π International law enforcement has dismantled infamous cybercrime hubs linked to platforms like Cracked, Nulled, StarkRDP and Sellix.
These platforms sold malware, hack tools, and personal data.
π Read more about the "Operation Talent" β https://thehackernews.com/2025/01/authorities-seize-domains-of-popular.html
These platforms sold malware, hack tools, and personal data.
π Read more about the "Operation Talent" β https://thehackernews.com/2025/01/authorities-seize-domains-of-popular.html
π14π9π€―6β‘4π±1
π¨ ALERT: Over 57 threat actors from China, Iran, North Korea, and Russia are now using Google's Gemini AI to power their malicious cyber operations.
From researching vulnerabilities to crafting phishing campaigns, theyβre leveraging GenAI for faster, more efficient cybercrime.
Learn more: https://thehackernews.com/2025/01/google-over-57-nation-state-threat.html
From researching vulnerabilities to crafting phishing campaigns, theyβre leveraging GenAI for faster, more efficient cybercrime.
Learn more: https://thehackernews.com/2025/01/google-over-57-nation-state-threat.html
π30π16π±14π€―7β‘3π€3π₯2
π¨ High-Risk VMware Vulnerabilities Discovered β Update ASAP!
5 major flaws have been found in VMware Aria Operations & Aria Operations for Logs, with CVSS scores ranging from 4.3 to 8.5. Attackers could escalate privileges, steal credentials, or inject malicious scripts.
π Read more: https://thehackernews.com/2025/01/broadcom-patches-vmware-aria-flaws.html
5 major flaws have been found in VMware Aria Operations & Aria Operations for Logs, with CVSS scores ranging from 4.3 to 8.5. Attackers could escalate privileges, steal credentials, or inject malicious scripts.
π Read more: https://thehackernews.com/2025/01/broadcom-patches-vmware-aria-flaws.html
π₯15π±7π6π3π2π€―2β‘1
π¨ Google Blocks 2.36 Million Harmful Android Apps in 2024. Over 158,000 bad developer accounts banned.
Even apps outside the official store are being scrutinizedβyour deviceβs defense is constantly evolving.
π Learn more: https://thehackernews.com/2025/01/google-bans-158000-malicious-android.html
Even apps outside the official store are being scrutinizedβyour deviceβs defense is constantly evolving.
π Learn more: https://thehackernews.com/2025/01/google-bans-158000-malicious-android.html
π21π10π₯4
β οΈ Italy Bans DeepSeek AI Service Over Questionable Data Practices and Privacy Concerns!
Meanwhile, malicious hackers are exploiting DeepSeek's AI models to generate dangerous content.
π Read the full story: https://thehackernews.com/2025/01/italy-bans-chinese-deepseek-ai-over.html
Meanwhile, malicious hackers are exploiting DeepSeek's AI models to generate dangerous content.
π Read the full story: https://thehackernews.com/2025/01/italy-bans-chinese-deepseek-ai-over.html
π48π21π€―11β‘7π€6π±5π₯3π3
π¨ AI is changing the game of social engineeringβforever.
Hackers now manipulate trust & emotions to launch attacks at scale. AI lets hackers replicate voices, faces, and even your colleagues.
π Read the full story: https://thehackernews.com/2025/01/top-5-ai-powered-social-engineering.html
Hackers now manipulate trust & emotions to launch attacks at scale. AI lets hackers replicate voices, faces, and even your colleagues.
π Read the full story: https://thehackernews.com/2025/01/top-5-ai-powered-social-engineering.html
π₯19π8π2π1π€1π€―1
π CISA and FDA have just issued urgent warnings about critical flaws in Contec CMS8000 and Epsimed MN-120 patient monitors.
Hackers could exploit these flaws to gain remote access to devices, overwrite files & even steal sensitive patient data.
Read: https://thehackernews.com/2025/01/cisa-and-fda-warn-of-critical-backdoor.html
Hackers could exploit these flaws to gain remote access to devices, overwrite files & even steal sensitive patient data.
