โ ๏ธ Hackers love community update tools.
Why? Because anyone can upload a package.
One bad update = hacked systems.
๐ Join our free live webinar with Action1 CTO Gene Moody โ see how to patch safely without slowing down.
Save your spot โ https://thehackernews.com/2025/11/webinar-learn-to-spot-risks-and-patch.html
Why? Because anyone can upload a package.
One bad update = hacked systems.
๐ Join our free live webinar with Action1 CTO Gene Moody โ see how to patch safely without slowing down.
Save your spot โ https://thehackernews.com/2025/11/webinar-learn-to-spot-risks-and-patch.html
๐3
Media is too big
VIEW IN TELEGRAM
๐ค We talk a lot about securing AI.
Almost no one talks about where itโs actually hiding.
NetworkChuck just dropped a video with Wiz, showing how theyโre finding hidden AI risksโโshadow AIโโbefore attackers do. Itโs a smart look at where cloud security is headed next.
๐See Wiz in Action โ https://thn.news/cloud-security-demo
Almost no one talks about where itโs actually hiding.
NetworkChuck just dropped a video with Wiz, showing how theyโre finding hidden AI risksโโshadow AIโโbefore attackers do. Itโs a smart look at where cloud security is headed next.
๐See Wiz in Action โ https://thn.news/cloud-security-demo
๐9๐4
๐ฅ Hackers hit South Koreaโs banks through one IT vendor โ spreading Qilin ransomware to 28 firms and stealing 2 TB of data.
Evidence suggests Russian and North Korean groups worked together.
Full story โ https://thehackernews.com/2025/11/qilin-ransomware-turns-south-korean-msp.html
Evidence suggests Russian and North Korean groups worked together.
Full story โ https://thehackernews.com/2025/11/qilin-ransomware-turns-south-korean-msp.html
๐คฏ10๐ฅ5๐ฑ4
โ ๏ธ Eight โadvancedโ tools failed at once.
A phishing attack slipped past all of them and reached exec inboxes. Only one thing stopped it โ a strong SOC.
๐ Learn why your โfirst lineโ is useless without the last โ https://thehackernews.com/2025/11/when-your-2m-security-detection-fails.html
A phishing attack slipped past all of them and reached exec inboxes. Only one thing stopped it โ a strong SOC.
๐ Learn why your โfirst lineโ is useless without the last โ https://thehackernews.com/2025/11/when-your-2m-security-detection-fails.html
๐1
โ ๏ธ Hundreds of Maven packages just got caught running Shai-Hulud v2 โ the same malware that hijacked npm.
It spread through automated rebuilds, infecting devs who never used npm.
Hiding in the Bun runtime, it steals GitHub + cloud creds and self-replicates like a worm โ already leaking 11,000+ secrets across 4,600 repos.
Details here โ https://thehackernews.com/2025/11/shai-hulud-v2-campaign-spreads-from-npm.html
It spread through automated rebuilds, infecting devs who never used npm.
Hiding in the Bun runtime, it steals GitHub + cloud creds and self-replicates like a worm โ already leaking 11,000+ secrets across 4,600 repos.
Details here โ https://thehackernews.com/2025/11/shai-hulud-v2-campaign-spreads-from-npm.html
๐2