The Hacker News
โœ”
151K subscribers
1.85K photos
10 videos
3 files
7.76K links
โญ Official THN Telegram Channel โ€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

๐Ÿ“จ Contact: [email protected]

๐ŸŒ Website: https://thehackernews.com
Download Telegram
โšก Weekly Recap โŸถ VPN 0โ€‘Day, Mac Stealer Backdoor, AI Malware Disguised as Dev Tools, and an APT Hiding in ISPs.

The scariest part? Most of it looked legit.

Catch up now โ†“ https://thehackernews.com/2025/08/weekly-recap-vpn-0-day-encryption.html
๐Ÿ˜7๐Ÿ˜ฑ3
๐Ÿšจ New wave of Python malware hits 4,000+ systems across 62 countries.

PXA Stealer is siphoning passwords, credit cards, and cookiesโ€”then selling them via Telegram-powered black markets.

Details here โ†’ https://thehackernews.com/2025/08/vietnamese-hackers-use-pxa-stealer-hit.html
๐Ÿ˜15๐Ÿ”ฅ3๐Ÿ‘3๐Ÿ‘2
๐Ÿ”ฅ Hackers can fully hijack NVIDIA's Triton AI servers โ€” no login needed.

A new exploit chain gives attackers remote code execution and access to sensitive AI models.

It all starts with a single malformed request.

Full details โ†’ https://thehackernews.com/2025/08/nvidia-triton-bugs-let-unauthenticated.html
๐Ÿ˜27๐Ÿ”ฅ6๐Ÿ‘5๐Ÿ˜ฑ4โšก1๐Ÿ‘1
๐Ÿšจ A suspected zero-day in SonicWall Gen 7 firewalls is under active attack.

Akira ransomware is exploiting SSL VPNs to breach networksโ€”even with MFA.

20+ confirmed attacks. Domain controllers hit within hours.

Urgent steps + full report โ†’ https://thehackernews.com/2025/08/sonicwall-investigating-potential-ssl.html
๐Ÿ‘14๐Ÿ”ฅ2
๐Ÿšจ DDoS attacks surged 358% in Q1 2025. But itโ€™s not just volumeโ€”itโ€™s AI-powered, precision-targeted, and actively evading defenses.

The old playbook is obsolete. Most orgs only test 1% of their attack surface.

The rest? Fully exposed.

Details here โ†’ https://thehackernews.com/expert-insights/2025/08/the-new-face-of-ddos-is-impacted-by-ai.html
๐Ÿ‘11๐Ÿ˜ฑ1
๐Ÿšจ 15,000+ fake TikTok Shop sites are stealing logins & crypto.

A massive scam uses AI-generated videos, Meta ads & trojan apps to hijack your device.

It mimics influencersโ€”and it's global.

Hereโ€™s what you need to know โ†“ https://thehackernews.com/2025/08/15000-fake-tiktok-shop-domains-deliver.html
๐Ÿ˜9๐Ÿ‘7๐Ÿ‘1
๐Ÿšจ A phishing attack hidden behind a QR code + CAPTCHA was fully exposed in under 60 secondsโ€”no analyst touch needed.

How? A live, automated sandbox detonated the payload, bypassed defenses, and surfaced IOCs instantly.

Your SOC is missing this.

Details here โ†’ https://thehackernews.com/2025/08/how-top-cisos-save-their-socs-from.html
๐Ÿ˜14๐Ÿ‘1
๐Ÿšจ A high-severity flaw in Cursor AI (CVE-2025-54136) let attackers hijack trusted MCP configsโ€”triggering remote code execution every time you opened the project.

No re-prompt. No warning. Just silent compromise by modifying a config file you already trusted.

Learn more โ†’ https://thehackernews.com/2025/08/cursor-ai-code-editor-vulnerability.html
๐Ÿ‘16๐Ÿ˜6๐Ÿ‘2
๐Ÿ”‘ 53% of orgs trust their SaaS vendors. But 70% of SaaS incidents come from misconfigs & bad permissionsโ€”your responsibility.

Worse? They leave no logs. No alerts. Just exposure.

Hereโ€™s why posture > detection: https://thehackernews.com/2025/08/misconfigurations-are-not.html
๐Ÿค”7โšก1
๐Ÿšจ Google just fixed 3 Android bugs hackers were already using.

One lets them hijack your phone through the graphics chip โ€” no clicks needed.

Spyware vendors may be behind it.

PATCH your phones now โ†’ https://thehackernews.com/2025/08/google-fixes-3-android-vulnerabilities.html
๐Ÿ˜23๐Ÿคฏ9๐Ÿ”ฅ5๐Ÿค”1
๐Ÿšจ CAPTCHAgeddon is here. A fake CAPTCHA scam called ClickFix hijacks devices with a single pasteโ€”no download, no file, just clipboard commands.

It's smarter than ClearFakeโ€”and spreading fast.

