The Hacker News
โœ”
152K subscribers
1.88K photos
10 videos
3 files
7.79K links
โญ Official THN Telegram Channel โ€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

๐Ÿ“จ Contact: [email protected]

๐ŸŒ Website: https://thehackernews.com
Download Telegram
๐Ÿ”ฅ Breaking: Google is acquiring cloud security firm Wiz for $32 Billionโ€”its largest deal in history.

๐Ÿ’ฐ Largest acquisition in Googleโ€™s history
๐Ÿ›ก๏ธ Boosts AI-powered cloud security
๐ŸŒ Wiz remains independent, still working with AWS, Azure, Oracle

https://thehackernews.com/2025/03/google-acquires-wiz-for-32-billion-in.html
๐Ÿ˜ฑ22๐Ÿ”ฅ9๐Ÿ‘6โšก2
๐Ÿšจ Android Threat Hunters, Your Job Just Got Easier!

ANY.RUN has just released a brand-new OS designed for real-time Android threat analysis inside a secure sandbox environment.

Now, businesses and security teams can:
โœ… Detect Android threats faster
๐Ÿ” Investigate APK behavior in real time
โšก Speed up incident response
๐Ÿ’ฐ Reduce cybersecurity costs

Best part? Itโ€™s available for all plansโ€”even FREE users!

๐Ÿ‘‰ Try now: https://thn.news/malware-sandbox-android-tg
๐Ÿ‘21๐Ÿ”ฅ13๐Ÿ˜ฑ3
๐Ÿšจ Is Your Okta Environment Secure? Even with best practices, misconfigurations and identity sprawl can leave your system exposed.

โš ๏ธ Key risks:
โž Inactive admin accounts & weak MFA
โž Misconfigured security settings
โž Forgotten API tokens granting access
โž Lingering access for ex-employees

๐Ÿ”— Learn how to protect your identity infrastructure: https://thehackernews.com/2025/03/how-to-improve-okta-security-in-four.html
๐Ÿ‘9
๐Ÿ›‘ New Rules File Backdoor attack lets hackers poison AI-powered tools like GitHub Copilot & Cursor, injecting hidden malicious code into projects.

๐Ÿ”น Invisible backdoors via Unicode tricks
๐Ÿ”น Supply chain riskโ€”spreads across repos
๐Ÿ”น No alertsโ€”developers unknowingly ship compromised code

Review AI-generated code carefullyโ€”your โ€œtrusted assistantโ€ might be compromised.

๐Ÿ”— Learn more: https://thehackernews.com/2025/03/new-rules-file-backdoor-attack-lets.html
๐Ÿ‘16๐Ÿ˜1๐Ÿคฏ1
๐Ÿšจ GitHub Actions are under attack!

A supply chain attack hit tj-actions/changed-files, leaking AWS keys, GitHub PATs & more. CISA confirms active exploitation.

๐Ÿ”น CVE-2025-30066 (CVSS 8.6)
๐Ÿ”น Attack spread via another compromised Action
๐Ÿ”น Sensitive secrets exposed via logs

Details: https://thehackernews.com/2025/03/cisa-warns-of-active-exploitation-in.html

โš ๏ธ Rotate secrets, audit workflows, pin actions to commitsโ€”this wonโ€™t be the last attack.
๐Ÿคฏ18๐Ÿ”ฅ7๐Ÿ‘3๐Ÿ˜3
๐Ÿšจ Critical SCADA Flaws โ€” Researchers uncovered 2 critical vulnerabilities (CVSS 9.3) in mySCADA myPRO, allowing attackers to execute system commands & hijack operations.

๐Ÿ”น CVE-2025-20014 & CVE-2025-20061
๐Ÿ”น Full Industrial Network Compromise Possible

Details here: https://thehackernews.com/2025/03/critical-myscada-mypro-flaws-could-let.html
๐Ÿ‘17๐Ÿคฏ4โšก2๐Ÿ”ฅ1๐Ÿค”1
๐Ÿšจ ClearFake Malware Spreading Fast!

Hackers use fake reCAPTCHA & Cloudflare checks to deploy Lumma & Vidar Stealer malware.

