Meta, the parent company of Facebook and Instagram, has taken down several cyber espionage campaigns that targeted South Asia through coordinated inauthentic behavior on social media platforms.
Read more to learn about it: https://thehackernews.com/2023/05/meta-uncovers-massive-social-media.html
Read more to learn about it: https://thehackernews.com/2023/05/meta-uncovers-massive-social-media.html
👍28😁7🤔4🔥2
🔥 Researchers have developed a new PoC exploit for a critical PaperCut server vulnerability that can bypass all current detections, allowing attackers to execute arbitrary code with SYSTEM privileges.
Learn details here: https://thehackernews.com/2023/05/researchers-uncover-new-exploit-for.html
Learn details here: https://thehackernews.com/2023/05/researchers-uncover-new-exploit-for.html
⚡12🤯8👏3👍2🔥2😱2😁1🤔1
🚨 Three new security flaws discovered in Microsoft Azure API Management service that could expose sensitive information and compromise backend services.
Learn more about these vulnerabilities: https://thehackernews.com/2023/05/researchers-discover-3-vulnerabilities.html
Learn more about these vulnerabilities: https://thehackernews.com/2023/05/researchers-discover-3-vulnerabilities.html
😁17🤔8😱8⚡5👍5🔥3🤯1
Beware Android users! A new subscription #malware named Fleckpe has been discovered on Google Play Store. The #malware was disguised as photo editing apps, camera, and wallpaper packs, amassing over 620,000 downloads since 2022.
https://thehackernews.com/2023/05/fleckpe-android-malware-sneaks-onto.html
https://thehackernews.com/2023/05/fleckpe-android-malware-sneaks-onto.html
😱24😁10👍6🤯6
Cisco has warned of a critical vulnerability (CVE-2023-20126) in SPA112 2-Port Phone Adapters that could allow remote attackers to execute arbitrary code.
Learn more: https://thehackernews.com/2023/05/cisco-warns-of-vulnerability-in-popular.html
Upgrade now to protect your devices!
Learn more: https://thehackernews.com/2023/05/cisco-warns-of-vulnerability-in-popular.html
Upgrade now to protect your devices!
👍20😁5👏4
🚨 Packagist, the PHP package repository, suffered a security incident where an attacker gained access to four inactive accounts and hijacked over a dozen packages with 500 million installs.
Read details: https://thehackernews.com/2023/05/packagist-repository-hacked-over-dozen.html
Read details: https://thehackernews.com/2023/05/packagist-repository-hacked-over-dozen.html
👏13👍12🔥5😁4😱1
⚠️ North Korean hackers Kimsuky using new ReconShark reconnaissance tool to target individuals via spear-phishing emails, OneDrive links & malicious macros.
Read more about "ReconShark" tool here: https://thehackernews.com/2023/05/n-korean-kimsuky-hackers-using-new.html
Read more about "ReconShark" tool here: https://thehackernews.com/2023/05/n-korean-kimsuky-hackers-using-new.html
⚡13👍12😱6😁1🤔1
Italian corporate banking clients are under attack by a sophisticated financial fraud campaign that uses a new web-inject toolkit called drIBAN.
Learn how it works: https://thehackernews.com/2023/05/hackers-targeting-italian-corporate.html
Learn how it works: https://thehackernews.com/2023/05/hackers-targeting-italian-corporate.html
👍19😁9🤯4👏3
🚨 Alert: East Asian markets hit by a new Android malware named FluHorse. It abuses the Flutter software development framework to mimic legitimate apps and steal credentials.
Learn more about it here: https://thehackernews.com/2023/05/new-android-malware-fluhorse-targeting.html
Learn more about it here: https://thehackernews.com/2023/05/new-android-malware-fluhorse-targeting.html
🤯24👍9⚡4🤔4😱4😁3
If you're using the Advanced Custom Fields plugin for WordPress, make sure to update to version 6.1.6 as soon as possible!
A security flaw (CVE-2023-30777) has been discovered that could allow for reflected cross-site scripting attacks.
https://thehackernews.com/2023/05/new-vulnerability-in-popular-wordpress.html
A security flaw (CVE-2023-30777) has been discovered that could allow for reflected cross-site scripting attacks.
https://thehackernews.com/2023/05/new-vulnerability-in-popular-wordpress.html
👍54😁11🤔6🔥4⚡3
Dragon Breath APT group has added another layer of complexity to its attacks.
