The Hacker News
βœ”
152K subscribers
1.87K photos
10 videos
3 files
7.78K links
⭐ Official THN Telegram Channel β€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

πŸ“¨ Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
🚨 Cybercriminals just got smarter. Did your defenses?

AI isn't just a tool for goodβ€”it’s a weapon in the wrong hands. Deepfake phishing, AI-powered exploits, invisible breachesβ€”they’re already here.

If your security hasn’t adapted, you’re already behind. But there’s a way forward.

πŸ‘€ Join us for our next WEBINAR
πŸŽ™οΈ Featuring expert from @Zscaler
πŸ’‘ Learn how to outsmart AI-powered threats

Watch now β†’ https://thehackernews.com/2025/04/ai-threats-are-evolving-fast-learn.html
😁14πŸ‘6
Stop patching blindly. Start defending smart.

Threat-Led Vulnerability Management (TLVM) helps you focus on what attackers are actually exploitingβ€”not just what’s labeled β€œcritical.”

In today’s AI-fueled threat landscape, context > CVSS.
🎯 Prioritize real risks.
πŸ›‘οΈ Strengthen your defenses.
⏱️ Act before attackers do.

Learn how: https://thehackernews.com/expert-insights/2025/03/why-now-is-time-to-adopt-threat-led.html
πŸ‘9
🚨 Microsoft Alert: New tax-season phishing wave hits 2,300+ U.S. Companies!

Hackers are using PDFs, QR codes, and fake DocuSign pages to steal passwords and install malware like Latrodectus and Brute Ratel.

🎯 Targeted: IT, consulting, and engineering firms
πŸ“¦ Malware: Remcos, AHKBot, GuLoader, more

πŸ”— Full story here: https://thehackernews.com/2025/04/microsoft-warns-of-tax-themed-email.html
πŸ‘11πŸ”₯5😱1
🚨 Massive new risk for data systems!

CVE-2025-30065 | Apache Parquet Java lib flaw (CVSS 10.0) lets attackers execute arbitrary code via poisoned files.

If your pipelines touch untrusted Parquet files, patch NOW.

Read: https://thehackernews.com/2025/04/critical-flaw-in-apache-parquet-allows.html
😱7🀯5πŸ‘1πŸ”₯1πŸ‘1
πŸ‘€ The cloud never slows down β€” neither do the threats.

Wiz, now part of Google’s biggest acquisition ever, can show you in 15 mins how to secure everything from code to runtimeβ€”without adding friction.

πŸ‘‰ See how it works: https://thehackernews.com/videos/2025/03/wiz-15-minute-demo-secure-everything.html
😁7🀯3πŸ‘1
⚑ CERT-UA confirms 3+ attacks on Ukraine’s government and critical systems since Fall 2024 using phishing links (DropMeFiles, Google Drive) to deploy WRECKSTEEL malware.

Cyber threats are escalating.

Read more βž” https://thehackernews.com/2025/04/cert-ua-reports-cyberattacks-targeting.html
πŸ‘11πŸ€”6😁4πŸ‘2
πŸ”₯ New Ivanti ZERO-DAY exploited in the wild β€” China-linked UNC5221 hits Connect Secure (CVE-2025-22457, CVSS 9.0).

πŸ’£ Exploits spotted mid-March by Mandiant.
πŸ•΅οΈβ€β™‚οΈMalware: TRAILBLAZE, BRUSHFIRE, SPAWN.
🎯 Persistence. Credential theft. Data exfiltration.

⚑ Patch now | See full story + urgent guidance: https://thehackernews.com/2025/04/critical-ivanti-flaw-actively-exploited.html
😁8πŸ‘4πŸ€”4πŸ‘2
🚨 Hackers aren’t hiding in basements anymore β€” they’re students with business plans.

A 19-year-old, Coquettte, used Russian bulletproof hosting to spread malware disguised as antivirus software.

An OPSEC mistake exposed ties to Horrid, a cybercrime group training new hackers.

πŸ‘€ Learn more: https://thehackernews.com/2025/04/opsec-failure-exposes-coquetttes.html
πŸ”₯27πŸ‘8πŸ‘4😁2
πŸ”₯ 10 years ago, Docker changed how we build software.

Today, Chainguard OS changes how we deliver it.

Chainguard OS:
βœ… Secure upstream sources
βœ… Daily updates
βœ… Smaller, safer, faster

Containers evolved. Now software delivery has too.

πŸ‘‰ What’s next: https://thehackernews.com/2025/04/have-we-reached-distroless-tipping-point.html
😁8πŸ‘6😱4πŸ‘2πŸ€”2
πŸ‘€ $0 GitHub Action βž” $B security nightmare.

In Nov 2024, a SpotBugs maintainer accidentally leaked a GitHub access token.

⚑ Attackers exploited itβ€”moving from SpotBugs βž” reviewdog βž” poisoning tj-actions/changed-filesβ€”before striking Coinbase in March 2025.

➑️ Details here: https://thehackernews.com/2025/04/spotbugs-access-token-theft-identified.html
πŸ‘13😱9πŸ‘5
DDoS attacks are rising β€” and gaps in protection are being exposed. πŸ“ˆ

In 2024, Cloudflare reported 25M+ DDoS attacks, a 53% YoY increase.

