• Trends
  • Topics
  • Nodes
Search for keywords, #hashtags, $sites, add a dash to exclude, e.g. -$theonion.com

From thehackernews.com

OVHcloud Hit with Record 840 Million PPS DDoS Attack Using MikroTik Routers

2 11

OVHcloud mitigates record-breaking 840 Mpps DDoS attack, highlights surge in attack frequency and intensity, and warns of potential MikroTik router th

on Fri, 2PM

From thehackernews.com

Twilio's Authy App Breach Exposes Millions of Phone Numbers

2 11

Twilio's Authy app suffers data breach exposing millions of phone numbers. Users urged to update app and stay vigilant against potential phishing.

#2fa #authy #twilio #infosec #databreach

on Thu, 3AM

From thehackernews.com

New SnailLoad Attack Exploits Network Latency to Spy on Users' Web Activities

1 1

Researchers unveil SnailLoad, a new side-channel attack exploiting network latency to infer web activity remotely, achieving up to 98% accuracy in vid

#privacy #snailload

on Jun 28

From thehackernews.com

New Credit Card Skimmer Targets WordPress, Magento, and OpenCart Sites

1 1

Discover how the Caesar Cipher Skimmer targets e-commerce platforms, compromising credit card data. Learn to protect your website from this new threat

#web #caesar #malware #security #wordpress

on Jun 26

From thehackernews.com

Polyfill[.]io Attack Impacts Over 380,000 Hosts, Including Major Companies

0 8

Polyfill supply chain attack impacts 380,000+ hosts, including major companies. New domains and related attacks discovered.

on Sat, 1AM

From thehackernews.com

Webinar Alert: Learn How ITDR Solutions Stop Sophisticated Identity Attacks

0 6

Join our exclusive webinar to learn how ITDR solutions protect against identity-based cyber attacks. Register now

on Fri, 2PM

From thehackernews.com

Blueprint for Success: Implementing a CTEM Operation

0 5

Learn how Continuous Threat Exposure Management (CTEM) can enhance your cybersecurity strategy by providing comprehensive attack surface visibility an

on Fri, 12PM

From thehackernews.com

GootLoader Malware Still Active, Deploys New Versions for Enhanced Attacks

0 6

GootLoader malware evolves with new versions, using SEO poisoning and disguised payloads to compromise systems.

on Fri, 10AM

From thehackernews.com

New Golang-Based Zergeca Botnet Capable of Powerful DDoS Attacks

0 7

Discover Zergeca, a new sophisticated botnet capable of DDoS attacks and more. Learn about its features, targets, and potential impact on cybersecurit

on Fri, 5AM

From thehackernews.com

Critical Flaws in CocoaPods Expose iOS and macOS Apps to Supply Chain Attacks

0 11

CocoaPods patches critical vulnerabilities that exposed thousands of iOS and macOS apps to supply chain attacks.

on Thu, 12PM

From thehackernews.com

Microsoft Uncovers Critical Flaws in Rockwell Automation PanelView Plus

0 7

Microsoft reveals critical security flaws in Rockwell Automation devices, allowing remote code execution and DoS attacks.

on Thu, 9AM

From thehackernews.com

Brazil Halts Meta's AI Data Processing Amid Privacy Concerns

0 7

Brazil bans Meta from using personal data for AI training, citing privacy concerns and risks to children. Meta has 5 days to comply or face fines.

on Thu, 8AM

From thehackernews.com

Global Police Operation Shuts Down 600 Cybercrime Servers Linked to Cobalt Strike

0 12

Global law enforcement operation MORPHEUS dismantled nearly 600 cybercrime servers linked to Cobalt Strike attacks.

on Thu, 5AM

From thehackernews.com

The Emerging Role of AI in Open-Source Intelligence

0 8

AI and ML revolutionize open-source intelligence, enhancing real-time analysis, multilingual processing, and predictive analytics for better decision-

on Wed, 11AM

From thehackernews.com

Microsoft MSHTML Flaw Exploited to Deliver MerkSpy Spyware Tool

0 11

Discover how hackers exploit Microsoft MSHTML to deploy MerkSpy spyware, targeting users globally.

on Wed, 10AM

From thehackernews.com

FakeBat Loader Malware Spreads Widely Through Drive-by Download Attacks

0 9

FakeBat loader malware spreads via drive-by attacks using SEO poisoning and fake software updates, delivering payloads like IcedID and Lumma.

