Category: TheHackerNews

U.S. Treasury Systems
31
Dec
2024

Chinese APT Exploits BeyondTrust API Key to Access U.S. Treasury Systems and Documents

Dec 31, 2025Ravie LakshmananVulnerability / Incident Response The United States Treasury Department said it suffered a “major cybersecurity incident” that…

Misconfigured Kubernetes RBAC in Azure Airflow Could Expose Entire Cluster to Exploitation
31
Dec
2024

Misconfigured Kubernetes RBAC in Azure Airflow Could Expose Entire Cluster to Exploitation

Cybersecurity researchers have uncovered three security weaknesses in Microsoft’s Azure Data Factory Apache Airflow integration that, if successfully exploited, could…

New HIPAA Rules Mandate 72-Hour Data Restoration and Annual Compliance Audits
30
Dec
2024

New HIPAA Rules Mandate 72-Hour Data Restoration and Annual Compliance Audits

Dec 30, 2025Ravie LakshmananCybersecurity / Compliance The United States Department of Health and Human Services’ (HHS) Office for Civil Rights…

Browser Extensions
30
Dec
2024

Takeaways from the Campaign Targeting Browser Extensions

Dec 30, 2025The Hacker NewsBrowser Security / GenAI Security News has been making headlines over the weekend of the extensive…

Chrome Extensions
29
Dec
2024

16 Chrome Extensions Hacked, Exposing Over 600,000 Users to Data Theft

Dec 29, 2025Ravie LakshmananEndpoint Protection / Browser Security A new attack campaign has targeted known Chrome browser extensions, leading to…

New Exploit
28
Dec
2024

15,000+ Four-Faith Routers Exposed to New Exploit Due to Default Credentials

Dec 28, 2024Ravie LakshmananVulnerability / Threat Intelligence A high-severity flaw impacting select Four-Faith routers has come under active exploitation in…

OtterCookie Malware
27
Dec
2024

North Korean Hackers Deploy OtterCookie Malware in Contagious Interview Campaign

Dec 27, 2024Ravie LakshmananCryptocurrency / Cyber Espionage North Korean threat actors behind the ongoing Contagious Interview campaign have been observed…

VBCloud Malware
27
Dec
2024

Over 80% of Targets Found in Russia

Dec 27, 2024Ravie LakshmananCyber Attack / Data Theft The threat actor known as Cloud Atlas has been observed using a…

FICORA and Kaiten Botnets
27
Dec
2024

FICORA and Kaiten Botnets Exploit Old D-Link Vulnerabilities for Global Attacks

Dec 27, 2024Ravie LakshmananBotnet / DDoS Attack Cybersecurity researchers are warning about a spike in malicious activity that involves roping…

PAN-OS DoS Flaw
27
Dec
2024

Palo Alto Releases Patch for PAN-OS DoS Flaw — Update Immediately

Dec 27, 2024Ravie LakshmananFirewall Security / Vulnerability Palo Alto Networks has disclosed a high-severity vulnerability impacting PAN-OS software that could…

CVSS 10.0 Flaw Enables RCE via Unsafe Serialization
27
Dec
2024

CVSS 10.0 Flaw Enables RCE via Unsafe Serialization

Dec 27, 2024Ravie LakshmananVulnerability / Software Security The Apache Software Foundation (ASF) has released patches to address a maximum severity…

Brazilian Hacker
26
Dec
2024

Brazilian Hacker Charged for Extorting $3.2M in Bitcoin After Breaching 300,000 Accounts

Dec 26, 2024Ravie LakshmananCybercrime / Ransomware A Brazilian citizen has been charged in the United States for allegedly threatening to…