The Hacker News
βœ”
151K subscribers
1.86K photos
10 videos
3 files
7.77K links
⭐ Official THN Telegram Channel β€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

πŸ“¨ Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
⚑ From zero-click iOS exploits to NTLM credential leaks and the 4Chan breach β€” this week’s cyber threats hit where trust runs deepest.

THN’s Weekly Recap breaks down the stealth, the strategy, and the systems under fire.

πŸ”— Read: https://thehackernews.com/2025/04/thn-weekly-recap-ios-zero-days-4chan.html
πŸ”₯18⚑2
⚠️ Hold your phone near your card... and they drain your bank account.

A new Android malware-as-a-service, SuperCard X, is targeting Italians with NFC relay attacksβ€”letting cybercriminals remotely steal card data and pull off ATM & PoS fraud.

πŸ‘‰ Learn how it works: https://thehackernews.com/2025/04/supercard-x-android-malware-enables.html

Google’s now working on a new Android update to block risky app installs. But until thenβ€”stay sharp. Think before tapping.
😁18πŸ”₯9πŸ‘5πŸ‘3🀯3⚑1πŸ€”1
🚨 Your MDM isn’t enough. Most breaches start with a device you can’t see.

Unmanaged laptops, outdated personal phones, misconfigured toolsβ€”attackers love them.
MDM/EDR miss the mark.

Device Trust closes the gap.

πŸ‘€ See how: https://thehackernews.com/2025/04/5-reasons-device-management-isnt-device.html
πŸ‘12πŸ”₯5⚑2😁2
πŸ•΅οΈβ€β™‚οΈ Kimsuky is backβ€”and digging deep.

A new Larva-24005 campaign is exploiting old RDP bugs (BlueKeep, CVE-2019-0708) to breach systems in South Korea, Japan & beyondβ€”with targets across energy, finance & tech.

Learn more: https://thehackernews.com/2025/04/kimsuky-exploits-bluekeep-rdp.html
πŸ”₯17πŸ‘9
πŸ’£ Lotus Panda, a China-linked APT, breached key sectors across Southeast Asiaβ€”govt, telecom, air trafficβ€”from Aug 2024 to Feb 2025.

New tools. Stolen Chrome data. Hijacked legit software.

Read full report πŸ‘‰ https://thehackernews.com/2025/04/lotus-panda-hacks-se-asian-governments.html
πŸ€”13πŸ‘2🀯2😱1
⚠️ AI is Supercharging DDoS Attacks.

Hackers now use AI to launch smarter, harder-to-stop DDoS attacks. Most defenses fail because they’re poorly set up β€” not because they’re weak.

πŸ”— Free DDoS Threat Check β†’ https://thehackernews.com/expert-insights/2025/04/how-ai-and-iot-are-supercharging-ddos.html
πŸ”₯13πŸ‘4
πŸ”₯ Microsoft boosts security after major China-backed breach.

β€”MSA sign-ins moved to Azure confidential VMs

β€”92% of staff now use phishing-resistant MFA

β€”81% of code branches protected with proof-of-presence

β€”New Quick Machine Recovery auto-fixes Windows boot failures

See details: https://thehackernews.com/2025/04/microsoft-secures-msa-signing-with.html
😁20πŸ‘8πŸ‘1
🚨 Signed by Google. Hosted by Google. Hijacked by Hackers.

πŸ‘€ Hackers sent real emails from [email protected] β€” fully verified, signed, no warnings. Victims handed over passwords, believing it was legit.

βœ”οΈ Real Google email
βœ”οΈ Fake login on Google Sites
βœ”οΈ Passed DKIM, SPF, DMARC

πŸ”— Full story: https://thehackernews.com/2025/04/phishers-exploit-google-sites-and-dkim.html
😱52πŸ‘14πŸ”₯11😁10⚑3πŸ‘2🀯2
Each user is unique. Their security should be too.

Join Bitdefender on April 23 for the LIVE launch of GravityZone PHASR β€” a breakthrough in reducing employee attack surfaces by up to 95%.

πŸ”’ Adaptive, user-focused protection
πŸŽ₯ Live demo + expert insights

πŸ“… Secure your spot here: https://thn.news/gravityzone-bitdefender-x
πŸ‘10πŸ‘6πŸ€”2πŸ”₯1
This media is not supported in your browser
VIEW IN TELEGRAM
πŸ›‘ Privilege Escalation in Google Cloud!

A serious bug in Cloud Composer (GCP) let attackers with edit access take control of key services like Cloud Storage and Artifact Registry by uploading malicious code.

πŸ”— Read this story here: https://thehackernews.com/2025/04/gcp-cloud-composer-bug-let-attackers.html
πŸ‘12πŸ”₯5πŸ€”3πŸ‘2
πŸ‘€ Browsers are the new battleground. 70% of modern malware starts here, yet most organizations overlook it.

