💥 Busted! "Pompompurin" unmasked! New York man arrested for running notorious BreachForums hacking site.
Learn more: https://thehackernews.com/2023/03/pompompurin-unmasked-infamous.html
Learn more: https://thehackernews.com/2023/03/pompompurin-unmasked-infamous.html
🤯52👍11😁9🤔8🔥6⚡4😱1
🕷️ Mummy Spider, Gold Crestwood, TA542... whatever you call it, Emotet is back!
⚠️Now hiding in Microsoft OneNote email attachments to bypass macro-based security restrictions and compromise systems.
Learn more: https://thehackernews.com/2023/03/emotet-rises-again-evades-macro.html
⚠️Now hiding in Microsoft OneNote email attachments to bypass macro-based security restrictions and compromise systems.
Learn more: https://thehackernews.com/2023/03/emotet-rises-again-evades-macro.html
😁22🔥13🤯9👍6⚡2
🚨CatB ransomware operation utilizes DLL search order hijacking to evade detection and launch payloads.
Learn more: https://thehackernews.com/2023/03/researchers-shed-light-on-catb.html
Learn more: https://thehackernews.com/2023/03/researchers-shed-light-on-catb.html
👍32🔥9⚡4😁2🤯2
🚨 Cybersecurity Alert: Mispadu banking trojan targets Latin American countries, compromising legit websites and stealing credentials. Attackers' misconfiguration exposes 8 out of 20 Command & Control Servers, revealing over 90,000 stolen credentials from 17.5K unique websites across all sectors.
Learn more: https://thehackernews.com/2023/03/mispadu-banking-trojan-targets-latin.html
Learn more: https://thehackernews.com/2023/03/mispadu-banking-trojan-targets-latin.html
👍30🔥7😱7🤔5👏2😁2
Heads up! dotRunpeX is a new malware injector that distributes various known malware families via phishing emails and malicious Google Ads.
Learn more: https://thehackernews.com/2023/03/new-dotrunpex-malware-delivers-multiple.html
Learn more: https://thehackernews.com/2023/03/new-dotrunpex-malware-delivers-multiple.html
👍30🔥5😁1
💸 Over $1.6 million in cryptocurrency stolen from hot wallets due to a zero-day security flaw in General Bytes' ATM software.
Learn more: https://thehackernews.com/2023/03/hackers-steal-over-16-million-in-crypto.html
Learn more: https://thehackernews.com/2023/03/hackers-steal-over-16-million-in-crypto.html
🔥36🤯18👍10😁10😱9⚡2
55 zero-day vulnerabilities exploited in 2022, with Microsoft, Google, and Apple software the most targeted!
Though lower than 81 in 2021, still a significant uptick in recent years.
Learn more: https://thehackernews.com/2023/03/from-ransomware-to-cyber-espionage-55.html
Though lower than 81 in 2021, still a significant uptick in recent years.
Learn more: https://thehackernews.com/2023/03/from-ransomware-to-cyber-espionage-55.html
🤯27👍15😁5⚡4👏1🤔1
⚠️ Beware of ShellBot malware! Weak SSH credentials on #Linux servers are being exploited in a new campaign. ShellBot can perform DDoS attacks & exfiltrate data.
Learn more: https://thehackernews.com/2023/03/new-shellbot-ddos-malware-targeting.html
Learn more: https://thehackernews.com/2023/03/new-shellbot-ddos-malware-targeting.html
👍22🤯6⚡3🤔2
⚡️ New "Bad Magic" activity cluster targeting gov't, agriculture & transportation orgs in Donetsk, Lugansk & Crimea amid ongoing Russia-Ukraine conflict using a new modular framework, "CommonMagic."
Learn more: https://thehackernews.com/2023/03/new-bad-magic-cyber-threat-disrupt.html
Learn more: https://thehackernews.com/2023/03/new-bad-magic-cyber-threat-disrupt.html
👍26⚡5😱5😁3🤔3
BreachForums has been officially taken down, but the administrator promises "it's not the end."
Learn more: https://thehackernews.com/2023/03/breachforums-administrator-baphomet.html
Speculations arise that law enforcement may have obtained access to the site's configurations and user information.
Learn more: https://thehackernews.com/2023/03/breachforums-administrator-baphomet.html
Speculations arise that law enforcement may have obtained access to the site's configurations and user information.
🔥31👍13😱10🤔6⚡3🤯3👏2😁2
New malware alert!
REF2924, a threat group targeting entities in South and Southeast Asia, has been spotted deploying NAPLISTENER - an HTTP listener designed to evade network-based detection.
Learn more: https://thehackernews.com/2023/03/new-naplistener-malware-used-by-ref2924.html
REF2924, a threat group targeting entities in South and Southeast Asia, has been spotted deploying NAPLISTENER - an HTTP listener designed to evade network-based detection.
