The Hacker News
โœ”
151K subscribers
1.84K photos
10 videos
3 files
7.76K links
โญ Official THN Telegram Channel โ€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

๐Ÿ“จ Contact: [email protected]

๐ŸŒ Website: https://thehackernews.com
Download Telegram
๐Ÿ”ฅ ALERT: Toptal's GitHub was HACKED โ€” attackers pushed 10 malicious npm packages.

They stole GitHub tokens, wiped systems silently, and racked up 5,000+ downloads before detection.

Hereโ€™s what devs need to know โ†“ https://thehackernews.com/2025/07/hackers-breach-toptal-github-publish-10.html
๐Ÿ˜ฑ21๐Ÿ˜9๐Ÿคฏ8โšก5๐Ÿ‘1
๐Ÿšจ CISA just confirmed active exploitation of a critical PaperCut bug (CVE-2023-2533) โ€” attackers can hijack admin sessions to run code remotely.

Itโ€™s being used by ransomware gangs right now.

Patch before August 18 or risk breach.

Full details โ†’ https://thehackernews.com/2025/07/cisa-adds-papercut-ngmf-csrf.html
๐Ÿ‘7
๐Ÿšจ 100,000+ sites hacked in 2024โ€™s biggest JavaScript injection attack.

Even React wasnโ€™t safe โ€” a trusted library was turned into a malware delivery system.

Hereโ€™s how modern JS threats are breaking your app โ†’ https://thehackernews.com/2025/07/why-react-didnt-kill-xss-new-javascript.html
๐Ÿ‘8๐Ÿค”1
๐Ÿšจ A wave of mobile malware is sweeping Asiaโ€”targeting Android & iOS with fake apps, phishing, and spyware.

๐Ÿ”ธ 250+ fake dating & social apps (SarangTrap) stealing photos, contacts, SMS
๐Ÿ”ธ Banking trojans like RedHook hijack devices in Vietnam
๐Ÿ”ธ Fake Telegram & finance apps hit users in India, Korea, Bangladesh
๐Ÿ”ธ Criminals now rent malware kits or buy access to infected phones

Cybercrime is now a business. Stay alert โ†’ https://thehackernews.com/2025/07/cybercriminals-use-fake-apps-to-steal.html
๐Ÿ‘13๐Ÿ˜ฑ7๐Ÿ‘1
Chaos is backโ€”and it's wearing a new mask.

A rebrand of BlackSuit (linked to Royal & Conti), the new Chaos #ransomware gang is hitting U.S. victims hard with $300K ransoms, voice phishing, RMM abuse & stealthy multi-threaded encryption.

Details here โ†’ https://thehackernews.com/2025/07/chaos-raas-emerges-after-blacksuit.html
๐Ÿค”9
HACKasan 2025 is ON โ€” and this year, itโ€™s better than ever!

For the 4th year running, Pentera is hosting THE most epic Black Hat & DEF CON after-party, exclusively for cybersecurity pros on Thursday, August 7th!

๐ŸŽง Live DJ + drummer combo
๐Ÿธ Open bar
๐ŸŒˆ Legendary Hakkasan light show
๐Ÿ’ฅ Cyber crowd only

๐Ÿ‘‰ Register Today! Free of charge: https://thn.news/pentera-blackhat-party-2025
๐Ÿ”ฅ9โšก5๐Ÿ‘2
๐Ÿšจ PyPI users are being phished โ€” and the fake login pages look real.

Hackers spoofed PyPI emails & built replica sites that steal credentials, then forward victims to the legit site to cover their tracks.

Full details โ†“ https://thehackernews.com/2025/07/pypi-warns-of-ongoing-phishing-campaign.html
๐Ÿ”ฅ7๐Ÿ˜3๐Ÿ˜ฑ2
๐Ÿšจ AI-powered vibe coding platform Base44 had a critical flaw: anyone with a public app_id could bypass SSO and access private appsโ€”no auth required.

Wix patched it fast, but it exposes serious risks in AI dev platforms.

Full story โ†’ https://thehackernews.com/2025/07/wiz-uncovers-critical-access-bypass.html
๐Ÿ˜13๐Ÿคฏ7โšก3
๐Ÿšจ The browser is now the front line of cyber attacks.

Phishing, infostealers & token hijacking are bypassing MFA, targeting SaaS logins, and owning orgs โ€” all in the browser.

Identity is the prize. And most teams arenโ€™t watching.

Hereโ€™s why it matters โ†“ https://thehackernews.com/2025/07/how-browser-became-main-cyber.html
๐Ÿคฏ14๐Ÿ”ฅ4๐Ÿ˜1
โšก Scattered Spider hacker group just went quietโ€”but donโ€™t exhale yet.

