Vietnamese public companies under attack! APT32 hackers are utilizing the new SPECTRALVIPERβa hidden backdoor packed with powerful capabilities.
Learn more about this cyber threat here: https://thehackernews.com/2023/06/new-spectralviper-backdoor-targeting.html
Learn more about this cyber threat here: https://thehackernews.com/2023/06/new-spectralviper-backdoor-targeting.html
π28π€―6β‘5π₯5π4π€2
Apple unveils powerful new privacy and security features!
Link Tracking Protection in Mail, Messages, and Safari's private mode now automatically removes tracking parameters in URLs.
Learn more: https://thehackernews.com/2023/06/apples-safari-private-browsing-now.html
Link Tracking Protection in Mail, Messages, and Safari's private mode now automatically removes tracking parameters in URLs.
Learn more: https://thehackernews.com/2023/06/apples-safari-private-browsing-now.html
π35π17π4π±1
β οΈ Urgent: A new critical RCE security vulnerability (CVE-2023-27997) in FortiGate firewalls has been discovered. Update to the latest versions to secure your network against potential remote code execution.
Read details: https://thehackernews.com/2023/06/critical-rce-flaw-discovered-in.html
Read details: https://thehackernews.com/2023/06/critical-rce-flaw-discovered-in.html
π₯15π9π5π€―3
Heads up! A massive campaign involving over 1,000 fraudulent cryptocurrency websites has scammed thousands of people worldwide with false promises of huge rewards.
Don't fall for their trickery β spread the word: https://thehackernews.com/2023/06/beware-1000-fake-cryptocurrency-sites.html
Don't fall for their trickery β spread the word: https://thehackernews.com/2023/06/beware-1000-fake-cryptocurrency-sites.html
π15π₯7π6
Security researcher uncovers major vulnerabilities in Honda's e-commerce platform, exposing sensitive dealer information. This flaw could have allowed unrestricted access to data.
Learn more: https://thehackernews.com/2023/06/password-reset-hack-exposed-in-hondas-e.html
Learn more: https://thehackernews.com/2023/06/password-reset-hack-exposed-in-hondas-e.html
π20π₯4
Researchers have uncovered a new flaw (CVE-2023-28299) in the Microsoft Visual Studio installer that could allow attackers to impersonate trusted publishers and distribute malicious extensions.
Read details: https://thehackernews.com/2023/06/researchers-uncover-publisher-spoofing.html
Read details: https://thehackernews.com/2023/06/researchers-uncover-publisher-spoofing.html
π32β‘13π±7
Cybersecurity is evolving! Attack Surface Management is leading the πͺ frontlines. Want to know why it's critical for your organization?
π Learn more: https://thehackernews.com/2023/06/why-now-rise-of-attack-surface.html
π Learn more: https://thehackernews.com/2023/06/why-now-rise-of-attack-surface.html
π27π₯3β‘2
Two Russian masterminds charged for orchestrating the 2014 Mt. Gox cryptocurrency exchange hack. These hackers stole a whopping 647,000 bitcoins and contributed to the exchange's collapse.
Read details: https://thehackernews.com/2023/06/two-russian-nationals-charged-for.html
Read details: https://thehackernews.com/2023/06/two-russian-nationals-charged-for.html
π₯32π11π±11π€6π4β‘2π2
β οΈ Attention, organizations! A global wave of email attacks is underway! Hackers are using "adversary-in-the-middle" techniques to bypass Office365 authentication and gain persistent access to compromised accounts.
Learn more: https://thehackernews.com/2023/06/adversary-in-middle-attack-campaign.html
Learn more: https://thehackernews.com/2023/06/adversary-in-middle-attack-campaign.html
π€―26π9π€7π₯3
Hackers are actively exploiting the latest Fortinet's FortiOS and FortiProxy flaw, targeting government, manufacturing, and critical infrastructure sectors.
Learn more: https://thehackernews.com/2023/06/critical-fortios-and-fortiproxy.html
Take immediate action and update to the latest firmware now!