Learn more: https://thehackernews.com/2023/03/new-naplistener-malware-used-by-ref2924.html
🤯22👍14😁4🔥2⚡1
🚨 NuGet Repository under attack! New malicious campaign aims to infect DotNET developer systems with cryptocurrency stealer malware.
Learn more: https://thehackernews.com/2023/03/rogue-nuget-packages-infect-net.html
Beware of 13 rogue packages downloaded 160k+ times in the past month.
Learn more: https://thehackernews.com/2023/03/rogue-nuget-packages-infect-net.html
Beware of 13 rogue packages downloaded 160k+ times in the past month.
👍24😁8🤯7👏4🔥2⚡1
⚠️ CISA warns of critical flaws in Industrial Control Systems from Keysight, Delta Electronics, Siemens, VISAM, Rockwell Automation, and Hitachi Energy.
Learn more: https://thehackernews.com/2023/03/cisa-alerts-on-critical-security.html
Update your software ASAP to avoid potential security breaches!
Learn more: https://thehackernews.com/2023/03/cisa-alerts-on-critical-security.html
Update your software ASAP to avoid potential security breaches!
👍34🤯12🔥7👏5😁2
💻 Chinese state-sponsored 🕵️♂️ threat actors infiltrate Microsoft Exchange servers in new wave of cyber attacks on Middle East telecoms.
Learn more: https://thehackernews.com/2023/03/operation-soft-cell-chinese-hackers.html
Researchers find a custom variant of Mimikatz, called mim221, with new anti-detection features.
Learn more: https://thehackernews.com/2023/03/operation-soft-cell-chinese-hackers.html
Researchers find a custom variant of Mimikatz, called mim221, with new anti-detection features.
👍15⚡4😁3🤯3👏1
🚨 German and South Korean intel agencies warn of Kimsuky cyberattacks targeting Gmail inboxes via malicious browser extensions.
The group has also extended its attacks to Android malware strains such as FastFire, FastSpy, and RambleOn.
Read: https://thehackernews.com/2023/03/german-and-south-korean-agencies-warn.html
The group has also extended its attacks to Android malware strains such as FastFire, FastSpy, and RambleOn.
Read: https://thehackernews.com/2023/03/german-and-south-korean-agencies-warn.html
🔥19👍14😱5⚡2😁1
🔥 Heads up! New Nexus Android banking trojan is here, targeting 450 financial apps & crypto services.
It can even read 2FA codes from SMS & Google Authenticator by exploiting Android's accessibility services.
Learn more: https://thehackernews.com/2023/03/nexus-new-rising-android-banking-trojan.html
It can even read 2FA codes from SMS & Google Authenticator by exploiting Android's accessibility services.
Learn more: https://thehackernews.com/2023/03/nexus-new-rising-android-banking-trojan.html
👍29🤯22⚡9🔥6🤔4👏1
⚠️Chinese nation-state groups are getting better at bypassing security!
Learn more: https://thehackernews.com/2023/03/researchers-uncover-chinese-nation.html
They are now using TONEINS, TONESHELL, and PUBLOAD malware for more effective infiltration, as well as HIUPAN and ACNSHELL for reverse shell.
Learn more: https://thehackernews.com/2023/03/researchers-uncover-chinese-nation.html
They are now using TONEINS, TONESHELL, and PUBLOAD malware for more effective infiltration, as well as HIUPAN and ACNSHELL for reverse shell.
🤔17👍8🔥6🤯4😱3
Don't let third-party app access put your company's data at risk!
Join our upcoming webinar to learn about the potential dangers and get expert insights on how to keep your SaaS apps secure.
Learn from the experts - register today: https://thn.news/risk-of-3rd-party-saas-apps
Join our upcoming webinar to learn about the potential dangers and get expert insights on how to keep your SaaS apps secure.
Learn from the experts - register today: https://thn.news/risk-of-3rd-party-saas-apps
thehacker.news
Webinar: Inside the High Risk of 3rd-Party SaaS Apps
Don't be a victim of 3rd-Party SaaS App breaches - Learn how to protect your business!
👍29
🐍 Python developers, beware! Malicious package on PyPI uses Unicode to evade detection and deploy info-stealing malware!
📢 Learn more: https://thehackernews.com/2023/03/malicious-python-package-uses-unicode.html
📢 Learn more: https://thehackernews.com/2023/03/malicious-python-package-uses-unicode.html
👍20👏11🔥9⚡7
GitHub replaces RSA SSH host key after brief exposure in public repository to prevent any bad actor from impersonating the service or eavesdropping on users' operations over SSH.
Learn more: https://thehackernews.com/2023/03/github-swiftly-replaces-exposed-rsa-ssh.html
Learn more: https://thehackernews.com/2023/03/github-swiftly-replaces-exposed-rsa-ssh.html
🤯33👍21🤔16⚡6