Even basic attacks can bypass defenses due to hidden vulnerabilities in security policies β€” not vendor failures.

Continuous validation is now essential to stay resilient.

Learn more πŸ‘‰ https://thehackernews.com/expert-insights/2025/03/the-surprising-gap-in-ddos-protections.html
πŸ‘15😁3πŸ”₯2
🚨 Malicious Python packages on PyPI steal data from 34,000+ users!

Fake libraries (bitcoinlibdbfix, bitcoinlib-dev, disgrasya) hid malware to exfiltrate databases and test stolen credit cards.

πŸ‘€ Attackers even joined GitHub discussions to trick users.

πŸ”— Read: https://thehackernews.com/2025/04/malicious-python-packages-on-pypi.html
🀯24πŸ‘11πŸ‘2
πŸ‘‰ North Korean hackers are hunting developersβ€”right now.

New malware-laced npm packages (5,600+ downloads) are spreading BeaverTail and a new RAT loader, hidden as fake utilities.

πŸ‘€ Targets? Your code. Your system. Your data.

Read: https://thehackernews.com/2025/04/north-korean-hackers-deploy-beavertail.html
😁13πŸ”₯11πŸ‘5πŸ€”4😱3
πŸ‘€ Microsoft Credits EncryptHub β€” the Hacker Behind 618+ Breaches β€” for Disclosing Windows Flaws. πŸ‘€

In March 2025, EncryptHub reported 2 critical bugs (CVE-2025-24061 & CVE-2025-24071).

Weeks later, he exploited a zero-day (CVE-2025-26633), hitting hundreds of targets using ChatGPT-built malware.

πŸ”— Full story: https://thehackernews.com/2025/04/microsoft-credits-encrypthub-hacker.html
πŸ‘19πŸ”₯11😁10πŸ‘5⚑3
🚨 PoisonSeed ALERT: Hackers are hijacking CRM platforms like Mailchimp, SendGrid, Hubspot to steal crypto wallets β€” by sending fake seed phrases in mass spam attacks.

Once inside? They create API keys for stealthy, long-term control β€” even if passwords are reset.

Learn more βž” https://thehackernews.com/2025/04/poisonseed-exploits-crm-accounts-to.html
😁12πŸ”₯7πŸ‘6⚑1
πŸ”Ž Vanity metrics β‰  security

Fortune 500s still chase patch counts and scan ratesβ€”but real threats slip through.

Real security = measuring impact, not activity.

Gartner predicts CTEM will cut breaches by 66% by 2026.

πŸ‘‰ Learn more: https://thehackernews.com/2025/04/security-theater-vanity-metrics-keep.html
πŸ”₯7πŸ‘6
⚑ Threats are moving faster than patches.

This week in THN: VPN exploits, supply chain hacks, insider threats, fake job scams, and malware-laced phones.

Stay ahead β€” full recap here ➑️ https://thehackernews.com/2025/04/weekly-recap-vpn-exploits-oracles.html
πŸ‘15πŸ€”4😁3πŸ”₯1
🚨 ALERT: Fast Flux networks are backβ€”and more dangerous than ever.

CISA, NSA, FBI + allies (πŸ‡¦πŸ‡ΊπŸ‡¨πŸ‡¦πŸ‡³πŸ‡Ώ) warn: hackers like Gamaredon & Raspberry Robin are rapidly rotating domains to evade takedowns and launch malware attacks.

Block, filter, sinkhole, monitor β€” or risk exposure.

πŸ”— Read the full advisory: https://thehackernews.com/2025/04/cisa-and-fbi-warn-fast-flux-is-powering.html
⚑17πŸ‘12🀯7πŸ€”4πŸ”₯1πŸ‘1
πŸ”₯ Google patches 62 security flaws β€” but 2 were already exploited in the wild.

One (CVE-2024-53197) helped hackers break into a Serbian activist’s phone in Dec 2024.

πŸ‘€ Zero user interaction. Remote takeover.

Full story β†’ https://thehackernews.com/2025/04/google-releases-android-update-to-patch.html
πŸ‘18🀯9😱7πŸ€”3πŸ”₯2
CrushFTP flaw (CVE-2025-31161, CVSS 9.8) is being actively exploited.

Full system takeover via authentication bypass (no login needed)

β€”First attacks seen March 30
β€”815 vulnerable servers
β€” Targets: marketing, retail, semiconductor sectors
β€” Malware used: MeshAgent, Telegram bots

FCEB agencies must patch by April 28. Exploit guide is public. Attackers are moving fast.

πŸ”— See details: https://thehackernews.com/2025/04/cisa-adds-crushftp-vulnerability-to-kev.html
πŸ‘13⚑2πŸ”₯2😁2
πŸ‘€ AI is coding fasterβ€”but leaking secrets faster too.

New GitGuardian data (2025):
πŸ”Ή Copilot repos leak secrets 40% more often.
πŸ”Ή 6.4% exposed credentials β€” 1,200+ cases.

As AI builds, non-human identities are explodingβ€”and attackers are watching.

CISOs must rethink security NOW.

Learn why βž” https://thehackernews.com/expert-insights/2025/04/the-new-frontier-of-security-risk-ai.html
πŸ‘9😁7πŸ‘6πŸ€”4