on Wed, 7AM

From thehackernews.com

Israeli Entities Targeted by Cyberattack Using Donut and Sliver Frameworks

0 10

Discover the 'Supposed Grasshopper' cyberattack campaign targeting Israeli entities using open-source frameworks and custom WordPress sites as deliver

on Wed, 5AM

From thehackernews.com

South Korean ERP Vendor's Server Hacked to Spread Xctdoor Malware

0 8

South Korean ERP vendor targeted by hackers using Xctdoor malware. North Korean groups suspected.

on Wed, 5AM

From thehackernews.com

New Intel CPU Vulnerability 'Indirector' Exposes Sensitive Data

0 12

Discover how the 'Indirector' attack threatens Intel CPUs and learn about the 'TIKTAG' vulnerability in Arm processors.

on Tue, 1PM

From thehackernews.com

How MFA Failures are Fueling a 500% Surge in Ransomware Losses

0 10

Ransomware payments soar by 500%, averaging $2 million in 2024. Learn why next-gen MFA is crucial.

on Tue, 12PM

From thehackernews.com

Chinese Hackers Exploiting Cisco Switches Zero-Day to Deliver Malware

0 14

China-linked hackers exploit Cisco switch flaw to deliver malware. Unpatched D-Link routers expose user accounts.

on Tue, 7AM

From thehackernews.com

Meta's 'Pay or Consent' Approach Faces E.U. Competition Rules Scrutiny

0 10

Meta's ad-free subscription faces EU scrutiny for breaching competition rules, risking hefty fines. Users demand real choices.

on Tue, 6AM

From thehackernews.com

Australian Man Charged for Fake Wi-Fi Scam on Domestic Flights

0 9

Australian man charged for creating fake Wi-Fi hotspots on flights to steal personal data. Learn how to protect yourself from 'evil twin' Wi-Fi attack

on Tue, 5AM

From thehackernews.com

Indian Software Firm's Products Hacked to Spread Data-Stealing Malware

0 8

Conceptworld software installers trojanized with data-stealing malware. Users of Notezilla, RecentX, and Copywhiz urged to check for compromise.

on Mon, 1PM

From thehackernews.com

CapraRAT Spyware Disguised as Popular Apps Threatens Android Users

0 9

Discover how Transparent Tribe's latest Android malware campaign targets mobile users, and learn about new threats like Snowblind in Southeast Asia.

on Mon, 1PM

From thehackernews.com

New OpenSSH Vulnerability Could Lead to RCE as Root on Linux Systems

0 32

Critical OpenSSH vulnerability allows remote code execution on Linux systems. Patch now to protect against potential attacks on millions of exposed se

on Mon, 12PM

From thehackernews.com

End-to-End Secrets Security: Making a Plan to Secure Your Machine Identities

0 6

Discover how to secure machine identities and reduce secrets sprawl with end-to-end secrets management solutions.

on Mon, 11AM

From thehackernews.com

Juniper Networks Releases Critical Security Update for Routers

0 10

Juniper Networks has released critical security updates for routers to fix an authentication bypass vulnerability. Apply patches now to secure your de

on Mon, 8AM

From thehackernews.com

Google to Block Entrust Certificates in Chrome Starting November 2024

0 3

Google Chrome to block Entrust certificates from November 2024 due to security concerns. Website operators urged to switch CAs to avoid disruption.

on Jun 29

From thehackernews.com

GitLab Releases Patch for Critical CI/CD Pipeline Vulnerability and 13 Others

0 1

GitLab releases security updates fixing 14 vulnerabilities, including critical CI/CD flaw CVE-2024-5655. Update now to ensure protection.

on Jun 28

From thehackernews.com

Kimsuky Using TRANSLATEXT Chrome Extension to Steal Sensitive Data

0 1

North Korean hackers deploy malicious Chrome extension TRANSLATEXT to steal data from South Korean academics studying North Korean affairs.

on Jun 28

From thehackernews.com

8220 Gang Exploits Oracle WebLogic Server Flaws for Cryptocurrency Mining

0 1

8220 Gang exploits Oracle WebLogic Server flaws using fileless execution techniques to drop XMRig miner payload.

on Jun 28

From thehackernews.com

Combatting the Evolving SaaS Kill Chain: How to Stay Ahead of Threat Actors

0 0

Explore the evolving landscape of SaaS security risks, threat actor tactics, and essential strategies for protecting enterprise data.

