Category: TheHackerNews

Espionage for Russian Secret Service
02
Jan
2025

Three Russian-German Nationals Charged with Espionage for Russian Secret Service

Jan 02, 2025Ravie LakshmananCyber Espionage / Hacking German prosecutors have charged three Russian-German nationals for acting as secret service agents…

Cross-Domain Attacks
02
Jan
2025

A Growing Threat to Modern Security and How to Combat Them

Jan 02, 2025The Hacker NewsCloud Security / Threat Intelligence In the past year, cross-domain attacks have gained prominence as an…

Malicious Obfuscated NPM Package Disguised as an Ethereum Tool Deploys Quasar RAT
02
Jan
2025

Malicious Obfuscated NPM Package Disguised as an Ethereum Tool Deploys Quasar RAT

Cybersecurity researchers have discovered a malicious package on the npm package registry that masquerades as a library for detecting vulnerabilities…

DoubleClickjacking
01
Jan
2025

New “DoubleClickjacking” Exploit Bypasses Clickjacking Protections on Major Websites

Jan 01, 2025Ravie LakshmananWeb Security / Vulnerability Threat hunters have disclosed a new “widespread timing-based vulnerability class” that leverages a…

Election Interference Using AI and Cyber Tactics
01
Jan
2025

Iranian and Russian Entities Sanctioned for Election Interference Using AI and Cyber Tactics

Jan 01, 2025Ravie LakshmananGenerative AI / Election Interference The U.S. Treasury Department’s Office of Foreign Assets Control (OFAC) on Tuesday…

Bulk Data Transfers
31
Dec
2024

New U.S. DoJ Rule Halts Bulk Data Transfers to Adversarial Nations to Protect Privacy

Dec 31, 2024Ravie LakshmananData Security / Privacy The U.S. Department of Justice (DoJ) has issued a final rule carrying out…

U.S. Treasury Systems
31
Dec
2024

Chinese APT Exploits BeyondTrust API Key to Access U.S. Treasury Systems and Documents

Dec 31, 2025Ravie LakshmananVulnerability / Incident Response The United States Treasury Department said it suffered a “major cybersecurity incident” that…

Misconfigured Kubernetes RBAC in Azure Airflow Could Expose Entire Cluster to Exploitation
31
Dec
2024

Misconfigured Kubernetes RBAC in Azure Airflow Could Expose Entire Cluster to Exploitation

Cybersecurity researchers have uncovered three security weaknesses in Microsoft’s Azure Data Factory Apache Airflow integration that, if successfully exploited, could…

New HIPAA Rules Mandate 72-Hour Data Restoration and Annual Compliance Audits
30
Dec
2024

New HIPAA Rules Mandate 72-Hour Data Restoration and Annual Compliance Audits

Dec 30, 2025Ravie LakshmananCybersecurity / Compliance The United States Department of Health and Human Services’ (HHS) Office for Civil Rights…

Browser Extensions
30
Dec
2024

Takeaways from the Campaign Targeting Browser Extensions

Dec 30, 2025The Hacker NewsBrowser Security / GenAI Security News has been making headlines over the weekend of the extensive…

Chrome Extensions
29
Dec
2024

16 Chrome Extensions Hacked, Exposing Over 600,000 Users to Data Theft

Dec 29, 2025Ravie LakshmananEndpoint Protection / Browser Security A new attack campaign has targeted known Chrome browser extensions, leading to…

New Exploit
28
Dec
2024

15,000+ Four-Faith Routers Exposed to New Exploit Due to Default Credentials

Dec 28, 2024Ravie LakshmananVulnerability / Threat Intelligence A high-severity flaw impacting select Four-Faith routers has come under active exploitation in…