GitLab users, beware! Security updates released to address critical vulnerabilities (CVE-2023-7028 and CVE-2023-5356).
One of these could allow account takeover without user interaction.
Find details here: https://thehackernews.com/2024/01/urgent-gitlab-releases-patch-for.html
One of these could allow account takeover without user interaction.
Find details here: https://thehackernews.com/2024/01/urgent-gitlab-releases-patch-for.html
⚡12👍7
☠️ Medusa ransomware escalates tactics beyond data leaks, now threatening physical violence.
Targeting tech companies, healthcare, and education sectors, it exploits flaws and employs "living off the land" techniques to remain undetected.
Read: https://thehackernews.com/2024/01/medusa-ransomware-on-rise-from-data.html
Targeting tech companies, healthcare, and education sectors, it exploits flaws and employs "living off the land" techniques to remain undetected.
Read: https://thehackernews.com/2024/01/medusa-ransomware-on-rise-from-data.html
😁9🤯7⚡5👍4😱2
⚡ Nation-state hackers weaponizing Ivanti Connect Secure VPN zero-days to deploy five malware families in a targeted cyber espionage campaign.
Learn more: https://thehackernews.com/2024/01/nation-state-actors-weaponize-ivanti.html
Patch ASAP!
Learn more: https://thehackernews.com/2024/01/nation-state-actors-weaponize-ivanti.html
Patch ASAP!
🔥14👍9😱6⚡2
⚠️ Your cloud account could be mining cryptocurrency without you knowing!
29-year-old Ukrainian arrested for a major cryptojacking scheme, netting over $2 MILLION in profits.
Read details: https://thehackernews.com/2024/01/29-year-old-ukrainian-cryptojacking.html
29-year-old Ukrainian arrested for a major cryptojacking scheme, netting over $2 MILLION in profits.
Read details: https://thehackernews.com/2024/01/29-year-old-ukrainian-cryptojacking.html
🤯34🔥8😱8👍4⚡1
🚨 Critical Update! Juniper Networks addresses a major 9.8-rated RCE vulnerability in SRX Series firewalls & EX Series switches.
CVE-2024-21591 details here: https://thehackernews.com/2024/01/critical-rce-vulnerability-uncovered-in.html
CVE-2024-21591 details here: https://thehackernews.com/2024/01/critical-rce-vulnerability-uncovered-in.html
🔥17👍6😁6🤔1
Denmark's energy sector faced cyber threats in 2023 due to an old Zyxel firewall vulnerability. Forescout's report suggests Sandworm group may not be responsible.
Insightful details here ➡️ https://thehackernews.com/2024/01/new-findings-challenge-attribution-in.html
Insightful details here ➡️ https://thehackernews.com/2024/01/new-findings-challenge-attribution-in.html
🔥13👍12
Environmental services hit by a massive 61,839% increase in DDoS attacks.
Gaming, gambling, telecoms... no industry is safe from HTTP DDoS attacks.
Read this latest report to understand the scope of these threats: https://thehackernews.com/2024/01/ddos-attacks-on-environmental-services.html
Gaming, gambling, telecoms... no industry is safe from HTTP DDoS attacks.
Read this latest report to understand the scope of these threats: https://thehackernews.com/2024/01/ddos-attacks-on-environmental-services.html
👍15😁8⚡5🔥5
⚠️ Over 7,100 WordPress sites have been hit by the 'Balada Injector' #malware, which exploits sites using a vulnerable version of the Popup Builder plugin.
Read More ➡️ https://thehackernews.com/2024/01/balada-injector-infects-over-7100.html
Read More ➡️ https://thehackernews.com/2024/01/balada-injector-infects-over-7100.html
👍16👏6🔥2
Bosch's smart devices have high-severity vulnerabilities, posing a risk to your thermostat and smart nutrunners.
Find out how it could impact your home security: https://thehackernews.com/2024/01/high-severity-flaws-uncovered-in-bosch.html
Find out how it could impact your home security: https://thehackernews.com/2024/01/high-severity-flaws-uncovered-in-bosch.html
👍20😁6
⚡ Critical security flaw found in Opera Browser!
MyFlow sync feature lets attackers take over your Windows and macOS systems.
Read the full story: https://thehackernews.com/2024/01/opera-myflaw-bug-could-let-hackers-run.html
MyFlow sync feature lets attackers take over your Windows and macOS systems.
Read the full story: https://thehackernews.com/2024/01/opera-myflaw-bug-could-let-hackers-run.html
😱17⚡8🤯7😁6👍5👏3
Check out XM Cyber 2024 State of Security Posture Report and discover what 300 CISOs and other security decision-makers have to say about their security efforts and the trends in exposure management impacting day-to-day work as well as long-term planning.
It's a CAN'T MISS if reducing cyber exposures is on your 2024 to-do list!
Grab your copy now: https://thn.news/security-posture-report-2024
It's a CAN'T MISS if reducing cyber exposures is on your 2024 to-do list!
Grab your copy now: https://thn.news/security-posture-report-2024
Xmcyber
Survey: 2024 State of Security Posture Report
👍16🔥6👏5🤯2
🔒 Exclusive Webinar Alert!
Zero Trust Security: Your ultimate shield against sophisticated cyberattacks. Find out how to lock down your data and stop data breaches.
