The Hacker News
βœ”
152K subscribers
1.86K photos
10 videos
3 files
7.78K links
⭐ Official THN Telegram Channel β€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

πŸ“¨ Contact: [email protected]

🌐 Website: https://thehackernews.com
Download Telegram
Discover the power of Python in blockchain development with AlgoKit!

Explore how you can build decentralized applications securely and efficiently.

Learn about setup, benefits, and getting started with dApps: https://thehackernews.com/2024/06/how-to-use-python-to-build-secure.html
πŸ‘17πŸ”₯4
Ensuring data security remains crucial, which is why GigaOm recently released a new DSPM report highlighting industry leaders.

Sentra has emerged as a leader and rapid innovator, receiving high scores for its data mapping, access intelligence, and on-premises capabilities.

View the full report here πŸ‘‡
https://thn.news/data-security-posture
πŸ‘16πŸ”₯6😱1
🚨 Alert: Rust-based worm P2PInfect botnet has evolved to target misconfigured Redis servers with ransomware and cryptocurrency miners, showcasing new financial motivations and advanced evasion techniques.

Learn more: https://thehackernews.com/2024/06/rust-based-p2pinfect-botnet-evolves.html
πŸ‘14πŸ”₯12⚑3😱3
Alert: TeamViewer detected an irregularity in its internal corporate IT environment. Investigations are ongoing to identify the attackers and the method of intrusion.

Learn more: https://thehackernews.com/2024/06/teamviewer-detects-security-breach-in.html
🀯19πŸ‘12😁7πŸ”₯2
Multiple critical vulnerabilities have been identified in Emerson Rosemount gas chromatographs that could be exploited to execute arbitrary commands, bypass authentication, and cause DoS conditions.

Read: https://thehackernews.com/2024/06/researchers-warn-of-flaws-in-widely.html
πŸ”₯8πŸ‘7⚑1
πŸ•΅οΈβ€β™‚οΈ Researchers unveil SnailLoad β€” a new side-channel attack exploiting network latency spy on users' web activity remotely, achieving up to 98% for video content and 63% for website visits.

Read: https://thehackernews.com/2024/06/new-snailload-attack-exploits-network.html
πŸ‘18🀯2😱2
From PowerShell scripts to mimicking legitimate apps, discover how the 8220 Gang exploits Oracle WebLogic Server vulnerabilities using fileless techniques for cryptocurrency mining.

Read: https://thehackernews.com/2024/06/8220-gang-exploits-oracle-weblogic.html
πŸ‘13😱3
Don't let your #SaaS become a trojan horse!

Threat actors exploit misconfigured settings, dormant machine IDs, unauthorized access to breach networks. Extend Zero Trust to SaaS with posture management to lock it down.

Learn more: https://thehackernews.com/2024/06/combatting-evolving-saas-kill-chain-how.html
πŸ‘15
GitLab releases security updates fixing 14 vulnerabilities, including critical CI/CD flaw CVE-2024-5655. Update now to ensure protection.

Read: https://thehackernews.com/2024/06/gitlab-releases-patch-for-critical-cicd.html
πŸ‘16😁6
🚨 Just when you thought your biggest online worry was autocorrect... Think again!

North Korean Kimsuky group is using a new malicious Chrome extension, TRANSLATEXT, to steal sensitive info from South Korean academia.

Details here: https://thehackernews.com/2024/06/kimsuky-using-translatext-chrome.html
πŸ‘15😁10🀯4
⚠️ Attention website operators! Starting Nov 1, 2024, Google Chrome will block sites using Entrust certificates due to security issues.

Read: https://thehackernews.com/2024/06/google-to-block-entrust-certificates-in.html

Don't get caught off guardβ€”switch to a trusted CA before it's too late.
πŸ‘40😱7πŸ€”6πŸ‘4😁4πŸ”₯3
🚨 Critical Alert for Network Admins!

Juniper Networks just dropped an urgent security patch.

➟ CVE-2024-2973: Authentication bypass flaw
➟ CVSS score: 10.0
➟ Affects Session Smart Router & Conductor in HA configs

Read: https://thehackernews.com/2024/07/juniper-networks-releases-critical.html
πŸ”₯16πŸ‘5πŸ‘2😱1
🚨 A critical OpenSSH flaw (CVE-2024-6387) allows unauthenticated remote code execution on glibc-based Linux systems. 14 million servers at risk.

https://thehackernews.com/2024/07/new-openssh-vulnerability-could-lead-to.html

Apply the latest patches now!
😱31πŸ”₯10πŸ‘8⚑3🀯3😁1
πŸ›‘ ALERT: Software from Conceptworld trojanized to spread info-stealing malware!

If you downloaded Notezilla, RecentX, or Copywhiz in June, check your systems NOW!

Details here: https://thehackernews.com/2024/07/indian-software-firms-products-hacked.html
πŸ”₯11πŸ‘4
Explore end-to-end secrets security strategies to protect machine identities, prevent breaches, and empower developers with secure credential management practices.

Read: https://thehackernews.com/2024/07/end-to-end-secrets-security-making-plan.html
πŸ‘10πŸ”₯7
Transparent Tribe launches a new Android malware campaign, targeting mobile users with CapraRAT spyware disguised as popular apps.

Read: https://thehackernews.com/2024/07/caprarat-spyware-disguised-as-popular.html
πŸ”₯9πŸ‘6⚑4😱3
πŸ”’ iOS & macOS devs, heads up!

Discover how 3 new vulnerabilities in CocoaPods, a popular Apple developer tool, could lead to supply chain attacks on iOS & macOS apps.

Details here: https://thehackernews.com/2024/07/critical-flaws-in-cocoapods-expose-ios.html

Ensure your dependencies are up-to-date.
πŸ‘10😁9πŸ”₯3πŸ‘2
⚠️ Think twice before connecting to "free" Wi-Fi...

A 42-year-old Australian man charged for running fake Wi-Fi hotspots on πŸ›« flights to steal personal data of passengers.

Learn more: https://thehackernews.com/2024/07/australian-man-charged-for-fake-wi-fi.html
😁23πŸ‘16🀯15⚑3πŸ”₯1
Heads up! China-linked hackers are exploiting a zero-day vulnerability in Cisco NX-OS to execute commands as root, undetected, and deliver malware.

Read details: https://thehackernews.com/2024/07/chinese-hackers-exploiting-cisco.html
πŸ‘19⚑9😁9🀯1
🌐 Meta's ad-free option in the E.U. hits another roadblock! Regulators say "pay or consent" model breaches competition rules.

But is offering choices really a breach? What’s your take?

Read: https://thehackernews.com/2024/07/metas-pay-or-consent-approach-faces-eu.html
πŸ‘18😁6πŸ‘3⚑2