Category: TheHackerNews

PyPI Package
17
Jan
2023

Researchers Uncover 3 PyPI Packages Spreading Malware to Developer Systems

Jan 17, 2023Ravie LakshmananSoftware Security / Supply Chain A threat actor by the name Lolip0p has uploaded three rogue packages…

Identity Management
16
Jan
2023

A Secure User Authentication Method – Planning is More Important than Ever

Jan 16, 2023The Hacker NewsIdentity Management / MFA When considering authentication providers, many organizations consider the ease of configuration, ubiquity…

Fake Cracked Software
16
Jan
2023

Raccoon and Vidar Stealers Spreading via Massive Network of Fake Cracked Software

Jan 16, 2023Ravie LakshmananData Security / Cyber Threat A “large and resilient infrastructure” comprising over 250 domains is being used…

Industrial Control Systems
16
Jan
2023

CISA Warns for Flaws Affecting Industrial Control Systems from Major Manufacturers

Jan 16, 2023Ravie LakshmananIndustrial Control Systems The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has released several Industrial Control Systems…

CIA's Hive Malware
16
Jan
2023

New Backdoor Created Using Leaked CIA’s Hive Malware Discovered in the Wild

Jan 16, 2023Ravie LakshmananThreat Landscape / Malware Unidentified threat actors have deployed a new backdoor that borrows its features from…

CircleCI Hack
14
Jan
2023

Malware Attack on CircleCI Engineer’s Laptop Leads to Recent Security Incident

Jan 14, 2023Ravie LakshmananDevOps / Data Security DevOps platform CircleCI on Friday disclosed that unidentified threat actors compromised an employee’s…

Cacti Server Vulnerability
14
Jan
2023

Cacti Servers Under Attack as Majority Fail to Patch Critical Vulnerability

Jan 14, 2023Ravie LakshmananServer Security / Patch Management A majority of internet-exposed Cacti servers have not been patched against a…

TikTok
14
Jan
2023

TikTok Fined $5.4 Million by French Regulator for Violating Cookie Laws

Jan 14, 2023Ravie LakshmananPrivacy / Online Safety Popular short-form video hosting service TikTok has been fined €5 million (about $5.4…

Cisco Router
14
Jan
2023

Cisco Issues Warning for Unpatched Vulnerabilities in EoL Business Routers

Jan 14, 2023Ravie LakshmananNetwork Security / Bug Report Cisco has warned of two security vulnerabilities affecting end-of-life (EoL) Small Business…

EyeSpy Surveillanceware
13
Jan
2023

Tainted VPNs Being Used to Spread EyeSpy Surveillanceware

Jan 13, 2023Ravie LakshmananVPN / Surveillanceware Tainted VPN installers are being used to deliver a piece of surveillanceware dubbed EyeSpy…

FortiOS Flaw
13
Jan
2023

FortiOS Flaw Exploited as Zero-Day in Attacks on Government and Organizations

Jan 13, 2023Ravie LakshmananZero-Day / Incident Response A zero-day vulnerability in FortiOS SSL-VPN that Fortinet addressed last month was exploited…

Polyglot Files in Malware Distribution
13
Jan
2023

Cybercriminals Using Polyglot Files in Malware Distribution to Fly Under the Radar

Jan 13, 2023Ravie LakshmananCyber Threat / Malware Detection Remote access trojans such as StrRAT and Ratty are being distributed as…