Learn how they use the double-clean-app technique to sideload malicious DLLs and target the online gaming and gambling industries: https://thehackernews.com/2023/05/dragon-breath-apt-group-using-double.html
Learn how they use the double-clean-app technique to sideload malicious DLLs and target the online gaming and gambling industries: https://thehackernews.com/2023/05/dragon-breath-apt-group-using-double.html
👍42😁10⚡2
Ukraine's CERT-UA warns of RoarBAT wiper malware causing destructive attacks on state organizations, and invoice-themed phishing campaigns spreading SmokeLoader malware.
Learn more: https://thehackernews.com/2023/05/cert-ua-warns-of-smokeloader-and.html
Learn more: https://thehackernews.com/2023/05/cert-ua-warns-of-smokeloader-and.html
👍25😁6🤔4🔥1
Action RAT and AllaKore RAT are the latest strains of malware deployed by SideCopy to carry out spear-phishing email attacks using #Indian government and defense-related social engineering lures.
Read latest report: https://thehackernews.com/2023/05/sidecopy-using-action-rat-and-allakore.html
Read latest report: https://thehackernews.com/2023/05/sidecopy-using-action-rat-and-allakore.html
⚡11🤔5👍4😁4🔥2
Digital storage giant Western Digital confirms the theft of personal information of its online store customers.
Ransomware hackers demanded a "minimum 8 figures" ransom to avoid leaking the information.
Read details: https://thehackernews.com/2023/05/western-digital-confirms-customer-data.html
Ransomware hackers demanded a "minimum 8 figures" ransom to avoid leaking the information.
Read details: https://thehackernews.com/2023/05/western-digital-confirms-customer-data.html
😱21👍8🔥6😁6
Recent ransomware attack on MSI has taken a new turn as hackers have leaked the company's private code signing keys on the #DarkWeb, including Intel Boot Guard used on 116 MSI products.
Learn more: https://thehackernews.com/2023/05/msi-data-breach-private-code-signing.html
The impact could be felt across the ecosystem.
Learn more: https://thehackernews.com/2023/05/msi-data-breach-private-code-signing.html
The impact could be felt across the ecosystem.
👍22😱12🤯6🔥4😁2
🔥 WEBINAR — Lateral movement and ransomware spread are critical risks facing organizations today. Join our webinar to learn how real-time MFA and service account protection can help you defeat these types of attacks.
Register now: https://thehackernews.com/2023/05/join-our-webinar-learn-how-to-defeat.html
Register now: https://thehackernews.com/2023/05/join-our-webinar-learn-how-to-defeat.html
🔥15👍7😁1
Heads up! CACTUS, a new ransomware strain, is targeting large commercial entities by exploiting known vulnerabilities in VPN appliances and employing double extortion tactics.
Read details: https://thehackernews.com/2023/05/new-ransomware-strain-cactus-exploits.html
Read details: https://thehackernews.com/2023/05/new-ransomware-strain-cactus-exploits.html
🔥12👍8😁3
🔒🚨 Heads up: Iranian state-sponsored hackers join financially motivated actors in exploiting a critical flaw (CVE-2023-27350) in PaperCut print management software to achieve initial access to vulnerable servers.
Read details here: https://thehackernews.com/2023/05/microsoft-warns-of-state-sponsored.html
Read details here: https://thehackernews.com/2023/05/microsoft-warns-of-state-sponsored.html
😁16👍12🤯4🤔3🔥1
SideWinder is back with a new trick up its sleeve. Using server-based polymorphism, this APT actor potentially sidesteps traditional signature-based antivirus detection and distributes additional payloads.
Learn details: https://thehackernews.com/2023/05/researchers-uncover-sidewinders-latest.html
Learn details: https://thehackernews.com/2023/05/researchers-uncover-sidewinders-latest.html
👍21😱6🔥4⚡3😁2👏1
Operation ChattyGoblin — A China-aligned threat actor is targeting Southeast Asian gambling companies in a campaign that's been ongoing since Oct 2021; and using chat apps as their tactic to drop malware.
https://thehackernews.com/2023/05/operation-chattygoblin-hackers.html
https://thehackernews.com/2023/05/operation-chattygoblin-hackers.html
😁11👍8⚡4😱3🤔2🔥1