
- Microsoft Uncovers ‘Whisper Leak’ Attack That Identifies AI Chat Topics in Encrypted Trafficby info@thehackernews.com (The Hacker News) (The Hacker News) on November 8, 2025 at 2:29 pm
Microsoft has disclosed details of a novel side-channel attack targeting remote language models that could enable a passive adversary with capabilities to observe network traffic […]
- Samsung Mobile Flaw Exploited as Zero-Day to Deploy LANDFALL Android Spywareby info@thehackernews.com (The Hacker News) (The Hacker News) on November 7, 2025 at 6:00 pm
A now-patched security flaw in Samsung Galaxy Android devices was exploited as a zero-day to deliver a “commercial-grade” Android spyware dubbed LANDFALL in targeted attacks in […]
- From Log4j to IIS, China’s Hackers Turn Legacy Bugs into Global Espionage Toolsby info@thehackernews.com (The Hacker News) (The Hacker News) on November 7, 2025 at 4:07 pm
A China-linked threat actor has been attributed to a cyber attack targeting an U.S. non-profit organization with an aim to establish long-term persistence, as part of broader […]
- Hidden Logic Bombs in Malware-Laced NuGet Packages Set to Detonate Years After Installationby info@thehackernews.com (The Hacker News) (The Hacker News) on November 7, 2025 at 11:55 am
A set of nine malicious NuGet packages has been identified as capable of dropping time-delayed payloads to sabotage database operations and corrupt industrial control systems. […]
- Enterprise Credentials at Risk – Same Old, Same Old?by info@thehackernews.com (The Hacker News) (The Hacker News) on November 7, 2025 at 10:30 am
Imagine this: Sarah from accounting gets what looks like a routine password reset email from your organization’s cloud provider. She clicks the link, types in her credentials, […]
- Google Launches New Maps Feature to Help Businesses Report Review-Based Extortion Attemptsby info@thehackernews.com (The Hacker News) (The Hacker News) on November 7, 2025 at 9:15 am
Google on Thursday said it’s rolling out a dedicated form to allow businesses listed on Google Maps to report extortion attempts made by threat actors who post inauthentic bad […]
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilitiesby info@thehackernews.com (The Hacker News) (The Hacker News) on November 7, 2025 at 6:48 am
Cybersecurity researchers have flagged a malicious Visual Studio Code (VS Code) extension with basic ransomware capabilities that appears to be created with the help of artificial […]
- Trojanized ESET Installers Drop Kalambur Backdoor in Phishing Attacks on Ukraineby info@thehackernews.com (The Hacker News) (The Hacker News) on November 6, 2025 at 3:31 pm
A previously unknown threat activity cluster has been observed impersonating Slovak cybersecurity company ESET as part of phishing attacks targeting Ukrainian entities. The […]
- Cisco Warns of New Firewall Attack Exploiting CVE-2025-20333 and CVE-2025-20362by info@thehackernews.com (The Hacker News) (The Hacker News) on November 6, 2025 at 2:58 pm
Cisco on Wednesday disclosed that it became aware of a new attack variant that’s designed to target devices running Cisco Secure Firewall Adaptive Security Appliance (ASA) […]
- From Tabletop to Turnkey: Building Cyber Resilience in Financial Servicesby info@thehackernews.com (The Hacker News) (The Hacker News) on November 6, 2025 at 11:59 am
Introduction Financial institutions are facing a new reality: cyber-resilience has passed from being a best practice, to an operational necessity, to a prescriptive regulatory […]
- ThreatsDay Bulletin: AI Tools in Malware, Botnets, GDI Flaws, Election Attacks & Moreby info@thehackernews.com (The Hacker News) (The Hacker News) on November 6, 2025 at 11:40 am
Cybercrime has stopped being a problem of just the internet — it’s becoming a problem of the real world. Online scams now fund organized crime, hackers rent violence like a […]
- Bitdefender Named a Representative Vendor in the 2025 Gartner® Market Guide for Managed Detection and Responseby info@thehackernews.com (The Hacker News) (The Hacker News) on November 6, 2025 at 10:43 am
Bitdefender has once again been recognized as a Representative Vendor in the Gartner® Market Guide for Managed Detection and Response (MDR) — marking the fourth consecutive […]
- Hackers Weaponize Windows Hyper-V to Hide Linux VM and Evade EDR Detectionby info@thehackernews.com (The Hacker News) (The Hacker News) on November 6, 2025 at 7:22 am
