The Hacker News
151K subscribers
1.85K photos
10 videos
3 files
7.76K links
Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

📨 Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
New Go-Based "GoTrim" Botnet Threatens WordPress Sites: Protect Your Admin Account Now!

Details: https://thehackernews.com/2022/12/new-gotrim-botnet-attempting-to-break.html
👍23😱129😁7
FBI has charged 6 individuals and seized 48 domains linked to DDoS-for-hire service platforms.

Read: https://thehackernews.com/2022/12/fbi-charges-6-seizes-48-domains-linked.html
👏23👍8😁6🔥42
Have you heard about how attackers can use SVG files to secretly sneak QBot malware onto Windows systems?

Read this report for more details: https://thehackernews.com/2022/12/hacking-using-svg-files-to-smuggle-qbot.html
🤯32👍96🔥3😁1
Open source repositories under attack: hackers flood NuGet, NPM, and PyPi with over 144,000 malicious packages

Details: https://thehackernews.com/2022/12/hackers-bombard-open-source.html
😱36👍14🤯109🔥7👏4🤔2
MoneyMonger!

Be on alert for a new Android malware campaign using money-lending apps to blackmail victims with stolen personal information.

Read: https://thehackernews.com/2022/12/android-malware-campaign-leverages.html
😱19👍1413🤯7🔥2
Windows users, beware!

Microsoft has reclassified SPNEGO Extended Negotiation Security vulnerability as CRITICAL because it can be exploited to perform RCE attacks via Windows app protocols that use authentication, such as HTTP, SMB, and RDP.

https://thehackernews.com/2022/12/microsoft-reclassifies-spnego-extended.html
🤯41👍18😁98🤔7🔥5
GitHub is making its secret scanning service available for free to all public repositories and also plans to require 2-factor authentication for "distinct groups of users."

Read: https://thehackernews.com/2022/12/github-announces-free-secret-scanning.html
👍23👏12😁1
U.S. cybersecurity agency CISA has added two critical vulnerabilities in Veeam Backup & Replication software to its list of known exploited vulnerabilities, as they are actively being exploited in attacks.

Details: https://thehackernews.com/2022/12/cisa-alert-veeam-backup-and-replication.html
👍21😁2🔥1
NIST has formally retired the widely used 27-year-old SHA-1 cryptographic algorithm, bringing cryptographic security into the modern age.

Read: https://thehackernews.com/2022/12/goodbye-sha-1-nist-retires-27-year-old.html
👍48
Microsoft has identified a cross-platform botnet malware that is targeting private Minecraft servers with DDoS attacks.

Details: https://thehackernews.com/2022/12/minecraft-servers-under-attack.html
👍29😱3🤔1🤯1
Chinese MirrorFace APT hacker group has been blamed for a malicious campaign aimed at Japanese political entities.

Read: https://thehackernews.com/2022/12/researchers-uncover-mirrorface-cyber.html
👍18😱7👏2🔥1
A former Twitter employee has been sentenced to three and a half years in prison for spying on data about certain individuals and passing it on to the Saudi government.

Read: https://thehackernews.com/2022/12/ex-twitter-employee-gets-35-years-jail.html
👍37🤯21😁15👏10🔥94
Researchers have uncovered a new cyberattack campaign targeting Ukrainian government entities via trojanized Windows 10 operating system installers to perform post-exploitation activities.

Read: https://thehackernews.com/2022/12/trojanized-windows-10-installer-used-in.html
👍34🔥13🤯11🤔3😱3
Multiple high-severity vulnerabilities [CVE-2022-38023, CVE-2022-37966, CVE-2022-37967, CVE-2022-45141] have been discovered in Samba software that could potentially allow hackers to gain control of the affected systems.

Read: https://thehackernews.com/2022/12/samba-issues-security-updates-to-patch.html
👍32😱16🔥106🤯5😁3🤔2
🔥 Gmail just got a whole lot more secure with Google's new Client-Side Encryption!

With the new feature, emails are encrypted on your end before they are sent, providing an extra layer of protection against cyberattacks and surveillance.

https://thehackernews.com/2022/12/gmail-encryption.html

#privacy #tech
👏109🔥39👍32🤔3010😁9🤯7😱4
Facebook has taken steps to disrupt accounts and infrastructure operated by spyware vendors from a number of countries, including the United States, China, Russia, Israel, and India, targeting individuals in about 200 countries.

Read: https://thehackernews.com/2022/12/facebook-cracks-down-on-spyware-vendors.html
🔥26👍11👏5🤔1
Agenda ransomware joins the growing list of malware strains written in cross-platform Rust programming language.

Read: https://thehackernews.com/2022/12/new-agenda-ransomware-variant-written.html
🔥25👍8🤔54👏4
Despite Google's efforts to disrupt the blockchain-based Glupteba botnet in the past, the operators resurfaced in June 2022 with a new and more sophisticated malware campaign.

Read: https://thehackernews.com/2022/12/glupteba-botnet-continues-to-thrive.html
🤯22👍11😱7👏6🔥1
A malicious PyPI package pretending to be an SDK for SentinelOne has been discovered, leading to a data theft campaign called SentinelSneak.

Read details: https://thehackernews.com/2022/12/researchers-discover-malicious-pypi.html
🤯30👍8😱75😁4
New findings suggest that the KmsdBot botnet is potentially acting as a DDoS-for-hire service for cybercriminals.

READ: https://thehackernews.com/2022/12/kmsdbot-botnet-suspected-of-being-used.html
🔥15👍13😁6