The Hacker News
151K subscribers
1.85K photos
10 videos
3 files
7.76K links
Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

📨 Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
CISA warns of several critical vulnerabilities in Mitsubishi Electric GX Works3 engineering software, which is widely used in the ICS environment.

Read: https://thehackernews.com/2022/12/cisa-warns-of-multiple-critical.html
👍17🤯43👏1
Researchers have uncovered a high-severity security vulnerability in IBM Cloud Databases for PostgreSQL that could be exploited to tamper with internal repositories and execute unauthorized code.

Read: https://thehackernews.com/2022/12/researchers-disclose-supply-chain-flaw.html
🤔13👍12👏65😁5😱1
Hackers abused compromised platform certificates used by Android smartphone vendors such as Samsung, LG, and MediaTek to sign malicious apps and bypass security checks.

Read: https://thehackernews.com/2022/12/hackers-sign-android-malware-apps-with.html
👍45🤯19🔥14🤔8😱32👏2
A new RCE vulnerability [CVE-2022-23093] has been reported in the ping module of the FreeBSD operating system that could be exploited to remotely crash the program or execute malicious code.

Read: https://thehackernews.com/2022/12/critical-ping-vulnerability-allows.html
🤯28👍13😱13👏9😁5🤔53🔥1
North Korean Lazarus hackers have been spotted distributing fake cryptocurrency apps to attack users with a new variant of AppleJeus malware.

Read: https://thehackernews.com/2022/12/north-korean-hackers-spread-applejeus.html
👏17😁10🤯9👍8🔥84🤔4
Researchers have discovered a security vulnerability in SiriusXM services that allows remote hacking of connected cars from Honda, Nissan, Infiniti and Acura.

Read: https://thehackernews.com/2022/12/siriusxm-vulnerability-lets-hackers.html
👍20😁19🔥64
New CryWiper malware disguised as ransomware targeting Russian government agencies, including mayor's offices and courts.

Read: https://thehackernews.com/2022/12/russian-courts-targeted-by-new-crywiper.html
15👍11😁10🤯6🔥2
Newly discovered supply chain vulnerabilities found in MegaRAC BMC software affect servers from many vendors and could allow remote code execution attacks on vulnerable systems.

Read: https://thehackernews.com/2022/12/new-bmc-supply-chain-vulnerabilities.html
🔥22👍7👏52
A version of an open-source ransomware toolkit called "Cryptonite" has been observed in the wild with wiper capabilities due to its "weak architecture and poor programming."

Read: https://thehackernews.com/2022/12/open-source-ransomware-toolkit.html
👍2112😱10😁9🤯1
SIM swapping hackers are launching an extremely persistent intrusion campaign against telecom and BPO companies.

Read: https://thehackernews.com/2022/12/telcom-and-bpo-companies-under-attack.html
😱17👍148🤯8👏2
China-linked APT group "BackdoorDiplomacy" has been spotted launching sophisticated cyber attacks against telecom companies in the Middle East.

Read: https://thehackernews.com/2022/12/chinese-hackers-target-middle-east.html
😁13👍7🔥6🤯42😱2
Iranian state-sponsored hackers targeting key figures in activism, journalism, and politics with sophisticated social engineering and credential phishing attacks.

Read: https://thehackernews.com/2022/12/iranian-state-hackers-targeting-key.html
🔥34👍14🤔7😱6👏5😁54🤯3
Researchers have discovered a novel Go-based botnet called "Zerobot" in the wild that exploits nearly two dozen vulnerabilities in IoT devices and other software to rapidly expand its network.

Read: https://thehackernews.com/2022/12/new-go-based-zerobot-botnet-exploiting.html
👍16🤯8😱54🔥3🤔2
Microsoft issues warning to cryptocurrency industry of targeted cyberattacks by North Korea's Lazarus hacker group.

Read: https://thehackernews.com/2022/12/microsoft-alerts-cryptocurrency.html
👍259🔥8🤔6👏5🤯4😁2
A China-linked nation-state hacking group is using decoys related to the ongoing Russian-Ukrainian war to attack facilities in Europe and the Asia-Pacific region.

Read: https://thehackernews.com/2022/12/chinese-hackers-using-russo-ukrainian.html
👍25😱74👏2😁1
Russia state-sponsored #hacking group has been linked to cyberattacks on U.S. military weapons and hardware supplier Global Ordnance.

Read: https://thehackernews.com/2022/12/russian-hackers-spotted-targeting-us.html
👍14🤯11🔥9👏83
Cybercrime group "Vice Society" disproportionately targeted educational institutions, surpassing other ransomware families such as LockBit, BlackCat, BianLian, and Hive with 33 victims in 2022.

Read: https://thehackernews.com/2022/12/vice-society-ransomware-attackers.html
👏14👍10🔥85
Iranian hackers unleash data-wiping attack on diamond industries in South Africa, Israel, and Hong Kong via supply-chain attack on Israeli software firm.

Read: https://thehackernews.com/2022/12/iranian-hackers-strike-diamond-industry.htm
16👍10😱8🔥5🤔4🤯4👏1😁1
Google warns that North Korean hackers exploited an Internet Explorer zero-day vulnerability to target South Korean users by capitalizing on the recent Itaewon Halloween crowd crush to trick users into downloading malware.

https://thehackernews.com/2022/12/google-warns-of-internet-explorer-zero.html
🔥22👍122🤯2🤔1
Apple announces a raft of new security measures, including:

New Advanced Data Protection setting
iMessage contact key verification
End-to-end encrypted data backups in iCloud
Support for hardware security keys for Apple ID

https://thehackernews.com/2022/12/apple-boosts-security-with-new-imessage.html
👍48👏12🔥10😁61