on Jun 28

From thehackernews.com

Combatting the Evolving SaaS Kill Chain: How to Stay Ahead of Threat Actors

0 0

Explore the evolving landscape of SaaS security risks, threat actor tactics, and essential strategies for protecting enterprise data.

on Jun 28

From thehackernews.com

Researchers Warn of Flaws in Widely Used Industrial Gas Analysis Equipment

0 0

Discover critical security flaws in Emerson gas chromatographs. Learn about vulnerabilities, potential risks, and urgent firmware updates for industri

on Jun 28

From thehackernews.com

TeamViewer Detects Security Breach in Corporate IT Environment

0 1

TeamViewer detects security breach, investigates with experts. No customer data impacted. Health-ISAC warns of APT29 exploitation.

on Jun 28

From thehackernews.com

Rust-Based P2PInfect Botnet Evolves with Miner and Ransomware Payloads

0 0

P2PInfect botnet evolves to target Redis servers with ransomware and crypto miners, showcasing new financial motivations and advanced evasion techniqu

on Jun 28

From thehackernews.com

The Secrets of Hidden AI Training on Your Data

0 1

Discover the hidden risks of AI in SaaS tools. Learn how AI training impacts data security and privacy. Essential insights for safeguarding your organ

on Jun 28

From thehackernews.com

How to Use Python to Build Secure Blockchain Applications

0 0

Learn how to build secure blockchain applications in Python with AlgoKit, the comprehensive toolkit for Algorand developers.

on Jun 28

From thehackernews.com

Prompt Injection Flaw in Vanna AI Exposes Databases to RCE Attacks

0 1

Discover how a critical flaw in Vanna.AI library exposes databases to remote code execution and the growing risks of AI prompt injection attacks.

on Jun 28

From thehackernews.com

Russian National Indicted for Cyber Attacks on Ukraine Before 2022 Invasion

0 0

Russian national indicted in U.S. for cyber attacks before Ukraine invasion. DOJ offers $10M reward.

on Jun 28

From thehackernews.com

Critical SQLi Vulnerability Found in Fortra FileCatalyst Workflow Application

0 0

Critical security flaw in Fortra FileCatalyst Workflow allows database tampering. Patch available.

on Jun 28

From thehackernews.com

Over 110,000 Websites Affected by Hijacked Polyfill Supply Chain Attack

0 0

Google blocks ads on sites using compromised Polyfill.io. Over 110,000 websites affected. Learn about the security risks and alternative solutions.

on Jun 28

From thehackernews.com

Apple Patches AirPods Bluetooth Vulnerability That Could Allow Eavesdropping

0 0

Apple releases critical security updates for AirPods and visionOS, addressing Bluetooth vulnerabilities and potential exploits in spatial computing.

on Jun 27

From thehackernews.com

New MOVEit Transfer Vulnerability Under Active Exploitation - Patch ASAP!

0 1

Critical MOVEit Transfer flaw exploited in wild. Progress Software urges immediate patching. CISA reports separate intrusion on chemical security tool

on Jun 26

From thehackernews.com

Chinese and N. Korean Hackers Target Global Infrastructure with Ransomware

0 1

Chinese and North Korean hackers target global infrastructure with ransomware, blurring lines between cybercrime and espionage.

on Jun 26

From thehackernews.com

Practical Guidance For Securing Your Software Supply Chain

0 0

Explore key strategies to secure software supply chains effectively amidst rising cyber threats. Learn about SBOMs, SLSA, and DevSecOps best practices

on Jun 26

From thehackernews.com

ExCobalt Cyber Gang Targets Russian Sectors with New GoRed Backdoor

0 0

ExCobalt targets Russian firms with GoRed backdoor. New cyber threat uses supply chain attacks and advanced tools for espionage across sectors.

on Jun 26

From thehackernews.com

Warning: New Adware Campaign Targets Meta Quest App Seekers

0 0

Discover how AdsExhaust adware targets Meta Quest app users, manipulates browsers, and generates unauthorized revenue through sophisticated techniques

on Jun 26

From thehackernews.com

U.S. Treasury Sanctions 12 Kaspersky Executives Amid Software Ban

0 0

US Treasury sanctions 12 Kaspersky executives, citing cyber threats. Company and CEO unaffected. Follows Commerce Dept. ban on Kaspersky software.

on Jun 26