
- Google Patches Chrome Zero-Day CVE-2025-10585 as Active V8 Exploit Threatens Millionsby info@thehackernews.com (The Hacker News) (The Hacker News) on September 18, 2025 at 5:49 am
Google on Wednesday released security updates for the Chrome web browser to address four vulnerabilities, including one that it said has been exploited in the wild. The zero-day […]
- TA558 Uses AI-Generated Scripts to Deploy Venom RAT in Brazil Hotel Attacksby info@thehackernews.com (The Hacker News) (The Hacker News) on September 17, 2025 at 6:30 pm
The threat actor known as TA558 has been attributed to a fresh set of attacks delivering various remote access trojans (RATs) like Venom RAT to breach hotels in Brazil and […]
- From Quantum Hacks to AI Defenses – Expert Guide to Building Unbreakable Cyber Resilienceby info@thehackernews.com (The Hacker News) (The Hacker News) on September 17, 2025 at 12:56 pm
Quantum computing and AI working together will bring incredible opportunities. Together, the technologies will help us extend innovation further and faster than ever before. But, […]
- Chinese TA415 Uses VS Code Remote Tunnels to Spy on U.S. Economic Policy Expertsby info@thehackernews.com (The Hacker News) (The Hacker News) on September 17, 2025 at 12:56 pm
A China-aligned threat actor known as TA415 has been attributed to spear-phishing campaigns targeting the U.S. government, think tanks, and academic organizations utilizing […]
- Rethinking AI Data Security: A Buyer’s Guide by info@thehackernews.com (The Hacker News) (The Hacker News) on September 17, 2025 at 11:03 am
Generative AI has gone from a curiosity to a cornerstone of enterprise productivity in just a few short years. From copilots embedded in office suites to dedicated large language […]
- Scattered Spider Resurfaces With Financial Sector Attacks Despite Retirement Claimsby info@thehackernews.com (The Hacker News) (The Hacker News) on September 17, 2025 at 8:49 am
Cybersecurity researchers have tied a fresh round of cyber attacks targeting financial services to the notorious cybercrime group known as Scattered Spider, casting doubt on their […]
- DOJ Resentences BreachForums Founder to 3 Years for Cybercrime and Possession of CSAMby info@thehackernews.com (The Hacker News) (The Hacker News) on September 17, 2025 at 6:20 am
The U.S. Department of Justice (DoJ) on Tuesday resentenced the former administrator of BreachForums to three years in prison in connection with his role in running the cybercrime […]
- RaccoonO365 Phishing Network Dismantled as Microsoft, Cloudflare Take Down 338 Domainsby info@thehackernews.com (The Hacker News) (The Hacker News) on September 17, 2025 at 4:31 am
Microsoft’s Digital Crimes Unit said it teamed up with Cloudflare to coordinate the seizure of 338 domains used by RaccoonO365, a financially motivated threat group that was […]
- Chaos Mesh Critical GraphQL Flaws Enable RCE and Full Kubernetes Cluster Takeoverby info@thehackernews.com (The Hacker News) (The Hacker News) on September 16, 2025 at 4:23 pm
Cybersecurity researchers have disclosed multiple critical security vulnerabilities in Chaos Mesh that, if successfully exploited, could lead to cluster takeover in Kubernetes […]
- SlopAds Fraud Ring Exploits 224 Android Apps to Drive 2.3 Billion Daily Ad Bidsby info@thehackernews.com (The Hacker News) (The Hacker News) on September 16, 2025 at 2:19 pm
A massive ad fraud and click fraud operation dubbed SlopAds ran a cluster of 224 apps, collectively attracting 38 million downloads across 228 countries and territories. “These […]
- New FileFix Variant Delivers StealC Malware Through Multilingual Phishing Siteby info@thehackernews.com (The Hacker News) (The Hacker News) on September 16, 2025 at 12:33 pm
Cybersecurity researchers have warned of a new campaign that’s leveraging a variant of the FileFix social engineering tactic to deliver the StealC information stealer malware. […]
- Apple Backports Fix for CVE-2025-43300 Exploited in Sophisticated Spyware Attackby info@thehackernews.com (The Hacker News) (The Hacker News) on September 16, 2025 at 11:06 am
Apple on Monday backported fixes for a recently patched security flaw that has been actively exploited in the wild. The vulnerability in question is CVE-2025-43300 (CVSS score: […]
- Securing the Agentic Era: Introducing Astrix’s AI Agent Control Planeby info@thehackernews.com (The Hacker News) (The Hacker News) on September 16, 2025 at 11:00 am
