Category: TheHackerNews

FICORA and Kaiten Botnets
27
Dec
2024

FICORA and Kaiten Botnets Exploit Old D-Link Vulnerabilities for Global Attacks

Dec 27, 2024Ravie LakshmananBotnet / DDoS Attack Cybersecurity researchers are warning about a spike in malicious activity that involves roping…

PAN-OS DoS Flaw
27
Dec
2024

Palo Alto Releases Patch for PAN-OS DoS Flaw — Update Immediately

Dec 27, 2024Ravie LakshmananFirewall Security / Vulnerability Palo Alto Networks has disclosed a high-severity vulnerability impacting PAN-OS software that could…

CVSS 10.0 Flaw Enables RCE via Unsafe Serialization
27
Dec
2024

CVSS 10.0 Flaw Enables RCE via Unsafe Serialization

Dec 27, 2024Ravie LakshmananVulnerability / Software Security The Apache Software Foundation (ASF) has released patches to address a maximum severity…

Brazilian Hacker
26
Dec
2024

Brazilian Hacker Charged for Extorting $3.2M in Bitcoin After Breaching 300,000 Accounts

Dec 26, 2024Ravie LakshmananCybercrime / Ransomware A Brazilian citizen has been charged in the United States for allegedly threatening to…

Critical SQL Injection Vulnerability
25
Dec
2024

Critical SQL Injection Vulnerability in Apache Traffic Control Rated 9.9 CVSS — Patch Now

Dec 25, 2024Ravie LakshmananServer Security / Vulnerability The Apache Software Foundation (ASF) has shipped security updates to address a critical…

Ruijie Networks' Cloud Platform Flaws Could Expose 50,000 Devices to Remote Attacks
25
Dec
2024

Ruijie Networks’ Cloud Platform Flaws Could Expose 50,000 Devices to Remote Attacks

Dec 25, 2024Ravie LakshmananCloud Security / Vulnerability Cybersecurity researchers have discovered several security flaws in the cloud management platform developed…

A New C++ Variant of BellaCiao Malware
25
Dec
2024

A New C++ Variant of BellaCiao Malware

Dec 25, 2024Ravie LakshmananCyber Attack / Malware The Iranian nation-state hacking group known as Charming Kitten has been observed deploying…

PyPI Packages
24
Dec
2024

Researchers Uncover PyPI Packages Stealing Keystrokes and Hijacking Social Accounts

Dec 24, 2024Ravie LakshmananMalware / Data Exfiltration Cybersecurity researchers have flagged two malicious packages that were uploaded to the Python…

Acclaim USAHERDS Vulnerability
24
Dec
2024

CISA Adds Acclaim USAHERDS Vulnerability to KEV Catalog Amid Active Exploitation

Dec 24, 2024Ravie LakshmananVulnerability / Software Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a now-patched…

Bitcoin Heist
24
Dec
2024

North Korean Hackers Pull Off $308M Bitcoin Heist from Crypto Firm DMM Bitcoin

Dec 24, 2024Ravie LakshmananCybercrime / Malware Japanese and U.S. authorities have formerly attributed the theft of cryptocurrency worth $308 million…

Apache Tomcat Vulnerability
24
Dec
2024

Apache Tomcat Vulnerability CVE-2024-56337 Exposes Servers to RCE Attacks

Dec 24, 2024Ravie LakshmananVulnerability / Zero Day The Apache Software Foundation (ASF) has released a security update to address an…

AI to Generate 10,000+ Malware Variants
23
Dec
2024

AI Could Generate 10,000 Malware Variants, Evading Detection in 88% of Case

Dec 23, 2024Ravie LakshmananMachine Learning / Threat Analysis Cybersecurity researchers have found that it’s possible to use large language models…