After UK arrests, Mandiant says the groupโ€™s intrusions have stopped.

But copycats are already using their same ruthless tactics.

Nowโ€™s the moment to harden your defenses.

Read - https://thehackernews.com/2025/07/scattered-spider-hacker-arrests-halt.html
๐Ÿ‘11๐Ÿ‘3
A critical SAP flaw just gave hackers remote access to a U.S. chemicals company.

They deployed Auto-Colorโ€”stealthy Linux malware that hides itself when it canโ€™t reach its C2 server.

Details you need to know โ†“ https://thehackernews.com/2025/07/hackers-exploit-sap-vulnerability-to.html
๐Ÿ”ฅ17๐Ÿ˜2
๐Ÿšจ Most ransomware attacks donโ€™t hack inโ€”they log in.

EDR alone canโ€™t stop attackers using legit credentials.

The fix? Pair it with Endpoint Privilege Management (EPM) to shut down stealthy privilege abuse before it starts.

Hereโ€™s why both are critical โ†“ https://thehackernews.com/expert-insights/2025/07/edr-detects-epm-prevents-why-using-both.html
๐Ÿ‘13๐Ÿค”3
๐Ÿšจ Google just fired a double shot at cyber threats:

โžŸ DBSC is now in open beta โ€” it locks session cookies to your device, stopping attackers from hijacking logins.

โžŸ Project Zero goes public with unpatched bug reports to pressure faster fixes.

Big moves to end cookie theft & shrink patch gaps.

Details here โ†“ https://thehackernews.com/2025/07/google-launches-dbsc-open-beta-in.html
๐Ÿ”ฅ16๐Ÿ‘5๐Ÿ‘3๐Ÿค”1
๐Ÿšจ Apple just patched a zero-day used in the wild โ€” tied to a Chrome exploit.

The bug let attackers break out of the browser sandbox using a malicious web page.

iPhones, Macs, iPads, and more were at risk. Update now.

Details here โ†’ https://thehackernews.com/2025/07/apple-patches-safari-vulnerability-also.html
๐Ÿ”ฅ9๐Ÿ‘5๐Ÿ˜2
๐Ÿšจ Critical flaws in Dahua smart cameras let attackers take full remote controlโ€”no login needed.

Used in homes, stores, and casinos, these bugs allow root access, persistent malware, and no easy fix.

Exposed devices are still at risk.

Full details โ†’ https://thehackernews.com/2025/07/critical-dahua-camera-flaws-enable.html
๐Ÿ˜16๐Ÿ‘5๐Ÿค”1
๐Ÿšจ Your AI agent might already be vulnerable.

Pillar Security just launched a full-lifecycle AI defense platformโ€”built by ex-offensive and defensive cyber opsโ€”to catch threats before code is even written.

From threat modeling to runtime guardrails, this flips AI security on its head.

Full story โ†’ https://thehackernews.com/2025/07/product-walkthrough-look-inside-pillars.html
๐Ÿ˜8๐Ÿ‘2๐Ÿค”1
Custom containers, zero headaches.

ActiveState builds and scans your stack from OS to appโ€”SBOM, low-to-no CVEs, ready for your CI/CD. Own your security. Stop inheriting risk.

Customize Your Container โ†’ https://thn.news/activestate-container-security

#DevSecOps #OpenSourceSecurity
๐Ÿ‘6
๐Ÿ”ฅ A free decryptor just landed for FunkSec ransomware โ€” 172 victims hit across tech, gov, and education can now get their files back.

Built with AI. Written in Rust. Broken by rookies.

Get the tool + full story โ†“ https://thehackernews.com/2025/07/funksec-ransomware-decryptor-released.html
๐Ÿ‘11๐Ÿคฏ7๐Ÿ˜1
๐Ÿšจ Thousands tricked by fake crypto apps via Facebook ads.

They install a stealthy new malwareโ€”JSCEALโ€”that hijacks wallets, steals passwords in real-time, and evades most detection tools.

Worse? It's still active.

Hereโ€™s how it works (and how to avoid it) โ†“ https://thehackernews.com/2025/07/hackers-use-facebook-ads-to-spread.html
๐Ÿ˜15๐Ÿ”ฅ3๐Ÿ‘3
๐Ÿšจ 120,000+ attacks in the wild.

Hackers are exploiting a critical bug (CVSS 9.8) in a popular WordPress theme to hijack sitesโ€”no login needed.

Theyโ€™re planting PHP backdoors and rogue admin accounts.

Details here โ†’ https://thehackernews.com/2025/07/hackers-exploit-critical-wordpress.html
๐Ÿ‘12๐Ÿคฏ6๐Ÿ”ฅ3๐Ÿ‘3