The Hacker News
βœ”
152K subscribers
1.87K photos
10 videos
3 files
7.78K links
⭐ Official THN Telegram Channel β€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

πŸ“¨ Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
🚨 CISA Adds GeoServer Flaw to KEV Catalog!

Critical RCE vulnerability CVE-2024-36401 is actively exploited, affecting all default GeoServer installations.

Read: https://thehackernews.com/2024/07/cisa-warns-of-actively-exploited-rce.html

Your geospatial data & systems are at severe risk of unauthorized access & manipulation.
πŸ”₯9πŸ‘3πŸ€”1
Kaspersky, Russian cybersecurity giant, to exit U.S. market by July 20, 2024, following Commerce Department ban citing national security risks.

Read details: https://thehackernews.com/2024/07/kaspersky-exits-us-market-following.html

This move impacts thousands of U.S. businesses and individuals using Kaspersky products.
πŸ€”18πŸ‘17😁6πŸ‘4πŸ”₯2🀯1
⚑ Alert: Void Banshee is actively exploiting a zero-day flaw in Microsoft MHTML to spread the Atlantida info-stealer.

CVE-2024-38112 threatens sensitive data across numerous platforms.

Learn about the attack chain: https://thehackernews.com/2024/07/void-banshee-apt-exploits-microsoft.html
πŸ”₯9πŸ‘5
Iranian state-sponsored hackers MuddyWater shift tactics, deploying new backdoor BugSleep in Middle East cyber attacks, moving away from using legitimate RMM tools.

Learn more: https://thehackernews.com/2024/07/iranian-hackers-deploy-new-bugsleep.html

Experts warn of an evolving threat landscape.
πŸ‘6πŸ€”6πŸ”₯3
Malicious npm packages "img-aws-s3-object-multipart-copy" and "legacyaws-s3-object-multipart-copy" found with backdoor code; sophisticated attack using image files to conceal malicious code, urging developers to be extra cautious.

https://thehackernews.com/2024/07/malicious-npm-packages-found-using.html
🀯12πŸ‘8
Exploring DSPMs at Black Hat 2024?

With Sentra's DSPM:

βœ”οΈ Your data stays in your environment
βœ”οΈ There's no need to manually configure connections
βœ”οΈ Get continuous activity log monitoring & suspicious activities alert

Get a live demo: https://thn.news/sentra-black-hat-2024
πŸ”₯7πŸ‘2πŸ€”2
Discover how the 'Konfety' ad fraud operation exploits Google Play Store apps, using a novel 'decoy/evil twin' mechanism to commit large-scale ad fraud

Read it here: https://thehackernews.com/2024/07/konfety-ad-fraud-uses-250-google-play.html
πŸ”₯7🀯3⚑2πŸ‘1
Learn cybersecurity risk management from the experts. Attend Georgetown's virtual sample class on July 26.

Sign up here: https://thn.news/georgetown-cyber-risk-li
πŸ‘9⚑2πŸ”₯2
🚨 Identity-based threats to SaaS apps are escalating!

A robust Identity Threat Detection & Response (ITDR) system can prevent massive breaches, such as the Snowflake incident.

Learn essential steps to strengthen your identity fabric & prevent breaches: https://thehackernews.com/2024/07/threat-prevention-detection-in-saas.html
πŸ‘11πŸ”₯4⚑3
⚠️ New Critical Flaw Alert: Apache HugeGraph-Server vulnerability (CVE-2024-27348) with a CVSS score of 9.8 is being actively exploited for remote code execution.

Learn more: https://thehackernews.com/2024/07/critical-apache-hugegraph-vulnerability.html

Are your servers up-to-date?
πŸ”₯8🀯3πŸ‘2πŸ‘2
🚨 Cybercrime group Scattered Spider is now using RansomHub and Qilin ransomware strains, according to Microsoft.

Learn about the evolving cybercrime landscape and new ransomware threats: https://thehackernews.com/2024/07/scattered-spider-adopts-ransomhub-and.html
πŸ”₯8😁3⚑2πŸ‘1
China-linked APT17 targets Italian entities with 9002 RAT malware, utilizing spear-phishing attacks via Office documents and malicious links.

Understanding these tactics helps organizations anticipate and mitigate similar threats.

Read: https://thehackernews.com/2024/07/china-linked-apt17-targets-italian.html
πŸ”₯11πŸ‘4😁2πŸ‘1🀯1
🚨 Alert: FIN7 cybercrime group's latest tool, AvNeutralizer, used by ransomware groups such as Black Basta, is now being marketed in criminal darkweb forums with new capabilities to evade security solutions.

Learn more: https://thehackernews.com/2024/07/fin7-group-advertises-security.html
πŸ”₯9πŸ‘5😁2🀯2😱1
SIM swap attacks are on the rise, with T-Mobile and Verizon employees being targeted to enable these scams.

Developing a culture of security awareness is essential to prevent these breaches.

Learn how to mitigate these threats: https://thehackernews.com/2024/07/navigating-insider-risks-are-your.html
πŸ‘11πŸ€”7πŸ”₯4
Cybersecurity researchers have identified a new variant of BeaverTail malware disguised as a #macOS app targeting job seekers. The malware, used by DPRK hackers, steals sensitive information and installs backdoors.

Learn more: https://thehackernews.com/2024/07/north-korean-hackers-update-beavertail.html
πŸ‘11πŸ”₯8
Wiz Demo: See The #1 Cloud Security Platform In Action

Toxic combinations polluting your cloud? See how Wiz uncovers hidden risk and blocks attack paths to reduce your cloud exposure.

Book a Demo: https://thn.news/wiz-demo-hn
πŸ”₯10πŸ‘5😁5πŸ€”2
🚨 ALERT: Cisco patches critical vulnerability in Smart Software Manager On-Prem. This flaw could allow attackers to change any user's password, including admins.

CVE-2022-22948 could be exploited with crafted HTTP requestsβ€”Patch now!

Read: https://thehackernews.com/2024/07/cisco-warns-of-critical-flaw-affecting.html
πŸ‘10πŸ”₯4πŸ€”2
Meta suspends use of GenAI in Brazil following a preliminary ban by the country's data protection authority.

Read: https://thehackernews.com/2024/07/meta-halts-ai-use-in-brazil-following.html

Analysts suggest this might influence future AI policies globally, urging companies to prioritize user consent.
πŸ‘14πŸ‘3
A sophisticated cyber espionage group, TAG-100, is targeting global organizations in over 10 countries using open-source tools. This widespread attack affects multiple sectors and regions.

Details here: https://thehackernews.com/2024/07/tag-100-new-threat-actor-uses-open.html
πŸ”₯11πŸ‘3πŸ€”2
Critical vulnerabilities have been discovered in SAP's AI Core platform, potentially exposing customer data and access tokens.

This affects businesses using SAP for AI workflows, threatening supply chain attacks and unauthorized access to sensitive information.

Learn about the 'SAPwned' flaws and their impact on The Hacker News: https://thehackernews.com/2024/07/sap-ai-core-vulnerabilities-expose.html
πŸ”₯8🀯7😁6πŸ‘4