The Hacker News
151K subscribers
1.84K photos
9 videos
3 files
7.75K links
Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

📨 Contact: admin@thehackernews.com

🌐 Website: https://thehackernews.com
Download Telegram
Facebook has agreed to pay $90 million to settle a decade-old privacy breach lawsuit that accused the company of using web cookies to track users' Internet activity even after they logged off the platform.

Details: https://thehackernews.com/2022/02/facebook-agrees-to-pay-90-million-to.html
A new high-severity vulnerability (CVE-2021-44521) has been reported in the popular distributed NoSQL database software Apache Cassandra, which, if left unfixed, could lead to RCE attacks on affected installations.

Details: https://thehackernews.com/2022/02/high-severity-rce-security-bug-reported.html
European Union's data protection authority called for a ban on the development and use of Pegasus-like commercial spyware in the region.

Read details: https://thehackernews.com/2022/02/eu-data-protection-watchdog-calls-for.html
Trickbot malware has targeted the customers of 60 high-profile companies since 2020, including cryptocurrency platforms.

Details: https://thehackernews.com/2022/02/trickbot-malware-targeted-customers-of.html
U.S. government agencies FBI, NSA, CISA release joint advisory accusing state-sponsored Russian hackers of regularly attacking several U.S. cleared defense contractors to steal proprietary documents and other confidential information.

https://thehackernews.com/2022/02/us-says-russian-hackers-stealing.html
The politically motivated "Moses Staff" hacker group has been observed using a custom multi-component toolset with the goal of carrying out cyberespionage against Israeli organizations.

Read: https://thehackernews.com/2022/02/moses-staff-hackers-targeting-israeli.html
👍1
Researchers have unpacked a new Golang-based botnet called "Kraken," which is under active development and features an array of backdoor capabilities.

Read details: https://thehackernews.com/2022/02/researchers-warn-of-new-golang-based.html
Researchers release a new open-source tool called "Underactor" that can uncover pixelated text from redacted documents and reveal sensitive data.

Read details: https://thehackernews.com/2022/02/this-new-tool-can-retrieve-pixelated.html
Google announced plans to bring its "Privacy Sandbox" initiative to Android to expand its privacy-focused but also less disruptive advertising technology beyond the desktop web.

Read details: https://thehackernews.com/2022/02/google-bringing-privacy-sandbox-to.html
Adobe releases patches for another critical vulnerability (CVE-2022-24087) discovered in the Adobe Commerce and Magento eCommerce platforms that could be exploited to execute arbitrary code.

Read details: https://thehackernews.com/2022/02/another-critical-rce-discovered-in.html
👍1
Cisco has released security updates to patch 3 vulnerabilities affecting its products, including one high-severity flaw that attackers can exploit by sending an email to crash Cisco Email Security Appliances.

Read details: https://thehackernews.com/2022/02/attackers-can-crash-cisco-email.html
A "potentially destructive actor" aligned with the Iranian government is actively exploiting the known Log4j vulnerability to infect unpatched VMware Horizon servers with ransomware.

Read details: https://thehackernews.com/2022/02/iranian-hackers-targeting-vmware.html
A set of new Linux vulnerabilities have been discovered in Canonical's Snap for software packaging and deployment system, the most critical of which can be exploited to gain root privileges on targeted systems.

Read details: https://thehackernews.com/2022/02/new-linux-privilege-escalation-flaw.html
👍1
Researchers have found that several computers in SouthKorea are being attacked by a botnet called "PseudoManuscrypt" using the same spreading tactics as another malware called CryptBot.

Read details: https://thehackernews.com/2022/02/pseudomanuscrypt-malware-spreading-same.html
👍1
Microsoft warns of emerging 'Ice Phishing' threats targeting Web3, blockchain, DeFi, smart contracts and other decentralized technologies.

Read details: https://thehackernews.com/2022/02/microsoft-warns-of-ice-phishing-threat.html
WordPress pushes patch for a new high-severity vulnerability in UpdraftPlus, a popular backup plugin with over 3 million active installations, which can be weaponized to download affected sites private data.

Details: https://thehackernews.com/2022/02/critical-flaw-uncovered-in-wordpress.html
The U.S. cybersecurity agency CISA publishes a repository of free tools and services to help organizations detect, mitigate, and respond effectively to malicious attacks.

Details: https://thehackernews.com/2022/02/us-cybersecurity-agency-publishes-list.html
👍1
Researchers retrieve the master key to unlock files locked by the Hive ransomware by exploiting a vulnerability in its encryption algorithm.

Read details: https://thehackernews.com/2022/02/master-key-for-hive-ransomware.html
Hackers are using infected Android devices to register mass disposable accounts that can be abused by cybercriminals to create phone-verified accounts for fraud and other criminal activities.

Details: https://thehackernews.com/2022/02/hackers-exploit-bug-in-sms-verification.html
Researchers uncover details of a recent cyberattack that targeted Iranian State Broadcaster IRIB with an unidentified destructive wiper malware.

https://thehackernews.com/2022/02/iranian-state-broadcaster-irib-hits-by_21.html