The Hacker News
βœ”
151K subscribers
1.86K photos
10 videos
3 files
7.77K links
⭐ Official THN Telegram Channel β€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

πŸ“¨ Contact: admin@thehackernews.com

🌐 Website: https://thehackernews.com
Download Telegram
Ukrainian police have arrested 9 members of a cybercriminal gang that embezzled 100 million UAH via hundreds of phishing sites purporting to offer financial aid to Ukrainian citizens in order to capitalize on the ongoing conflict.

Read: https://thehackernews.com/2022/07/ukrainian-authorities-arrested-phishing.html
πŸ‘1
UPDATE your Google Chrome browser for Windows, macOS, Linux and Android devices to patch a newly discovered high-severity zero-day vulnerability (CVE-2022-2294) that is being exploited in the wild.

Details: https://thehackernews.com/2022/07/update-google-chrome-browser-to-patch.html
Researchers have described the various measures ransomware actors have taken to disguise their true identities online, as well as some techniques to reveal the hosting location of their web server infrastructure.

Read: https://thehackernews.com/2022/07/researchers-share-techniques-to-uncover.html
πŸ‘1πŸ€”1
A pro-China influence campaign singled out rare earth mining companies in Australia, Canada, and the U.S. with negative messages in an unsuccessful attempt to manipulate public discourse in China's favor.

Read: https://thehackernews.com/2022/07/pro-china-group-uses-dragonbridge.html
πŸ‘1
Researchers have uncovered a new widespread supply-chain attack campaign distributing malicious NPM packages designed to steal sensitive data from forms embedded in mobile apps and websites.

Details: https://thehackernews.com/2022/07/researchers-uncover-malicious-npm.html
Hive ransomware-as-a-service operators have switched their file-encrypting malware to Rust programming and adopted a more sophisticated encryption method.

Read: https://thehackernews.com/2022/07/hive-ransomware-upgrades-to-rust-for.html
State-sponsored hackers have been observed abusing a red-teaming and adversarial attack simulation tool called (Brute Ratel C4) BRc4 for their attacks to stay under the radar and evade detection.

Read: https://thehackernews.com/2022/07/hackers-abusing-brc4-red-team.html
πŸ‘2
A security patch has been released for OpenSSL to fix a high-severity bug (CVE-2022-2274) in the cryptographic library that could lead to remote code execution attacks in certain scenarios.

Read: https://thehackernews.com/2022/07/openssl-releases-patch-for-high.html
πŸ‘1
NIST has announced the first set of four quantum-resistant cryptographic algorithms selected as winners in its six-year cryptographic competition to protect against quantum-based threats.

Read: https://thehackernews.com/2022/07/nist-announces-first-four-quantum.html
πŸ‘4
Apple introduces a new security feature called "Lockdown Mode" on iPhone, iPad and Mac devices to protect high-risk users from spyware attacks by state-sponsored hackers.

Details: https://thehackernews.com/2022/07/apples-new-lockdown-mode-protects.html
Researchers have taken the wraps off a new and previously undiscovered Linux threat dubbed "OrBit" that uses a unique method of hijacking execution flow to load the malicious library.

Read: https://thehackernews.com/2022/07/researchers-warn-of-new-orbit-linux.html
πŸ‘1
CuteBoi !!!

Researchers have uncovered a new large-scale cryptocurrency mining campaign involving over 1200 malicious NPM JavaScript packages uploaded by over a thousand different user accounts.

Read: https://thehackernews.com/2022/07/over-1200-npm-packages-found-involved.html
πŸ‘1
U.S. cybersecurity and intelligence agencies warn of hackers backed by the North Korean government attacking the healthcare sector with the Maui ransomware.

Read: https://thehackernews.com/2022/07/north-korean-maui-ransomware-actively.html
Researchers have uncovered 350 variants of a malicious browser extension used in a widespread adware campaign that targets all major web browsers, including Google Chrome, Opera and Mozilla Firefox.

Read: https://thehackernews.com/2022/07/experts-uncover-350-browser-extension.html
Microsoft appears to have quietly reversed its decision to disable Visual Basic for Applications (VBA) macros in its Office productivity suite by default, just five months after announcing the changes.

Read: https://thehackernews.com/2022/07/microsoft-quietly-rolls-back-plan-to.html
Researchers detail a wide range of constantly evolving techniques used by LockBit ransomware uses to infect targets and disable endpoint security solutions.

Details: https://thehackernews.com/2022/07/researchers-detail-techniques-lockbit.html
Cybersecurity researchers are drawing attention to an ongoing wave of attacks linked to Raspberry Robin hackers spreading Windows malware with worm-like capabilities.

Read: https://thehackernews.com/2022/07/researchers-warn-of-raspberry-robins.html
UPDATE β€” Microsoft confirms to The Hacker News that its decision to reverse course, which does not disable VBA macros by default, is β€œtemporary” and the company is working on some additional changes to improve the user experience.

Read: https://thehackernews.com/2022/07/microsoft-quietly-rolls-back-plan-to.html
πŸ‘1
PyPI software repository mandates 2-factor authentication for critical Python projects and offering free hardware security keys to developers.

Read: https://thehackernews.com/2022/07/pypi-repository-makes-2af-security.html
πŸ‘2
One of Axie Infinity's former employees was reportedly tricked into accepting a fraudulent job offer on LinkedIn, leading to the $540 million hack in March 2022.

Read details: https://thehackernews.com/2022/07/hackers-used-fake-job-offer-to-hack-and.html
πŸ‘1