Category: TheHackerNews

Over 46,000 Fake npm Packages Flood Registry in Worm-Like Spam Attack
13
Nov
2025

Over 46,000 Fake npm Packages Flood Registry in Worm-Like Spam Attack

Cybersecurity researchers are calling attention to a large-scale spam campaign that has flooded the npm registry with thousands of fake…

Lighthouse Phishing Platform
12
Nov
2025

 Google Sues China-Based Hackers Behind $1 Billion Lighthouse Phishing Platform

Nov 12, 2025Ravie LakshmananCybercrime / Malware Google has filed a civil lawsuit in the U.S. District Court for the Southern…

Amazon Uncovers Attacks Exploited Cisco ISE and Citrix NetScaler as Zero-Day Flaws
12
Nov
2025

Amazon Uncovers Attacks Exploited Cisco ISE and Citrix NetScaler as Zero-Day Flaws

Nov 12, 2025Ravie LakshmananNetwork Security / Zero-Day Amazon’s threat intelligence team on Wednesday disclosed that it observed an advanced threat…

[Webinar] Learn How Leading Security Teams Reduce Attack Surface Exposure with DASR
12
Nov
2025

[Webinar] Learn How Leading Security Teams Reduce Attack Surface Exposure with DASR

Nov 12, 2025The Hacker NewsThreat Detection / Risk Management Every day, security teams face the same problem—too many risks, too…

Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack
12
Nov
2025

Microsoft Fixes 63 Security Flaws, Including a Windows Kernel Zero-Day Under Active Attack

Nov 12, 2025Ravie LakshmananVulnerability / Patch Tuesday Microsoft on Tuesday released patches for 63 new security vulnerabilities identified in its…

Why Critical Infrastructure Needs Stronger Security
12
Nov
2025

Why Critical Infrastructure Needs Stronger Security

Active Directory remains the authentication backbone for over 90% of Fortune 1000 companies. AD’s importance has grown as companies adopt…

Google Launches 'Private AI Compute' — Secure AI Processing with On-Device-Level Privacy
12
Nov
2025

Google Launches ‘Private AI Compute’ — Secure AI Processing with On-Device-Level Privacy

Nov 12, 2025Ravie LakshmananArtificial Intelligence / Encryption Google on Tuesday unveiled a new privacy-enhancing technology called Private AI Compute to…

WhatsApp Malware 'Maverick' Hijacks Browser Sessions to Target Brazil's Biggest Banks
11
Nov
2025

WhatsApp Malware ‘Maverick’ Hijacks Browser Sessions to Target Brazil’s Biggest Banks

Threat hunters have uncovered similarities between a banking malware called Coyote and a newly disclosed malicious program dubbed Maverick that…

GootLoader Is Back, Using a New Font Trick to Hide Malware on WordPress Sites
11
Nov
2025

GootLoader Is Back, Using a New Font Trick to Hide Malware on WordPress Sites

Nov 11, 2025Ravie LakshmananMalware / Network Security The malware known as GootLoader has resurfaced yet again after a brief spike…

Android Trojan 'Fantasy Hub' Malware Service Turns Telegram Into a Hub for Hackers
11
Nov
2025

Android Trojan ‘Fantasy Hub’ Malware Service Turns Telegram Into a Hub for Hackers

Cybersecurity researchers have disclosed details of a new Android remote access trojan (RAT) called Fantasy Hub that’s sold on Russian-speaking…

Researchers Detect Malicious npm Package Targeting GitHub-Owned Repositories
11
Nov
2025

Researchers Detect Malicious npm Package Targeting GitHub-Owned Repositories

Nov 11, 2025Ravie LakshmananSoftware Supply Chain / Malware Cybersecurity researchers have discovered a malicious npm package named “@acitons/artifact” that typosquats…

CISO's Expert Guide To AI Supply Chain Attacks
11
Nov
2025

CISO’s Expert Guide To AI Supply Chain Attacks

AI-enabled supply chain attacks jumped 156% last year. Discover why traditional defenses are failing and what CISOs must do now…