The threat actor known as Curly COMrades has been observed exploiting virtualization technologies as a way to bypass security solutions and execute custom malware. According to a […]
- SonicWall Confirms State-Sponsored Hackers Behind September Cloud Backup Breachby info@thehackernews.com (The Hacker News) (The Hacker News) on November 6, 2025 at 5:40 am
SonicWall has formally implicated state-sponsored threat actors as behind the September security breach that led to the unauthorized exposure of firewall configuration backup […]
- Google Uncovers PROMPTFLUX Malware That Uses Gemini AI to Rewrite Its Code Hourlyby info@thehackernews.com (The Hacker News) (The Hacker News) on November 5, 2025 at 3:33 pm
Google on Wednesday said it discovered an unknown threat actor using an experimental Visual Basic Script (VB Script) malware dubbed PROMPTFLUX that interacts with its Gemini […]
- Researchers Find ChatGPT Vulnerabilities That Let Attackers Trick AI Into Leaking Databy info@thehackernews.com (The Hacker News) (The Hacker News) on November 5, 2025 at 2:04 pm
Cybersecurity researchers have disclosed a new set of vulnerabilities impacting OpenAI’s ChatGPT artificial intelligence (AI) chatbot that could be exploited by an attacker to […]
- Securing the Open Android Ecosystem with Samsung Knoxby info@thehackernews.com (The Hacker News) (The Hacker News) on November 5, 2025 at 11:55 am
Raise your hand if you’ve heard the myth, “Android isn’t secure.” Android phones, such as the Samsung Galaxy, unlock new ways of working. But, as an IT admin, you may […]
- Mysterious ‘SmudgedSerpent’ Hackers Target U.S. Policy Experts Amid Iran–Israel Tensionsby info@thehackernews.com (The Hacker News) (The Hacker News) on November 5, 2025 at 11:20 am
A never-before-seen threat activity cluster codenamed UNK_SmudgedSerpent has been attributed as behind a set of cyber attacks targeting academics and foreign policy experts […]
- U.S. Sanctions 10 North Korean Entities for Laundering $12.7M in Crypto and IT Fraudby info@thehackernews.com (The Hacker News) (The Hacker News) on November 5, 2025 at 10:55 am
The U.S. Treasury Department on Tuesday imposed sanctions against eight individuals and two entities within North Korea’s global financial network for laundering money for various […]
- Why SOC Burnout Can Be Avoided: Practical Stepsby info@thehackernews.com (The Hacker News) (The Hacker News) on November 5, 2025 at 10:30 am
Behind every alert is an analyst; tired eyes scanning dashboards, long nights spent on false positives, and the constant fear of missing something big. It’s no surprise that […]
- CISA Adds Gladinet and CWP Flaws to KEV Catalog Amid Active Exploitation Evidenceby info@thehackernews.com (The Hacker News) (The Hacker News) on November 5, 2025 at 6:12 am
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added two security flaws impacting Gladinet and Control Web Panel (CWP) to its Known Exploited […]
- A Cybercrime Merger Like No Other — Scattered Spider, LAPSUS$, and ShinyHunters Join Forcesby info@thehackernews.com (The Hacker News) (The Hacker News) on November 4, 2025 at 5:25 pm
The nascent collective that combines three prominent cybercrime groups, Scattered Spider, LAPSUS$, and ShinyHunters, has created no less than 16 Telegram channels since August 8, […]
- European Authorities Dismantle €600 Million Crypto Fraud Network in Global Sweepby info@thehackernews.com (The Hacker News) (The Hacker News) on November 4, 2025 at 3:57 pm
Nine people have been arrested in connection with a coordinated law enforcement operation that targeted a cryptocurrency money laundering network that defrauded victims of €600 […]
- Critical React Native CLI Flaw Exposed Millions of Developers to Remote Attacksby info@thehackernews.com (The Hacker News) (The Hacker News) on November 4, 2025 at 2:24 pm
Details have emerged about a now-patched critical security flaw in the popular “@react-native-community/cli” npm package that could be potentially exploited to run malicious […]
- Microsoft Teams Bugs Let Attackers Impersonate Colleagues and Edit Messages Unnoticedby info@thehackernews.com (The Hacker News) (The Hacker News) on November 4, 2025 at 2:00 pm
Cybersecurity researchers have disclosed details of four security flaws in Microsoft Teams that could have exposed users to serious impersonation and social engineering attacks. […]