AI tools, phishing, shadow IT, and risky extensions hide in plain sight.

Legacy security is inadequate. Monitor where work happensβ€”the browser.

πŸ‘‰ Explore new risks. Read: https://thehackernews.com/2025/04/5-major-concerns-with-employees-using.html
πŸ‘11πŸ‘5πŸ”₯3
πŸ›‘ New Malware Targets Docker β€” but it’s not about crypto mining anymore.

Hackers are hijacking Docker to run fake nodes on a Web3 network called Teneo. Instead of mining, they farm TENEO tokens by sending fake heartbeat signals.

πŸ”Ή 325+ downloads from Docker Hub

Read more ➝ https://thehackernews.com/2025/04/docker-malware-exploits-teneo-web3-node.html
πŸ‘25πŸ”₯3πŸ‘3
πŸ”₯ Google pulls the plug on third-party cookie prompts in Chrome.

No more new pop-ups β€” just Incognito upgrades & IP protection by Q3 2025.

While Firefox & Safari banned 3rd-party cookies in 2020, Google stallsβ€”caught between privacy & profit.

Read β€” https://thehackernews.com/2025/04/google-drops-cookie-prompt-in-chrome.html
πŸ‘23😁14πŸ‘1
🚨 Crypto Devs, Watch Out!

Ripple's xrpl.js library was backdoored to steal private keys! Over 2.9M downloads, 135K devs at risk.

πŸ—“οΈ Malicious versions: 4.2.1–4.2.4, 2.14.2
πŸ›‘οΈ Safe versions: 4.2.5, 2.14.3
πŸ‘€ Hacker hijacked a Ripple dev's npm account on April 21, 2025.

πŸ”— Learn more: https://thehackernews.com/2025/04/ripples-xrpljs-npm-package-backdoored.html
πŸ‘16🀯5⚑1
🚨 New Tactics from Russian Hackers!

Since March 2025, Russian threat groups UTA0352 & UTA0355 are targeting Ukraine-linked orgs via Microsoft 365 OAuth abuse.

No fake sitesβ€”just official Microsoft URLs, real Signal/WhatsApp invites, and compromised Ukrainian Gov accounts.

πŸ”— Learn more: https://thehackernews.com/2025/04/russian-hackers-exploit-microsoft-oauth.html
πŸ‘15πŸ€”4😁3🀯2πŸ‘1
πŸ‘€ Phishing isn't just an email problem anymore!

2025's #1 breach method? Identity attacks β€” phishing + stolen creds now top software exploits. MFA? Often bypassed. Detection? Too slow.

Real-time browser-based defense is the future. Stop attacks before passwords are stolen.

Learn more: https://thehackernews.com/2025/04/three-reasons-why-browser-is-best-for.html
πŸ‘10😁5πŸ€”2🀯1
⚠️ Target: Russian Military!

Android.Spy.1292.origin spyware steals data via fake Alpine Quest apps.

β€” Spread via fake Telegram & Rus. app stores
β€” Steals loc., contacts, files
β€” Sends data to Telegram bot, runs hidden malware

Doctor Web says it mimics Alpine Quest Pro, widely used in military zones.

Read: https://thehackernews.com/2025/04/android-spyware-disguised-as-alpine.html

πŸ‘€ Kaspersky found a Windows backdoor in fake ViPNet updates targeting Russian government, finance, and industry.
πŸ‘21😁8🀯4πŸ€”2
πŸ’Ό Dream Job? Or Cyber Trap?

Iranian hackers UNC2428 lured Israelis with fake jobs at defense giant Rafael. Victims downloaded β€œRafaelConnect.exe” β€” a trap that secretly installed the MURKYTOUR backdoor, giving attackers full access.

Read now β†’ https://thehackernews.com/2025/04/iran-linked-hackers-target-israel-with.html
πŸ”₯27🀯7πŸ‘6😁5πŸ€”3πŸ‘1
DPRK hackers are inside Web3β€”stealing crypto to fund WMDs.

In 2023, $137M stolen in 1 day via phishing. In 2024, they used deepfakes to win real jobs & extort firms. 12 fake identities at one US firm alone.

Learn more: https://thehackernews.com/2025/04/dprk-hackers-steal-137m-from-tron-users.html
🀯19😁8πŸ‘4πŸ€”3πŸ‘2
πŸ”’ WhatsApp rolls out Advanced Chat Privacy!

πŸ”Έ Blocks chat exports, auto-downloads, & AI use in sensitive convos.
πŸ”Έ Still allows screenshots & manual media saves.
πŸ”Έ Available now for all users on the latest update.

Update to try it πŸ‘‰ https://thehackernews.com/2025/04/whatsapp-adds-advanced-chat-privacy-to.html
😁29πŸ‘12πŸ€”10🀯2πŸ‘1