The Hacker News
โœ”
152K subscribers
1.87K photos
10 videos
3 files
7.78K links
โญ Official THN Telegram Channel โ€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

๐Ÿ“จ Contact: [email protected]

๐ŸŒ Website: https://thehackernews.com
Download Telegram
โš ๏ธChinese nation-state groups are getting better at bypassing security!

Learn more: https://thehackernews.com/2023/03/researchers-uncover-chinese-nation.html

They are now using TONEINS, TONESHELL, and PUBLOAD malware for more effective infiltration, as well as HIUPAN and ACNSHELL for reverse shell.
๐Ÿค”17๐Ÿ‘8๐Ÿ”ฅ6๐Ÿคฏ4๐Ÿ˜ฑ3
Don't let third-party app access put your company's data at risk!

Join our upcoming webinar to learn about the potential dangers and get expert insights on how to keep your SaaS apps secure.

Learn from the experts - register today: https://thn.news/risk-of-3rd-party-saas-apps
๐Ÿ‘29
๐Ÿ Python developers, beware! Malicious package on PyPI uses Unicode to evade detection and deploy info-stealing malware!

๐Ÿ“ข Learn more: https://thehackernews.com/2023/03/malicious-python-package-uses-unicode.html
๐Ÿ‘20๐Ÿ‘11๐Ÿ”ฅ9โšก7
GitHub replaces RSA SSH host key after brief exposure in public repository to prevent any bad actor from impersonating the service or eavesdropping on users' operations over SSH.

Learn more: https://thehackernews.com/2023/03/github-swiftly-replaces-exposed-rsa-ssh.html
๐Ÿคฏ33๐Ÿ‘21๐Ÿค”16โšก6
OpenAI discloses a Redis bug causing certain ChatGPT users' personal info and chat titles to be exposed.

Learn more: https://thehackernews.com/2023/03/openai-reveals-redis-bug-behind-chatgpt.html
๐Ÿ˜ฑ58๐Ÿ˜30๐Ÿ‘16๐Ÿ”ฅ15๐Ÿ‘15๐Ÿคฏ1
Conor Brian Fitzpatrick, the 20-year-old founder and admin of the now-defunct BreachForums, has been charged in the U.S. with conspiracy to commit access device fraud. If found guilty, he faces up to five years in prison.

Read: https://thehackernews.com/2023/03/20-year-old-breachforums-founder-faces.html
๐Ÿคฏ21๐Ÿ‘12โšก4๐Ÿ‘3
๐Ÿšจ Microsoft releases out-of-band update for privacy-defeating flaw in Windows 10 & 11 screenshot editing tools!

Learn more: https://thehackernews.com/2023/03/microsoft-issues-patch-for-acropalypse.html

๐Ÿ”’ Dubbed "aCropalypse," the #vulnerability allows malicious actors to recover edited parts of screenshots.
๐Ÿ”ฅ18๐Ÿ‘12โšก3๐Ÿ˜ฑ3
โš ๏ธ MacOS Alert! MacStealer targeting Apple devices running macOS Catalina & later, M1/M2 CPUs.

The malware Telegram for C&C, stealing documents, browser cookies, iCloud keychain, passwords & credit card info.

Learn more: https://thehackernews.com/2023/03/new-macstealer-macos-malware-steals.html
๐Ÿ˜24๐Ÿ‘15๐Ÿค”9๐Ÿคฏ7๐Ÿ˜ฑ7๐Ÿ”ฅ4
Heads up, iPhone and iPad users! Apple has backported fixes for an actively exploited vulnerability (CVE-2023-23529) to older models.

Details: https://thehackernews.com/2023/03/apple-issues-urgent-security-update-for.html

Make sure to update to iOS 15.7.4 and iPadOS 15.7.4 ASAP to stay protected.
๐Ÿ‘36๐Ÿค”8๐Ÿ˜ฑ8โšก7๐Ÿ”ฅ5๐Ÿ˜4
U.S. President Joe Biden signs an executive order restricting the use of commercial spyware by federal government agencies, citing security and counterintelligence risks.

Learn more: https://thehackernews.com/2023/03/president-biden-signs-executive-order.html
๐Ÿค”31๐Ÿ‘19๐Ÿ˜15๐Ÿ‘7โšก3
๐Ÿšจ New phishing campaign targets European entities using Remcos RAT & Formbook via DBatLoader malware!

