The Hacker News
βœ”
151K subscribers
1.84K photos
9 videos
3 files
7.75K links
⭐ Official THN Telegram Channel β€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

πŸ“¨ Contact: admin@thehackernews.com

🌐 Website: https://thehackernews.com
Download Telegram
New findings suggest the ArcaneDoor cyber espionage campaign targeting network devices from Cisco (CVE-2024-20353, CVE-2024-20359) and others may be linked to China-based actors.

Read: https://thehackernews.com/2024/05/china-linked-hackers-suspected-in.html

The attacks used custom Line Runner and Line Dancer malware.
πŸ”₯16πŸ‘13😱4
Cyberattacks can be a financial nightmare for SMBs. From operational disruptions to data loss and ransom demands, the costs can quickly drain your resources.

Discover how a managed EDR solution can help prevent these catastrophic expenses: https://thehackernews.com/2024/05/it-costs-how-much-financial-pitfalls-of.html
πŸ‘12πŸ€”10🀯4πŸ‘1
Russian operator of BTC-e crypto exchange pleads guilty to money laundering charges spanning 2011-2017. Alexander Vinnik admitted to facilitating transactions for cybercriminals worldwide.

Find details here: https://thehackernews.com/2024/05/russian-operator-of-btc-e-crypto.html
πŸ‘9πŸ‘7🀯4πŸ€”2
Google is streamlining 2-factor authentication (2FA) for personal and Workspace accounts!

πŸ” No more SMS codes needed - you can now directly add authenticator apps or security keys.

Learn more: https://thehackernews.com/2024/05/google-simplifies-2-factor.html
πŸ‘25πŸ”₯5😁3
πŸ•΅οΈβ€β™€οΈ MITRE research firm reveals alarming details about a recent cyber attack that dates back to late 2023.

Adversary used backdoors, web shells, and credential harvesting to breach VMware infrastructure.

πŸ”— Read details: https://thehackernews.com/2024/05/china-linked-hackers-used-rootrot.html
πŸ‘16😱1
A simple "Thank you" comment hid a dangerous vulnerability that exposed customer data.

This eye-opening case study shows why robust web security measures are crucial for any site with user communities.

Learn more: https://thehackernews.com/2024/05/new-case-study-malicious-comment.html
πŸ‘17πŸ€”6πŸ‘2🀯2
🚨 ALERT: Iranian hackers (APT42) posing as journalists and event organizers to launch cyber attacks on NGOs, media, academia, and activists.

Learn how they gain access here: https://thehackernews.com/2024/05/apt42-hackers-pose-as-journalists-to.html
πŸ‘20😁12⚑3πŸ‘3πŸ”₯1
🚨 BREAKING!!!

Authorities have unmasked the administrator behind the prolific LockBit ransomware as 31-year-old Russian national Dmitry Yuryevich Khoroshev.

Read details here: https://thehackernews.com/2024/05/russian-hacker-dmitry-khoroshev.html
🀯55πŸ”₯13πŸ‘9πŸ‘7πŸ€”7😁4
⚠️ URGENT: A critical flaw in the hugely popular LiteSpeed Cache plugin for WordPress is being exploited in the wild to create rogue admin accounts, granting attackers full control of affected sites.

Details here: https://thehackernews.com/2024/05/hackers-exploiting-litespeed-cache-bug.html

Stay safe, update ASAP!
πŸ”₯15πŸ‘10
DORA, the EU's new cybersecurity regulation for financial institutions, is more than just a compliance check. It mandates rigorous testing of operational resilience.

Learn how you can quantify risks & prioritize remediation efforts.

Read: https://thehackernews.com/expert-insights/2024/05/dora-guiding-resilience-of-digital.html
πŸ‘24😁3⚑1
🚨 Alert: The new version of HijackLoader is stealthier than ever with advanced modules designed to outsmart detection tools.

It can now:
βœ… Exclude Windows Defender
βœ… Bypass UAC
βœ… Evade API hooking
βœ… Employ process hollowing

Read: https://thehackernews.com/2024/05/hijack-loader-malware-employs-process.html
πŸ‘14πŸ”₯13πŸ€”8😁4⚑2
πŸ” Researchers found a new attack called "Pathfinder" that extracts encryption keys and data from Intel CPUs.

This technique bypasses current Spectre mitigations by manipulating the CPU's branch prediction system.

Details here: https://thehackernews.com/2024/05/new-spectre-style-pathfinder-attack.html
πŸ€”15πŸ‘12😱9😁5πŸ‘2⚑1
Get Certificate in Cybersecurity Risk Management!

With a graduate certificate from Georgetown, you’ll develop strategic knowledge of cyber strategies that increase security.

Learn more: https://thn.news/georgetown-cybersec-cert-insta
πŸ‘23πŸ”₯4😱3⚑2πŸ€”1
🚨 Researchers found 2 CRITICAL vulnerabilities in F5 Next Central Manager that could let attackers create secret backdoor ADMIN accounts for full control, evading detection even after patching.

Read details here: https://thehackernews.com/2024/05/critical-f5-central-manager.html
πŸ”₯15πŸ‘8😱2πŸ‘1
Cloud Security isn't just the provider's responsibility. Did you know that as an org, you're responsible for securing everything you create in the cloud?

πŸ” Discover the must-know cloud pentesting building blocks - read on: https://thehackernews.com/2024/05/the-fundamentals-of-cloud-security.html
πŸ”₯17πŸ‘14
Researchers have uncovered a sophisticated attack chain targeting Ivanti Connect Secure devices.

Two vulnerabilities (CVE-2023-46805 and CVE-2024-21887) are being exploited to deliver the infamous Mirai botnet payload.

More details: https://thehackernews.com/2024/05/mirai-botnet-exploits-ivanti-connect.html
πŸ‘27πŸ€”1
πŸ›‘οΈ Did you know a centralized permissions inventory can significantly reduce your SaaS attack surface?

By identifying and removing unnecessary user permissions, it minimizes the avenues for malicious actors to exploit.

Learn more: https://thehackernews.com/2024/05/a-saas-security-challenge-getting.html
πŸ‘24
πŸ‡΅πŸ‡± Polish government bodies were hit by a sophisticated malware attack orchestrated by the infamous APT28 hacking group.

The campaign employed cunning tactics like email lures and legitimate service abuse to evade detection.

Details: https://thehackernews.com/2024/05/kremlin-backed-apt28-targets-polish.html
πŸ‘22πŸ€”6⚑4😁3πŸ”₯1
Researchers have uncovered a vulnerability (CVE-2024-3661) that allows threat actors to snoop on your VPN traffic.

Named "TunnelVision," the attack works by abusing a DHCP option to alter your device's routing table.

Details here: https://thehackernews.com/2024/05/new-tunnelvision-attack-allows.html
🀯22πŸ”₯10πŸ‘6😱6⚑2πŸ‘2
🚨 Researchers have uncovered a new attack called "LLMjacking" that targets large language models (LLMs) hosted on cloud services.

Attackers steal cloud credentials to gain unauthorized access and sell it to other threat actors.

Read: https://thehackernews.com/2024/05/researchers-uncover-llmjacking-scheme.html
πŸ”₯17πŸ‘7πŸ€”4⚑1πŸ‘1
πŸ”’ Malicious Android apps are using the icons of well-known appsβ€”like Google, WhatsApp, and Instagramβ€”to deceive users into installing them and steal their credentials.

Learn how these apps trick users into giving away control: https://thehackernews.com/2024/05/malicious-android-apps-pose-as-google.html
πŸ‘16πŸ”₯13