Category: TheHackerNews

Researchers Uncover ECScape Flaw in Amazon ECS Enabling Cross-Task Credential Theft
07
Aug
2025

Researchers Uncover ECScape Flaw in Amazon ECS Enabling Cross-Task Credential Theft

Aug 06, 2025Ravie LakshmananDevOps / Container Security Cybersecurity researchers have demonstrated an “end-to-end privilege escalation chain” in Amazon Elastic Container…

Fake VPN and Spam Blocker Apps Tied to VexTrio Used in Ad Fraud, Subscription Scams
06
Aug
2025

Fake VPN and Spam Blocker Apps Tied to VexTrio Used in Ad Fraud, Subscription Scams

The malicious ad tech purveyor known as VexTrio Viper has been observed developing several malicious apps that have been published…

Trend Micro Confirms Active Exploitation of Critical Apex One Flaws in On-Premise Systems
06
Aug
2025

Trend Micro Confirms Active Exploitation of Critical Apex One Flaws in On-Premise Systems

Aug 06, 2025Ravie LakshmananVulnerability / Endpoint Security Trend Micro has released mitigations to address critical security flaws in on-premise versions…

Microsoft Launches Project Ire to Autonomously Classify Malware Using AI Tools
06
Aug
2025

Microsoft Launches Project Ire to Autonomously Classify Malware Using AI Tools

Aug 06, 2025Ravie LakshmananArtificial Intelligence / Threat Detection Microsoft on Tuesday announced an autonomous artificial intelligence (AI) agent that can…

AI Slashes Workloads for vCISOs by 68% as SMBs Demand More – New Report Reveals
06
Aug
2025

AI Slashes Workloads for vCISOs by 68% as SMBs Demand More – New Report Reveals

Aug 06, 2025The Hacker NewsCompliance / Security Operations As the volume and sophistication of cyber threats and risks grow, cybersecurity…

HTA-Delivered C# Malware
06
Aug
2025

CERT-UA Warns of HTA-Delivered C# Malware Attacks Using Court Summons Lures

Aug 06, 2025Ravie LakshmananCyber Espionage / Malware The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of cyber attacks…

06
Aug
2025

http://thehackernews.com/2025/08/cert-ua-warns-of-hta-delivered-c.html

The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of cyber attacks carried out by a threat actor called…

D-Link Vulnerabilities
06
Aug
2025

CISA Adds 3 D-Link Vulnerabilities to KEV Catalog Amid Active Exploitation Evidence

Aug 06, 2025Ravie LakshmananVulnerability / Firmware Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added three old…

AI Is Transforming Cybersecurity Adversarial Testing
06
Aug
2025

AI Is Transforming Cybersecurity Adversarial Testing

When Technology Resets the Playing Field In 2015 I founded a cybersecurity testing software company with the belief that automated…

ClickFix Malware Campaign Exploits CAPTCHAs to Spread Cross-Platform Infections
05
Aug
2025

ClickFix Malware Campaign Exploits CAPTCHAs to Spread Cross-Platform Infections

Aug 05, 2025Ravie LakshmananSocial Engineering / Malware A combination of propagation methods, narrative sophistication, and evasion techniques enabled the social…

Cursor AI Code Editor Vulnerability
05
Aug
2025

Cursor AI Code Editor Vulnerability Enables RCE via Malicious MCP File Swaps Post Approval

Aug 05, 2025Ravie LakshmananAI Security / MCP Protocol Cybersecurity researchers have disclosed a high-severity security flaw in the artificial intelligence…

Google's August Patch Fixes Two Qualcomm Vulnerabilities Exploited in the Wild
05
Aug
2025

Google’s August Patch Fixes Two Qualcomm Vulnerabilities Exploited in the Wild

Aug 05, 2025Ravie LakshmananVulnerability / Mobile Security Google has released security updates to address multiple security flaws in Android, including…