๐Ÿ”น 9,300+ infected sites
๐Ÿ”น 200,000+ users exposed (July 2024)
๐Ÿ”น Now using Binance Smart Chain for stealth

Learn more: https://thehackernews.com/2025/03/clearfake-infects-9300-sites-uses-fake.html
โšก12๐Ÿ‘9๐Ÿค”8
๐Ÿ›ก Top 7 AI Risk Mitigation Strategies

AI security secrets? Discover the 7 essential concepts, techniques, and mitigation strategies for securing your AI pipelines.

Learn more: https://thn.news/genai-security-cheat-sheet
๐Ÿ”ฅ7๐Ÿ‘4โšก2
โš ๏ธ SaaS identity attacks are exploding!

Hackers are stealing credentials, hijacking logins, and abusing privilegesโ€”yet most security tools overlook SaaS identity threats.

๐Ÿ›ก๏ธ The Fix? Identity Threat Detection & Response (ITDR)

๐Ÿ”— Secure SaaS now โ†’ https://thehackernews.com/2025/03/5-identity-threat-detection-response.html
๐Ÿ˜8๐Ÿ‘6๐Ÿ˜ฑ4๐Ÿ‘1
๐Ÿ”ฅ Russiaโ€™s Role in Cybercrime Just Got Exposed!

200,000+ leaked messages expose direct ties between the ransomware gang & Russian officials.

๐Ÿ”น AI-powered fraud & malware dev
๐Ÿ”น Leader escaped via a "green corridor"

Read the full story ๐Ÿ‘‡ https://thehackernews.com/2025/03/leaked-black-basta-chats-suggest.html
๐Ÿ‘16๐Ÿ˜11โšก8๐Ÿ”ฅ5๐Ÿค”1
๐Ÿšจ Severe PHP Flaw Under Attack.

Hackers are exploiting CVE-2024-4577 to deploy crypto miners โ›๏ธ & Quasar RAT on Windows servers.

๐Ÿ”น 54% of attacks target Taiwan
๐Ÿ”น 5% deploy XMRig miner
๐Ÿ”น PHP CGI mode at risk

Patch NOW before your servers become a battleground.

๐Ÿ”— Learn more: https://thehackernews.com/2025/03/hackers-exploit-severe-php-flaw-to.html
๐Ÿ”ฅ17๐Ÿ‘3โšก2๐Ÿ‘2๐Ÿ˜1
๐Ÿšจ Hackers are hijacking compromised Signal accounts to spread Dark Crystal RAT malwareโ€”targeting Ukraineโ€™s military & defense industry.

๐Ÿ”น Fake meeting minutes ๐Ÿ“„
๐Ÿ”น Hidden malware inside archives ๐Ÿฆ 
๐Ÿ”น Remote control & data theft

Read more: https://thehackernews.com/2025/03/cert-ua-warns-dark-crystal-rat-targets.html
๐Ÿค”13๐Ÿ‘8๐Ÿ”ฅ5โšก4๐Ÿ˜1
๐Ÿ’€ CISA just flagged this backup flaw as actively exploited!

CVE-2024-48248 | Unauthenticated file read in NAKIVO Backup & Replication exposes sensitive data & credentials.

๐Ÿ”น Exploit already public
๐Ÿ”น Update before itโ€™s too late

Details: https://thehackernews.com/2025/03/cisa-adds-nakivo-vulnerability-to-kev.html
๐Ÿ‘11๐Ÿ”ฅ7
๐Ÿšจ Spyware Alert!

Citizen Lab reports Australia, Canada, Denmark & more may be using Paragon's Graphite spywareโ€”the same tool used to target journalists & activists via WhatsApp.

โš ๏ธ 90+ journalists targeted
โš ๏ธ iPhones & Androids hacked

๐Ÿ”— Full story: https://thehackernews.com/2025/03/six-governments-likely-use-israeli.html
๐Ÿ˜ฑ14๐Ÿ‘9๐Ÿ”ฅ4๐Ÿ˜3๐Ÿ‘1๐Ÿคฏ1
The hidden costs of an in-house SOC could surprise you.

