The Hacker News
βœ”
153K subscribers
1.99K photos
11 videos
3 files
7.91K links
⭐ Official THN Telegram Channel β€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

πŸ“¨ Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
🚨 A fake Microsoft Teams installer is spreading malware in China.

Hackers called "Silver Fox" made it look like a Russian attack to hide their tracks.

It installs ValleyRAT, giving full remote access to victims.

πŸ”— Read: https://thehackernews.com/2025/12/silver-fox-uses-fake-microsoft-teams.html
😁14πŸ”₯11
⚠️ Hackers are exploiting a command injection bug in Array Networks AG Series gateways β€” active since August 2025.

It lets attackers run any command on systems using β€œDesktopDirect” remote access.

πŸ”— Details β†’ https://thehackernews.com/2025/12/jpcert-confirms-active-command.html
πŸ”₯9😁4πŸ‘3
🚨 CISA just warned about a new Chinese state-backed hack tool called BRICKSTORM β€” a backdoor found in VMware and Windows systems used by U.S. government and tech networks.

It can reinstall itself if removed, hide in normal traffic, and give hackers full remote control.

πŸ”—Read β†’ https://thehackernews.com/2025/12/cisa-reports-prc-hackers-using.html
🀯17πŸ”₯6πŸ‘3😁1
🚨 A lawyer in Pakistan was hacked with Predator β€” the first known spyware attack on a civil society member.

It started with a link on WhatsApp, but new leaks show Predator can also spread through ads β€” no click needed.

It can read chats, record audio, take photos β€” and Intellexa may still access customer systems remotely.

πŸ”— Read β†’ https://thehackernews.com/2025/12/intellexa-leaks-reveal-zero-days-and.html
😁9😱4
⚠️ Within HOURS of disclosure, two China-linked hacking groups weaponized a critical React flaw (CVE-2025-55182).

They’re already scanning the web for unpatched apps.

Update to React 19.0.1+ now.

πŸ”— Read ↓ https://thehackernews.com/2025/12/chinese-hackers-have-started-exploiting.html
🀯5πŸ”₯2
🚨 Critical Apache Tika flaw (CVE-2025-66516) just dropped β€” CVSS 10.0.

A single fake PDF can trigger an XXE attack, letting hackers read server files or run code.

πŸ”— Read ↓ https://thehackernews.com/2025/12/critical-xxe-bug-cve-2025-66516-cvss.html

Update to v3.2.2 now.
πŸ”₯10πŸ€”4😱1
🧩 57% of SMBs say cybersecurity is a top priority β€” yet they still turn down MSPs.

➑ The issue isn’t interest. It’s confusion.
➑ They’re tired of jargon, fear, and hard selling.

β€œGetting to Yes” helps MSPs explain security in plain business terms β€” and win trust.

πŸ‘‰ See how it’s done β†’ https://thehackernews.com/2025/12/getting-to-yes-anti-sales-guide-for-msps.html
πŸ‘4
🚨 WARNING: A new attack can trick Perplexity’s Comet browser into deleting your Google Drive.

Just one normal-looking email with hidden cleanup instructions can make the AI agent erase real files β€” no exploit, no warning.

πŸ”— Details here β†’ https://thehackernews.com/2025/12/zero-click-agentic-browser-attack-can.html
🀯19😁8πŸ”₯7
CISA added the new 10.0-rated React RCE flaw (CVE-2025-55182) to its exploited list.

πŸ•’ Exploited within hours by Chinese hackers.
πŸ’₯ Affects Next.js, React Router, Vite, Waku & more.
πŸ’° Some attacks dropped crypto-miners & stole AWS creds.

πŸ”— Read: https://thehackernews.com/2025/12/critical-react2shell-flaw-added-to-cisa.html
πŸ”₯8πŸ‘5πŸ‘3😁2
πŸ›‘ Over 30 security flaws found in AI-powered coding tools like Copilot, Cursor, and Zed β€” letting hackers steal data or run malicious code without you doing a thing.

Researchers are calling it β€œIDEsaster.”

πŸ”— Details here β†’ https://thehackernews.com/2025/12/researchers-uncover-30-flaws-in-ai.html
😁9πŸ‘2🀯1