The Hacker News
βœ”
151K subscribers
1.86K photos
10 videos
3 files
7.78K links
⭐ Official THN Telegram Channel β€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

πŸ“¨ Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
🚨 Just when you thought your biggest online worry was autocorrect... Think again!

North Korean Kimsuky group is using a new malicious Chrome extension, TRANSLATEXT, to steal sensitive info from South Korean academia.

Details here: https://thehackernews.com/2024/06/kimsuky-using-translatext-chrome.html
πŸ‘15😁10🀯4
⚠️ Attention website operators! Starting Nov 1, 2024, Google Chrome will block sites using Entrust certificates due to security issues.

Read: https://thehackernews.com/2024/06/google-to-block-entrust-certificates-in.html

Don't get caught off guardβ€”switch to a trusted CA before it's too late.
πŸ‘40😱7πŸ€”6πŸ‘4😁4πŸ”₯3
🚨 Critical Alert for Network Admins!

Juniper Networks just dropped an urgent security patch.

➟ CVE-2024-2973: Authentication bypass flaw
➟ CVSS score: 10.0
➟ Affects Session Smart Router & Conductor in HA configs

Read: https://thehackernews.com/2024/07/juniper-networks-releases-critical.html
πŸ”₯16πŸ‘5πŸ‘2😱1
🚨 A critical OpenSSH flaw (CVE-2024-6387) allows unauthenticated remote code execution on glibc-based Linux systems. 14 million servers at risk.

https://thehackernews.com/2024/07/new-openssh-vulnerability-could-lead-to.html

Apply the latest patches now!
😱31πŸ”₯10πŸ‘8⚑3🀯3😁1
πŸ›‘ ALERT: Software from Conceptworld trojanized to spread info-stealing malware!

If you downloaded Notezilla, RecentX, or Copywhiz in June, check your systems NOW!

Details here: https://thehackernews.com/2024/07/indian-software-firms-products-hacked.html
πŸ”₯11πŸ‘4
Explore end-to-end secrets security strategies to protect machine identities, prevent breaches, and empower developers with secure credential management practices.

Read: https://thehackernews.com/2024/07/end-to-end-secrets-security-making-plan.html
πŸ‘10πŸ”₯7
Transparent Tribe launches a new Android malware campaign, targeting mobile users with CapraRAT spyware disguised as popular apps.

Read: https://thehackernews.com/2024/07/caprarat-spyware-disguised-as-popular.html
πŸ”₯9πŸ‘6⚑4😱3
πŸ”’ iOS & macOS devs, heads up!

Discover how 3 new vulnerabilities in CocoaPods, a popular Apple developer tool, could lead to supply chain attacks on iOS & macOS apps.

Details here: https://thehackernews.com/2024/07/critical-flaws-in-cocoapods-expose-ios.html

Ensure your dependencies are up-to-date.
πŸ‘10😁9πŸ”₯3πŸ‘2
⚠️ Think twice before connecting to "free" Wi-Fi...

A 42-year-old Australian man charged for running fake Wi-Fi hotspots on πŸ›« flights to steal personal data of passengers.

Learn more: https://thehackernews.com/2024/07/australian-man-charged-for-fake-wi-fi.html
😁23πŸ‘16🀯15⚑3πŸ”₯1
Heads up! China-linked hackers are exploiting a zero-day vulnerability in Cisco NX-OS to execute commands as root, undetected, and deliver malware.

Read details: https://thehackernews.com/2024/07/chinese-hackers-exploiting-cisco.html
πŸ‘19⚑9😁9🀯1
🌐 Meta's ad-free option in the E.U. hits another roadblock! Regulators say "pay or consent" model breaches competition rules.

But is offering choices really a breach? What’s your take?

Read: https://thehackernews.com/2024/07/metas-pay-or-consent-approach-faces-eu.html
πŸ‘18😁6πŸ‘3⚑2
🚨 New CPU vulnerability alert!

Intel's Raptor Lake & Alder Lake CPUs at risk from "Indirector" side-channel attack.

Read: https://thehackernews.com/2024/07/new-intel-cpu-vulnerability-indirector.html

Could leak sensitive data.
😱17πŸ”₯9πŸ‘6😁4⚑2πŸ€”1
πŸ” Average ransomware payment hits $2M, up 500%! Time to ditch outdated MFA and secure your organization with next-gen MFA to defend against sophisticated attacks.

Learn more: https://thehackernews.com/2024/07/how-mfa-failures-are-fueling-500-surge.html
🀯16πŸ‘10😁3😱3πŸ”₯1πŸ‘1
IDC Spotlight: Creating a Cohesive Disaster and Cyber Recovery Strategy. Discover why IDC recommends an integrated approach for Cyber Recovery in 2024/2025.

Read: https://thn.news/cohesive-recovery-strategy
πŸ‘17πŸ”₯8
⚠️ Alert - A South Korean ERP vendor's update server was hacked to deliver a Go-based backdoor dubbed Xctdoor, stealing sensitive business info with keystrokes and screenshots.

Learn more: https://thehackernews.com/2024/07/south-korean-erp-vendors-server-hacked.html
πŸ”₯17πŸ‘3⚑2
Israeli entities are under attack by hackers using public frameworks like Donut and Sliver. The campaign, dubbed "Supposed Grasshopper," is using custom WordPress sites for payload delivery.

Learn more: https://thehackernews.com/2024/07/israeli-entities-targeted-by.html
πŸ”₯27πŸ‘14πŸ‘9😁8😱5⚑4
Think that job offer is too good to be true? You might be right!

Hackers use fake job descriptions to exploit an MSHTML flaw and deploy MerkSpy spyware, targeting Canada, India, Poland, and the US.

Read: https://thehackernews.com/2024/07/microsoft-mshtml-flaw-exploited-to.html
πŸ‘20πŸ‘4πŸ€”3😁2⚑1πŸ”₯1
Open-Source Intelligence + AI = Game Changer!

AI-powered tools are now handling massive data volumes, real-time analysis, and multilingual content.

Ready to level up your OSINT game?

Learn more: https://thehackernews.com/2024/07/the-emerging-role-of-ai-in-open-source.html
πŸ”₯24πŸ‘9πŸ€”6⚑1😁1
Twilio reports a data breach exposing 33 million Authy phone numbers, urges users to update apps and stay vigilant against phishing.

Details here > https://thehackernews.com/2024/07/twilios-authy-app-breach-exposes.html
😱22πŸ‘9πŸ”₯5😁5⚑1πŸ€”1
Global police operation disrupts cybercrime networks, shuts down 600 servers linked to Cobalt Strike cyberattacks, and arrests 54 for elderly fraud schemes.

Learn more: https://thehackernews.com/2024/07/global-police-operation-shuts-down-600.html
πŸ”₯23πŸ‘14πŸ‘5😁3⚑1