Category: TheHackerNews

WhatsApp Device Verification
13
Apr
2023

WhatsApp Introduces New Device Verification Feature to Prevent Account Takeover Attacks

Apr 13, 2023Ravie LakshmananMobile Security / Privacy Popular instant messaging app WhatsApp on Thursday announced a new account verification feature…

13
Apr
2023

New Python-Based “Legion” Hacking Tool Emerges on Telegram

An emerging Python-based credential harvester and a hacking tool named Legion is being marketed via Telegram as a way for…

Why Shadow APIs are More Dangerous than You Think
13
Apr
2023

Why Shadow APIs are More Dangerous than You Think

Shadow APIs are a growing risk for organizations of all sizes as they can mask malicious behavior and induce substantial…

Indian Educational Institutions
13
Apr
2023

Pakistan-based Transparent Tribe Hackers Targeting Indian Educational Institutions

Apr 13, 2023Ravie LakshmananMalware / Cyber Attack The Transparent Tribe threat actor has been linked to a set of weaponized…

DeathNote Campaign
13
Apr
2023

Lazarus Hacker Group Evolves Tactics, Tools, and Targets in DeathNote Campaign

Apr 13, 2023Ravie LakshmananCyber Attack / Cyber Threat The North Korean threat actor known as the Lazarus Group has been…

OpenAI Bug Bounty Program
13
Apr
2023

OpenAI’s Bug Bounty Program Offers Up to $20,000 Prizes

Apr 13, 2023Ravie LakshmananSoftware Security / Bug Hunting OpenAI, the company behind the massively popular ChatGPT AI chatbot, has launched…

Service Accounts Challenge
12
Apr
2023

Can’t See or Secure Them Until It’s Too Late

Here’s a hard question to answer: ‘How many service accounts do you have in your environment?’. A harder one is:…

Israel-based Spyware Firm QuaDream Targets High-Risk iPhones with Zero-Click Exploit
12
Apr
2023

Israel-based Spyware Firm QuaDream Targets High-Risk iPhones with Zero-Click Exploit

Threat actors using hacking tools from an Israeli surveillanceware vendor named QuaDream targeted at least five members of civil society…

Microsoft Patch Tuesday
12
Apr
2023

Microsoft Issues Patches for 97 Flaws, Including Active Ransomware Exploit

Apr 12, 2023Ravie LakshmananPatch Tuesday / Software Updates It’s the second Tuesday of the month, and Microsoft has released another…

3CX Supply Chain Attack
12
Apr
2023

Lazarus Sub-Group Labyrinth Chollima Uncovered as Mastermind in 3CX Supply Chain Attack

Apr 12, 2023Ravie LakshmananSoftware Security / Cyber Attack Enterprise communications service provider 3CX confirmed that the supply chain attack targeting…

Microsoft Azure
11
Apr
2023

Newly Discovered “By-Design” Flaw in Microsoft Azure Could Expose Storage Accounts to Hackers

Apr 11, 2023Ravie LakshmananCloud Security / Data Security A “by-design flaw” uncovered in Microsoft Azure could be exploited by attackers…

Google Play Store Security
11
Apr
2023

Cybercriminals Turn to Android Loaders on Dark Web to Evade Google Play Security

Apr 11, 2023Ravie LakshmananMobile Security / Malware Malicious loader programs capable of trojanizing Android applications are being traded on the…