A Security Operations Center (SOC) isnโ€™t just salaries and toolsโ€”itโ€™s ongoing costs, operational challenges, and talent shortages. Is building your own SOC really the best move?

Use this SOC Cost Calculator to compare in-house vs. Managed SOC expenses and see where you can optimize costs without sacrificing security.

Calculate your in-house vs managed SOC costs: https://thn.news/soc-cost-calculator-tg
๐Ÿ‘17๐Ÿคฏ3๐Ÿ˜2
Two major vendors just patched remote code execution flawsโ€”update NOW before attackers exploit them.

๐Ÿ”ด Veeam Backup (CVE-2025-23120, 9.9/10)
โžก๏ธ Affects v12.3.0.310 & earlier
โžก๏ธ Allows RCE by authenticated users
โžก๏ธ Fixed in v12.3.1 (12.3.1.1139)

๐Ÿ”ด IBM AIX (CVE-2024-56346 & CVE-2024-56347, 10/10 & 9.6/10)
โžก๏ธ Affects AIX 7.2 & 7.3
โžก๏ธ Exploitable via NIM services

โš ๏ธ No attacks seen yet, but donโ€™t waitโ€”patch immediately.

Full details: https://thehackernews.com/2025/03/veeam-and-ibm-release-patches-for-high.html
๐Ÿ”ฅ12๐Ÿ‘8๐Ÿ‘2๐Ÿ˜1
Cloud security isn't automaticโ€”it's a shared battle.

Think your cloud provider handles everything? Think again. Microsoft 365 users must secure their own data, access, and backups.

๐Ÿšจ No MFA, weak passwords, or no backup? You're at risk.

๐Ÿ”— See what you must do now: https://thehackernews.com/2025/03/how-to-protect-your-business-from-cyber.html
๐Ÿ”ฅ11๐Ÿ‘6๐Ÿค”2๐Ÿ‘1
๐ŸŽฎ Gamers, beware! That "free cheat" might steal everything.

Hackers are hiding malware in YouTube videos promoting game cheats, infecting PCs with Arcane Stealer.

๐Ÿ•ต๏ธ Stealing passwords, crypto wallets, VPN logins, and more.

Full report: https://thehackernews.com/2025/03/youtube-game-cheats-spread-arcane.html
๐Ÿ˜15๐Ÿค”4๐Ÿ‘3๐Ÿคฏ3๐Ÿ”ฅ2๐Ÿ˜ฑ2
๐Ÿ‘Ž Most SMBs Are Failing Complianceโ€”Are Yours?

๐Ÿ“‰ 60% of U.S. small businesses arenโ€™t fully compliant with security laws like HIPAA, PCI-DSS & GDPR.

๐Ÿ’ธ Risk: Fines, breaches & reputational damage.
๐Ÿ’ก Solution: Continuous compliance monitoring.

MSPs: Turn compliance into profit.

Learn how โ†’ https://thehackernews.com/2025/03/why-continuous-compliance-monitoring-is.html
๐Ÿ‘17โšก3๐Ÿ˜ฑ3๐Ÿคฏ1
๐Ÿ”ฅ Hardcoded admin logins. Leaky debug logs. Cisco Smart Licensing Utility is under fire.

Hackers are actively exploiting CVE-2024-20439 & CVE-2024-20440โ€”both rated 9.8.

Access to admin creds & APIs is on the line.

See the full story ๐Ÿ‘‰ https://thehackernews.com/2025/03/ongoing-cyber-attacks-exploit-critical.html
๐Ÿ˜14๐Ÿ‘4๐Ÿ”ฅ4โšก2
๐Ÿšจ Two hacker groups just joined forces.

Head Mare & Twelve are now working together to hit Russian targetsโ€”using WinRAR & Exchange exploits, ransomware like LockBit, and stealthy backdoors.

๐Ÿ‘‰ Full story: https://thehackernews.com/2025/03/kaspersky-links-head-mare-to-twelve.html
๐Ÿ˜17๐Ÿ‘13๐Ÿ”ฅ9๐Ÿค”2๐Ÿคฏ2