automation Capability Matrix and transform your response to threats.

Explore now ➑️ https://thehackernews.com/2024/02/how-to-use-tiness-soc-automation.html
πŸ‘18⚑2😁1
🚨 Heads Up - The "django-log-tracker" PyPI package, inactive for over 2 years, has been hijacked to distribute the Nova Sentinel malware.

Learn more: https://thehackernews.com/2024/02/dormant-pypi-package-compromised-to.html
πŸ‘25⚑2
Game over? In a dramatic turn of events, LockBitSupp, a key figure in the notorious LockBit ransomware operation, is "reportedly" cooperating with law enforcement.

Find details here: https://thehackernews.com/2024/02/authorities-claim-lockbit-admin.html
😁27πŸ€”10πŸ‘6πŸ‘6⚑3😱3πŸ”₯2
Cybercriminals are using Google's Cloud Run service to launch large-scale email phishing attacks, distributing banking trojans like Astaroth, Mekotio, and Ousaban.

Read: https://thehackernews.com/2024/02/banking-trojans-target-latin-america.html
😁9πŸ‘6⚑2πŸ‘2🀯1
🚨 LockBit ransomware operators are back online after a law enforcement takedown, blaming outdated software for the breach.

They are now calling for increased attacks on the government sector.

Find out more: https://thehackernews.com/2024/02/lockbit-ransomware-group-resurfaces.html
😁33πŸ”₯14🀯8😱7⚑4πŸ‘3πŸ‘1
Fake npm packages traced back to North Korean hackers, aiming at developers with sophisticated credential-stealing scripts.

Learn more: https://thehackernews.com/2024/02/north-korean-hackers-targeting.html

Protect your projectsβ€”verify your dependencies now.
🀯13πŸ”₯9😁7⚑2πŸ‘2
πŸ€– Think LLMs are foolproof? Think again! Hackers are exploiting them to steal sensitive data. Protect yourself – learn the latest LLM security risks and how to defend against them.

πŸ”— Learn more: https://thehackernews.com/2024/02/three-tips-to-protect-your-secrets-from.html
πŸ”₯13πŸ‘7⚑5πŸ‘1
Over 8,000 subdomains belonging to recognized brands and organizations are being exploited for malicious email distribution.

Learn more: https://thehackernews.com/2024/02/8000-subdomains-of-trusted-brands.html

SPF, DKIM, DMARC – they're not enough. "ResurrecAds" is bypassing email security measures with alarming ease.
πŸ‘17🀯13⚑2πŸ‘2😁1
🚨 Malicious cyber campaign targets Ukrainian entities in Finland with Remcos RAT via IDAT Loader, utilizing rare steganography technique.

Learn more: https://thehackernews.com/2024/02/new-idat-loader-attacks-using.html
πŸ‘16🀯8πŸ‘5⚑4πŸ”₯2
⚠️ Alert β€” Critical security flaw (CVE-2024-1071) found in Ultimate Member WordPress plugin used by 200k sites.

Read more: https://thehackernews.com/2024/02/wordpress-plugin-alert-critical-sqli.html

Update to version 2.8.3 to fix SQL injection vulnerability and prevent data breaches.
⚑21πŸ”₯8😱5πŸ‘3πŸ‘3😁1
πŸ€– Security researchers have uncovered a new vulnerability in Hugging Face's Safetensors conversion service that could lead to supply chain attacks, compromising user-submitted models.

Read details: https://thehackernews.com/2024/02/new-hugging-face-vulnerability-exposes.html
πŸ‘15😁8⚑1😱1
πŸ”’ Alert: Five Eyes agencies unveil latest tactics of Russian state-sponsored hacker group APT29, revealing advanced techniques in cybersecurity warfare.

Learn more: https://thehackernews.com/2024/02/five-eyes-agencies-expose-apt29s.html
😁17πŸ‘8⚑1
🚨 ALERT - Open-source Xeno RAT available on GitHub with features like remote access, audio recording, & hidden VNC. Experts warn of rising RAT attacks.

Learn more: https://thehackernews.com/2024/02/open-source-xeno-rat-trojan-emerges-as.html
⚑15πŸ‘9😁4πŸ‘3
Patch your LiteSpeed Cache plugin for WordPress against CVE-2023-40000. This flaw could lead to unauthorized site takeover.

Click for details: https://thehackernews.com/2024/02/wordpress-litespeed-plugin.html
πŸ‘10😁4⚑1
Ever wondered how SOC teams can sift through millions of alerts without missing a beat?

Discover how Threat Intelligence Platforms are revolutionizing SOC investigations and turning chaos into clarity.

Explore how to refine threat hunting: https://thehackernews.com/2024/02/from-alert-to-action-how-to-speed-up.html
πŸ‘18😁6πŸ€”3⚑2
πŸ›‘οΈ Is your Ubiquiti EdgeRouter safe? A joint advisory from cybersecurity and intelligence agencies reveals APT28's use of MooBot to exploit your devices.

Read the full advisory: https://thehackernews.com/2024/02/cybersecurity-agencies-warn-ubiquiti.html
πŸ‘11⚑7πŸ‘4
Mexican users are under siege by a sophisticated cyberattack campaign using tax-themed phishing emails to plant "TimbreStealer," a data-snatching #malware.

Learn more: https://thehackernews.com/2024/02/timbrestealer-malware-spreading-via-tax.html
πŸ‘12πŸ‘5🀯3πŸ”₯2😁2⚑1