The Hacker News
βœ”
151K subscribers
1.86K photos
10 videos
3 files
7.77K links
⭐ Official THN Telegram Channel β€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

πŸ“¨ Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
πŸ”’ Alert: Researchers have discovered a new SSH protocol vulnerability, "Terrapin" (CVE-2023-48795), enabling attackers to downgrade SSH connection security.

Learn more: https://thehackernews.com/2024/01/new-terrapin-flaw-could-let-attackers.html

Update and patch your SSH servers ASAP.
🀯21πŸ”₯10⚑5πŸ‘5πŸ€”3
🚨Researchers uncover a novel DLL search order hijacking technique that threatens Windows 10 and 11 systems. Attackers exploit trusted folders to execute malicious code without elevated privileges.

Learn more: https://thehackernews.com/2024/01/new-variant-of-dll-search-order.html
πŸ”₯19🀯7πŸ€”6πŸ‘5
Google settles a $5 billion class-action lawsuit over tracking in 'incognito mode.' Users believed their online activity was private on web browsers, but the settlement reveals hidden data collection.

Learn more: https://thehackernews.com/2024/01/google-settles-5-billion-privacy.html
😁57😱22πŸ‘15πŸ”₯11πŸ€”9⚑4🀯4πŸ‘3
The browser is the heart of the modern enterprise, but it's also a prime target for cyberattacks.

Learn how to protect your workspace and choose the right solution for your organization's needs.

Read: https://thehackernews.com/2024/01/the-definitive-enterprise-browser.html
πŸ‘25πŸ”₯8πŸ‘6😁4πŸ€”3😱1
XCast, a VoIP provider, faces a $10 million penalty for facilitating illegal robocalls and deceptive telemarketing campaigns since 2018.

Read: https://thehackernews.com/2024/01/doj-slams-xcast-with-10-million-fine.html
πŸ”₯18πŸ‘16πŸ‘5🀯4
⚠️ A new exploitation technique called 'πŸ“© SMTP Smuggling' could let attackers send malicious emails with fake sender addresses while bypassing security measures.

Read more πŸ‘‰ https://thehackernews.com/2024/01/smtp-smuggling-new-threat-enables.html
πŸ”₯23πŸ‘13😱12πŸ€”4
πŸ”’ ALERT: Information-stealing malware exploits an undocumented Google OAuth endpoint, MultiLogin, to hijack user sessions. This allows for session persistence and cookie generation, maintaining access even after a password reset.

Read: https://thehackernews.com/2024/01/malware-using-google-multilogin-exploit.html
πŸ‘21πŸ‘6😱5🀯3⚑1
Mandiant's Twitter account, a Google Cloud subsidiary, was hacked for over six hours. The attacker promoted a cryptocurrency scam.

Find out more in this article: https://thehackernews.com/2024/01/mandiants-twitter-account-restored.html
😁31πŸ”₯10🀯9πŸ‘2πŸ‘2
πŸ”’ Threat Alert: UAC-0050 is using advanced phishing tactics to distribute Remcos RAT, a potent remote surveillance malware.

Learn how they're evading security software: https://thehackernews.com/2024/01/uac-0050-group-using-new-phishing.html
🀯16πŸ‘10⚑3
🚨 Alert: Three new malicious Python PyPI packages found! They secretly mine cryptocurrency on your Linux devices.

Read details: https://thehackernews.com/2024/01/beware-3-malicious-pypi-packages-found.html
🀯22πŸ‘8😱7πŸ”₯4⚑1
🚨 2023's big cyber breaches teach a vital lesson: Keep your πŸ”‘ secrets, secret!

From code to deployment, every element matters in ensuring security. Learn how to keep your digital secrets safe.

Read: https://thehackernews.com/2024/01/three-ways-to-supercharge-your-software.html
πŸ‘24πŸ”₯5⚑3
πŸ’» Attention Windows Users: Beware of the new Bandook malware variant. It infiltrates systems through a deceptive PDF.

Learn more: https://thehackernews.com/2024/01/new-bandook-rat-variant-resurfaces.html
πŸ‘15😁8🀯5⚑3
Ukraine's cybersecurity team uncovers Russian Sandworm hacking group's infiltration in Kyivstar since May 2023. A cyber espionage story unfolding.

Read more to see how deep the breach goes: https://thehackernews.com/2024/01/russian-hackers-had-covert-access-to.html
🀯13πŸ‘5πŸ€”4πŸ”₯3
🚨 Alert: Ivanti releases updates for a critical security vulnerability (CVE-2023-39336 / CVSS 9.6) in Endpoint Manager, which poses a risk of remote code execution on vulnerable servers.

Learn more: https://thehackernews.com/2024/01/alert-ivanti-releases-patch-for.html
😁7πŸ‘6😱2
Orange Spain's RIPE account compromised by Raccoon Stealer malware, leading to a BGP traffic hijacking and significant internet outage.

Learn more: https://thehackernews.com/2024/01/orange-spain-faces-bgp-traffic-hijack.html
πŸ‘18😁2
🚨 Discovered a hidden secret in your company's source code?

It's time for swift action to protect against data breaches and reputational damage.

Learn how with this latest article on effective secrets management: https://thehackernews.com/2024/01/exposed-secrets-are-everywhere-heres.html
πŸ€”10πŸ‘9πŸ”₯4😱2😁1
πŸ›‘οΈ Researchers uncover "SpectralBlur," a new macOS backdoor linked to North Korean hackers that can remotely control your system.

Find out more πŸ‘‰ https://thehackernews.com/2024/01/spectralblur-new-macos-backdoor-threat.html
🀯19πŸ‘9😁8πŸ‘4⚑2πŸ”₯2😱2
A new wave of cyber attacks in Albania, orchestrated by an Iranian group, uses a destructive malware named No-Justice.

Discover more about this digital warfare: https://thehackernews.com/2024/01/pro-iranian-hacker-group-targeting.html
πŸ”₯12πŸ‘7
🚨 A new cyber espionage campaign targets the Netherlands' telecom and IT sectors. The Türkiye-linked Sea Turtle group is behind these politically motivated attacks.

Learn more: https://thehackernews.com/2024/01/sea-turtle-cyber-espionage-campaign.html
🀯16πŸ‘13😁5πŸ‘3
North Korea's cyber units have stolen over $600M in crypto in 2023! This massive heist accounts for 1/3 of all crypto thefts last year.

Learn more: https://thehackernews.com/2024/01/north-koreas-cyber-heist-dprk-hackers.html
🀯29😁10😱10πŸ‘5πŸ‘2