Reserve your spot in this must-attend webinar now: https://thehacker.news/zero-trust-attack-surface?source=social
Zero Trust Security: Your ultimate shield against sophisticated cyberattacks. Find out how to lock down your data and stop data breaches.
Reserve your spot in this must-attend webinar now: https://thehacker.news/zero-trust-attack-surface?source=social
thehacker.news
Leverage Zero Trust Security to Minimize your Attack Surface
Firewalls and VPNs are no longer enough. Explore Zero Trust Security to protect your data.
👍13🔥6
🚨 Ransomware roars back! 55.5% surge in victims in 2023, but LockBit isn't the only king anymore.
Meet 3AM, Rhysida, and Akira - rising stars you need to know.
Read the latest Ransomware Report: https://thehackernews.com/2024/01/3-ransomware-group-newcomers-to-watch.html
Meet 3AM, Rhysida, and Akira - rising stars you need to know.
Read the latest Ransomware Report: https://thehackernews.com/2024/01/3-ransomware-group-newcomers-to-watch.html
👍12🔥10🤔2
⚠️ Windows users, beware!
Cybercriminals are weaponizing the CVE-2023-36025 Windows vulnerability to deploy "Phemedrone Stealer," an open-source data stealer, that targets browsers, crypto wallets, and chat apps.
Learn more: https://thehackernews.com/2024/01/hackers-weaponize-windows-flaw-to.html
Cybercriminals are weaponizing the CVE-2023-36025 Windows vulnerability to deploy "Phemedrone Stealer," an open-source data stealer, that targets browsers, crypto wallets, and chat apps.
Learn more: https://thehackernews.com/2024/01/hackers-weaponize-windows-flaw-to.html
👍16🔥11😁4
Over 137,000 people lost cryptocurrency to Inferno Drainer, a malware-as-a-service scam operating for a year.
It siphoned $87 million in crypto by mimicking Web3 brands such as Seaport, Coinbase, and WalletConnect.
Read the full story: https://thehackernews.com/2024/01/inferno-malware-masqueraded-as-coinbase.html
It siphoned $87 million in crypto by mimicking Web3 brands such as Seaport, Coinbase, and WalletConnect.
Read the full story: https://thehackernews.com/2024/01/inferno-malware-masqueraded-as-coinbase.html
😁15👍11🤔10⚡3
🔒 Did you know a simple cookie misconfiguration can cost millions in fines?
See how a major retailer's overlooked issue nearly led to a privacy disaster. Discover the critical missteps and how to avoid them: https://thehackernews.com/2024/01/case-study-cookie-privacy-monster-in.html
See how a major retailer's overlooked issue nearly led to a privacy disaster. Discover the critical missteps and how to avoid them: https://thehackernews.com/2024/01/case-study-cookie-privacy-monster-in.html
👍11🔥11
Beware! Remcos RAT, a stealthy remote access trojan, is now spreading in South Korea disguised as adult-themed games via webhards.
Discover how this advanced malware operates ➡️ https://thehackernews.com/2024/01/remcos-rat-spreading-through-adult.html
Discover how this advanced malware operates ➡️ https://thehackernews.com/2024/01/remcos-rat-spreading-through-adult.html
👍15👏7
PATCH Now — More than 178,000 SonicWall firewalls remain exposed to the potentially devastating CVE-2022-22274 and CVE-2023-0656 security flaws.
These vulnerabilities open the door to DoS and RCE attacks.
Learn more: https://thehackernews.com/2024/01/alert-over-178000-sonicwall-firewalls.html
These vulnerabilities open the door to DoS and RCE attacks.
Learn more: https://thehackernews.com/2024/01/alert-over-178000-sonicwall-firewalls.html
🔥13👍10😱8⚡4🤯2
🔥 Chrome Zero-Day Alert!
Update your browser NOW to patch a new critical flaw exploited by hackers. This memory leak bug lets attackers steal your secrets.
Learn more about CVE-2024-0519:
https://thehackernews.com/2024/01/zero-day-alert-update-chrome-now-to-fix.html
Update your browser NOW to patch a new critical flaw exploited by hackers. This memory leak bug lets attackers steal your secrets.
Learn more about CVE-2024-0519:
https://thehackernews.com/2024/01/zero-day-alert-update-chrome-now-to-fix.html
🤯21👍10👏3😱3
More Zero-Days !!!
✅ Citrix fixes critical RCE flaws (CVE-2023-6548, CVE-2023-6549) exploited in wild.
✅ VMware Aria Automation bug (CVE-2023-34063) allows attacker control.
✅ Atlassian issues fixes for 24+ flaws, including RCE.
Patch, Update ASAP: https://thehackernews.com/2024/01/citrix-vmware-and-atlassian-hit-with.html
✅ Citrix fixes critical RCE flaws (CVE-2023-6548, CVE-2023-6549) exploited in wild.
✅ VMware Aria Automation bug (CVE-2023-34063) allows attacker control.
✅ Atlassian issues fixes for 24+ flaws, including RCE.
Patch, Update ASAP: https://thehackernews.com/2024/01/citrix-vmware-and-atlassian-hit-with.html
👍15😁9🤯4🔥1