The Hacker News
152K subscribers
1.87K photos
10 videos
3 files
7.78K links
Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

📨 Contact: admin@thehackernews.com

🌐 Website: https://thehackernews.com
Download Telegram
Don't fall for fake messaging apps! Researchers have discovered trojanized versions of Telegram and WhatsApp infecting Android and Windows users with cryptocurrency clipper malware.

Learn more: https://thehackernews.com/2023/03/lookalike-telegram-and-whatsapp.html
😱23👍18🔥8🤔5🤯3
Watch out, HinataBot is here!

A new Golang-based botnet exploits unpatched vulnerabilities and weak credentials to take over routers and servers and launch DDoS attacks.

Learn more: https://thehackernews.com/2023/03/new-golang-based-hinatabot-exploiting.html
👍225😱3🔥2😁2
💻🛡️🔒 Outdated security strategies leaving you exposed?

Discover the power of the Identity Perimeter & Zero Trust Access in our can't-miss webinar featuring Dor Dali of Cyolo.

👉 Register now: https://thehackernews.com/2023/03/thn-webinar-3-research-backed-ways-to.html

Get practical tips to protect your business!
👍309👏6🤯4🤔2
🔐👾 LockBit 3.0 — FBI, CISA, and MS-ISAC have issued a joint advisory on this dangerous ransomware, detailing indicators of compromise, tactics, techniques and procedures.

Read: https://thehackernews.com/2023/03/lockbit-30-ransomware-inside.html
👍34😁9🔥76😱4🤯2👏1
⚠️ Suspected Chinese hacking group UNC3886 linked to zero-day exploitation in Fortinet FortiOS, targeting governments entities and large organizations.

Learn more: https://thehackernews.com/2023/03/chinese-hackers-exploit-fortinet-zero.html
👍23🔥11🤯5😁32
💥 Busted! "Pompompurin" unmasked! New York man arrested for running notorious BreachForums hacking site.

Learn more: https://thehackernews.com/2023/03/pompompurin-unmasked-infamous.html
🤯52👍11😁9🤔8🔥64😱1
🕷️ Mummy Spider, Gold Crestwood, TA542... whatever you call it, Emotet is back!

⚠️Now hiding in Microsoft OneNote email attachments to bypass macro-based security restrictions and compromise systems.

Learn more: https://thehackernews.com/2023/03/emotet-rises-again-evades-macro.html
😁22🔥13🤯9👍62
🚨CatB ransomware operation utilizes DLL search order hijacking to evade detection and launch payloads.

Learn more: https://thehackernews.com/2023/03/researchers-shed-light-on-catb.html
👍32🔥94😁2🤯2
🚨 Cybersecurity Alert: Mispadu banking trojan targets Latin American countries, compromising legit websites and stealing credentials. Attackers' misconfiguration exposes 8 out of 20 Command & Control Servers, revealing over 90,000 stolen credentials from 17.5K unique websites across all sectors.

Learn more: https://thehackernews.com/2023/03/mispadu-banking-trojan-targets-latin.html
👍30🔥7😱7🤔5👏2😁2
Heads up! dotRunpeX is a new malware injector that distributes various known malware families via phishing emails and malicious Google Ads.

Learn more: https://thehackernews.com/2023/03/new-dotrunpex-malware-delivers-multiple.html
👍30🔥5😁1
💸 Over $1.6 million in cryptocurrency stolen from hot wallets due to a zero-day security flaw in General Bytes' ATM software.

Learn more: https://thehackernews.com/2023/03/hackers-steal-over-16-million-in-crypto.html
🔥36🤯18👍10😁10😱92
55 zero-day vulnerabilities exploited in 2022, with Microsoft, Google, and Apple software the most targeted!

Though lower than 81 in 2021, still a significant uptick in recent years.

Learn more: https://thehackernews.com/2023/03/from-ransomware-to-cyber-espionage-55.html
🤯27👍15😁54👏1🤔1
⚠️ Beware of ShellBot malware! Weak SSH credentials on #Linux servers are being exploited in a new campaign. ShellBot can perform DDoS attacks & exfiltrate data.

Learn more: https://thehackernews.com/2023/03/new-shellbot-ddos-malware-targeting.html
👍22🤯63🤔2
⚡️ New "Bad Magic" activity cluster targeting gov't, agriculture & transportation orgs in Donetsk, Lugansk & Crimea amid ongoing Russia-Ukraine conflict using a new modular framework, "CommonMagic."

Learn more: https://thehackernews.com/2023/03/new-bad-magic-cyber-threat-disrupt.html
👍265😱5😁3🤔3
BreachForums has been officially taken down, but the administrator promises "it's not the end."

Learn more: https://thehackernews.com/2023/03/breachforums-administrator-baphomet.html

Speculations arise that law enforcement may have obtained access to the site's configurations and user information.
🔥31👍13😱10🤔63🤯3👏2😁2
New malware alert!

REF2924, a threat group targeting entities in South and Southeast Asia, has been spotted deploying NAPLISTENER - an HTTP listener designed to evade network-based detection.

Learn more: https://thehackernews.com/2023/03/new-naplistener-malware-used-by-ref2924.html
🤯22👍14😁4🔥21
🚨 NuGet Repository under attack! New malicious campaign aims to infect DotNET developer systems with cryptocurrency stealer malware.

Learn more: https://thehackernews.com/2023/03/rogue-nuget-packages-infect-net.html

Beware of 13 rogue packages downloaded 160k+ times in the past month.
👍24😁8🤯7👏4🔥21
⚠️ CISA warns of critical flaws in Industrial Control Systems from Keysight, Delta Electronics, Siemens, VISAM, Rockwell Automation, and Hitachi Energy.

Learn more: https://thehackernews.com/2023/03/cisa-alerts-on-critical-security.html

Update your software ASAP to avoid potential security breaches!
👍34🤯12🔥7👏5😁2
💻 Chinese state-sponsored 🕵️‍♂️ threat actors infiltrate Microsoft Exchange servers in new wave of cyber attacks on Middle East telecoms.

Learn more: https://thehackernews.com/2023/03/operation-soft-cell-chinese-hackers.html

Researchers find a custom variant of Mimikatz, called mim221, with new anti-detection features.
👍154😁3🤯3👏1
🚨 German and South Korean intel agencies warn of Kimsuky cyberattacks targeting Gmail inboxes via malicious browser extensions.

The group has also extended its attacks to Android malware strains such as FastFire, FastSpy, and RambleOn.

Read: https://thehackernews.com/2023/03/german-and-south-korean-agencies-warn.html
🔥19👍14😱52😁1