The Hacker News
151K subscribers
1.85K photos
10 videos
3 files
7.76K links
Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

📨 Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
Turns Out MikroTik Router's WinBox Vulnerability (CVE-2018-14847) is More Dangerous Than Previously Thought

New PoC Exploit Allows Attackers to Gain Full Root Access—Turned 'Medium' Vulnerability Into 'Critical' in Severity

https://thehackernews.com/2018/10/router-hacking-exploit.html
Google is Going to Shut Down its Google+ Social Media Site After an API Vulnerability Exposed 500,000 Users' Data

https://thehackernews.com/2018/10/google-plus-shutdown.html
From Now On, Only Default Android Apps (Set by Users) Can Access Call Log and SMS Data

https://thehackernews.com/2018/10/android-app-privacy.html
Adobe Releases #Security Patch Updates for 11 Vulnerabilities in #Adobe Digital Editions, Framemaker, and Technical Communications Suite

https://thehackernews.com/2018/10/adobe-security-updates.html
👍1
October 2018 Patch Tuesday – #Microsoft releases security patches for a total 49 vulnerabilities, 12 of which are critical in severity.

https://thehackernews.com/2018/10/microsoft-windows-update.html

Details of 3 flaws were publicly disclosed, and one is under active attack.
Just answering a video call could have let hackers completely compromise your WhatsApp account remotely.

Hackers only need your phone number to hack and spy on your secret WhatsApp conversations.

https://thehackernews.com/2018/10/hack-whatsapp-account-chats.html
Facebook Confirms 30 Million Accounts Were Hacked In the Latest Security Breach.

Read This for Updated Details: https://thehackernews.com/2018/10/hack-facebook-account.html

Also CheckIf You're One of the Affected Users.
Starting in Android Pie 9, Google encrypts cloud backup data of your Android devices with your lockscreen password—in a way that Google itself can’t decrypt it.
Titan Security Chip is playing an important role for the new privacy feature.

Read more: https://thehackernews.com/2018/10/android-cloud-backup.html
📢 All Major Web Browsers—Chrome, Firefox, Edge, IE and Safari—Today Announced Their Plans to Remove Support for TLS 1.0 and TLS 1.1 Encryption Protocol

https://thehackernews.com/2018/10/web-browser-tls-support.html
*New* #iPhone Lock Screen Bypass Bug Lets Anyone Access Your Private Photos and Send Them to Another Device

https://thehackernews.com/2018/10/iphone-lock-passcode-bypass.html

Works On the Latest Apple iOS 12.0.1 Version
Google will charge Android phone makers to pre-install its apps on devices sold in Europe

Following EU’s antitrust cases against Google, the company introduces new paid licenses for manufacturers who don't want to pre-install Google apps (that generate revenue for Google).

Google has made its point very bold and clear. Europe can’t selectively pre-install some of the Google apps to enjoy billion dollar services for free and fine Google with $5 BILLION.

From now on, either pre-install all Google apps for free, or install selective apps with paid licences, or simply don’t use any app, not even the Play Store.

https://thehackernews.com/2018/10/google-android-european-commission.html
Ridiculously "Simple to Exploit" LibSSH Authentication Bypass Flaw (CVE-2018-10933) Allows Attackers to Take Over Vulnerable Servers Without Requiring Passwords

https://thehackernews.com/2018/10/libssh-ssh-protocol-library.html

🤔HINT → Just Tell the Server You Have Successfully Logged-In, It Will Trust You!
(Tumblr patches a critical vulnerability)[https://thehackernews.com/2018/10/tumblr-account-hacking.html] in the "Recommended Blogs" feature on its desktop version of the website that could have allowed hacker to steal users’ account information, including emails and passwords (hashed and salted)
Several critical vulnerabilities found in #Amazon FreeRTOS #IoT operating system, which also affect its variants: OpenRTOS and SafeRTOS

https://thehackernews.com/2018/10/amazon-freertos-iot-os.html

Reported flaws could allow remote attackers to execute malicious code, leak information or crash targeted devices
Signal Secure Messaging App Introduces A New Feature Called "Sealed Sender" That Encrypts 🔒Sender's Identity Along with the Message ✉️

https://thehackernews.com/2018/10/signal-secure-messaging-metadata.html

Signal Aims to Further Reduce the Metadata Information That's Still Accessible to the Company.
Microsoft Windows 10 Built-in Defender Antivirus Becomes First #Antivirus to Have the Ability to Run Inside a Secure Sandbox

https://thehackernews.com/2018/10/windows-defender-antivirus-sandbox.html

Here's How You Can Turn It ON.
IBM to Acquire "Red Hat" Open-Source Software Company for $34 Billion

https://thehackernews.com/2018/10/ibm-redhat-tech-acquisition.html

One of the Largest Tech-Deals that Could Reshape the Future of Cloud Computing
Who says hacking is difficult! 🤣 It's fun.
👏3
*NEW* — *NEW* — iPhone Passcode Bypass Discovered Just Hours After Apple Releases the Latest iOS 12.1

This easy-to-perform technique exploits the new Group FaceTime feature and works without Siri or VoiceOver.

https://thehackernews.com/2018/10/iphone-ios-passcode-bypass.html