The Hacker News
152K subscribers
1.87K photos
10 videos
3 files
7.79K links
Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

📨 Contact: admin@thehackernews.com

🌐 Website: https://thehackernews.com
Download Telegram
Uber says the hacker responsible for the latest security breach is linked to the Lapsus$ extortion group.

Read: https://thehackernews.com/2022/09/uber-blames-lapsus-hacking-group-for.html
🤔42🔥157👍7😁7
Researchers have discovered a threat cluster associated with Sandworm that continues to attack Ukraine with off-the-shelf #malware masquerading as telecommunications providers.

Read: https://thehackernews.com/2022/09/russian-sandworm-hackers-impersonate.html
😁23🤔16👍14🔥5
CISA and Claroty researchers warn of newly identified critical remotely exploitable vulnerabilities in Dataprobe's popular iBoot-PDU power distribution unit product, mostly used in industrial environments and data centers.

Read: https://thehackernews.com/2022/09/critical-remote-hack-flaws-found-in.html
🤯17👍126🤔4
Researchers recorded a massive DDoS attack involving more than 25.3 billion requests from nearly 170,000 IPs that included routers, security cameras and compromised servers in more than 180 countries, including the U.S., Indonesia and Brazil.

https://thehackernews.com/2022/09/record-ddos-attack-with-253-billion.html
🤯6611👍7👏4🔥3
U.S. Federal Communications Commission (FCC) has added two more Chinese telecommunication companies, ComNet & China Unicom, to its list of communications equipment and services deemed a threat to national security.

Read: https://thehackernews.com/2022/09/us-adds-2-more-chinese-telecom-firms-to.html
😁27👍10🤔8👏7🔥65🤯5
Hackers stole $160 million worth of digital assets from crypto trading platform Wintermute.

Read: https://thehackernews.com/2022/09/crypto-trading-firm-wintermute-loses.html
🤯59😁22😱16👍86🔥5👏5🤔3
Researchers found over 39,000 unauthenticated Redis database instances exposed on the Internet, nearly 50% of which showed signs of attempted compromise.

Read: https://thehackernews.com/2022/09/over-39000-unauthenticated-redis.html
👍40🤔8😱6🔥4
Hackers are actively exploiting an unauthenticated RCE vulnerability (CVE-2022-26134) in unpatched Atlassian Confluence servers to deploy cryptocurrency mining malware.

Read: https://thehackernews.com/2022/09/hackers-targeting-unpatched-atlassian.html
👏30🤯12👍10😁8🔥2
A 15-year-old unpatched Python vulnerability potentially affects as many as 350,000 open-source projects, leaving them vulnerable to code execution attacks.

Read: https://thehackernews.com/2022/09/15-year-old-unpatched-python.html
🤯82😱17😁15🤔7👍43👏2
Researchers have uncovered a new vulnerability in Oracle Cloud Infrastructure (OCI) that could be exploited by users to access the virtual disks of other Oracle customers.

Read: https://thehackernews.com/2022/09/researchers-disclose-critical.html
24👍17😱6🤔5👏3
A malicious NPM package masquerading as Material Tailwind has been discovered, indicating that threat actors are attempting to distribute malicious code via open source software repositories.

Read: https://thehackernews.com/2022/09/malicious-npm-package-caught-mimicking.html
😱28👍14🤯6
Researchers have discovered a new wave of mobile surveillance targeting the Uyghur community, part of an ongoing spying operation that has been active since at least 2015.

Read: https://thehackernews.com/2022/09/researchers-uncover-years-long-mobile.html
😱35👍123
Microsoft warns that hackers are using malicious OAuth applications to gain control of Exchange email servers and spread spam to cloud tenants.

Read: https://thehackernews.com/2022/09/hackers-using-malicious-oauth-apps-to.html
👍28🤔11😱6🔥4
Indian banks' customers are being targeted by a malicious campaign in which attackers infect their Android devices with a fake REWARD app to steal their personal data.

Read: https://thehackernews.com/2022/09/fake-indian-banking-rewards-apps.html
👍23🤔9😱93👏3
Void Balaur hacker-for-hire group has shifted its focus to target Russian businesses and political entities.

Read: https://thehackernews.com/2022/09/void-balaur-hackers-for-hire-group-now.html
👍31😁11🤔2
CISA has added a recently disclosed critical vulnerability in Zoho ManageEngine to its Known Exploited Vulnerabilities (KEV) catalog due to evidence of an active attack.

Read: https://thehackernews.com/2022/09/cisa-warns-of-hackers-exploiting-recent.html
🤯25👍15🔥5😁3
Researchers have identified a previously unknown APT hacking group, dubbed Metador, which has infiltrated telecommunications companies, universities, Internet service providers in the Middle East and Africa.

Read: https://thehackernews.com/2022/09/researchers-uncover-new-metador-apt.html
😱40👍21🤯115👏1
Sophos has warned of cyberattacks targeting a recently fixed critical RCE vulnerability (CVE-2022-3236) in its firewall product.

Read: https://thehackernews.com/2022/09/hackers-actively-exploiting-new-sophos.html
👍31🤯19😁4😱3
London police have arrested a 17-year-old Oxfordshire teenager on suspicion of hacking, possibly in connection with the recent high-profile hacking attacks on Uber and Rockstar Games.

Read: https://thehackernews.com/2022/09/london-police-arrested-17-year-old.html
🤯119🤔31👍27👏15😁14🔥98😱5
Ukrainian authorities have arrested a hacking group that sold personal data from 30 million accounts belonging to citizens of #Ukraine and the European Union for a profit of $372,000.

Read: https://thehackernews.com/2022/09/ukraine-arrests-cybercrime-group-for.html
😱42🤯16👍15🔥14😁6👏3