The Hacker News
βœ”
151K subscribers
1.85K photos
10 videos
3 files
7.76K links
⭐ Official THN Telegram Channel β€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

πŸ“¨ Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
A software supply chain attack targeted Solana's popular Solana's web3.js npm library (400,000+ weekly downloads). Malicious versions (1.95.6 and 1.95.7) were designed to steal users' private keys and drain cryptocurrency wallets.

The backdoor was cleverly hidden in the β€œaddToQueue” function, seamlessly blending into legitimate code.

Learn more here πŸ‘‰ https://thehackernews.com/2024/12/researchers-uncover-backdoor-in-solanas.html
😱18πŸ€”10😁6⚑3πŸ‘2πŸ”₯2πŸ‘2🀯2
Check out @anyrun_app's Black Friday specials πŸš€

🎁 Get up to 3 sandbox licenses for your team as a gift
πŸ”Ž Double your search limit in TI Lookup β€” #ANYRUN's threat intelligence database β€” for FREE

Secure your deal before Dec 8 πŸ‘‰ https://thn.news/anyrun-black-friday-tg
πŸ‘9πŸ‘5
Europol has dismantled MATRIX, an invite-only encrypted messaging service used by criminals, intercepting 2.3 million messages tied to drug trafficking, arms deals, and money laundering.

Read the full story: https://thehackernews.com/2024/12/europol-dismantles-criminal-messaging.html
⚑19🀯13πŸ‘7πŸ‘6😁4πŸ€”3πŸ”₯2😱2
Russia-linked APT group Turla has been hijacking the infrastructure of a Pakistani hacking group to spy on Afghan and Indian government targets by deploying custom #malware, TwoDash and Statuezy.

Learn more: https://thehackernews.com/2024/12/russia-linked-turla-exploits-pakistani.html
πŸ‘24πŸ”₯8🀯6😁5⚑2πŸ‘1
🚨 CISA flags ProjectSend, Zyxel and CyberPanel flaws as actively exploited.

One of these enables attackers to bypass authentication and execute arbitrary commands β€” ransomware campaigns like PSAUX & Helldown are already exploiting it.

Read: https://thehackernews.com/2024/12/cisa-warns-of-active-exploitation-of.html
πŸ”₯16😁3πŸ‘2
U.K. National Crime Agency has disrupted Russian money laundering networks, leading to 84 arrests and the seizure of Β£20 million in cash and #cryptocurrency.

These networks weren’t just about moneyβ€”they funded Russian espionage and connected to cybercriminal gangs across the globe.

πŸ”— Read more: https://thehackernews.com/2024/12/nca-busts-russian-crypto-networks.html
😁18πŸ‘10⚑4
MirrorFace, a China-linked group, is deploying the dormant ANEL backdoorβ€”unused since 2018β€”in a new spear-phishing campaign targeting Japan.

Explore how these tactics are bypassing security measures: https://thehackernews.com/2024/12/anel-and-noopdoor-backdoors-weaponized.html
😁28πŸ‘5πŸ‘1
🚨 Chinese hackers launched a stealthy four-month-long cyberattack targeting a major U.S. organization, harvesting emails and stealing sensitive data.

The attackers exploited Exchange Servers and used advanced tools like FileZilla and PowerShell.

Read the full story πŸ‘‰ https://thehackernews.com/2024/12/researchers-uncover-4-month-cyberattack.html
πŸ‘24πŸ€”8πŸ‘5😁5⚑2🀯1
🚨 Earth Minotaur is using an advanced toolkit, MOONSHINE, to deploy the DarkNimbus backdoor across Android and Windows devices, targeting vulnerable communities like Tibetans and Uyghurs.

Find details here β€”https://thehackernews.com/2024/12/hackers-target-uyghurs-and-tibetans.html
πŸ‘19πŸ‘3πŸ€”2
🚨 A critical vulnerability (CVE-2024-41713) in Mitel MiCollab could let attackers access sensitive system files and potentially perform unauthorized administrative actions without authentication.