Read: https://thehackernews.com/2025/01/cisa-and-fda-warn-of-critical-backdoor.html
π22π€―12π₯7π±1
π¨ Attack Alert: Cybercriminals are using bogus Google ads to direct Microsoft advertisers to phishing pages designed to capture login details and 2FA codes.
Over 630 phishing pages detected, with domains mostly hosted in Brazil.
Read the full report: https://thehackernews.com/2025/02/malvertising-scam-uses-fake-google-ads.html
Over 630 phishing pages detected, with domains mostly hosted in Brazil.
Read the full report: https://thehackernews.com/2025/02/malvertising-scam-uses-fake-google-ads.html
π±21π₯9π4π3β‘1
π¨ WARNING: WhatsApp uncovers major spyware campaign targeting journalists!
β€ 90+ victims were attacked by Israeli firm Paragon Solutions.
β€ Zero-click spyware deployed via a PDF fileβno action from the user needed
π Full story: https://thehackernews.com/2025/02/meta-confirms-zero-click-whatsapp.html
β€ 90+ victims were attacked by Israeli firm Paragon Solutions.
β€ Zero-click spyware deployed via a PDF fileβno action from the user needed
π Full story: https://thehackernews.com/2025/02/meta-confirms-zero-click-whatsapp.html
π₯15π€―12π6π4π±3β‘2
π BeyondTrustβs breach compromised 17 Remote Support SaaS customers, caused by a compromised API key.
Attackers exploited a zero-day vulnerability in a third-party app to reset application passwords.
Federal agencies, including the U.S. Treasury, were affected by this breach.
Read the full report: https://thehackernews.com/2025/02/beyondtrust-zero-day-breach-exposes-17.html
Attackers exploited a zero-day vulnerability in a third-party app to reset application passwords.
Federal agencies, including the U.S. Treasury, were affected by this breach.
Read the full report: https://thehackernews.com/2025/02/beyondtrust-zero-day-breach-exposes-17.html
β‘13π₯9π4π3
π₯ BUSTED β 39 Cybercrime Domains Shut Down in Massive Global Takedown.
U.S. and Dutch law enforcement have just crippled a major fraud network responsible for over $3 million in scams, selling phishing kits, scam pages, and fraud tools.
Learn more: https://thehackernews.com/2025/02/us-and-dutch-authorities-dismantle-39.html
U.S. and Dutch law enforcement have just crippled a major fraud network responsible for over $3 million in scams, selling phishing kits, scam pages, and fraud tools.
Learn more: https://thehackernews.com/2025/02/us-and-dutch-authorities-dismantle-39.html
π28π18π₯16
π Cybercrime Alert: Crazy Evil Steals Millions!
A Russian-speaking cybercriminal gang has stolen over $5M using targeted social media scams.
They hijack Windows and macOS users with malware like StealC and AMOS to steal cryptocurrencies.
Learn more: https://thehackernews.com/2025/02/crazy-evil-gang-targets-crypto-with.html
A Russian-speaking cybercriminal gang has stolen over $5M using targeted social media scams.
They hijack Windows and macOS users with malware like StealC and AMOS to steal cryptocurrencies.
Learn more: https://thehackernews.com/2025/02/crazy-evil-gang-targets-crypto-with.html
π€―17π13π6π±5β‘2
β οΈ A new wave of attacks is hitting Brazilian Windows users with the Coyote Banking Trojan.
This malware targets over 1,000 financial sites and can steal your credentials, log your keystrokes, and even capture screenshots.
π Learn how Coyote works: https://thehackernews.com/2025/02/coyote-malware-expands-reach-now.html
This malware targets over 1,000 financial sites and can steal your credentials, log your keystrokes, and even capture screenshots.
π Learn how Coyote works: https://thehackernews.com/2025/02/coyote-malware-expands-reach-now.html
π₯18π9π5π€―4
π¨ Attack surfaces are growing faster than your security team can keep up. Attackers are always looking for new weak spotsβoften hidden until itβs too late.
