Beware! A new 🐧 Linux malware called "GTPDOOR" has been discovered that targets 📡 telecom networks and leverages the 🛜 GPRS Tunneling Protocol (GTP) for command-and-control (C2) communications.
Read details here: https://thehackernews.com/2024/02/gtpdoor-linux-malware-targets-telecoms.html
Read details here: https://thehackernews.com/2024/02/gtpdoor-linux-malware-targets-telecoms.html
😱28👍8👏6🔥3😁1
Data breaches are on the rise at an alarming rate. Is your organization's #cybersecurity strategy ready to adapt?
Don't be the next headline – take a proactive approach to cybersecurity.
Learn the key strategies to protect your business: https://thehackernews.com/2024/02/why-risk-based-approach-to.html
Don't be the next headline – take a proactive approach to cybersecurity.
Learn the key strategies to protect your business: https://thehackernews.com/2024/02/why-risk-based-approach-to.html
👍21😁1🤯1
New attack technique "Silver SAML" bypasses protections against Golden SAML attacks in apps using Cloud Identity Providers like Microsoft Entra ID.
Read details here: https://thehackernews.com/2024/02/new-silver-saml-attack-evades-golden.html
Read details here: https://thehackernews.com/2024/02/new-silver-saml-attack-evades-golden.html
🔥19👍3
Good news for devs – GitHub turned on auto secret scanning push protection by default for all pushes to public repositories.
Find out how it works: https://thehackernews.com/2024/03/github-rolls-out-default-secret.html
Find out how it works: https://thehackernews.com/2024/03/github-rolls-out-default-secret.html
👍19👏9🔥5
Five Eyes intelligence alliance warns of cyber threat actors targeting vulnerabilities in Ivanti Connect Secure and Policy Secure gateways. Four vulnerabilities under active attack.
Learn more here: https://thehackernews.com/2024/03/five-eyes-agencies-warn-of-active.html
Learn more here: https://thehackernews.com/2024/03/five-eyes-agencies-warn-of-active.html
👍13🔥11😁7
A new Linux variant of the notorious BIFROSE RAT targets systems with sophisticated evasion techniques, employing deceptive domains to mimic VMware.
Read details – https://thehackernews.com/2024/03/new-bifrose-linux-malware-variant-using.html
Read details – https://thehackernews.com/2024/03/new-bifrose-linux-malware-variant-using.html
🔥14👍3
🚨 Cryptocurrency users! Watch out for a sophisticated phishing attack mimicking Binance, Coinbase, Gemini & more. Don't fall for fake logins, emails, texts, or calls.
Learn more: https://thehackernews.com/2024/03/new-phishing-kit-leverages-sms-voice.html
Learn more: https://thehackernews.com/2024/03/new-phishing-kit-leverages-sms-voice.html
👍17🔥9⚡3🤯3
"It'll never happen to us" = Famous last words in data disasters.
The silent heroes of cybersecurity are often the recovery plans that never get tested until D-Day. Check out these invaluable lessons from recent tech mishaps: https://thehackernews.com/2024/03/4-instructive-postmortems-on-data.html
The silent heroes of cybersecurity are often the recovery plans that never get tested until D-Day. Check out these invaluable lessons from recent tech mishaps: https://thehackernews.com/2024/03/4-instructive-postmortems-on-data.html
👍32🔥9😁4
U.S. DOJ indicted Iranian Alireza Shafie Nasab for cyberattacks on the government and private sectors, offering up to $10 million for info leading to his capture.
Learn more: https://thehackernews.com/2024/03/us-charges-iranian-hacker-offers-10.html
Learn more: https://thehackernews.com/2024/03/us-charges-iranian-hacker-offers-10.html
😁25👍9👏6🤔5
A U.S. court has ordered Israeli spyware company NSO Group to disclose the source code and functionality details of its Pegasus spyware to Meta (Facebook/WhatsApp).
Learn more: https://thehackernews.com/2024/03/us-court-orders-nso-group-to-hand-over.html
Learn more: https://thehackernews.com/2024/03/us-court-orders-nso-group-to-hand-over.html
🔥39👍21😁16🤔16🤯14👏6
🚨 Multiple U.S. agencies are warning about Phobos ransomware, a RaaS deployed in widespread attacks against critical infrastructure.
