Category: TheHackerNews

Malicious Software Updates
22
Aug
2023

Hong Kong Organizations Targeted via Malicious Software Updates

Aug 22, 2023THNSoftware Supply Chain / Malware A previously undocumented threat cluster has been linked to a software supply chain…

XLoader macOS Malware
22
Aug
2023

New Variant of XLoader macOS Malware Disguised as ‘OfficeNote’ Productivity App

Aug 22, 2023THNMalware / Endpoint Security A new variant of an Apple macOS malware called XLoader has surfaced in the…

Ivanti Warns of Critical Zero-Day Flaw Being Actively Exploited in Sentry Software
22
Aug
2023

Ivanti Warns of Critical Zero-Day Flaw Being Actively Exploited in Sentry Software

Aug 22, 2023THNZero-Day / Software Security Software services provider Ivanti is warning of a new critical zero-day flaw impacting Ivanti…

CISA Exploited Vulnerability Catalog
22
Aug
2023

Critical Adobe ColdFusion Flaw Added to CISA’s Exploited Vulnerability Catalog

Aug 22, 2023THNVulnerability / Cyber Threat The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical security flaw…

WinRAR Vulnerability
21
Aug
2023

New WinRAR Vulnerability Could Allow Hackers to Take Control of Your PC

Aug 21, 2023THNVulnerability / Cyber Threat A high-severity security flaw has been disclosed in the WinRAR utility that could be…

Investigate an OAuth Grant
21
Aug
2023

How to Investigate an OAuth Grant for Suspicious Activity or Overly Permissive Scopes

From a user’s perspective, OAuth works like magic. In just a few keystrokes, you can whisk through the account creation…

Proxy Servers
21
Aug
2023

This Malware Turned Thousands of Hacked Windows and macOS PCs into Proxy Servers

Aug 21, 2023THNMalware / Privacy Threat actors are leveraging access to malware-infected Windows and macOS machines to deliver a proxy…

HiatusRAT Malware
21
Aug
2023

Taiwan Firms and U.S. Military Under Attack

Aug 21, 2023THNCyber Threat / Malware The threat actors behind the HiatusRAT malware have returned from their hiatus with a…

WoofLocker Toolkit Hides Malicious Codes in Images to Run Tech Support Scams
19
Aug
2023

WoofLocker Toolkit Hides Malicious Codes in Images to Run Tech Support Scams

Aug 19, 2023THNMalvertising / Website Security Cybersecurity researchers have detailed an updated version of an advanced fingerprinting and redirection toolkit…

Juniper Junos OS
19
Aug
2023

New Juniper Junos OS Flaws Expose Devices to Remote Attacks

Aug 19, 2023THNNetwork Security / Vulnerability Networking hardware company Juniper Networks has released an “out-of-cycle” security update to address multiple…

Android Malware Apps
19
Aug
2023

Thousands of Android Malware Apps Using Stealthy APK Compression to Evade Detection

Aug 19, 2023THNMobile Security / Malware Threat actors are using Android Package (APK) files with unknown or unsupported compression methods…

Zimbra Email
18
Aug
2023

New Wave of Attack Campaign Targeting Zimbra Email Users for Credential Theft

Aug 18, 2023THNEmail Seucrity / Cyber Attack A new “mass-spreading” social engineering campaign is targeting users of the Zimbra Collaboration…