The Hacker News

Syndikovat obsah
The Hacker News has been internationally recognized as a leading news source dedicated to promoting awareness for security experts and [email protected]
Aktualizace: 8 min 15 sek zpět

Polyfill[.]io Attack Impacts Over 380,000 Hosts, Including Major Companies

5 Červenec, 2024 - 06:18
The supply chain attack targeting the widely-used Polyfill[.]io JavaScript library is broader in scope than previously thought, with new findings from Censys showing that over 380,000 hosts are embedding a polyfill script linking to the malicious domain as of July 2, 2024. This includes references to "https://cdn.polyfill[.]io" or "https://cdn.polyfill[.]com" in their HTTP responses, the attack Newsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

New Golang-Based Zergeca Botnet Capable of Powerful DDoS Attacks

5 Červenec, 2024 - 05:52
Cybersecurity researchers have uncovered a new botnet called Zergeca that's capable of conducting distributed denial-of-service (DDoS) attacks. Written in Golang, the botnet is so named for its reference to a string named "ootheca" present in the command-and-control (C2) servers ("ootheca[.]pw" and "ootheca[.]top"). "Functionally, Zergeca is not just a typical DDoS botnet; besides supporting six
Kategorie: Hacking & Security

New Golang-Based Zergeca Botnet Capable of Powerful DDoS Attacks

5 Červenec, 2024 - 05:52
Cybersecurity researchers have uncovered a new botnet called Zergeca that's capable of conducting distributed denial-of-service (DDoS) attacks. Written in Golang, the botnet is so named for its reference to a string named "ootheca" present in the command-and-control (C2) servers ("ootheca[.]pw" and "ootheca[.]top"). "Functionally, Zergeca is not just a typical DDoS botnet; besides supporting sixNewsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Microsoft Uncovers Critical Flaws in Rockwell Automation PanelView Plus

4 Červenec, 2024 - 11:10
Microsoft has revealed two security flaws in Rockwell Automation PanelView Plus that could be weaponized by remote, unauthenticated attackers to execute arbitrary code and trigger a denial-of-service (DoS) condition. "The [remote code execution] vulnerability in PanelView Plus involves two custom classes that can be abused to upload and load a malicious DLL into the device," security researcher
Kategorie: Hacking & Security

Microsoft Uncovers Critical Flaws in Rockwell Automation PanelView Plus

4 Červenec, 2024 - 11:10
Microsoft has revealed two security flaws in Rockwell Automation PanelView Plus that could be weaponized by remote, unauthenticated attackers to execute arbitrary code and trigger a denial-of-service (DoS) condition. "The [remote code execution] vulnerability in PanelView Plus involves two custom classes that can be abused to upload and load a malicious DLL into the device," security researcher Newsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Brazil Halts Meta's AI Data Processing Amid Privacy Concerns

4 Červenec, 2024 - 08:58
Brazil's data protection authority, Autoridade Nacional de Proteção de Dados (ANPD), has temporarily banned Meta from processing users' personal data to train the company's artificial intelligence (AI) algorithms. The ANPD said it found "evidence of processing of personal data based on inadequate legal hypothesis, lack of transparency, limitation of the rights of data subjects, and risks to
Kategorie: Hacking & Security

Brazil Halts Meta's AI Data Processing Amid Privacy Concerns

4 Červenec, 2024 - 08:58
Brazil's data protection authority, Autoridade Nacional de Proteção de Dados (ANPD), has temporarily banned Meta from processing users' personal data to train the company's artificial intelligence (AI) algorithms. The ANPD said it found "evidence of processing of personal data based on inadequate legal hypothesis, lack of transparency, limitation of the rights of data subjects, and risks to Newsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Global Police Operation Shuts Down 600 Cybercrime Servers Linked to Cobalt Strike

4 Červenec, 2024 - 05:59
A coordinated law enforcement operation codenamed MORPHEUS has felled close to 600 servers that were used by cybercriminal groups and were part of an attack infrastructure associated with the Cobalt Strike tool.  The crackdown targeted older, unlicensed versions of the Cobalt Strike red teaming framework between June 24 and 28, according to Europol. Of the 690 IP addresses that were flagged
Kategorie: Hacking & Security

Global Police Operation Shuts Down 600 Cybercrime Servers Linked to Cobalt Strike

4 Červenec, 2024 - 05:59
A coordinated law enforcement operation codenamed MORPHEUS has felled close to 600 servers that were used by cybercriminal groups and were part of an attack infrastructure associated with the Cobalt Strike tool.  The crackdown targeted older, unlicensed versions of the Cobalt Strike red teaming framework between June 24 and 28, according to Europol. Of the 690 IP addresses that were flaggedNewsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Twilio's Authy App Attack Exposes Millions of Phone Numbers

4 Červenec, 2024 - 05:37
Cloud communications provider Twilio has revealed that unidentified threat actors took advantage of an unauthenticated endpoint in Authy to identify data associated with Authy accounts, including users' cell phone numbers. The company said it took steps to secure the endpoint to no longer accept unauthenticated requests. The development comes days after an online persona named ShinyHunters
Kategorie: Hacking & Security