Organizations need up-to-date threat intelligence – read more: https://thehackernews.com/2024/03/phobos-ransomware-aggressively.html
Organizations need up-to-date threat intelligence – read more: https://thehackernews.com/2024/03/phobos-ransomware-aggressively.html
👏16👍13
Roughly 100 malicious AI/ML models have been discovered on the popular Hugging Face development platform.
Read how attackers can gain full system control: https://thehackernews.com/2024/03/over-100-malicious-aiml-models-found-on.html
Read how attackers can gain full system control: https://thehackernews.com/2024/03/over-100-malicious-aiml-models-found-on.html
🤯14😱13👍5😁2
SaaS apps are everywhere, but are they secure? Mid-market companies face unique risks in managing app usage.
Learn how to manage SaaS security without the headaches 👇 https://thehackernews.com/2024/03/from-500-to-5000-employees-securing-3rd.html
Learn how to manage SaaS security without the headaches 👇 https://thehackernews.com/2024/03/from-500-to-5000-employees-securing-3rd.html
👍17
Cybercriminals are abusing India's UPI system by using the XHelper app to launder money on a large scale. They recruit Indian money mules, offering commissions for laundering money through fake mobile payment gateways.
Learn more: https://thehackernews.com/2024/03/how-cybercriminals-are-exploiting.html
Learn more: https://thehackernews.com/2024/03/how-cybercriminals-are-exploiting.html
👍15😱9😁6🤔3
Critical TeamCity software flaws leave CI/CD servers open to complete takeover.
Read more about CVE-2024-27198, CVE-2024-27199 and update your systems now → https://thehackernews.com/2024/03/critical-jetbrains-teamcity-on-premises.html
Read more about CVE-2024-27198, CVE-2024-27199 and update your systems now → https://thehackernews.com/2024/03/critical-jetbrains-teamcity-on-premises.html
👍7🤯7⚡2👏2
Beware of ZIP attachments in emails! TA577's new phishing tactic aims to steal NTLM hashes, posing a serious threat to enterprise security.
Learn how they're advancing cybercrime tactics: https://thehackernews.com/2024/03/warning-thread-hijacking-attack-targets.html
Learn how they're advancing cybercrime tactics: https://thehackernews.com/2024/03/warning-thread-hijacking-attack-targets.html
👍20😱9⚡2
225,000+ login credentials for OpenAI's ChatGPT accounts were stolen by LummaC2, Raccoon, and RedLine malware, then sold on the dark web.
Learn more: https://thehackernews.com/2024/03/over-225000-compromised-chatgpt.html
Learn more: https://thehackernews.com/2024/03/over-225000-compromised-chatgpt.html
😱31🔥8😁7👍3👏2⚡1
Watch Out - Cybercrime group "Savvy Seahorse" exploits a novel DNS hijacking technique for investment scams. They employ fake trading platforms, social media ads, and even AI chatbots to lure victims.
Learn more: https://thehackernews.com/2024/03/cybercriminals-using-novel-dns.html
Learn more: https://thehackernews.com/2024/03/cybercriminals-using-novel-dns.html
👍23🔥9⚡1
North Korean hackers exploit ConnectWise ScreenConnect vulnerabilities (CVE-2024-1708 & CVE-2024-1709) to deploy TODDLERSHARK malware, adding to the notorious Kimsuky arsenal alongside BabyShark and ReconShark.
Learn more: https://thehackernews.com/2024/03/hackers-exploit-connectwise.html
Learn more: https://thehackernews.com/2024/03/hackers-exploit-connectwise.html
👍21🤯7🔥2🤔2⚡1
🚨 Heads up, Apple users!
Apple rolls out crucial updates for iOS & iPadOS to patch actively exploited vulnerabilities CVE-2024-23225 & CVE-2024-23296, enhancing kernel memory protection.
Ensure your devices are updated: https://thehackernews.com/2024/03/urgent-apple-issues-critical-updates.html
Apple rolls out crucial updates for iOS & iPadOS to patch actively exploited vulnerabilities CVE-2024-23225 & CVE-2024-23296, enhancing kernel memory protection.
Ensure your devices are updated: https://thehackernews.com/2024/03/urgent-apple-issues-critical-updates.html
👍25⚡5👏1🤔1