Category: TheHackerNews

Iranian Hackers Maintain 2-Year Access to Middle East CNI via VPN Flaws and Malware
03
May
2025

Iranian Hackers Maintain 2-Year Access to Middle East CNI via VPN Flaws and Malware

May 03, 2025Ravie LakshmananMalware / Operational Technology An Iranian state-sponsored threat group has been attributed to a long-term cyber intrusion…

U.S. Charges Yemeni Hacker Behind Black Kingdom Ransomware Targeting 1,500 Systems
03
May
2025

U.S. Charges Yemeni Hacker Behind Black Kingdom Ransomware Targeting 1,500 Systems

The U.S. Department of Justice (DoJ) on Thursday announced charges against a 36-year-old Yemeni national for allegedly deploying the Black…

TikTok Slammed With €530M GDPR
02
May
2025

TikTok Slammed With €530 Million GDPR Fine for Sending E.U. Data to China

May 02, 2025Ravie LakshmananData Privacy / Social Media Ireland’s Data Protection Commission (DPC) on Friday fined popular video-sharing platform TikTok…

How to Automate CVE and Vulnerability Advisory Response with Tines
02
May
2025

How to Automate CVE and Vulnerability Advisory Response with Tines

May 02, 2025The Hacker NewsVulnerability Management / Security Operations Run by the team at workflow orchestration and AI platform Tines,…

MintsLoader Drops GhostWeaver via Phishing, ClickFix
02
May
2025

MintsLoader Drops GhostWeaver via Phishing, ClickFix — Uses DGA, TLS for Stealth Attacks

May 02, 2025Ravie LakshmananMalware / Threat Intelligence The malware loader known as MintsLoader has been used to deliver a PowerShell-based…

Microsoft Makes Passkeys Default for New Accounts
02
May
2025

Microsoft Sets Passkeys Default for New Accounts; 15 Billion Users Gain Passwordless Support

May 02, 2025Ravie LakshmananPassword Security / Windows A year after Microsoft announced passkeys support for consumer accounts, the tech giant…

Fake Security Plugin on WordPress
01
May
2025

Fake Security Plugin on WordPress Enables Remote Admin Access for Attackers

May 01, 2025Ravie LakshmananMalware / Web Skimming Cybersecurity researchers have shed light on a new campaign targeting WordPress sites that…

Claude AI Exploited to Operate 100+ Fake Political Personas in Global Influence Campaign
01
May
2025

Claude AI Exploited to Operate 100+ Fake Political Personas in Global Influence Campaign

May 01, 2025Ravie LakshmananArtificial Intelligence / Disinformation Artificial intelligence (AI) company Anthropic has revealed that unknown threat actors leveraged its…

Why top SOC teams are shifting to Network Detection and Response
01
May
2025

Why top SOC teams are shifting to Network Detection and Response

Security Operations Center (SOC) teams are facing a fundamentally new challenge — traditional cybersecurity tools are failing to detect advanced…

DarkWatchman, Sheriff Malware Hit Russia and Ukraine with Stealth and Nation-Grade Tactics
01
May
2025

DarkWatchman, Sheriff Malware Hit Russia and Ukraine with Stealth and Nation-Grade Tactics

Russian companies have been targeted as part of a large-scale phishing campaign that’s designed to deliver a known malware called…

95% of AppSec Fixes Don't Reduce Risk
01
May
2025

95% of AppSec Fixes Don’t Reduce Risk

For over a decade, application security teams have faced a brutal irony: the more advanced the detection tools became, the…

Zero-Day in Azure Breach
01
May
2025

Commvault Confirms Hackers Exploited CVE-2025-3928 as Zero-Day in Azure Breach

May 01, 2025Ravie LakshmananZero-Day / Threat Intelligence Enterprise data backup platform Commvault has revealed that an unknown nation-state threat actor…