Please turn JavaScript on
header-image

The Hacker News | #1 Trusted Source for Cybersecurity News

Get updates from The Hacker News | #1 Trusted Source for Cybersecurity News via email, on your phone or read them on follow.it on your own custom news page.

You can filter the news from The Hacker News | #1 Trusted Source for Cybersecurity News that get delivered to you using tags or topics or you can opt for all of them. Unsubscription is also very simple.

See the latest news from The Hacker News | #1 Trusted Source for Cybersecurity News below.

Site title: The Hacker News | #1 Trusted Source for Cybersecurity News

Is this your feed? Claim it!

Publisher:  Unclaimed!
Message frequency:  6.81 / day

Message History

A long-term and ongoing campaign attributed to a China-nexus threat actor has embedded itself in telecom networks to conduct espionage against government networks. The strategic positioning activity, which involves implanting and maintaining stealthy access mechanisms within critical environments, has been attributed to Red Menshen, a threat cluster that's also tracked as Earth ...

Read full story
The kernel exploit for two security vulnerabilities used in the recently uncovered Apple iOS exploit kit known as Coruna is an updated version of the same exploit that was used in the Operation Triangulation campaign back in 2023, according to new findings from Kaspersky. "When Coruna was first reported, the public evidence wasn't sufficient to link its code to Triangulation — s...

Read full story
Some weeks in security feel loud. This one feels sneaky. Less big dramatic fireworks, more of that slow creeping sense that too many people are getting way too comfortable abusing things they probably shouldn’t even be touching. There’s a little bit of everything in this one, too. Weird delivery tricks, old problems coming back in slightly worse forms, shady infrastr...

Read full story
Cybersecurity researchers have discovered a new payment skimmer that uses WebRTC data channels as a means to receive payloads and exfiltrate data, effectively bypassing security controls. "Instead of the usual HTTP requests or image beacons, this malware uses WebRTC data channels to load its payload and exfiltrate stolen payment data," Sansec said in a report published this week...

Read full story
Cybersecurity researchers have disclosed a vulnerability in Anthropic's Claude Google Chrome Extension that could have been exploited to trigger malicious prompts simply by visiting a web page. The flaw "allowed any website to silently inject prompts into that assistant as if the user wrote them," Koi Security researcher Oren Yomtov said in a report shared with The Hacker News. ...

Read full story