The Hacker News
151K subscribers
1.84K photos
9 videos
3 files
7.75K links
Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

📨 Contact: admin@thehackernews.com

🌐 Website: https://thehackernews.com
Download Telegram
Researchers reveal 30 new command-and-controlled servers belonging to the Russian hacking group APT29, which is currently delivering WellMess #malware as part of ongoing attacks against Windows and Linux systems.

Read details: https://thehackernews.com/2021/07/experts-uncover-several-c-servers.html
Solarmarker, a highly modular and constantly evolving information-stealing and keylogging malware, is once again on the rise, targeting #healthcare and education sectors.

Details: https://thehackernews.com/2021/08/solarmarker-infostealer-malware-once.html
A critical vulnerability in Python Package Index (PyPI) platform could have given attackers complete control over the official software repository, spawning supply-chain attacks.

Details: https://thehackernews.com/2021/08/pypi-python-package-repository-patches.html
A new APT hacker group, known as "Praying Mantis," is targeting high-profile public and private organizations in the U.S. by exploiting Microsoft IIS servers with ASP .net exploits to penetrate their networks.

Read: https://thehackernews.com/2021/08/new-apt-hacking-group-targets-microsoft.html
👍1
9 newly discovered vulnerabilities—dubbed PwnedPiper—leave a widely used Pneumatic Tube System (PTS) vulnerable to critical cyberattacks.

https://thehackernews.com/2021/08/pwnedpiper-pts-security-flaws-threaten.html

Affected systems are installed in 80% of major hospitals in the U.S. & in no fewer than 3,000 hospitals worldwide.
Chinese state hackers launched a series of cyberattacks against at least 5 major Southeast Asian telecom companies, researchers find.

Read details: https://thehackernews.com/2021/08/chinese-hackers-target-major-southeast.html
Critical vulnerabilities disclosed in "NicheStack" TCP/IP stack, used in millions of Operational Technology (OT) from more than 200 manufacturers & deployed in power generation, water treatment and critical infrastructure sectors.

Read: https://thehackernews.com/2021/08/critical-flaws-affect-embedded-tcpip.html
Researchers discover China APT31's new #spyware used in widespread cyber espionage attacks.

Details: https://thehackernews.com/2021/08/new-chinese-spyware-being-used-in.html

The group is linked to a series of cyberattacks targeting Mongolia, Russia, Belarus, Canada, and the U.S.
Researchers uncover "Webdav-O," malware used by Chinese state-sponsored hackers to target Russian federal executive agencies in 2020.

Read: https://thehackernews.com/2021/08/russian-federal-agencies-were-attacked.html
Several active #malware families targeting Windows IIS web servers with malicious modules.

Read: https://thehackernews.com/2021/08/several-malware-families-targeting-iis.html

Such backdoors were also deployed via the recent Microsoft Exchange vulnerability, with government entities among the main targets.
Cisco rolls out security patches to address critical vulnerabilities impacting Small Business VPN routers that could allow remote attackers to execute arbitrary code and launch DoS attacks.

Details: https://thehackernews.com/2021/08/cisco-issues-critical-security-patches.html
Beseechers uncovers 5 unpatched flaws in Mitsubishi Safety PLCs that could leave several industries vulnerable to remote attacks.

Read: https://thehackernews.com/2021/08/unpatched-security-flaws-expose.html

CISA warns -- "there are risks of communication data eavesdropping/ tampering, unauthorized operation and DoS attacks"
Several cybercriminal groups are leveraging Prometheus TDS malware-as-a-service (MaaS) solution to distribute a wide range of backdoors, including Campo Loader, Hancitor, IcedID, QBot, Buer Loader, and SocGholish.

Read: https://thehackernews.com/2021/08/a-wide-range-of-cyber-attacks.html
VMware has released security updates for several products to address a critical vulnerability that could be exploited to gain access to confidential information.

— Workspace One Access
— Identity Manager
— Cloud Foundation
— vRealize Automation

Details: https://thehackernews.com/2021/08/vmware-issues-patches-to-fix-critical.html
Koo, India's Twitter-like service, was found vulnerable to a critical wormable vulnerability that could be used to automatically launch widespread malicious attacks against hundreds of thousands of users without requiring any interaction.

Read: https://thehackernews.com/2021/08/indias-koo-twitter-like-service-found.html
Researchers reported a new flaw in Amazon Kindle that could have allowed remote attackers to take over your eBook reading device.

Read details: https://thehackernews.com/2021/08/new-amazon-kindle-bug-couldve-let.html
Apple introduces a new feature in iOS, iPadOS, watchOS and macOS that automatically scans data on all device for child abuse content.

Read: https://thehackernews.com/2021/08/apple-to-scan-every-device-for-child.html

However, cybersecurity and privacy experts are raising concerns that the project could enable mass surveillance.
A new security patch update for Pulse Secure VPNs has been released to address an incomplete patch previously issued for a critical RCE vulnerability (CVE-2020-8260) that was under active exploitation.

Read: https://thehackernews.com/2021/08/pulse-secure-vpns-get-new-urgent-update.html
Watch Out!

A new Android malware campaign—distributing apps via Google Play Store and other marketplaces—hacking Facebook accounts of tens of hundreds of users.

Read details: https://thehackernews.com/2021/08/beware-new-android-malware-hacks.html
A serious vulnerability in the hardware random number generators (RNGs) affects almost all Internet of Things (IoT) devices worldwide, undermining security related to #cryptography, access control, and authentication.

Details: https://thehackernews.com/2021/08/a-critical-random-number-generator-flaw.html