Read: https://thehackernews.com/2023/03/stealthy-dbatloader-malware-loader.html

DBatLoader exploits multi-layered obfuscated HTML & OneNote attachments, and leverages image steganography to evade detection engines.
๐Ÿ˜17๐Ÿ‘8โšก3๐Ÿ‘3๐Ÿ”ฅ2๐Ÿ˜ฑ2
New IcedID Lite and Forked malware variants discovered!

Threat actors pivot away from banking fraud functionality to focus on payload delivery, including #ransomware.

Learn more: https://thehackernews.com/2023/03/icedid-malware-shifts-focus-from.html
โšก10๐Ÿ‘6๐Ÿคฏ3๐Ÿ”ฅ1๐Ÿ˜1
APT group SideCopy, known for targeting India & Afghanistan government agencies, has launched a new phishing campaign delivering Action RAT and AuTo Stealer.

Learn more: https://thehackernews.com/2023/03/pakistan-origin-sidecopy-linked-to-new.html
๐Ÿ˜ฑ16๐Ÿ‘8โšก7๐Ÿ”ฅ5๐Ÿคฏ4๐Ÿ˜3๐Ÿ‘1๐Ÿค”1
๐Ÿš€ Microsoft unveils Security Copilot in preview! Powered by OpenAI's GPT-4, it offers end-to-end defense ๐Ÿ”’ at machine speed and scale.

Details here: https://thehackernews.com/2023/03/microsoft-introduces-gpt-4-ai-powered.html
๐Ÿคฏ48๐Ÿ‘8๐Ÿ”ฅ8๐Ÿค”8๐Ÿ˜ฑ8โšก2๐Ÿ˜2
APT43, a moderately-sophisticated cyber operator that supports North Korea's regime, engages in financially-motivated cybercrime to fund its operations.

Learn more: https://thehackernews.com/2023/03/north-korean-apt43-group-uses.html
๐Ÿคฏ18๐Ÿ‘7โšก6๐Ÿ˜3๐Ÿ˜ฑ3
๐Ÿ”ฅ New Chinese-linked #malware, Mรฉlofรฉe, threatens Linux servers!

Uncovered by ExaTrack, it enables remote control over servers and hides itself using kernel-mode rootkits.

Learn more: https://thehackernews.com/2023/03/melofee-researchers-uncover-new-linux.html
๐Ÿ‘20๐Ÿ”ฅ10โšก4๐Ÿ˜4๐Ÿ˜ฑ2
๐Ÿšจ Google's TAG reveals commercial spyware vendors exploited zero-day vulnerabilities on Android & iOS devices last year.

Learn more: https://thehackernews.com/2023/03/spyware-vendors-caught-exploiting-zero.html

These highly targeted campaigns put dissidents, journalists, & human rights workers at risk.
๐Ÿ‘19๐Ÿคฏ8โšก5๐Ÿ˜2๐Ÿ”ฅ1
Beware of ๐Ÿฆ  Trojanized TOR installers targeting Russia & Eastern Europe with clipper malware designed to steal cryptocurrencies.

Learn more: https://thehackernews.com/2023/03/trojanized-tor-browser-installers.html
๐Ÿคฏ24๐Ÿ‘9๐Ÿ˜5๐Ÿค”5๐Ÿ”ฅ4๐Ÿ˜ฑ4โšก3๐Ÿ‘3
โš ๏ธ ๐Ÿšจ Active supply chain attack targets popular voice and video conferencing software 3CX Desktop App, affecting hundreds of well-known brands and millions of users.

A multi-stage attack chain has been identified, beginning with a trojanized app and leading to a 3rd stage infostealer DLL, capable of targeting Google Chrome, Microsoft Edge, Brave, and Mozilla Firefox browsers.

Learn more: https://thehackernews.com/2023/03/3cx-desktop-app-targeted-in-supply.html
๐Ÿ‘18๐Ÿ”ฅ6๐Ÿ˜6๐Ÿค”3๐Ÿคฏ2โšก1
๐Ÿšจ New cybersecurity threat! AlienFox, a highly modular & constantly evolving toolset distributed on Telegram, enables attackers to harvest API keys & secrets from popular cloud service providers like AWS, Google Workspace, and Microsoft 365.

Learn more: https://thehackernews.com/2023/03/alienfox-malware-targets-api-keys-and.html
๐Ÿ”ฅ26๐Ÿ˜ฑ9๐Ÿ‘5โšก1๐Ÿค”1