The Hacker News
โœ”
151K subscribers
1.86K photos
10 videos
3 files
7.77K links
โญ Official THN Telegram Channel โ€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

๐Ÿ“จ Contact: [email protected]

๐ŸŒ Website: https://thehackernews.com
Download Telegram
โš ๏ธ Hackers are abusing AI tool Gamma to craft fake presentations that lead you to spoofed Microsoft SharePoint loginsโ€”and even fake CAPTCHA pages to dodge security scans.

๐Ÿ”—Details: https://thehackernews.com/2025/04/ai-powered-gamma-used-to-host-microsoft.html
๐Ÿ‘8๐Ÿ˜5๐Ÿ‘2๐Ÿ”ฅ1๐Ÿค”1
๐Ÿšจ Supply chain cyberattacks are exploding โ€” and hitting where it hurts most: healthcare, retail, energy.

๐Ÿฆ  One breach = millions exposed.

The risk? Vendors are the backdoor. Hackers are walking right in.

Learn whatโ€™s driving this wave and how to stay ahead: https://thehackernews.com/2025/04/from-third-party-vendors-to-us-tariffs.html
๐Ÿ‘10๐Ÿ˜3๐Ÿ”ฅ2๐Ÿคฏ1
๐Ÿ‘‡ Google blocked 5.1B bad ads and banned 39.2M advertiser accounts in 2024.

AI flagged scams, deepfakes, and fraud at scaleโ€”700K accounts suspended for impersonating public figures alone.

๐Ÿ”’ 5.1B bad ads blocked
๐Ÿ” 9.1B restricted
๐Ÿšซ 1.3B pages hit
๐Ÿ‘ค 5M+ scam accounts suspended
๐Ÿค– AI flagged 700K deepfake scams

๐Ÿ”— Full story: https://thehackernews.com/2025/04/google-blocked-51b-harmful-ads-and.html
๐Ÿ‘20๐Ÿ‘6๐Ÿ”ฅ5โšก1๐Ÿค”1
Over 50% of vulnerabilities are exploited within 7 days of discovery.

Learn how to reduce MTTR and secure your apps with insights from ActiveState's 2025 State of Vulnerability Management & Remediation Report.

๐Ÿ›ก๏ธ Stay ahead of threatsโ€”download now! https://thn.news/vulnerability-management-2025

#DevSecOps #OpenSource
๐Ÿ‘11๐Ÿ‘8
๐Ÿ”๐ŸŒ UPDATE โ€” CISA extends funding to prevent a shutdown of the CVE Program.

A new CVE Foundation is also launched to ensure global, independent oversightโ€”just as ENISA rolls out the EU Vulnerability Database.

Read: https://thehackernews.com/2025/04/us-govt-funding-for-mitres-cve-ends.html#update-cisa-extends-cve-program-contract-amid-funding-crisis
๐Ÿ‘25๐Ÿ‘9๐Ÿ”ฅ6๐Ÿคฏ3๐Ÿ˜1
๐Ÿ”ฅ One task away from total takeover?

4 local privilege escalation flaws found in schtasks.exeโ€”a core part of Windows Task Scheduler.

Attackers can:
โ€ข Bypass UAC
โ€ข Run SYSTEM-level commands
โ€ข Erase security logs
โ€ข Impersonate admins using known passwords.

Fix not yet available.

๐Ÿ”— Full story โ†’ https://thehackernews.com/2025/04/experts-uncover-four-new-privilege.html
๐Ÿ”ฅ18๐Ÿ‘12
๐Ÿšจ Targeted iPhone attacks in the wild.

Apple just patched 2 new zero-daysโ€”bringing 2025โ€™s total to 5 actively exploited flaws.

โ†’ One lets hackers run code via malicious audio files
โ†’ Another bypasses Pointer Authentication using memory tricks

๐Ÿ”— Details here: https://thehackernews.com/2025/04/apple-patches-two-actively-exploited.html

Update now: iOS 18.4.1, macOS Sequoia 15.4.1, tvOS, visionOS
๐Ÿ‘20๐Ÿ˜4๐Ÿ”ฅ2๐Ÿค”1
๐Ÿšจ Actively Exploited SonicWall Flaw Hits CISAโ€™s KEV List.

Remote attackers can execute code via SMA 100 Series bug (CVE-2021-20035, CVSS 7.2).

โžก๏ธ Injects OS commands as โ€˜nobodyโ€™ user
โžก๏ธ Impacts SMA 200โ€“500v on outdated firmware
โžก๏ธ FCEB agencies must patch by May 7, 2025

Your VPN gateway could be the backdoor. Patch it

Learn more: https://thehackernews.com/2025/04/cisa-flags-actively-exploited.html
๐Ÿ‘20๐Ÿ”ฅ2
๐Ÿšจ Microsoft Alert: Node.js-Powered Malware Campaign Ongoing...

Since Oct 2024, fake Binance & TradingView installers have been used to deploy malware via Node.js and PowerShell.

Linked threats include ClickFix tricks, SectopRAT malware, fake PDF tools, and HR-themed phishing kits.

Learn more: https://thehackernews.com/2025/04/nodejs-malware-campaign-targets-crypto.html
๐Ÿคฏ16๐Ÿ‘11
๐Ÿšจ CVSS 10.0 ALERT: Remote Code Execution in Erlang/OTP SSH (CVE-2025-32433)

No auth. Full control. Widespread impact.

Used in Cisco, Ericsson, OT/IoT, and edge systems, this bug lets attackers run code without logging in.

