🚨 New cybersecurity threat! AlienFox, a highly modular & constantly evolving toolset distributed on Telegram, enables attackers to harvest API keys & secrets from popular cloud service providers like AWS, Google Workspace, and Microsoft 365.
Learn more: https://thehackernews.com/2023/03/alienfox-malware-targets-api-keys-and.html
Learn more: https://thehackernews.com/2023/03/alienfox-malware-targets-api-keys-and.html
🔥26😱9👍5⚡1🤔1
🔥 A group of academics has uncovered a new fundamental flaw in IEEE 802.11 Wi-Fi protocol standard affecting Linux, FreeBSD, Android & iOS devices.
Read: https://thehackernews.com/2023/03/new-wi-fi-protocol-security-flaw.html
Hackers can hijack TCP connections or intercept web traffic, potentially executing a DoS attack.
Read: https://thehackernews.com/2023/03/new-wi-fi-protocol-security-flaw.html
Hackers can hijack TCP connections or intercept web traffic, potentially executing a DoS attack.
🔥37🤯15👍7👏6😁5⚡4🤔2
RedGolf, a highly-likely Chinese state-sponsored threat group, is using a new custom backdoor called KEYPLUG to target multiple sectors, including US government entities.
Learn more: https://thehackernews.com/2023/03/chinese-redgolf-group-targeting-windows.html
Learn more: https://thehackernews.com/2023/03/chinese-redgolf-group-targeting-windows.html
👍20⚡5🔥4🤔4😁2🤯2
Researchers reveal details on Super FabriXss, a high-risk vulnerability in Azure Service Fabric Explorer that can lead to unauthenticated RCE attacks on containers hosted on nodes.
Learn more: https://thehackernews.com/2023/03/researchers-detail-severe-super.html
Learn more: https://thehackernews.com/2023/03/researchers-detail-severe-super.html
🔥14👍11😁5😱5🤯1
3CX, has confirmed that multiple versions of its desktop app for Windows & macOS have been affected by a supply chain attack.
The attack appears to have compromised 3CX's software build pipeline.
Learn more: https://thehackernews.com/2023/03/3cx-supply-chain-attack-heres-what-we.html
The attack appears to have compromised 3CX's software build pipeline.
Learn more: https://thehackernews.com/2023/03/3cx-supply-chain-attack-heres-what-we.html
🤔18😁10🤯9👍2
Cyber Police of Ukraine, along with law enforcement officials from Czechia, have arrested several members of a cybercriminal gang that earned over $4.33 million in illicit profits through phishing scams.
Learn more: https://thehackernews.com/2023/03/cyber-police-of-ukraine-busted-phishing.html
Learn more: https://thehackernews.com/2023/03/cyber-police-of-ukraine-busted-phishing.html
👍31🔥12🤯9😁8👏5😱1
Cyber espionage group Winter Vivern (aka TA473) targets officials in Europe and U.S. by exploiting unpatched Zimbra vulnerability in gov't webmail portals.
Learn more: https://thehackernews.com/2023/03/winter-vivern-apt-targets-european.html
Learn more: https://thehackernews.com/2023/03/winter-vivern-apt-targets-european.html
👍19😁6🤔4⚡2🔥2👏2
🔥 WEBINAR | Become an Incident Response Pro!
Unlock the secrets to bulletproof incident Response – Master the 6-Phase process with Asaf Perlman, Cynet's IR Leader!
Don't Miss Out – Save Your Seat: https://thehackernews.com/2023/03/deep-dive-into-6-key-steps-to.html
Unlock the secrets to bulletproof incident Response – Master the 6-Phase process with Asaf Perlman, Cynet's IR Leader!
Don't Miss Out – Save Your Seat: https://thehackernews.com/2023/03/deep-dive-into-6-key-steps-to.html
⚡10👍10👏8🔥7😱4😁3🤯3
🚨 Urgent: Hackers are exploiting a high-severity flaw in the Elementor Pro plugin for WordPress, enabling them to take control of WooCommerce enabled sites. Update to version 3.11.7 or 3.12.0 immediately.
Learn more: https://thehackernews.com/2023/04/hackers-exploiting-wordpress-elementor.html
Learn more: https://thehackernews.com/2023/04/hackers-exploiting-wordpress-elementor.html
👏27😁8😱7🤔5👍4
🚨 High-risk security flaws in Cacti, Realtek, and IBM Aspera Faspex are being exploited by hackers!
Details: https://thehackernews.com/2023/04/cacti-realtek-and-ibm-aspera-faspex.html
Update your systems ASAP to protect against MooBot and ShellBot attacks.