AI agents are rapidly becoming a core part of the enterprise, being embedded across enterprise workflows, operating with autonomy, and making decisions about which systems to […]
- Phoenix RowHammer Attack Bypasses Advanced DDR5 Memory Protections in 109 Secondsby info@thehackernews.com (The Hacker News) (The Hacker News) on September 16, 2025 at 7:27 am
A team of academics from ETH Zürich and Google has discovered a new variant of a RowHammer attack targeting Double Data Rate 5 (DDR5) memory chips from South Korean semiconductor […]
- Self-Replicating Worm Hits 180+ npm Packages to Steal Credentials in Latest Supply Chain Attackby info@thehackernews.com (The Hacker News) (The Hacker News) on September 16, 2025 at 5:00 am
Cybersecurity researchers have flagged a fresh software supply chain attack targeting the npm registry that has affected more than 40 packages that belong to multiple […]
- Mustang Panda Deploys SnakeDisk USB Worm to Deliver Yokai Backdoor on Thailand IPsby info@thehackernews.com (The Hacker News) (The Hacker News) on September 15, 2025 at 6:45 pm
The China-aligned threat actor known as Mustang Panda has been observed using an updated version of a backdoor called TONESHELL and a previously undocumented USB worm called […]
- 6 Browser-Based Attacks Security Teams Need to Prepare For Right Nowby info@thehackernews.com (The Hacker News) (The Hacker News) on September 15, 2025 at 11:55 am
Attacks that target users in their web browsers have seen an unprecedented rise in recent years. In this article, we’ll explore what a “browser-based attack” is, and why […]
- ⚡ Weekly Recap: Bootkit Malware, AI-Powered Attacks, Supply Chain Breaches, Zero-Days & Moreby info@thehackernews.com (The Hacker News) (The Hacker News) on September 15, 2025 at 11:22 am
In a world where threats are persistent, the modern CISO’s real job isn’t just to secure technology—it’s to preserve institutional trust and ensure business continuity. This […]
- AI-Powered Villager Pen Testing Tool Hits 11,000 PyPI Downloads Amid Abuse Concernsby info@thehackernews.com (The Hacker News) (The Hacker News) on September 15, 2025 at 7:12 am
A new artificial intelligence (AI)-powered penetration testing tool linked to a China-based company has attracted nearly 11,000 downloads on the Python Package Index (PyPI) […]
- HiddenGh0st, Winos and kkRAT Exploit SEO, GitHub Pages in Chinese Malware Attacksby info@thehackernews.com (The Hacker News) (The Hacker News) on September 15, 2025 at 5:47 am
Chinese-speaking users are the target of a search engine optimization (SEO) poisoning campaign that uses fake software sites to distribute malware. “The attackers manipulated […]
- FBI Warns of UNC6040 and UNC6395 Targeting Salesforce Platforms in Data Theft Attacksby info@thehackernews.com (The Hacker News) (The Hacker News) on September 13, 2025 at 9:04 am
The U.S. Federal Bureau of Investigation (FBI) has issued a flash alert to release indicators of compromise (IoCs) associated with two cybercriminal groups tracked as UNC6040 and […]
- Samsung Fixes Critical Zero-Day CVE-2025-21043 Exploited in Android Attacksby info@thehackernews.com (The Hacker News) (The Hacker News) on September 12, 2025 at 3:16 pm
Samsung has released its monthly security updates for Android, including a fix for a security vulnerability that it said has been exploited in zero-day attacks. The vulnerability, […]
- Apple Warns French Users of Fourth Spyware Campaign in 2025, CERT-FR Confirmsby info@thehackernews.com (The Hacker News) (The Hacker News) on September 12, 2025 at 2:49 pm
Apple has notified users in France of a spyware campaign targeting their devices, according to the Computer Emergency Response Team of France (CERT-FR). The agency said the alerts […]
- New HybridPetya Ransomware Bypasses UEFI Secure Boot With CVE-2024-7344 Exploitby info@thehackernews.com (The Hacker News) (The Hacker News) on September 12, 2025 at 11:50 am
Cybersecurity researchers have discovered a new ransomware strain dubbed HybridPetya that resembles the notorious Petya/NotPetya malware, while also incorporating the ability to […]
- Critical CVE-2025-5086 in DELMIA Apriso Actively Exploited, CISA Issues Warningby info@thehackernews.com (The Hacker News) (The Hacker News) on September 12, 2025 at 11:03 am
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical security flaw impacting Dassault Systèmes DELMIA Apriso Manufacturing Operations […]