The Hacker News
โœ”
151K subscribers
1.84K photos
10 videos
3 files
7.76K links
โญ Official THN Telegram Channel โ€” A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking.

๐Ÿ“จ Contact: admin@thehackernews.com

๐ŸŒ Website: https://thehackernews.com
Download Telegram
Continuous Threat Exposure Management (CTEM) is no longer optionalโ€”it's essential!

As threats evolve, CTEM empowers organizations to proactively identify and mitigate vulnerabilities before they lead to costly breaches. ๐Ÿ”—

Read the full article to discover how to keep CTEM on your 2025 budget radar: https://thehackernews.com/2024/11/9-steps-to-get-ctem-on-your-2025.html
๐Ÿ‘9โšก6๐Ÿ‘6
๐Ÿšจ Warning: New Winos 4.0 malware is targeting users through ๐ŸŽฎ gaming applications. This advanced framework can take control of compromised systems and harvest sensitive data, targeting educational organizations and cryptocurrency wallets.

Read: https://thehackernews.com/2024/11/new-winos-40-malware-infects-gamers.html
๐Ÿ‘7๐Ÿ”ฅ4๐Ÿ‘2๐Ÿคฏ2
๐Ÿ”ฅ Did you know? Advanced threat actors can breach identity systems in days.

Learn about SaaS and cloud vulnerabilities. Join our LIVE WEBINAR to learn crucial strategies for securing your identity infrastructure.

๐Ÿ‘‰ Join now: https://thehacker.news/identity-based-attacks
๐Ÿ‘17๐Ÿ‘7
๐Ÿ”’ Canada orders TikTok to shut down operations over national security concerns.

Read more here: https://thehackernews.com/2024/11/canada-orders-tiktok-to-shut-down.html
๐Ÿ‘26๐Ÿ˜14โšก8๐Ÿ‘5๐Ÿค”5๐Ÿ”ฅ1
๐ŸŒฉ๏ธ Cyber Alert: VEILDrive Attack!

A new attack exploits Microsoft SaaS tools like Teams and OneDrive, enabling malware distribution through trusted channels.

Read the article: https://thehackernews.com/2024/11/veildrive-attack-exploits-microsoft.html
๐Ÿ‘14โšก10๐Ÿ˜6
๐Ÿšจ Cisco has issued updates for CVE-2024-20418, a critical vulnerability in Ultra-Reliable Wireless Backhaul Access Points (CVSS: 10.0) that allows unauthorized root command execution.

Read: https://thehackernews.com/2024/11/cisco-releases-patch-for-critical-urwb.html

Update to version 17.15.1 ASAP to protect your network!
๐Ÿ˜13โšก6๐Ÿ‘3๐Ÿ”ฅ3๐Ÿ˜ฑ1
๐Ÿ’ป๐Ÿ”‘ Developers, beware!

A malicious package named "fabrice" has been discovered on PyPI, stealthily stealing AWS credentials for over three years.

With more than 37,100 downloads, this typosquatting threat poses serious risks.

Read: https://thehackernews.com/2024/11/malicious-pypi-package-fabrice-found.html
๐Ÿ˜ฑ13๐Ÿ‘8โšก3๐Ÿคฏ2
๐Ÿšจ Cyber alert: The CopyRh(ight)adamantys phishing campaign is leveraging copyright themes to spread the Rhadamanthys stealer, while Kaspersky reveals SteelFox #malware, exploiting vulnerable drivers for data theft.

Learn more: https://thehackernews.com/2024/11/steelfox-and-rhadamanthys-malware-use.html
โšก6๐Ÿ”ฅ5๐Ÿ‘2
๐Ÿšจ MirrorFace, the China-aligned hacker group, has targeted a European diplomatic organization for the first time, using a phishing attack linked to the upcoming World Expo in 2025.

Read the full report: https://thehackernews.com/2024/11/china-aligned-mirrorface-hackers-target.html
๐Ÿ‘5โšก3๐Ÿ‘3๐Ÿ˜2๐Ÿคฏ1
North Korean hackers are ramping up attacks on crypto firms with a sophisticated #malware campaign.

Disguised as PDF files, this multi-stage malware is designed to evade detection and exploit macOS vulnerabilities.