Details: https://thehackernews.com/2023/04/cacti-realtek-and-ibm-aspera-faspex.html
Update your systems ASAP to protect against MooBot and ShellBot attacks.
😁12👍10🔥4🤔3👏2
🚨 Microsoft patches Azure Active Directory misconfiguration issue, which exposed high-impact apps to unauthorized access and could have allowed attackers to modify Bing search results.
Learn more: https://thehackernews.com/2023/04/microsoft-fixes-new-azure-ad.html
Learn more: https://thehackernews.com/2023/04/microsoft-fixes-new-azure-ad.html
👍31😱13😁7🔥6🤔3🤯2
Italy's data protection watchdog, Garante, temporarily bans OpenAI's ChatGPT, citing data protection concerns & potential violation of GDPR laws.
Learn more: https://thehackernews.com/2023/04/italian-watchdog-bans-openais-chatgpt.html
Despite the ban, apps using OpenAI's tech, such as Microsoft's Bing, are unaffected.
Learn more: https://thehackernews.com/2023/04/italian-watchdog-bans-openais-chatgpt.html
Despite the ban, apps using OpenAI's tech, such as Microsoft's Bing, are unaffected.
👏24👍11🤯10😁6
⚠️ Beware of OpcJacker! This stealthy malware is targeting users through fake websites, promising VPN services and more. Its main functions: keylogging, data theft, and crypto hijacking.
Learn more: https://thehackernews.com/2023/04/crypto-stealing-opcjacker-malware.html
Learn more: https://thehackernews.com/2023/04/crypto-stealing-opcjacker-malware.html
👍23😱6🤯4😁3
⚠️ Western Digital discloses a network security breach involving unauthorized access to its systems on March 26, 2023.
Learn more: https://thehackernews.com/2023/04/western-digital-hit-by-network-security.html
Investigation underway with the help of cybersecurity experts and law enforcement.
Learn more: https://thehackernews.com/2023/04/western-digital-hit-by-network-security.html
Investigation underway with the help of cybersecurity experts and law enforcement.
😁16🤯14👍12🤔9😱8🔥5
A supply chain attack targeting 3CX has been linked to North Korea's Lazarus Group, with the second-stage implant (Gopuram) specifically singling out a select few cryptocurrency companies.
Learn more: https://thehackernews.com/2023/04/cryptocurrency-companies-targeted-in.html
Learn more: https://thehackernews.com/2023/04/cryptocurrency-companies-targeted-in.html
👍10😁10🤯5⚡2
🔒 Microsoft is taking action against malware abuse in OneNote by automatically blocking embedded files with "dangerous extensions".
Find the full list of 120 extensions here: https://thehackernews.com/2023/04/microsoft-tightens-onenote-security-by.html
Find the full list of 120 extensions here: https://thehackernews.com/2023/04/microsoft-tightens-onenote-security-by.html
👍26🤯8⚡7🤔6
🔥 Arid Viper, aka Mantis, linked to Hamas' cyber warfare division, updates its malware toolkit (ViperRat, FrozenCell, Micropsia) targeting Palestinian entities across Windows, Android, & iOS platforms!🛡️💻
Learn more: https://thehackernews.com/2023/04/arid-viper-hacking-group-using-upgraded.html
Learn more: https://thehackernews.com/2023/04/arid-viper-hacking-group-using-upgraded.html
👍17👏9🤯4🔥3😁1
Beware of the new Rilide malware targeting Chromium-based browsers! This malicious extension steals sensitive data & siphons cryptocurrency while disguised as a legitimate Google Drive add-on.
Learn more: https://thehackernews.com/2023/04/new-rilide-malware-targeting-chromium.html
Learn more: https://thehackernews.com/2023/04/new-rilide-malware-targeting-chromium.html
🔥20👍6👏5😁5🤯1
🚨 Cybersecurity researchers uncover a new, sophisticated 🔐 ransomware strain called Rorschach. With unprecedented speed & unique features, it's raising the bar for future attacks.
Learn more: https://thehackernews.com/2023/04/rorschach-ransomware-emerges-experts.html
Learn more: https://thehackernews.com/2023/04/rorschach-ransomware-emerges-experts.html
👍32😱9🤔7👏6⚡5😁3🤯1
🚨 Alert: Typhon Reborn V2, a new version of the information-stealing malware, has emerged with enhanced capabilities to evade detection and resist analysis.
Learn more: https://thehackernews.com/2023/04/typhon-reborn-stealer-malware.html
Learn more: https://thehackernews.com/2023/04/typhon-reborn-stealer-malware.html
👍21🔥8😁6😱3