Category: TheHackerNews

StrelaStealer Phishing Attack
22
Mar
2024

New StrelaStealer Phishing Attacks Hit Over 100 Organizations in E.U. and U.S.

Cybersecurity researchers have detected a new wave of phishing attacks that aim to deliver an ever-evolving information stealer referred to…

Session Hijacking
22
Mar
2024

AWS Patches Critical ‘FlowFixation’ Bug in Airflow Service to Prevent Session Hijacking

Mar 22, 2024NewsroomAmazon Web Services / Vulnerability Cybersecurity researchers have shared details of a now-patched security vulnerability in Amazon Web…

Implementing Zero Trust Controls for Compliance
22
Mar
2024

Implementing Zero Trust Controls for Compliance

The ThreatLocker® Zero Trust Endpoint Protection Platform implements a strict deny-by-default, allow-by-exception security posture to give organizations the ability to…

Messaging Security
22
Mar
2024

U.S. Justice Department Sues Apple Over Monopoly and Messaging Security

Mar 22, 2024NewsroomPrivacy / Encryption The U.S. Department of Justice (DoJ), along with 16 other state and district attorneys general,…

Ukrainian Telecoms
22
Mar
2024

Russian Hackers Target Ukrainian Telecoms with Upgraded ‘AcidPour’ Malware

Mar 22, 2024NewsroomLinux / Cyber Warfare The data wiping malware called AcidPour may have been deployed in attacks targeting four…

AI-Powered Autofix Tool
21
Mar
2024

GitHub Launches AI-Powered Autofix Tool to Assist Devs in Patching Security Flaws

Mar 21, 2024NewsroomMachine Learning / Software Security GitHub on Wednesday announced that it’s making available a feature called code scanning…

Russia Hackers
21
Mar
2024

Russia Hackers Using TinyTurla-NG to Breach European NGO’s Systems

Mar 21, 2024NewsroomThreat Intelligence / Malware The Russia-linked threat actor known as Turla infected several systems belonging to an unnamed…

Over 800 npm Packages Found with Discrepancies, 18 Exploitable to 'Manifest Confusion'
21
Mar
2024

Over 800 npm Packages Found with Discrepancies, 18 Exploitable to ‘Manifest Confusion’

Mar 21, 2024NewsroomSoftware Security / Open Source New research has discovered over 800 packages in the npm registry which have…

AndroxGh0st Malware
21
Mar
2024

AndroxGh0st Malware Targets Laravel Apps to Steal Cloud Credentials

Mar 21, 2024NewsroomThreat Intelligence / Vulnerability Cybersecurity researchers have shed light on a tool referred to as AndroxGh0st that’s used…

Vendor Risk Assessments
21
Mar
2024

How to Accelerate Vendor Risk Assessments in the Age of SaaS Sprawl

In today’s digital-first business environment dominated by SaaS applications, organizations increasingly depend on third-party vendors for essential cloud services and…

Cyber Influence Campaign
21
Mar
2024

U.S. Sanctions Russians Behind ‘Doppelganger’ Cyber Influence Campaign

Mar 21, 2024NewsroomNational Security / Data Privacy The U.S. Treasury Department’s Office of Foreign Assets Control (OFAC) on Wednesday announced…

Sentry RCE Vulnerability
21
Mar
2024

Ivanti Releases Urgent Fix for Critical Sentry RCE Vulnerability

Mar 21, 2024NewsroomVulnerability / Web Security Ivanti has disclosed details of a critical remote code execution flaw impacting Standalone Sentry,…