The Hacker News
โœ”
152K subscribers
1.87K photos
10 videos
3 files
7.79K links
โญ Official THN Telegram Channel โ€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

๐Ÿ“จ Contact: [email protected]

๐ŸŒ Website: https://thehackernews.com
Download Telegram
๐Ÿšจ Chrome to Block TLS Certificates from Two Major Certificate Authorities.

Why? Repeated security failures. Broken promises. No real progress.

Read: https://thehackernews.com/2025/06/google-chrome-to-distrust-two.html

โš ๏ธ Switch CAs now to avoid disruptions.
๐Ÿ”ฅ21๐Ÿ‘5๐Ÿ‘4
๐Ÿšจ New Android malware 'Crocodilus' spreads worldwide.

First seen in Spain & Turkey, it now targets users in ๐Ÿ‡ต๐Ÿ‡ฑ Poland, ๐Ÿ‡ง๐Ÿ‡ท Brazil, ๐Ÿ‡ฆ๐Ÿ‡ท Argentina, ๐Ÿ‡ฎ๐Ÿ‡ณ India & more.

It:
๐Ÿ”ธ Steals crypto seed phrases
๐Ÿ”ธ Poses as " Bank Support " to evade Google alerts
๐Ÿ”ธ Spreads via Facebook ads

๐Ÿ”— Details: https://thehackernews.com/2025/06/android-trojan-crocodilus-now-active-in.html
๐Ÿ‘12๐Ÿ”ฅ4
New GenAI Security Best Practices Bundle

3-in-1 AI security guides. Get access to 3 resources that will help secure your AI pipeline and mitigate critical risks.

Unlock the Bundle: https://thehackernews.uk/wiz-genai-sec-bundle
๐Ÿค”8๐Ÿ”ฅ4๐Ÿ‘1
โ€œHey, I got a new phoneโ€”can you reset my MFA?โ€

Thatโ€™s how $100M+ breaches begin.

Scattered Spider isnโ€™t new โ€” theyโ€™ve been hijacking accounts using help desk scams, deepfakes & AiTM phishing kits since 2022.

Learn how to fight back โ†’ https://thehackernews.com/2025/06/scattered-spider-understanding-help.html
๐Ÿค”8๐Ÿ˜5๐Ÿคฏ5๐Ÿ‘1
XPOSURE is back! The National Exposure Management Virtual Summit returns for its fourth year, focused on what matters most: reducing cyber exposure and risk.

Join top cybersecurity leaders from Pentera, Forrester, AWS, Armis, Recorded Future, and SecurityScorecard to learn how leading security teams are taking a proactive approach to exposure across the enterprise.

Featuring Jen Easterly, former Director of the Cybersecurity and Infrastructure Security Agency (CISA), as the XPOSURE 2025 keynote.

If youโ€™re building toward a more proactive security model, this is where you need to be.

๐Ÿ“… June 18 | ๐Ÿ•š 11 AM ET
๐ŸŽ“ Up to 3.5 CPE credits
๐Ÿ”— https://thn.news/xposure2025

#XPOSURE2025 #CTEM #CyberSecurityLeadership #EnterpriseSecurity
๐Ÿ‘2
๐Ÿšจ A 10-year-old flaw (CVE-2025-49113 / CVSS 9.9) in Roundcube Webmail could let hackers take over your system.

Nation-state groups like APT28 have already exploited Roundcube before.

๐Ÿ”— Read: https://thehackernews.com/2025/06/critical-10-year-old-roundcube-webmail.html

๐Ÿ”ง Patch to 1.6.11 or 1.5.10 LTS now.
๐Ÿ“Œ PoC coming soon.
๐Ÿ‘11๐Ÿ”ฅ5๐Ÿค”5๐Ÿ‘4
๐Ÿšจ Watch your clipboard!

A fake DocuSign site tricks users into running malware with a sneaky PowerShell scriptโ€”copied via CAPTCHA.

โœ”๏ธ Clipboard poisoning
โœ”๏ธ Fake Gitcode & DocuSign sites
โœ”๏ธ NetSupport RAT deployed

๐Ÿ‘€ Learn how it works โ†’ https://thehackernews.com/2025/06/fake-docusign-gitcode-sites-spread.html
๐Ÿ”ฅ7๐Ÿ‘6๐Ÿคฏ4
๐Ÿšจ Critical bugs in HPE StoreOnce | 9.8 CVSS flaw allows auth bypass + RCE as root.

๐Ÿ‘€ One bug (CVE-2025-37093) lets attackers skip loginโ€”then chain others for full takeover.

Patch now if you're running pre-4.3.11 versions.

๐Ÿ”— Full details: https://thehackernews.com/2025/06/hpe-issues-security-patch-for-storeonce.html
๐Ÿ‘11๐Ÿ”ฅ4
๐Ÿšจ New wave of supply chain attacks hits npm, PyPI & RubyGems.

Hackers are hiding malware in popular open-source packages to:

๐Ÿ”ป Steal crypto wallets
๐Ÿ—‘๏ธ Delete entire codebases
๐Ÿ•ต๏ธ Exfiltrate Telegram bot data

Full story & package list โ†’ https://thehackernews.com/2025/06/malicious-pypi-npm-and-ruby-packages.html
๐Ÿคฏ11๐Ÿ‘6
๐Ÿšจ 70% of data leaks now happen in-browser.

