Category: TheHackerNews

Cryptojacking Campaign
01
Feb
2024

Exposed Docker APIs Under Attack in ‘Commando Cat’ Cryptojacking Campaign

Feb 01, 2024NewsroomCryptojacking / Linux Security Exposed Docker API endpoints over the internet are under assault from a sophisticated cryptojacking…

KV-Botnet
01
Feb
2024

U.S. Feds Shut Down China-Linked “KV-Botnet” Targeting SOHO Routers

The U.S. government on Wednesday said it took steps to neutralize a botnet comprising hundreds of U.S.-based small office and…

HeadCrab Redis Malware
01
Feb
2024

HeadCrab 2.0 Goes Fileless, Targeting Redis Servers for Crypto Mining

Feb 01, 2024NewsroomCryptocurrency / Botnet Cybersecurity researchers have detailed an updated version of the malware HeadCrab that’s known to target…

Ivanti VPN Vulnerabilities
01
Feb
2024

New Malware Emerges in Attacks Exploiting Ivanti VPN Vulnerabilities

Feb 01, 2024NewsroomNetwork Security / Malware Google-owned Mandiant said it identified new malware employed by a China-nexus espionage threat actor…

Critical Vulnerability in iOS, iPadOS, and macOS
01
Feb
2024

CISA Warns of Active Exploitation of Critical Vulnerability in iOS, iPadOS, and macOS

Feb 01, 2024NewsroomVulnerability / Software Update The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a high-severity flaw…

Container Security
01
Feb
2024

RunC Flaws Enable Container Escapes, Granting Attackers Host Access

Jan 31, 2024NewsroomSoftware Security / Linux Multiple security vulnerabilities have been disclosed in the runC command line tool that could…

Zero-Day Flaws
31
Jan
2024

Ivanti Discloses 2 New Zero-Day Flaws, One Under Active Exploitation

Jan 31, 2024NewsroomVulnerability / Zero Day Ivanti is alerting of two new high-severity flaws in its Connect Secure and Policy…

SaaS Cybersecurity Rules
31
Jan
2024

Understanding New SaaS Cybersecurity Rules

The SEC isn’t giving SaaS a free pass. Applicable public companies, known as “registrants,” are now subject to cyber incident…

Phishing Attacks
31
Jan
2024

Telegram Marketplaces Fuel Phishing Attacks with Easy-to-Use Kits and Malware

Jan 31, 2024NewsroomCyber Crime / Hacking News Cybersecurity researchers are calling attention to the “democratization” of the phishing ecosystem owing…

Cryptojacking Malware
31
Jan
2024

Italian Businesses Hit by Weaponized USBs Spreading Cryptojacking Malware

Jan 31, 2024NewsroomCryptocurrency / Cybersecurity A financially motivated threat actor known as UNC4990 is leveraging weaponized USB devices as an…

Chinese Hackers
31
Jan
2024

Chinese Hackers Exploiting VPN Flaws to Deploy KrustyLoader Malware

Jan 31, 2024NewsroomCyber Attack / Network Security A pair of recently disclosed zero-day flaws in Ivanti Connect Secure (ICS) virtual…

Linux Hacking
31
Jan
2024

New Glibc Flaw Grants Attackers Root Access on Major Linux Distros

Jan 31, 2024NewsroomVulnerability / Endpoint Security Malicious local attackers can obtain full root access on Linux machines by taking advantage…