Thousands of unprotected Kibana instances found exposed on the Internet, leaving many sensitive Elasticsearch databases at risk of getting leaked
https://thehackernews.com/2019/04/kibana-data-security.html
https://thehackernews.com/2019/04/kibana-data-security.html
New Apache Web Server Vulnerability Threatens Security of Shared Web Hosts
.
https://thehackernews.com/2019/04/apache-web-server-security.html
The flaw (CVE-2019-0211) could allow less-privileged web host users to execute arbitrary code with root privileges on the targeted servers.
.
https://thehackernews.com/2019/04/apache-web-server-security.html
The flaw (CVE-2019-0211) could allow less-privileged web host users to execute arbitrary code with root privileges on the targeted servers.
This is Terrible π€¦ Facebook has been caught asking some new users to enter passwords for their registered email accounts to let Facebook automatically access their inboxes and verify the email addresses.
https://thehackernews.com/2019/04/facebook-email-password.html
https://thehackernews.com/2019/04/facebook-email-password.html
π1
Researchers publish an in-depth analysis of JS Sniffers, uncovering some new families of credit card-skimming code
https://thehackernews.com/2019/04/js-sniffers-credit-card-hacking.html
https://thehackernews.com/2019/04/js-sniffers-credit-card-hacking.html
The Hacker News
In-Depth Analysis of JS Sniffers Uncovers New Families of Credit Card-Skimming Code
Group-IB cybersecurity firm publishes an in-depth analysis of JS Sniffers that uncovers new families of Credit Card-skimming code
Georgia Institute of Technology suffers a massive data breach due to a vulnerability in its web app
https://thehackernews.com/2019/04/georgia-tech-data-breach.html
Attacker(s) allegedly stole personal information of ~1.3 million current and former faculty members, students, staff and student applicants.
https://thehackernews.com/2019/04/georgia-tech-data-breach.html
Attacker(s) allegedly stole personal information of ~1.3 million current and former faculty members, students, staff and student applicants.
Warning β If you have a "private" blog [not self-hosted] with WordPress and are using its official iOS app to manage it, the secret authentication token for your account might have accidentally been leaked to third-party websites
https://thehackernews.com/2019/04/wordpress-ios-security.html
https://thehackernews.com/2019/04/wordpress-ios-security.html
π± Over 540 Million Facebook User Records Exposed Through Unprotected Amazon Servers
https://thehackernews.com/2019/04/facebook-app-database.html
https://thehackernews.com/2019/04/facebook-app-database.html
Breaking β NSA just released the complete source code for its reverse engineering suite GHIDRA version 9.0.2 on Github
https://thehackernews.com/2019/03/ghidra-reverse-engineering-tool.html
PS: Nope, it's not an April Fools joke!
https://thehackernews.com/2019/03/ghidra-reverse-engineering-tool.html
PS: Nope, it's not an April Fools joke!
Well, this is ironic. Hackers could turn an Antivirus app pre-installed on over 150 million Xiaomi smartphones into malware
Read more β€ https://thehackernews.com/2019/04/xiaomi-antivirus-app.html
Read more β€ https://thehackernews.com/2019/04/xiaomi-antivirus-app.html
π1
[New] Breaking β MI Browser app, pre-installed on millions of Xiaomi smartphones, contains an unpatched critical vulnerability (CVE-2019-10875) allowing malicious sites to spoof URLs displayed in the address bar.
Read β€ https://thehackernews.com/2019/04/xiaomi-browser-vulnerability.html
Read β€ https://thehackernews.com/2019/04/xiaomi-browser-vulnerability.html
Microsoft releases first Preview Builds of its new Chromium-powered Edge web browser
https://thehackernews.com/2019/04/chromium-edge-browser.html
Canary and Developer versions are now available for download and testing.
https://thehackernews.com/2019/04/chromium-edge-browser.html
Canary and Developer versions are now available for download and testing.
'Exodus' Surveillance #Malware Found Targeting #iOS Users Using Apple's Enterprise Developer Program
https://thehackernews.com/2019/04/exodus-ios-malware.html
https://thehackernews.com/2019/04/exodus-ios-malware.html
Researcher Reveals Multiple Flaws in Verizon Fios Wi-Fi Routers
https://thehackernews.com/2019/04/verizon-wifi-router-security.html
β CVE-2019-3914: Authenticated Command Injection (Root)
β CVE-2019-3915: Login Replay
β CVE-2019-3916: Password Salt disclosure
β Firmware Patch + PoC Exploit Released
https://thehackernews.com/2019/04/verizon-wifi-router-security.html
β CVE-2019-3914: Authenticated Command Injection (Root)
β CVE-2019-3915: Login Replay
β CVE-2019-3916: Password Salt disclosure
β Firmware Patch + PoC Exploit Released
Adobe releases April 2019 security updates to patch a total of 40 vulnerabilities in Flash Player, Acrobat Reader, Shockwave, Other Products.
Read more >> https://thehackernews.com/2019/04/adobe-security-updates.html
Read more >> https://thehackernews.com/2019/04/adobe-security-updates.html
Microsoft Patch Tuesday β April 2019 Updates Released
Latest Windows Update Patches 74 Security Flaws, Including 2 New EoP Zero-Days Already Being Exploited in the Wild
https://thehackernews.com/2019/04/microsoft-patch-updates.html
Latest Windows Update Patches 74 Security Flaws, Including 2 New EoP Zero-Days Already Being Exploited in the Wild
https://thehackernews.com/2019/04/microsoft-patch-updates.html
Researchers Unveil Sophisticated 'TajMahal' APT Malware Framework (80+ Modules) That Remained Undetected for 5 Years
https://thehackernews.com/2019/04/apt-malware-framework.html
https://thehackernews.com/2019/04/apt-malware-framework.html
π₯ BREAKING β Researchers find several vulnerabilities in the latest WPA3 WiFi security protocol that could allow attackers to hack WiFi passwords using password partitioning attacks
Read More https://thehackernews.com/2019/04/wpa3-hack-wifi-password.html
Read More https://thehackernews.com/2019/04/wpa3-hack-wifi-password.html
London Police Has Arrested WikiLeaks Founder "Julian Assange" After Ecuadorian Government Withdraws Asylum
https://thehackernews.com/2019/04/wikileaks-julian-assange-arrested.html
https://thehackernews.com/2019/04/wikileaks-julian-assange-arrested.html
Watch Out! Popular VSDC video editing software website was HACKED (once again) for a month; hackers replaced software download links with the banking and password stealing malware
https://thehackernews.com/2019/04/free-video-editing-malware.html
https://thehackernews.com/2019/04/free-video-editing-malware.html
MatrixβOpen Source e2e Encrypted Messaging ProjectβSuffers Extensive Cyber Attack
https://thehackernews.com/2019/04/encrypted-messenger-cyberattack.html β¦
Hackers defaced Matrix's site, stole "unencrypted private messages, password hashes, access tokens," and GPG keys the project maintainers used for signing packages.
https://thehackernews.com/2019/04/encrypted-messenger-cyberattack.html β¦
Hackers defaced Matrix's site, stole "unencrypted private messages, password hashes, access tokens," and GPG keys the project maintainers used for signing packages.