Category: TheHackerNews

GhostRedirector Hacks 65 Windows Servers Using Rungan Backdoor and Gamshen IIS Module
04
Sep
2025

GhostRedirector Hacks 65 Windows Servers Using Rungan Backdoor and Gamshen IIS Module

Cybersecurity researchers have lifted the lid on a previously undocumented threat cluster dubbed GhostRedirector that has managed to compromise at…

Russian APT28 Deploys "NotDoor" Outlook Backdoor Against Companies in NATO Countries
04
Sep
2025

Russian APT28 Deploys “NotDoor” Outlook Backdoor Against Companies in NATO Countries

Sep 04, 2025Ravie LakshmananCybersecurity / Malware The Russian state-sponsored hacking group tracked as APT28 has been attributed to a new…

CISA Flags TP-Link Router Flaws CVE-2023-50224 and CVE-2025-9377 as Actively Exploited
04
Sep
2025

CISA Flags TP-Link Router Flaws CVE-2023-50224 and CVE-2025-9377 as Actively Exploited

Sep 04, 2025Ravie LakshmananVulnerability / Network Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added two security…

Google Fined $379 Million by French Regulator for Cookie Consent Violations
04
Sep
2025

Google Fined $379 Million by French Regulator for Cookie Consent Violations

Sep 04, 2025Ravie LakshmananGDPR / Data Privacy The French data protection authority has fined Google and Chinese e-commerce giant Shein…

Grok AI to Bypass Ad Protections
04
Sep
2025

Cybercriminals Exploit X’s Grok AI to Bypass Ad Protections and Spread Malware to Millions

Sep 04, 2025Ravie LakshmananArtificial Intelligence / Malware Cybersecurity researchers have flagged a new technique that cybercriminals have adopted to bypass…

Malicious npm Packages Exploit Ethereum Smart Contracts to Target Crypto Developers
04
Sep
2025

Malicious npm Packages Exploit Ethereum Smart Contracts to Target Crypto Developers

Sep 03, 2025Ravie LakshmananMalware / Social Engineering Cybersecurity researchers have discovered two new malicious packages on the npm registry that…

Google Patches 120 Flaws, Including Two Zero-Days Under Attack
03
Sep
2025

Google Patches 120 Flaws, Including Two Zero-Days Under Attack

Sep 03, 2025Ravie LakshmananMobile Security / Vulnerability Google has shipped security updates to address 120 security flaws in its Android…

Detecting Data Leaks Before Disaster
03
Sep
2025

Detecting Data Leaks Before Disaster

In January 2025, cybersecurity experts at Wiz Research found that Chinese AI specialist DeepSeek had suffered a data leak, putting…

Threat Actors Weaponize HexStrike AI to Exploit Citrix Flaws Within a Week of Disclosure
03
Sep
2025

Threat Actors Weaponize HexStrike AI to Exploit Citrix Flaws Within a Week of Disclosure

Sep 03, 2025Ravie LakshmananArtificial Intelligence / Vulnerability Threat actors are attempting to leverage a newly released artificial intelligence (AI) offensive…

Iranian Hackers Exploit 100+ Embassy Email Accounts in Global Phishing Targeting Diplomats
03
Sep
2025

Iranian Hackers Exploit 100+ Embassy Email Accounts in Global Phishing Targeting Diplomats

Sep 03, 2025Ravie LakshmananData Breach / Cyber Espionage An Iran-nexus group has been linked to a “coordinated” and “multi-wave” spear-phishing…

Cloudflare Blocks Record-Breaking 11.5 Tbps DDoS Attack
03
Sep
2025

Cloudflare Blocks Record-Breaking 11.5 Tbps DDoS Attack

Sep 03, 2025Ravie LakshmananThreat Intelligence / Network Security Cloudflare on Tuesday said it automatically mitigated a record-setting volumetric distributed denial-of-service…

CISA Adds TP-Link and WhatsApp Flaws to KEV Catalog Amid Active Exploitation
03
Sep
2025

CISA Adds TP-Link and WhatsApp Flaws to KEV Catalog Amid Active Exploitation

Sep 03, 2025Ravie LakshmananVulnerability / Mobile Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a high-severity…