The Hacker News
βœ”
151K subscribers
1.86K photos
10 videos
3 files
7.78K links
⭐ Official THN Telegram Channel β€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

πŸ“¨ Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
πŸ”’ Elevate your cybersecurity game with ThreatLocker Zero Trust Endpoint Protection Platform. A deny-by-default approach ensures you're shielded from zero-days, malware, and more.

Learn more: https://thehackernews.com/2024/03/implementing-zero-trust-controls-for.html
πŸ‘11πŸ‘6🀯3πŸ”₯1
Mandiant connects WINELOADER backdoor to Midnight Blizzard, a Russian SVR-linked hacking group. Malware targeted German political parties with wine-tasting phishing scams.

Read more: https://thehackernews.com/2024/03/russian-hackers-use-wineloader-malware.html
πŸ‘17πŸ”₯8😁7πŸ‘2🀯2
πŸ›‘ German authorities dismantle Nemesis Market, a major darknet marketplace that facilitated the global trade of drugs, stolen data, and cybercrime services.

Learn more: https://thehackernews.com/2024/03/german-police-seize-nemesis-market-in.html
πŸ‘27πŸ€”11πŸ‘8🀯2
North Korea-linked Kimsuky threat group expands its arsenal, now using CHM files to deliver malware designed to infiltrate systems and exfiltrate sensitive data globally.

Find details here: https://thehackernews.com/2024/03/n-korea-linked-kimsuky-shifts-to.html
πŸ‘18🀯8πŸ‘4😁3⚑1
⚠️ Iran-linked hackers, MuddyWater, launch new phishing attacks against Israeli organizations. Group hijacks legitimate remote management software in latest campaign.

Learn more: https://thehackernews.com/2024/03/iran-linked-muddywater-deploys-atera.html
😁25πŸ‘13πŸ”₯9🀯8πŸ€”3πŸ‘2
🚨 Researchers uncover "GoFetch" vulnerability in Apple M-series chips, potentially allowing attackers to extract secret cryptographic keys.

Learn more: https://thehackernews.com/2024/03/new-gofetch-vulnerability-in-apple-m.html
πŸ”₯21😁16🀯10πŸ‘5πŸ‘4
Researchers uncover a clever cyber attack involving stolen browser cookies & malicious code in Python packages. Topgg's GitHub account among the targets. Beware of rogue dependencies!

Read: https://thehackernews.com/2024/03/hackers-hijack-github-accounts-in.html
πŸ”₯13πŸ‘10😁4🀯3
🚨 CISA adds 3 security flaws to its KEV catalog due to active exploitation. Flaws include severe vulnerabilities in Fortinet, Ivanti, and Nice systems.

Agencies must apply fixes by April 15, 2024.

Learn more: https://thehackernews.com/2024/03/cisa-alerts-on-active-exploitation-of.html
πŸ‘15🀯8πŸ”₯3πŸ‘2
🚨 U.S. Treasury sanctions three cryptocurrency exchanges: Bitpapa, Crypto Explorer, and TOEP. These exchanges allegedly helped Russia evade sanctions imposed after the Ukraine invasion.

Learn more: https://thehackernews.com/2024/03/us-sanctions-3-cryptocurrency-exchanges.html
πŸ‘16πŸ‘9🀯9😁4πŸ€”4
U.S. Department of Justice indicts 7 Chinese nationals linked to hacking group APT31, implicated in cyber espionage targeting U.S. critics, journalists, officials, and businesses for over 14 years.

Learn more: https://thehackernews.com/2024/03/us-charges-7-chinese-nationals-in-major.html
πŸ‘19πŸ‘7😁3
How can organizations ensure the security of their sensitive data?

πŸ’‘ Data Security Posture Management (DSPM)

Check out Sentra's DSPM guide to learn about:
πŸ”ΈHow DSPM protects sensitive data
πŸ”ΈBenefits of DSPM
πŸ”ΈDSPM vs CSPM

https://hubs.li/Q02pXSRK0
πŸ‘12🀯3πŸ”₯1
🚨 WARNING: Malicious NuGet package 'SqzrFramework480' discovered, potentially targeting developers using Chinese industrial technology.

Read: https://thehackernews.com/2024/03/malicious-nuget-package-linked-to.html
πŸ‘8πŸ‘3😁1
Minecraft servers are under threat! With over 500M users, DDoS attacks are disrupting gameplay and server functionality.

Learn how to protect your server and ensure a smooth gaming experience.

Learn more: https://thehackernews.com/2024/03/crafting-shields-defending-minecraft.html
😱19🀯12πŸ‘10😁4
πŸ•΅οΈβ€β™‚οΈ Latest Cybersecurity reports unveil two China-linked APT groups targeting ASEAN nations in cyberespionage campaign over the past 3 months, involving cyber attacks and espionage with sophisticated #malware.

Learn more: https://thehackernews.com/2024/03/two-chinese-apt-groups-ramp-up-cyber.html
πŸ‘14
⚠️🚨 Watch out! A new phishing campaign is spreading Agent Tesla, a notorious information stealer and keylogger.

This attack tricks you with emails mimicking bank payment notifications to spread the malware.

Learn more: https://thehackernews.com/2024/03/alert-new-phishing-attack-delivers.html
πŸ”₯16πŸ‘6
🚨 Alert: Hackers are actively exploiting an unpatched flaw in the popular AI platform Anyscale Ray to steal computing power for cryptocurrency mining.

Details: https://thehackernews.com/2024/03/critical-unpatched-ray-ai-platform.html

This vulnerability (CVE-2023-48022) could expose sensitive company data.
😁13πŸ‘5πŸ‘4🀯2
SASE improves networks but lacks in defending against phishing and takeovers.

Learn how secure browser extensions complete your cyber security strategy: https://thehackernews.com/2024/03/sase-solutions-fall-short-without.html
πŸ‘8😁3🀯1
πŸ›‘οΈ A now-patched vulnerability (CVE-2024-21388) in Microsoft Edge could have allowed attackers to covertly install browser extensions without user consent.

Find details here: https://thehackernews.com/2024/03/microsoft-edge-bug-could-have-allowed.html

If you use Edge, make sure you've updated to the latest version.
😱16πŸ‘9😁7🀯5πŸ”₯2
🚨 CISA alerts on a security flaw in Microsoft SharePoint Server now part of the KEV catalog due to active exploitation.

Vulnerability CVE-2023-24955 allows remote code execution for Site Owners.

Read: https://thehackernews.com/2024/03/cisa-warns-hackers-actively-attacking.html

Users urged to patch following May 2023 updates.
🀯10πŸ‘5πŸ‘2
With a Georgetown master's you'll gain the tactical skills to plan for, respond to, and mitigate information security threats.


https://thehackernews.uk/cybersecurity-webinar-2024
πŸ‘11😁5πŸ‘2πŸ€”2πŸ”₯1🀯1