Twilio's Authy App Breach Exposes Millions of Phone Numbers

4 Červenec, 2024 - 05:37
Cloud communications provider Twilio has revealed that unidentified threat actors took advantage of an unauthenticated endpoint in Authy to identify data associated with Authy accounts, including users' cell phone numbers. The company said it took steps to secure the endpoint to no longer accept unauthenticated requests. The development comes days after an online persona named ShinyHunters Newsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

The Emerging Role of AI in Open-Source Intelligence

3 Červenec, 2024 - 13:00
Recently the Office of the Director of National Intelligence (ODNI) unveiled a new strategy for open-source intelligence (OSINT) and referred to OSINT as the “INT of first resort”. Public and private sector organizations are realizing the value that the discipline can provide but are also finding that the exponential growth of digital data in recent years has overwhelmed many traditional OSINT
Kategorie: Hacking & Security

The Emerging Role of AI in Open-Source Intelligence

3 Červenec, 2024 - 13:00
Recently the Office of the Director of National Intelligence (ODNI) unveiled a new strategy for open-source intelligence (OSINT) and referred to OSINT as the “INT of first resort”. Public and private sector organizations are realizing the value that the discipline can provide but are also finding that the exponential growth of digital data in recent years has overwhelmed many traditional OSINT The Hacker Newshttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Microsoft MSHTML Flaw Exploited to Deliver MerkSpy Spyware Tool

3 Červenec, 2024 - 11:53
Unknown threat actors have been observed exploiting a now-patched security flaw in Microsoft MSHTML to deliver a surveillance tool called MerkSpy as part of a campaign primarily targeting users in Canada, India, Poland, and the U.S. "MerkSpy is designed to clandestinely monitor user activities, capture sensitive information, and establish persistence on compromised systems," Fortinet FortiGuard
Kategorie: Hacking & Security

Microsoft MSHTML Flaw Exploited to Deliver MerkSpy Spyware Tool

3 Červenec, 2024 - 11:53
Unknown threat actors have been observed exploiting a now-patched security flaw in Microsoft MSHTML to deliver a surveillance tool called MerkSpy as part of a campaign primarily targeting users in Canada, India, Poland, and the U.S. "MerkSpy is designed to clandestinely monitor user activities, capture sensitive information, and establish persistence on compromised systems," Fortinet FortiGuard Newsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

FakeBat Loader Malware Spreads Widely Through Drive-by Download Attacks

3 Červenec, 2024 - 09:05
The loader-as-a-service (LaaS) known as FakeBat has become one of the most widespread loader malware families distributed using the drive-by download technique this year, findings from Sekoia reveal. "FakeBat primarily aims to download and execute the next-stage payload, such as IcedID, Lumma, RedLine, SmokeLoader, SectopRAT, and Ursnif," the company said in a Tuesday analysis. Drive-by attacks
Kategorie: Hacking & Security

FakeBat Loader Malware Spreads Widely Through Drive-by Download Attacks

3 Červenec, 2024 - 09:05
The loader-as-a-service (LaaS) known as FakeBat has become one of the most widespread loader malware families distributed using the drive-by download technique this year, findings from Sekoia reveal. "FakeBat primarily aims to download and execute the next-stage payload, such as IcedID, Lumma, RedLine, SmokeLoader, SectopRAT, and Ursnif," the company said in a Tuesday analysis. Drive-by attacks Newsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Israeli Entities Targeted by Cyberattack Using Donut and Sliver Frameworks

3 Červenec, 2024 - 05:56
Cybersecurity researchers have discovered an attack campaign that targets various Israeli entities with publicly-available frameworks like Donut and Sliver. The campaign, believed to be highly targeted in nature, "leverage target-specific infrastructure and custom WordPress websites as a payload delivery mechanism, but affect a variety of entities across unrelated verticals, and rely on
Kategorie: Hacking & Security

Israeli Entities Targeted by Cyberattack Using Donut and Sliver Frameworks

3 Červenec, 2024 - 05:56
Cybersecurity researchers have discovered an attack campaign that targets various Israeli entities with publicly-available frameworks like Donut and Sliver. The campaign, believed to be highly targeted in nature, "leverage target-specific infrastructure and custom WordPress websites as a payload delivery mechanism, but affect a variety of entities across unrelated verticals, and rely on Newsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

South Korean ERP Vendor's Server Hacked to Spread Xctdoor Malware

3 Červenec, 2024 - 05:33
An unnamed South Korean enterprise resource planning (ERP) vendor's product update server has been found to be compromised to deliver a Go-based backdoor dubbed Xctdoor. The AhnLab Security Intelligence Center (ASEC), which identified the attack in May 2024, did not attribute it to a known threat actor or group, but noted that the tactics overlap with that of Andariel, a sub-cluster within the
Kategorie: Hacking & Security