Hereโ€™s how it works โ†“ https://thehackernews.com/2025/08/clickfix-malware-campaign-exploits.html
๐Ÿ˜ฑ8๐Ÿ”ฅ3๐Ÿ‘2๐Ÿค”2๐Ÿ˜1
๐Ÿ‘€ Still pip installing and praying?

Supply chain attacks are everywhere in Python:
โ†’ YOLO package hacked
โ†’ Critical vulns in base images
โ†’ Malicious packages live on PyPI

๐Ÿ”ฅ Join the free webinar to secure your Python stack โ†’ https://thehacker.news/safeguarding-python-supply-chain
๐Ÿ‘10๐Ÿ”ฅ5๐Ÿ˜ฑ2๐Ÿ˜1
๐Ÿ”’ UPDATE: Akira ransomware now uses legit Windows drivers (rwdrv.sys, hlpdrv.sys) in a BYOVD attack to disable Defender and gain kernel accessโ€”even in hardened environments.

Tied to SonicWall SSL VPN zero-dayโ€”still under active investigation.

Read โ†’ https://thehackernews.com/2025/08/sonicwall-investigating-potential-ssl.html
๐Ÿ”ฅ21๐Ÿ˜3๐Ÿ˜ฑ2๐Ÿ‘1
๐Ÿ”ฅ AI just changed the rules of pen testing.

Now you can say: "Check if leaked creds can access prod-finance."

And in seconds, it attacks, adapts, and reportsโ€”no scripts, no guesswork.

Vibe Red Teaming is here. Testing becomes a conversation.

โ†’ Full vision from Pentera's CTO: https://thehackernews.com/2025/08/ai-is-transforming-cybersecurity.html
๐Ÿ”ฅ11๐Ÿ˜3๐Ÿ‘2๐Ÿค”1
๐Ÿšจ CISA just confirmed active exploits targeting 3 old D-Link camera and recorder flaws โ€” one remains unpatched.

These vulnerabilities expose admin passwords and enable command execution.

One affected model reached end-of-life. Still using it? You're exposed.

Mitigations required by Aug 26 โ†’ https://thehackernews.com/2025/08/cisa-adds-3-d-link-router-flaws-to-kev.html
๐Ÿ‘7๐Ÿคฏ5๐Ÿ”ฅ2๐Ÿ˜2๐Ÿค”1
๐Ÿšจ Ukraine hit by wave of cyberattacks โ€” again.

Phishing emails posing as court summons are dropping malware that steals docs, grabs screenshots, and executes remote commands.

Hereโ€™s whatโ€™s happening โ†“ https://thehackernews.com/2025/08/cert-ua-warns-of-hta-delivered-c.html
๐Ÿ˜12๐Ÿค”12๐Ÿ”ฅ5๐Ÿ˜ฑ5๐Ÿคฏ4๐Ÿ‘3
๐Ÿšจ Trend Micro flaw (CVE-2025-54948 and CVE-2025-54987) lets attackers run code before login.

Two critical bugs (CVSS 9.4) are being exploited right now in Apex One on-prem.

Admins, patch fast โ€” remote code execution is on the table.

Hereโ€™s what you need to know โ†“ https://thehackernews.com/2025/08/trend-micro-confirms-active.html
๐Ÿ‘10๐Ÿ”ฅ6
Microsoft just built an AI that reverse-engineers malware by itself.

No hints. No human help โ€” and 90%+ accuracy.

It could change how threats are foundโ€”before they even spread.

Hereโ€™s what Project Ire can do โ†“ https://thehackernews.com/2025/08/microsoft-launches-project-ire-to.html
๐Ÿค”30๐Ÿ‘11๐Ÿ˜6๐Ÿ‘4๐Ÿ”ฅ3๐Ÿ˜ฑ2๐Ÿคฏ1
๐Ÿ“ˆ vCISO adoption just exploded 319% in one year.

MSPs & MSSPs are scrambling to meet SMB demandโ€”and AI is powering the shift.

Itโ€™s not just about security. Itโ€™s driving higher margins, better upsell, and recurring revenue.

Check full report โ†’ https://thehackernews.com/2025/08/ai-slashes-workloads-for-vcisos-by-68.html
๐Ÿ‘4๐Ÿ‘2
๐Ÿšจ UPDATE: Google confirms it was hit in the Salesforce vishing attacks.

Hackers accessed contact data for small biz clients in Juneโ€”then vanished.

Now? They're back, threatening victims with 72-hour bitcoin extortion demands, posing as ShinyHunters.

Read โ†“ https://thehackernews.com/2025/06/google-exposes-vishing-group-unc6040.html
๐Ÿ‘12๐Ÿ˜10๐Ÿ‘1
๐Ÿšจ Millions duped by fake apps on Apple & Google stores.

VexTrio, a global crime ring, used bogus VPNs & cleaners to steal data, push ads, and charge hidden fees.

Itโ€™s still active.

Details here โ†’ https://thehackernews.com/2025/08/fake-vpn-and-spam-blocker-apps-tied-to.html
๐Ÿ˜14๐Ÿ”ฅ3๐Ÿ˜ฑ3๐Ÿ‘1