Category: TheHackerNews

Apache Superset Vulnerability
26
Apr
2023

Insecure Default Configuration Exposes Servers to RCE Attacks

Apr 26, 2023Ravie LakshmananServer Security / Vulnerability The maintainers of the Apache Superset open source data visualization software have released…

VMware
26
Apr
2023

VMware Releases Critical Patches for Workstation and Fusion Software

Apr 26, 2023Ravie LakshmananVirtual Machine / Cybersecurity VMware has released updates to resolve multiple security flaws impacting its Workstation and…

New SLP Vulnerability Could Let Attackers Launch 2200x Powerful DDoS Attacks
25
Apr
2023

New SLP Vulnerability Could Let Attackers Launch 2200x Powerful DDoS Attacks

Apr 25, 2023Ravie LakshmananNetwork Security / DDoS Details have emerged about a high-severity security vulnerability impacting Service Location Protocol (SLP)…

Iranian Hackers
25
Apr
2023

Iranian Hackers Launch Sophisticated Attacks Targeting Israel with PowerLess Backdoor

Apr 25, 2023Ravie LakshmananCyber Threat / PowerShell An Iranian nation-state threat actor has been linked to a new wave of…

Threat Detection and Analysis
25
Apr
2023

Google Cloud Introduces Security AI Workbench for Faster Threat Detection and Analysis

Apr 25, 2023Ravie LakshmananArtificial Intelligence / Threat Detection Google’s cloud division is following in the footsteps of Microsoft with the…

Vulnerability Management
25
Apr
2023

The Move Toward Exposure Management

Apr 25, 2023The Hacker NewsVulnerability Management Managing vulnerabilities in the constantly evolving technological landscape is a difficult task. Although vulnerabilities…

RustBucket macOS Malware
25
Apr
2023

Lazarus Subgroup Targeting Apple Devices with New RustBucket macOS Malware

A financially-motivated North Korean threat actor is suspected to be behind a new Apple macOS malware strain called RustBucket. “[RustBucket]…

Google Authenticator
25
Apr
2023

Google Authenticator App Gets Cloud Backup Feature for TOTP Codes

Apr 25, 2023Ravie LakshmananPassword Security / Authentication Search giant Google on Monday unveiled a major update to its 12-year-old Authenticator…

Ransomware Hackers
24
Apr
2023

Ransomware Hackers Using AuKill Tool to Disable EDR Software Using BYOVD Attack

Apr 24, 2023Ravie LakshmananEndpoint Security / BYOVD Threat actors are employing a previously undocumented “defense evasion tool” dubbed AuKill that’s…

Russian Hackers
24
Apr
2023

Russian Hackers Tomiris Targeting Central Asia for Intelligence Gathering

Apr 24, 2023Ravie LakshmananCyber Espionage The Russian-speaking threat actor behind a backdoor known as Tomiris is primarily focused on gathering…

WordPress Sites
24
Apr
2023

Hackers Exploit Outdated WordPress Plugin to Backdoor Thousands of WordPress Sites

Apr 24, 2023Ravie LakshmananServer Security / WordPress Threat actors have been observed leveraging a legitimate but outdated WordPress plugin to…

SaaS Security
24
Apr
2023

Study: 84% of Companies Use Breached SaaS Applications

Apr 24, 2023The Hacker NewsSaaS Security A recent review by Wing Security, a SaaS security company that analyzed the data…