If SSH runs as root? Game over. ๐Ÿ‘€

๐Ÿ”— Full details โ†’ https://thehackernews.com/2025/04/critical-erlangotp-ssh-vulnerability.html

๐Ÿ”ฅ Fix now โ†’ OTP-27.3.3 / 26.2.5.11 / 25.3.2.20 Block SSH ports as temp fix.
๐Ÿคฏ15๐Ÿ‘9๐Ÿ”ฅ4
๐Ÿ”ฅ Blockchain wonโ€™t kill passwords yetโ€”but it may change how we authenticate.

Decentralized IDs + cryptographic keys = fewer breaches, no central targets.

Used in finance (KYC) & healthcare (patient data), itโ€™s realโ€”and growing.

But until blockchain scales, passwords stay. Just make them strong.

โžก๏ธ Learn more: https://thehackernews.com/2025/04/blockchain-offers-security-benefits-but.html
๐Ÿ‘17๐Ÿค”3
๐Ÿšจ Copy. Paste. Get hacked.

North Korea, Iran & Russia are now pushing ClickFixโ€”a sneaky trick that fools users into running malware on their own devices.

Learn more โ†’ https://thehackernews.com/2025/04/state-sponsored-hackers-weaponize.html
๐Ÿ‘27๐Ÿ˜6๐Ÿ”ฅ3โšก2
๐Ÿšจ AI isnโ€™t just coding fasterโ€”itโ€™s rewriting the rulebook.

LLMs have entered the threat landscape. From spear-phishing and voice fraud to malware with OCR, attackers are now using AI to scale, blend, and evolve.

Defenders use AI tooโ€”but GenAI interfaces expose a new attack surface.

๐Ÿ”— Full deep dive in Security Navigator 2025: https://thehackernews.com/2025/04/artificial-intelligence-whats-all-fuss.html
๐Ÿค”15๐Ÿ‘6๐Ÿ˜3
๐Ÿšจ China-backed hackers are deploying TONESHELL v3, StarProxy, and stealth tools like SplatCloak to breach Myanmar targetsโ€”dodging EDR, logging keystrokes, and hopping across networks with FakeTLS tricks.

โ€ข 3 TONESHELL variants
โ€ข 2 new keyloggers (PAKLOG, CorKLOG)
โ€ข StarProxy โ€“ a lateral movement proxy over FakeTLS
โ€ข SplatCloak โ€“ a Windows kernel-level EDR evasion driver

Details here ๐Ÿ‘‰ https://thehackernews.com/2025/04/mustang-panda-targets-myanmar-with.html
๐Ÿ”ฅ17๐Ÿ‘9๐Ÿ˜5โšก1
๐Ÿšจ New NTLM flaw (CVE-2025-24054) is being actively exploited to steal Windows credentialsโ€”just by downloading a file. No clicks, no execution needed.

This "low-interaction" bug leaks NTLMv2 hashes via SMBโ€”perfect for pass-the-hash attacks.

๐Ÿ”— Details here: https://thehackernews.com/2025/04/cve-2025-24054-under-active.html
๐Ÿ‘22๐Ÿคฏ16
๐Ÿšจ New XorDDoS Variant Targets U.S. Servers!

The malware is now hijacking Docker and Linux systems via SSH brute-force attacks.

A new โ€œVIPโ€ controller spotted in 2024 suggests itโ€™s being sold as a service, expanding botnet operations.

Full story โ†’ https://thehackernews.com/2025/04/experts-uncover-new-xorddos-controller.html
๐Ÿ‘14๐Ÿ˜11๐Ÿค”2
AI is already in your SaaS. The real question: Do you know whereโ€”or how risky it is?

Employees are using ChatGPT, bots, and AI tools without security oversight. Shadow AI is realโ€”and your old playbook wonโ€™t catch it.

๐Ÿ”ฅ WEBINAR โ€” Join AI security expert and learn:
๐Ÿ“Œ Real breach cases
โš™๏ธ Detection strategies that actually work
๐Ÿšจ What to do before your next silent breach

Join the webinar โ†’ https://thehackernews.com/2025/04/webinar-ai-is-already-inside-your-saas.html
๐Ÿคฏ9๐Ÿ”ฅ5๐Ÿ‘4
๐Ÿ‘€ Attackers are now using multi-stage payloads that slip past detectionโ€”via simple tricks, not complex code.

One phishing email = 3 malware strains:
โ€ข Agent Tesla
โ€ข Remcos RAT
โ€ข XLoader

๐Ÿ” Plus: a new MysterySnail variant is targeting Mongolia & Russiaโ€”40+ commands, remote access, and evasion built-in.

โžก๏ธ See the full analysis: https://thehackernews.com/2025/04/multi-stage-malware-attack-uses-jse-and.html
๐Ÿ‘17๐Ÿ‘2๐Ÿ”ฅ1
โš ๏ธ Alert: Fake E-ZPass Texts Target Drivers in 8 U.S. States

A widespread smishing scam is tricking drivers into fake toll payments to steal card info.

๐Ÿ”น Linked to China-based Smishing Triad
๐Ÿ”น Phishing kits sold by CS student Wang Duo Yu
๐Ÿ”น Used in 121+ countries

๐Ÿ”— Full story: https://thehackernews.com/2025/04/chinese-smishing-kit-behind-widespread.html

๐Ÿ“ต Avoid clicking toll links in texts.
๐Ÿ‘27๐Ÿคฏ5๐Ÿ˜ฑ3
๐Ÿšจ Critical ASUS Router Flaw Exposed
9.2 CVSS | Remote Hijack Risk

A new bugโ€”CVE-2025-2492โ€”lets attackers remotely execute functions on ASUS routers with AiCloud enabled.

๐Ÿ”— Details: https://thehackernews.com/2025/04/asus-confirms-critical-flaw-in-aicloud.html
๐Ÿ‘20๐Ÿ˜ฑ4๐Ÿ‘3๐Ÿ”ฅ1