Full details here: https://thehackernews.com/2024/12/critical-mitel-micollab-flaw-exposes.html
πŸ‘15⚑3😁3
Europol has shut down Manson Market, a notorious marketplace facilitating large-scale online fraud, seizing over 50 servers and arresting two suspects.

Learn more: https://thehackernews.com/2024/12/europol-shuts-down-manson-market-fraud.html
πŸ‘21😁13πŸ€”3
🚨 77 banks and crypto exchanges under attack...

DroidBot, a new Android malware, is wreaking havoc across Europe. This $3,000/month malware-as-a-service disguises itself as popular apps to infiltrate devices.

Discover how this hidden threat operates and which countries are under attack: https://thehackernews.com/2024/12/this-3000-android-trojan-targeting.html
πŸ‘30😁8😱6πŸ‘1
⚠️ Gamaredon threat actor is leveraging Cloudflare Tunnels and DNS fast-fluxing to hide malware delivery systems, targeting Ukrainian entities with GammaDrop malware.

Learn about these advanced tactics: https://thehackernews.com/2024/12/hackers-leveraging-cloudflare-tunnels.html
πŸ‘13πŸ‘6πŸ”₯4🀯3😁2😱1
🚨 New Malware Alert! Passwords, cookies, and moreβ€”gone in seconds.

The RevC2 backdoor, part of the More_eggs operation, is now stealing browser data using WebSockets.

Read the full story here: https://thehackernews.com/2024/12/moreeggs-maas-expands-operations-with.html
😱15πŸ‘9😁4🀯4πŸ”₯2
🚨 New vulnerabilities in MLflow, H2O, PyTorch, and MLeap expose open-source machine learning (ML) tools and AI frameworks to the risk of remote code execution.

Read the full story for more details: https://thehackernews.com/2024/12/researchers-uncover-flaws-in-popular.html
πŸ‘19😱18😁5πŸ”₯2⚑1πŸ‘1
A Russian programmer's Android phone was secretly implanted with spyware by the FSB after his detention for allegedly donating to Ukraine.

The spyware could record phone calls, track location, log keystrokes, and even extract encrypted messages.

Learn how this spyware operates: https://thehackernews.com/2024/12/fsb-uses-trojan-app-to-monitor-russian.html
πŸ‘36🀯19😁13πŸ‘4⚑3πŸ”₯2
🎭 When democracy doesn’t go your way… Just Resetβ„’

Romania’s Constitutional Court annulled the presidential election after the losing government cried foul over Russian interference, claiming 25,000 TikTok accounts and 85,000 cyberattacks swayed the results.

Read the details: https://thehackernews.com/2024/12/romania-cancels-presidential-election.html
πŸ‘20πŸ‘14πŸ€”9😁8🀯7πŸ”₯3😱3
🚨 Cybercriminals are luring Web3 professionals into traps using fake video conferencing apps.

These apps deliver "Realst," an information stealer targeting sensitive data like #cryptocurrency wallets and Telegram credentials.

Read here: https://thehackernews.com/2024/12/hackers-using-fake-video-conferencing.html
πŸ‘22πŸ”₯9
🚨 Software supply chain attack alert!

Two popular Python AI library versions, Ultralytics 8.3.41 & 8.3.42, were compromised to deliver cryptocurrency miners.

Read details here: https://thehackernews.com/2024/12/ultralytics-ai-library-compromised.html
😁21πŸ”₯7πŸ‘6⚑2🀯1
🚨 A botnet named Socks5Systemz has infected over 85,000 machines worldwide, transforming them into anonymous proxy servers marketed on PROXY[.]AM for as much as $700/month.

Learn more: https://thehackernews.com/2024/12/socks5systemz-botnet-powers-illegal.html
🀯20πŸ‘7πŸ‘6😁5πŸ”₯3
πŸ”‘ Identity isn’t enough. Privileged access needs extra layers of security.

From privilege elevation to quantum-safe connections, here are 7 bolt-ons IAMs like Entra ID need now.

Secure your critical sessions. Read more: https://thehackernews.com/2024/12/seven-bolt-ons-to-make-your-entra-id.html
πŸ‘12πŸ”₯6😱5