Legacy DLP tools canโ€™t see what your employees are copy-pasting into AI tools, Slack, or Gmail.

The browser is the new security perimeter.

Read why browser-centric DLP is now a must โ†’ https://thehackernews.com/2025/06/your-saas-data-isnt-safe-why.html
๐Ÿ‘14๐Ÿค”7
๐Ÿšจ New Chaos RAT variant targets Linux & Windows users

Masquerading as a Linux network tool, the malware spreads via phishing to deploy crypto miners, steal data, and gain full device control.

๐Ÿ”— Full report: https://thehackernews.com/2025/06/chaos-rat-malware-targets-windows-and.html
๐Ÿ‘9๐Ÿ”ฅ3โšก2๐Ÿ‘1
Do you know how and where AI is running in your org? That customer service agent isn't just an LLMโ€”it's system prompts, tool calls, RAG data, user logs, and MCP servers.

Every untracked component = a breach waiting to happen.

Why AI asset sprawl goes way beyond model discovery โ†’ https://thn.news/ai-assets-sprawl
๐Ÿ‘7๐Ÿ‘4
๐Ÿšจ Google warns: Fake IT calls breaching Salesforce accounts.

Hackers from UNC6040 trick staff into approving a malicious โ€œData Loaderโ€ app to steal data.

๐Ÿ”— Learn how the scam works: https://thehackernews.com/2025/06/google-exposes-vishing-group-unc6040.html
๐Ÿ‘7๐Ÿ‘5๐Ÿ˜3๐Ÿ”ฅ2
๐Ÿšจ One PASSWORD to rule them all?

A critical flaw (CVSS 9.9) in Cisco ISE cloud deployments (AWS, Azure, OCI) means static credentials are reused across systemsโ€”allowing unauthenticated attackers to access configs, data, and more.

Details โ†’ https://thehackernews.com/2025/06/critical-cisco-ise-auth-bypass-flaw.html

๐Ÿ” No fixโ€”only factory reset.
๐Ÿ‘11๐Ÿ”ฅ9๐Ÿ˜4โšก1๐Ÿคฏ1
๐Ÿšจ Dark web carding site BidenCash taken down by U.S. DoJ

๐Ÿ”น 15M+ stolen credit cards sold
๐Ÿ”น $17M in criminal profits
๐Ÿ”น 3.3M cards leaked for free to attract buyers
๐Ÿ”น 117K+ users served since 2022

Seized in global sting with FBI & Europol.

Read: https://thehackernews.com/2025/06/doj-seizes-145-domains-tied-to.html
๐Ÿ˜19๐Ÿ‘9
๐Ÿ”ฅ 2025โ€™s biggest cyber threat? The accounts you forgot existed.

Machine IDs now outnumber humans 45:1 โ€” and theyโ€™re 7.5x more dangerous.

Leaked secrets, orphaned privileges, siloed teams.
Attackers see the full map. Do you?

๐Ÿ‘‰ How to close identity gaps before itโ€™s too late: https://thehackernews.com/expert-insights/2025/06/identity-first-security-multilayered.html
๐Ÿ”ฅ8
Iran-linked hackers are spying on Kurdish & Iraqi officials using custom malware.

The group BladedFeline breached:
โ€ข KRG diplomats
โ€ข Iraq gov networks
โ€ข Uzbekistan telecom

Backdoors used: Whisper, Spearal, Shahmaran, Slippery Snakelet.

๐Ÿ•ต๏ธโ€โ™‚๏ธ Full story โ†’ https://thehackernews.com/2025/06/iran-linked-bladedfeline-hits-iraqi-and.html
โšก7๐Ÿ‘3๐Ÿ”ฅ3๐Ÿ˜ฑ3
๐Ÿ”ฅ $4.88M average breach cost โ€” boards want real ROI, not just patch counts.

Business Value Assessment (BVA) links risk to $$ and shows cost of inaction โ€” often $500K+ monthly.

Stop guessing. Measure impact. Turn security into business value.

Try this new ROI Calculator โฌ‡๏ธ https://thehackernews.com/2025/06/redefining-cyber-value-why-business.html
๐Ÿ”ฅ7๐Ÿ‘4๐Ÿค”2
๐Ÿšจโ€œBitterโ€ hacking group targets governments and diplomats worldwide using advanced malware and spear-phishing.

Recent attacks spread from South Asia to Turkey. Active during business hours.

Learn more โ†’ https://thehackernews.com/2025/06/bitter-hacker-group-expands-cyber.html
๐Ÿ‘12
โš ๏ธ Ukraine hit by PathWiper malware wiping critical data via hacked admin tools. Linked to Russia-based APT groups.

๐Ÿšจ Meanwhile, Silent Werewolf launches stealth attacks on Russian & Moldovan sectors using advanced loaders.

Stay informedโ€”learn here: https://thehackernews.com/2025/06/new-pathwiper-data-wiper-malware.html
๐Ÿ”ฅ23๐Ÿ˜ฑ5๐Ÿ‘2๐Ÿคฏ1