Learn how Attack Surface Management (ASM) tools like Intruder give you visibility into your risks: https://thehackernews.com/2025/02/what-is-attack-surface-management.html
Learn how Attack Surface Management (ASM) tools like Intruder give you visibility into your risks: https://thehackernews.com/2025/02/what-is-attack-surface-management.html
π13π4π4π€―2
π PyPI Introduces Archiving for Projects!
PyPI now lets developers archive projects, signaling they wonβt receive future updates.
This helps prevent the spread of outdated or vulnerable packages--huge win for supply chain security.
Full details: https://thehackernews.com/2025/02/pypi-introduces-archival-status-to.html
PyPI now lets developers archive projects, signaling they wonβt receive future updates.
This helps prevent the spread of outdated or vulnerable packages--huge win for supply chain security.
Full details: https://thehackernews.com/2025/02/pypi-introduces-archival-status-to.html
π16π13π₯5β‘1
π¨ 768 vulnerabilities exploited in 2024βa shocking 20% increase from last year!
These vulnerabilities are being weaponized faster than ever, with nearly 1 in 4 exploited on the same day they were disclosed.
Read the full report: https://thehackernews.com/2025/02/768-cves-exploited-in-2024-reflecting.html
These vulnerabilities are being weaponized faster than ever, with nearly 1 in 4 exploited on the same day they were disclosed.
Read the full report: https://thehackernews.com/2025/02/768-cves-exploited-in-2024-reflecting.html
π₯18π11π€3β‘2π€―1
This weekβs update covers a broad range of cybersecurity newsβfrom AI risks to law enforcement efforts against cybercrime.
Itβs a must-read for everyone.
https://thehackernews.com/2025/02/thn-weekly-recap-top-cybersecurity.html
Itβs a must-read for everyone.
https://thehackernews.com/2025/02/thn-weekly-recap-top-cybersecurity.html
π13π₯5π€―2β‘1
Google patches 47 Android security flaws, including one actively exploited in the wild!
A critical vulnerability (CVE-2024-53104) lets attackers escalate privileges through USB Video Class driverβwatch out for targeted exploitation!
This flaw, tied to the Linux kernel, can lead to memory corruption or arbitrary code execution.
Get the latest security update now: https://thehackernews.com/2025/02/google-patches-47-android-security.html
A critical vulnerability (CVE-2024-53104) lets attackers escalate privileges through USB Video Class driverβwatch out for targeted exploitation!
This flaw, tied to the Linux kernel, can lead to memory corruption or arbitrary code execution.
Get the latest security update now: https://thehackernews.com/2025/02/google-patches-47-android-security.html
π±16π11β‘3π€―3π2
π¨ Microsoft has issued critical patches for two major security flaws in Azure AI Face Service and Microsoft Account.
These vulnerabilities could let attackers escalate their privileges without authorization, exposing critical infrastructure.
While patched, CVE-2025-21415 had a public exploit.
Learn more: https://thehackernews.com/2025/02/microsoft-patches-critical-azure-ai.html
These vulnerabilities could let attackers escalate their privileges without authorization, exposing critical infrastructure.
While patched, CVE-2025-21415 had a public exploit.
Learn more: https://thehackernews.com/2025/02/microsoft-patches-critical-azure-ai.html
π21β‘6π€3π€―2
π¨ A new flaw (CVE-2024-56161) in AMD SEV could allow attackers to load malicious CPU microcode on vulnerable systems.
It exploits improper signature verification, allowing attackers local admin access to tamper with microcode.
Read more: https://thehackernews.com/2025/02/amd-sev-snp-vulnerability-allows.html
It exploits improper signature verification, allowing attackers local admin access to tamper with microcode.
Read more: https://thehackernews.com/2025/02/amd-sev-snp-vulnerability-allows.html
π11β‘3π₯3π2π€2