Read more โ€” https://thehackernews.com/2024/11/north-korean-hackers-target-crypto.html
๐Ÿ‘7๐Ÿ”ฅ4๐Ÿ˜4โšก3
๐Ÿ”’๐Ÿ’ป Cybercriminals are exploiting techniques like disabling Windows Event Logging to bypass security measures.

This tactic allows them to operate undetected, putting your organization at risk.

Learn how ๐Ÿ‘‰ https://thehackernews.com/2024/11/5-most-common-malware-techniques-in-2024.html
๐Ÿ‘13๐Ÿ”ฅ9โšก3๐Ÿค”3๐Ÿคฏ3
๐Ÿ”’ Weak passwords continue to be a major vulnerability for organizations. With hackers able to crack simple passwords in seconds, itโ€™s time to reassess your security measures!

๐Ÿ›ก๏ธ Learn how to reinforce your defensesโ€”read more here: https://thehackernews.com/2024/11/a-hackers-guide-to-password-cracking.html
๐Ÿค”8
๐Ÿšจ Can your SOC keep pace with the growing number of security threats?

The 2024 State of Threat Detection Report reveals:

โœ“ Over 50% can't keep up with rising threats
โœ“ 71% say vendors must own breach failures
โœ“ 89% are turning to AI-powered tools

Is it a threat detection problem or an attack signal problem?

๐Ÿ‘‰ Find out now. Download the free report: https://thn.news/state-of-threat-detection-2024
๐Ÿ‘11๐Ÿ˜4๐Ÿค”4๐Ÿ‘1๐Ÿ˜ฑ1
๐Ÿšจ CISA has added a critical #vulnerability (CVE-2024-5910) in Palo Alto Networks Expedition to its Known Exploited Vulnerabilities catalog.

This flaw allows attackers to take over admin accounts, risking sensitive data.

๐Ÿ‘‰ Read details: https://thehackernews.com/2024/11/cisa-alerts-to-active-exploitation-of.html
โšก10๐Ÿคฏ7
๐Ÿฆ ๐Ÿ’ป Researchers unveil CRON#TRAP, a new #malware campaign using a Linux virtual instance to compromise Windows systems.

Read the full article to stay informed ๐Ÿ‘‰ https://thehackernews.com/2024/11/new-crontrap-malware-infects-windows-by.html
๐Ÿ”ฅ9๐Ÿ‘8๐Ÿ˜5
๐Ÿ”ฅ Discover how storytelling in cybersecurity training with Huntress SAT can drastically enhance your team's knowledge retention.

Join experts in our upcoming WEBINAR to see how it can reshape your infosec culture.

๐Ÿ“… Donโ€™t miss outโ€”watch it here: https://thehackernews.com/2024/11/webinar-learn-how-storytelling-can-make.html
๐Ÿ‘8๐Ÿค”8โšก3๐Ÿ”ฅ1
๐Ÿšจ A new campaign is targeting the npm repository with malicious JavaScript libraries aimed at infecting Roblox users with open-source stealer malware.

Read the full report: https://thehackernews.com/2024/11/malicious-npm-packages-target-roblox.html
๐Ÿ‘6โšก5๐Ÿค”5
Two cyber threat groups, Transparent Tribe and IcePeony, are intensifying attacks on India's government sectors.

Understanding these threats is crucial for protecting your organization.

Read more to stay informed: https://thehackernews.com/2024/11/icepeony-and-transparent-tribe-target.html
๐Ÿ‘13โšก7๐Ÿ˜1
๐Ÿ›ก๏ธ๐Ÿ’ป AndroxGh0st malware is evolving!

Now exploiting multiple critical vulnerabilities while collaborating with the Mozi botnet, it's a serious threat to IoT and cloud security.

๐Ÿ”— Read now: https://thehackernews.com/2024/11/androxgh0st-malware-integrates-mozi.html
๐Ÿ”ฅ19๐Ÿ‘6๐Ÿ˜3
๐Ÿ•ต๏ธโ€โ™‚๏ธ๐Ÿ’ฐ The founder of Bitcoin Fog, a major #cryptocurrency mixer, sentenced to 12+ years for laundering over $400M tied to darknet crime.

Read the full story ๐Ÿ‘‡ https://thehackernews.com/2024/11/bitcoin-fog-founder-sentenced-to-12.html
โšก9๐Ÿ‘7๐Ÿคฏ7๐Ÿ”ฅ2๐Ÿ‘1