The Hacker News
151K subscribers
1.86K photos
10 videos
3 files
7.77K links
Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

📨 Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
🔑 Default password-free sign-ins for everyone. Google introduces passkeys for all users, simplifying your online security.

Learn all about it: https://thehackernews.com/2023/10/google-adopts-passkeys-as-default-sign.html
👍331🔥1
🚨 Online risks to children are increasing.

Thorn's report reveals minors are sharing explicit images, sometimes coerced. Learn how tech is using "hashing and matching" to combat this online threat.

Read: https://thehackernews.com/2023/10/new-report-child-sexual-abuse-content.html
👍19😱15😁5👏4🤔4
Beware of the HTTP/2 Rapid Reset attack!

A novel zero-day flaw is being exploited to launch record-breaking distributed DDoS attacks.

Find out more here: https://thehackernews.com/2023/10/http2-rapid-reset-zero-day.html

Learn how AWS, Cloudflare, and Google are addressing CVE-2023-44487.
👍33🔥11🤔9🤯3😁1
🛑 A critical flaw (CVE-2023-22515) in Atlassian Confluence is being exploited by a nation-state actor, Storm-0062.

Read: https://thehackernews.com/2023/10/microsoft-warns-of-nation-state-hackers.html

Upgrade to the latest versions ASAP to safeguard your data and systems.
👍27😱6🔥4😁3🤯1
⚠️ Adobe Acrobat Reader users, beware! CISA adds high-severity flaw in Adobe Acrobat Reader to its Known Exploited Vulnerabilities list.

Read: https://thehackernews.com/2023/10/us-cybersecurity-agency-warns-of.html

Don't wait – update your software now.
😱16👍86😁1
🛡️ Microsoft's October 2023 Patch Tuesday: 103 new vulnerabilities addressed, including 2 zero-days and 13 critical ones.

Find details for CVE-2023-36563 and CVE-2023-41763 and other flaws here — https://thehackernews.com/2023/10/microsoft-releases-october-2023-patches.html

Update now to protect your systems.
👍21🤯7🤔2😱2🔥1👏1
🔐 Protect your organization's data! Password security is crucial. Discover the risks of password reuse and how to mitigate them with Specops Password Policy.

Read: https://thehackernews.com/2023/10/take-offensive-approach-to-password.html
👍15😁5
🕵️‍♂️ Over 17,000 WordPress sites hit by Balada Injector malware in Sept 2023, double the August numbers.

Find out how attackers exploiting vulnerabilties to inject malicious scripts and gain persistent access.

Read details: https://thehackernews.com/2023/10/over-17000-wordpress-sites-compromised.html
😱20👍14🔥72
📢 Security Advisory : Two major security flaws in the Curl data transfer library exposed. CVE-2023-38545, the worst of them, could lead to code execution.

Learn more about them here: https://thehackernews.com/2023/10/two-high-risk-security-flaws-discovered.html

Patch your systems and software immediately.
🤯22👍11🔥3😱3
Cybersecurity experts uncover an ongoing threat to government and telecom entities in Asia. Learn how a campaign named "Stayin' Alive" is deploying malware.

Check out the details: https://thehackernews.com/2023/10/researchers-uncover-ongoing.html
👍23😁8👏6🔥5🤔1
Microsoft's Defender for Endpoint just thwarted a large-scale encryption attack by Akira ransomware.

How? Find out more: https://thehackernews.com/2023/10/microsoft-defender-thwarts-akira.html
🔥19👍95😁1
📈 Employee usage of GenAI apps has risen by 44%. Unintentional exposure? Targeted attacks? LayerX delves into understanding the risks and offering business solutions.

Read: https://thehackernews.com/2023/10/how-to-guard-your-data-from-exposure-in.html
👍166😁1😱1
⚠️ Ever heard of an IP address in hexadecimal notation? It's the latest disguise hackers use to deploy DDoS malware on Linux systems.

Find out more: https://thehackernews.com/2023/10/shellbot-uses-hex-ips-to-evade.html
👍31🤯12🔥9😁5😱5🤔2
🚨 Malicious NuGet package distributing SeroXen RAT targets .NET developers. The malicious user behind this package has released 6 other suspicious packages, with 2.1 million downloads.

Read: https://thehackernews.com/2023/10/malicious-nuget-package-targeting-net.html
👍26🔥5👏4😁4😱3
🚨 The FBI and CISA issue advisory on AvosLocker ransomware gang. They use open-source tools, leave minimal traces, and targeting U.S. critical infrastructure sectors.

Learn more: https://thehackernews.com/2023/10/fbi-cisa-warn-of-rising-avoslocker.html
😁25🔥9👏5👍1
🚨 Beware! DarkGate malware is now spreading through instant messaging apps like Skype & Microsoft Teams. Stay cautious and don't open suspicious documents!

Learn more: https://thehackernews.com/2023/10/darkgate-malware-spreading-via.html
👍25😁3
Researchers shed light on hacking group ToddyCat's latest arsenal of tools. Designed for data theft, their tactics are more advanced than ever.

Find details here: https://thehackernews.com/2023/10/researchers-unveil-toddycats-new-set-of.html
👍23👏3🤔2😁1
A new cyber campaign targets EU military & political leaders focusing on gender equality. The cyber collective behind it blurs lines between financial and espionage motives.

Learn more: https://thehackernews.com/2023/10/new-peapod-cyberattack-campaign.html
👍28🤯8😁6🔥1👏1
🔐 Big news! Microsoft plans to phase out the '90s NT LAN Manager (NTLM) in favor of a stronger focus on Kerberos for authentication in Windows 11.

Learn more: https://thehackernews.com/2023/10/microsoft-to-phase-out-ntlm-in-favor-of.html
🔥49👍32👏11😁4🤔4
🚨 EtherHiding — New threat detected!

Malicious actors are using Binance's Smart Chain (BSC) contracts to host malicious code and serve it on compromised WordPress sites to distribute malware.

Learn more: https://thehackernews.com/2023/10/binances-smart-chain-exploited-in-new.html
🤔23👍17🤯8😁43🔥1👏1