Category: TheHackerNews

Zero-Click iPhone
20
Apr
2023

NSO Group Used 3 Zero-Click iPhone Exploits Against Human Rights Defenders

Israeli spyware maker NSO Group deployed at least three novel “zero-click” exploits against iPhones in 2022 to infiltrate defenses erected…

Blind Eagle Cyber Espionage Group
19
Apr
2023

Blind Eagle Cyber Espionage Group Strikes Again: New Attack Chain Uncovered

Apr 19, 2023Ravie LakshmananCyber Threat / Malware The cyber espionage actor tracked as Blind Eagle has been linked to a…

Phishing Attacks in Ukraine
19
Apr
2023

Google TAG Warns of Russian Hackers Conducting Phishing Attacks in Ukraine

Apr 19, 2023Ravie LakshmananCyber War / Cyber Attack Elite hackers associated with Russia’s military intelligence service have been linked to…

Google Chrome
19
Apr
2023

Google Chrome Hit by Second Zero-Day Attack

Apr 19, 2023Ravie LakshmananBrowser Security / Zero-Day Google on Tuesday rolled out emergency fixes to address another actively exploited high-severity…

Linux Malware Poseidon
19
Apr
2023

Pakistani Hackers Use Linux Malware Poseidon to Target Indian Government Agencies

Apr 19, 2023Ravie LakshmananLinux / Malware The Pakistan-based advanced persistent threat (APT) actor known as Transparent Tribe used a two-factor…

Uncovering (and Understanding) the Hidden Risks of SaaS Apps
19
Apr
2023

Uncovering (and Understanding) the Hidden Risks of SaaS Apps

Recent data breaches across CircleCI, LastPass, and Okta underscore a common theme: The enterprise SaaS stacks connected to these industry-leading…

Cisco Router Flaws
19
Apr
2023

U.S. and U.K. Warn of Russian Hackers Exploiting Cisco Router Flaws for Espionage

Apr 19, 2023Ravie LakshmananNetwork Security / Cyber Espionage U.K. and U.S. cybersecurity and intelligence agencies have warned of Russian nation-state…

U.S. Energy and Transit Systems
19
Apr
2023

Iranian Government-Backed Hackers Targeting U.S. Energy and Transit Systems

Apr 19, 2023Ravie LakshmananCyber Threat / SCADA An Iranian government-backed actor known as Mint Sandstorm has been linked to attacks…

Remote Code Execution
19
Apr
2023

Critical Flaws in vm2 JavaScript Library Can Lead to Remote Code Execution

Apr 19, 2023Ravie LakshmananSandbox / Software Security A fresh round of patches has been made available for the vm2 JavaScript…

Aurora Stealer Malware
18
Apr
2023

YouTube Videos Distributing Aurora Stealer Malware via Highly Evasive Loader

Apr 18, 2023Ravie LakshmananThreat Intelligence / Cyber Risk Cybersecurity researchers have detailed the inner workings of a highly evasive loader…

Goldoson Android Malware
18
Apr
2023

Goldoson Android Malware Infects Over 100 Million Google Play Store Downloads

Apr 18, 2023Ravie LakshmananMobile Security / Hacking A new Android malware strain named Goldoson has been detected in the official…

SimpleHelp Remote Support
18
Apr
2023

Iranian Hackers Using SimpleHelp Remote Support Software for Persistent Access

Apr 18, 2023Ravie LakshmananCyber Threat / Malware The Iranian threat actor known as MuddyWater is continuing its time-tested tradition of…