Category: TheHackerNews

Microsoft Silently Patches Windows LNK Flaw After Years of Active Exploitation
03
Dec
2025

Microsoft Silently Patches Windows LNK Flaw After Years of Active Exploitation

Dec 03, 2025Ravie LakshmananVulnerability / Endpoint Security Microsoft has silently plugged a security flaw that has been exploited by several…

Banking Trojan Spread via WhatsApp
03
Dec
2025

Brazil Hit by Banking Trojan Spread via WhatsApp Worm and RelayNFC NFC Relay Fraud

The threat actor known as Water Saci is actively evolving its tactics, switching to a sophisticated, highly layered infection chain…

Discover the AI Tools Fueling the Next Cybercrime Wave — Watch the Webinar
03
Dec
2025

Discover the AI Tools Fueling the Next Cybercrime Wave — Watch the Webinar

Dec 03, 2025The Hacker NewsCybercrime / Artificial Intelligence Remember when phishing emails were easy to spot? Bad grammar, weird formatting,…

Turning Disruptive Technology into a Strategic Advantage
03
Dec
2025

Turning Disruptive Technology into a Strategic Advantage

Most people know the story of Paul Bunyan. A giant lumberjack, a trusted axe, and a challenge from a machine…

Malicious Rust Crate Delivers OS-Specific Malware to Web3 Developer Systems
03
Dec
2025

Malicious Rust Crate Delivers OS-Specific Malware to Web3 Developer Systems

Dec 03, 2025Ravie LakshmananMalware / Web3 Security Cybersecurity researchers have discovered a malicious Rust package that’s capable of targeting Windows,…

Picklescan Bugs Allow Malicious PyTorch Models to Evade Scans and Execute Code
03
Dec
2025

Picklescan Bugs Allow Malicious PyTorch Models to Evade Scans and Execute Code

Dec 03, 2025Ravie LakshmananMachine Learning / Vulnerability Three critical security flaws have been disclosed in an open-source utility called Picklescan…

India Orders Messaging Apps to Work Only With Active SIM Cards to Prevent Fraud and Misuse
02
Dec
2025

India Orders Messaging Apps to Work Only With Active SIM Cards to Prevent Fraud and Misuse

Dec 02, 2025Ravie LakshmananRegulatory Compliance / Online Safety India’s Department of Telecommunications (DoT) has issued directions to app-based communication service…

Malicious npm Package Uses Hidden Prompt and Script to Evade AI Security Tools
02
Dec
2025

Malicious npm Package Uses Hidden Prompt and Script to Evade AI Security Tools

Dec 02, 2025Ravie LakshmananAI Security / Software Supply Chain Cybersecurity researchers have disclosed details of an npm package that attempts…

GlassWorm Returns with 24 Malicious Extensions Impersonating Popular Developer Tools
02
Dec
2025

GlassWorm Returns with 24 Malicious Extensions Impersonating Popular Developer Tools

Dec 02, 2025Ravie LakshmananMalware / Blockchain The supply chain campaign known as GlassWorm has once again reared its head, infiltrating…

Researchers Capture Lazarus APT's Remote-Worker Scheme Live on Camera
02
Dec
2025

Researchers Capture Lazarus APT’s Remote-Worker Scheme Live on Camera

Dec 02, 2025The Hacker NewsIdentity Theft / Threat Intelligence A joint investigation led by Mauro Eldritch, founder of BCA LTD,…

Iran-Linked Hackers Hits Israeli Sectors with New MuddyViper Backdoor in Targeted Attacks
02
Dec
2025

Iran-Linked Hackers Hits Israeli Sectors with New MuddyViper Backdoor in Targeted Attacks

Israeli entities spanning academia, engineering, local government, manufacturing, technology, transportation, and utilities sectors have emerged as the target of a…

SecAlerts Cuts Through the Noise with a Smarter, Faster Way to Track Vulnerabilities
02
Dec
2025

SecAlerts Cuts Through the Noise with a Smarter, Faster Way to Track Vulnerabilities

Vulnerability management is a core component of every cybersecurity strategy. However, businesses often use thousands of software without realising it…