π Learn how to secure your web applications in a world where malicious attacks are getting smarter.
Don't miss our cybersecurity webinar on identifying and tackling security blind spots with experts from F5 and OPSWAT.
Save you spot now: https://thehackernews.com/2024/03/new-webinar-avoiding-application.html
Don't miss our cybersecurity webinar on identifying and tackling security blind spots with experts from F5 and OPSWAT.
Save you spot now: https://thehackernews.com/2024/03/new-webinar-avoiding-application.html
π€―8π7π2
π‘οΈ Mishandled API keys & passwords are a ticking time bomb π£ in your software.
Don't wait for disaster β make security a non-negotiable part of your dev cycle.
Learn more: https://thehackernews.com/2024/03/behind-scenes-art-of-safeguarding-non.html
Don't wait for disaster β make security a non-negotiable part of your dev cycle.
Learn more: https://thehackernews.com/2024/03/behind-scenes-art-of-safeguarding-non.html
π€―7π±6π5π1
Buying the wrong #dataprotection solution is a #disaster waiting to happen.
Gain a better understanding of data protection challenges and establish your buying criteria using Zerto's Data Protection Buyers Guide!
Get the free full guide here: https://thn.news/data-protection-buyers-guide
Gain a better understanding of data protection challenges and establish your buying criteria using Zerto's Data Protection Buyers Guide!
Get the free full guide here: https://thn.news/data-protection-buyers-guide
Hpe
HPE Zerto Software
HPE Zerto Software guards against downtime with continuous data protection and automation, for secure disaster recovery and smooth workload migration.
π16π€―2
A sneaky new service called "Darcula" is helping cybercriminals steal your info. They're impersonating postal services, airlines, even the IRS and using iMessage and Google Messages to slip past firewalls.
Learn more β https://thehackernews.com/2024/03/darcula-phishing-network-leveraging-rcs.html
Learn more β https://thehackernews.com/2024/03/darcula-phishing-network-leveraging-rcs.html
π€―12π8π₯3π3
Finland's Poliisi has accused APT31, a Chinese nation-state actor, of a cyber attack on the country's Parliament in 2020-2021.
Learn more β https://thehackernews.com/2024/03/finland-blames-chinese-hacking-group.html
Learn more β https://thehackernews.com/2024/03/finland-blames-chinese-hacking-group.html
π13π4π€―2π₯1
β οΈ π§ Linux users, beware! A nasty piece of malware named DinodasRAT is on the loose, targeting China, Taiwan, Turkey, and Uzbekistan. It's a C++ juggernaut capable of stealing a treasure trove of sensitive data.
Read details β https://thehackernews.com/2024/03/linux-version-of-dinodasrat-spotted-in.html
Read details β https://thehackernews.com/2024/03/linux-version-of-dinodasrat-spotted-in.html
π€―27π13π₯8β‘7π5
β οΈ π©βπ» PyPI under attack...again.
π Python's Package Index temporarily shut down new user sign-ups and project creation due to a surge of malicious typosquatting attempts.
Learn more: https://thehackernews.com/2024/03/pypi-halts-sign-ups-amid-surge-of.html
Malware aimed to snag cryptocurrency wallets and more.
π Python's Package Index temporarily shut down new user sign-ups and project creation due to a surge of malicious typosquatting attempts.
Learn more: https://thehackernews.com/2024/03/pypi-halts-sign-ups-amid-surge-of.html
Malware aimed to snag cryptocurrency wallets and more.
π±25π₯8π7π5π3β‘2
π» A new vulnerability, CVE-2024-28085, dubbed "WallEscape," impacts the "wall" command in util-linux, potentially exposing passwords or altering clipboards on Linux distros like Ubuntu & Debian.
Read more β https://thehackernews.com/2024/03/new-linux-bug-could-lead-to-user.html
Read more β https://thehackernews.com/2024/03/new-linux-bug-could-lead-to-user.html
π15π7β‘2π€―2π1
π¨ ALERT: TheMoon botnet, previously thought to be inactive, is back.
Over 40,000 hijacked routers & IoT devices power Faceless, a criminal proxy service used to steal data, attack financial systems, & spread malware like SolarMarker & IcedID.
Read β https://thehackernews.com/2024/03/themoon-botnet-resurfaces-exploiting.html
Over 40,000 hijacked routers & IoT devices power Faceless, a criminal proxy service used to steal data, attack financial systems, & spread malware like SolarMarker & IcedID.
Read β https://thehackernews.com/2024/03/themoon-botnet-resurfaces-exploiting.html
π€8π6π5π€―4π1
β οΈ New security flaws found in Dormakaba's Saflok RFID locks could allow attackers to easily forge keycards and access any room, affecting MILLIONS of hotel locks worldwide.