Learn more: https://thehackernews.com/2023/06/critical-fortios-and-fortiproxy.html
Take immediate action and update to the latest firmware now!
π€―20π9π₯8π±6
Heads up, everyone! DoubleFinger, a multi-stage loader, delivers the notorious GreetingGhoul stealer, targeting cryptocurrency users worldwide in Europe, the U.S., and Latin America.
Learn more: https://thehackernews.com/2023/06/beware-new-doublefinger-loader-targets.html
Learn more: https://thehackernews.com/2023/06/beware-new-doublefinger-loader-targets.html
π19π5π€5π4π₯3
Attention! Microsoft just released software updates to fix over 70 security vulnerabilities.
It's a relatively light patch load this month, and the best part? No active exploitation of zero-day vulnerabilities reported.
Read: https://thehackernews.com/2023/06/microsoft-releases-updates-to-patch.html
It's a relatively light patch load this month, and the best part? No active exploitation of zero-day vulnerabilities reported.
Read: https://thehackernews.com/2023/06/microsoft-releases-updates-to-patch.html
π€―30π₯8π6β‘2
Researchers uncover Skuld, a potent Golang-based information stealer that targets Discord, web browsers, and sensitive files on Windows systems.
Read: https://thehackernews.com/2023/06/new-golang-based-skuld-malware-stealing.html
Read: https://thehackernews.com/2023/06/new-golang-based-skuld-malware-stealing.html
π14π₯9
Heads up, online store owners! A critical flaw has been discovered in the WooCommerce Stripe Gateway WordPress plugin, potentially exposing sensitive information.
Learn more: https://thehackernews.com/2023/06/critical-security-vulnerability.html
Learn more: https://thehackernews.com/2023/06/critical-security-vulnerability.html
π11π₯8β‘5π2
π¨ ALERT: Several fake researcher accounts on GitHub are pushing malicious code, claiming to exploit zero-day flaws in Discord, Google Chrome, and Microsoft Exchange.
Learn more: https://thehackernews.com/2023/06/fake-researcher-profiles-spread-malware.html
Learn more: https://thehackernews.com/2023/06/fake-researcher-profiles-spread-malware.html
π€―22π13π8π€5π3
π Two severe security vulnerabilities have been disclosed in microsoft Azure Bastion and Container Registry, potentially enabling unauthorized access and data compromise.
Learn more: https://thehackernews.com/2023/06/severe-vulnerabilities-reported-in.html
Learn more: https://thehackernews.com/2023/06/severe-vulnerabilities-reported-in.html
π20π€―4
Chinese state-sponsored group UNC3886 exploits a zero-day VMware authentication bypass flaw (CVE-2023-20867) to backdoor Windows, Linux, and PhotonOS systems.
Learn about the backdoor tactics: https://thehackernews.com/2023/06/chinese-hackers-exploit-vmware-zero-day.html
Learn about the backdoor tactics: https://thehackernews.com/2023/06/chinese-hackers-exploit-vmware-zero-day.html
π±31π₯7π6π€―5π4π€3
LockBit ransomware scheme extorts $91 million from U.S. organizations in a series of devastating attacks since 2020.
Learn more: https://thehackernews.com/2023/06/lockbit-ransomware-extorts-91-million.html
Learn more: https://thehackernews.com/2023/06/lockbit-ransomware-extorts-91-million.html
π€―21π7π5
Microsoft reveals a new Russian threat actor, Cadet Blizzard, linked to GRU, with a lower success rate but high destructive activity.
Read about it here: https://thehackernews.com/2023/06/microsoft-warns-of-new-russian-state.html
Read about it here: https://thehackernews.com/2023/06/microsoft-warns-of-new-russian-state.html
π11π₯10π±4
Russian threat actor Shuckworm escalates cyber assaults on Ukrainian entities, targeting security services and government organizations. New report exposes long-running intrusions and theft of sensitive information.
Read: https://thehackernews.com/2023/06/new-report-reveals-shuckworms-long.html
Read: https://thehackernews.com/2023/06/new-report-reveals-shuckworms-long.html
π17π₯10π±4β‘1