Category: TheHackerNews

Authentication Bypass
19
Sep
2024

GitLab Patches Critical SAML Authentication Bypass Flaw in CE and EE Editions

Sep 19, 2024Ravie LakshmananEnterprise Security / DevOps GitLab has released patches to address a critical flaw impacting Community Edition (CE)…

IoT Botnet
18
Sep
2024

New “Raptor Train” IoT Botnet Compromises Over 200,000 Devices Worldwide

Cybersecurity researchers have uncovered a never-before-seen botnet comprising an army of small office/home office (SOHO) and IoT devices that are…

Chinese Engineer Charged in U.S. for Years-Long Cyber Espionage Targeting NASA and Military
18
Sep
2024

Chinese Engineer Charged in U.S. for Years-Long Cyber Espionage Targeting NASA and Military

A Chinese national has been indicted in the U.S. on charges of conducting a “multi-year” spear-phishing campaign to obtain unauthorized…

Penetration Testing
18
Sep
2024

Why Pay A Pentester?

The evolution of software always catches us by surprise. I remember betting against the IBM computer Deep Blue during its…

MISTPEN Malware
18
Sep
2024

North Korean Hackers Target Energy and Aerospace Industries with New MISTPEN Malware

Sep 18, 2024Ravie LakshmananCyber Espionage / Malware A North Korea-linked cyber-espionage group has been observed leveraging job-themed phishing lures to…

Chrome Safer Browsing
18
Sep
2024

Chrome Introduces One-Time Permissions and Enhanced Safety Check for Safer Browsing

Sep 18, 2024Ravie LakshmananBrowser Security / Privacy Google has announced that it’s rolling out a new set of features to…

End-to-End Encryption
18
Sep
2024

GSMA Plans End-to-End Encryption for Cross-Platform RCS Messaging

Sep 18, 2024Ravie LakshmananMobile Security / Encryption The GSM Association, the governing body that oversees the development of the Rich…

VMware vCenter
18
Sep
2024

Patch Issued for Critical VMware vCenter Flaw Allowing Remote Code Execution

Sep 18, 2024Ravie LakshmananVirtualization / Network Security Broadcom on Tuesday released updates to address a critical security flaw impacting VMware…

Facebook and Instagram Posts
17
Sep
2024

Meta to Train AI Models Using Public U.K. Facebook and Instagram Posts

Sep 17, 2024Ravie LakshmananArtificial Intelligence / Regulatory Compliance Meta has announced that it will begin training its artificial intelligence (AI)…

Intellexa Predator Spyware Operation
17
Sep
2024

U.S. Treasury Sanctions Executives Linked to Intellexa Predator Spyware Operation

Sep 17, 2024Ravie LakshmananSpyware / Privacy The U.S. Department of Treasury has imposed fresh sanctions against five executives and one…

Post-Quantum Cryptography Defense
17
Sep
2024

Google Chrome Switches to ML-KEM for Post-Quantum Cryptography Defense

Sep 17, 2024Ravie LakshmananBrowser Security / Quantum Computing Google has announced that it will be switching from KYBER to ML-KEM…

Google Workspace
17
Sep
2024

How to Investigate ChatGPT activity in Google Workspace

Sep 17, 2024The Hacker NewsGenAI Security / SaaS Security Since launching ChatGPT in 2022, OpenAI has defied expectations with a…