Read: https://thehackernews.com/2024/03/dormakaba-locks-used-in-millions-of.html
Read: https://thehackernews.com/2024/03/dormakaba-locks-used-in-millions-of.html
π11π₯7π5π€―4β‘2π1
Outdated pen testing is expensive & leaves holes in your security. With automation and AI, companies can now affordably assess network security regularly, spotting vulnerabilities before attackers do.
πͺ Find out how: https://thehackernews.com/2024/03/the-golden-age-of-automated-penetration.html
πͺ Find out how: https://thehackernews.com/2024/03/the-golden-age-of-automated-penetration.html
π€16π₯11π9β‘3π3π€―3
πURGENT SECURITY ALERT!
Secret backdoor found in XZ Utils compression library used by major Linux distros, like Fedora, Kali Linux, and openSUSE. Attackers could breach SSH and take control of systems.
https://thehackernews.com/2024/03/urgent-secret-backdoor-found-in-xz.html
Update and review your systems immediately.
Secret backdoor found in XZ Utils compression library used by major Linux distros, like Fedora, Kali Linux, and openSUSE. Attackers could breach SSH and take control of systems.
https://thehackernews.com/2024/03/urgent-secret-backdoor-found-in-xz.html
Update and review your systems immediately.
π€―61π₯19π12π±9π7
β οΈ Mac users, beware! Malicious ads and fake websites are spreading dangerous malware like Atomic Stealer, which can steal your passwords, cryptocurrency, and other sensitive data.
Learn more: https://thehackernews.com/2024/03/hackers-target-macos-users-with.html
Learn more: https://thehackernews.com/2024/03/hackers-target-macos-users-with.html
π24π17π±12π€5π₯4π3π€―1
π¨ Android users beware! Vultur, the notorious banking trojan, is back with upgraded new remote control features, encrypted communication, and stealthy techniques.
Learn more: https://thehackernews.com/2024/04/vultur-android-banking-trojan-returns.html
Learn more: https://thehackernews.com/2024/04/vultur-android-banking-trojan-returns.html
π23π€―11
π±β οΈ Malicious Android apps found on the Google Play Store!
Experts uncover VPN apps hijacking users' devices, covertly turning them into proxy nodes for cybercriminals and fueling botnet operations.
Details here: https://thehackernews.com/2024/04/malicious-apps-caught-secretly-turning.html
Experts uncover VPN apps hijacking users' devices, covertly turning them into proxy nodes for cybercriminals and fueling botnet operations.
Details here: https://thehackernews.com/2024/04/malicious-apps-caught-secretly-turning.html
π17π₯9π5π2β‘1
π Logs are the foundation of monitoring efforts, especially on Windows.
"EventSentry" harnesses the power of detailed log monitoring & real-time validation to detect malware attacks early.
Read: https://thehackernews.com/2024/04/detecting-windows-based-malware-through.html
Don't let blind spots compromise your security.
"EventSentry" harnesses the power of detailed log monitoring & real-time validation to detect malware attacks early.
Read: https://thehackernews.com/2024/04/detecting-windows-based-malware-through.html
Don't let blind spots compromise your security.
π20π±5π€3
Whoβs using AI tools in your organization? Find out in minutes with Nudge Security. Start a free trial and discover every SaaS account ever created by anyone in your org, including generative AI tools.
The best part? Youβll have a full inventory in minutes and you donβt even have to know what apps youβre looking for. No agents, browser plug-ins or network proxies required.
https://thn.news/mitigate-ai-risks
The best part? Youβll have a full inventory in minutes and you donβt even have to know what apps youβre looking for. No agents, browser plug-ins or network proxies required.
https://thn.news/mitigate-ai-risks
Nudgesecurity
Discover & Secure Generative AI Usage with Nudge Security
Balance the productivity benefits of generative AI with security oversight by programmatically discovering the tools your employees are using.
π19π₯6π1π1
π TA558 threat actor launches massive phishing campaign targeting Latin American sectors, deploying Venom RAT. Hotels, finance, government among primary targets in Spain, Mexico, U.S., Colombia, Brazil, and more.
Learn more: https://thehackernews.com/2024/04/massive-phishing-campaign-strikes-latin.html
Learn more: https://thehackernews.com/2024/04/massive-phishing-campaign-strikes-latin.html
π₯14π9π€―4π2
Google agrees to delete BILLION of browsing records to settle class action lawsuit, alleging tracking without consent in Chrome's Incognito Mode.
Find details here: https://thehackernews.com/2024/04/google-to-delete-billions-of-browsing.html
Find details here: https://thehackernews.com/2024/04/google-to-delete-billions-of-browsing.html
π€―52π17π₯12π9π4
China-linked hacker group Earth Freybug is now using a new malware named "UNAPIMON" to fly under the radar.
Learn more: https://thehackernews.com/2024/04/china-linked-hackers-deploy-new.html
Researchers shed light on their espionage and financially motivated activities.
Learn more: https://thehackernews.com/2024/04/china-linked-hackers-deploy-new.html
Researchers shed light on their espionage and financially motivated activities.
π19π8π₯6π2