/
Navigation
C
Chronicles
Browse all articles
C
E
Explore
Semantic exploration
E
R
Research
Entity momentum
R
N
Nexus
Correlations & relationships
N
~
Story Arc
Topic evolution
S
Drift Map
Semantic trajectory animation
D
P
Posts
Analysis & commentary
P
Browse
@
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
?
Concept Search
Semantic similarity search
!
High Impact Stories
Top coverage by position
+
Sentiment Analysis
Positive/negative coverage
*
Anomaly Detection
Unusual coverage patterns
Analysis
vs
Rivalry Report
Compare two entities head-to-head
/\
Semantic Pivots
Narrative discontinuities
!!
Crisis Response
Event recovery patterns
Connected
Nav: C E R N
Search: /
Command: ⌘K
Embeddings: large
VOICE ARCHIVE

@thehackersnews

@thehackersnews
22 posts
2024-05-11
WARNING: Using #Chrome or any Chromium-based browsers? Don't wait—update your browser ASAP! Google has just released an update to patch a new zero-day flaw, CVE-2024-4671, which hackers are actively exploiting in the wild. Details https://thehackernews.com/... #cybersecurity
2024-05-11 View on X
BleepingComputer

Google releases a Chrome security update to fix the fifth zero-day vulnerability exploited in the wild in 2024; the vulnerability is in the Visuals component

Update Your Browser to Patch New Vulnerability Guru Baran / Cyber Security News : Alert! Google Chrome Zero-day Exploited in the Wild Zeljka Zorz / Help Net Security : Google fixes...

2024-05-10
WARNING: Using #Chrome or any Chromium-based browsers? Don't wait—update your browser ASAP! Google has just released an update to patch a new zero-day flaw, CVE-2024-4671, which hackers are actively exploiting in the wild. Details https://thehackernews.com/... #cybersecurity
2024-05-10 View on X
BleepingComputer

Google releases a Chrome security update to fix the fifth zero-day vulnerability exploited in the wild in 2024; the vulnerability is in the Visuals component

Google has released a security update for the Chrome browser to fix the fifth zero-day vulnerability exploited in the wild since the start of the year.

2024-04-07
🔒 New research reveals critical security risks for AI-as-a-service providers like Hugging Face. Attackers could gain access to hijack models, escalate privileges, and infiltrate CI/CD pipelines. Details: https://thehackernews.com/... #technews #artificalintelligence
2024-04-07 View on X
Infosecurity

Wiz details two now-fixed security issues on the Hugging Face AI platform that put customer data at risk, as Hugging Face partners with Wiz to improve security

Cloud security provider Wiz found two critical architecture flaws in generative AI models uploaded to Hugging Face, the leading hub for sharing AI models and applications.

2024-04-06
🔒 New research reveals critical security risks for AI-as-a-service providers like Hugging Face. Attackers could gain access to hijack models, escalate privileges, and infiltrate CI/CD pipelines. Details: https://thehackernews.com/... #technews #artificalintelligence
2024-04-06 View on X
Infosecurity

Wiz details two now-fixed security issues on the Hugging Face AI platform that put customer data at risk, as Hugging Face partners with Wiz to improve security

Cloud security provider Wiz found two critical architecture flaws in generative AI models uploaded to Hugging Face, the leading hub for sharing AI models and applications.

2023-10-26
⚠️ WARNING — Winter Vivern, a notorious nation-state hacker group with links to Belarus and Russia, exploiting a zero-day flaw in Roundcube webmail software to steal email messages. Learn more: https://thehackernews.com/... #cybersecurity #hacking
2023-10-26 View on X
WeLiveSecurity

Pro-Russia hacking group Winter Vivern is targeting European governmental entities' Roundcube Webmail servers, triggering an attack when an email is viewed

ESET Research recommends updating Roundcube Webmail to the latest available version as soon as possible

2022-09-12
Researchers discover a new stealthy #malware, dubbed Shikitega, that targets #Linux-based systems and #IoT devices via a multi-stage infection chain and uses polymorphic encoders to evade detection. Details: https://thehackernews.com/... #infosec #cybersecurity #hacking #technews
2022-09-12 View on X
Ars Technica

Researchers discover Shikitega, a strain of Linux malware that uses polymorphic encoding and abuses legitimate cloud services to infect servers and IoT devices

With polymorphic encoding and a multistage infection chain, Shikitega is hard to detect.  —  Researchers this week unveiled …Source:AT&T Alien Labs.

2022-03-28
Kaspersky releases an official statement, saying: “Kaspersky is disappointed with the decision by the FCC”... “This decision is not based on any technical assessment of Kaspersky products” ... “but instead is being made on political grounds.” https://www.kaspersky.com/...
2022-03-28 View on X
Reuters

The US FCC adds Kaspersky Lab, China Telecom Americas, and China Mobile International USA to its national security threat list, barring them from its USF funds

2021-05-02
Researchers from University of Minnesota apologized to #Linux Kernel Project maintainers for intentionally introducing insecure code, which led to the school being banned from further contributing to the open-source project. Read: https://thehackernews.com/... #infosec #cybersecurity
2021-05-02 View on X
The Verge

Members of the Linux developer community reflect on “hypocrite commits” research, which got University of Minnesota banned from contributing to the Linux kernel

On the evening of April 6th, a student emailed a patch to a list of developers.  Fifteen days later …

2020-12-27
Google hackers disclose exploit for an UNPATCHED Windows #vulnerability (CVE-2020-0986) that was exploited as 0-day in the wild, for which #Microsoft issued an incomplete patch and then failed to patch it again under the 90-day deadline. Read — https://thehackernews.com/... #infosec
2020-12-27 View on X
BleepingComputer

Microsoft's patch for a zero-day privilege escalation Windows bug in June did not fix the vulnerability, which could still be exploited with some adjustments

Back in June, Microsoft released a fix for a vulnerability in the Windows operating system that enabled attackers to increase … Source: Google Project Zero .

2020-12-26
Google hackers disclose exploit for an UNPATCHED Windows #vulnerability (CVE-2020-0986) that was exploited as 0-day in the wild, for which #Microsoft issued an incomplete patch and then failed to patch it again under the 90-day deadline. Read — https://thehackernews.com/... #infosec
2020-12-26 View on X
BleepingComputer

Microsoft's patch for a zero-day privilege escalation Windows bug in June did not fix the vulnerability, which could still be exploited with some adjustments

Back in June, Microsoft released a fix for a vulnerability in the Windows operating system that enabled attackers to increase … Source: Google Project Zero .

2020-07-16
🔥 WATCH OUT 🔥 Many popular #cryptocurrency-related verified Twitter accounts got simultaneously compromised and tweeted an identical “Crypto For Health” #SCAM message. Hacked people and organizations include Gemini, #Binance, Binance's CEO, #Coinbase, CoinDesk, and KuCoin. https://twitter.com/...
2020-07-16 View on X
TechCrunch

Hackers pushing a crypto scam hijacked Twitter accounts for Bitcoin, Barack Obama, Joe Biden, Ripple, Binance, Elon Musk, Bill Gates, Jeff Bezos, Apple, more

A number of high-profile Twitter accounts were simultaneously hacked on Wednesday by attackers who used the accounts …

2020-06-01
⚡ A highly critical #vulnerability affecting Apple's ‘Sign in with Apple’ feature could have let attackers hack into anyone's account on 3rd-party service or apps. Read details here ➤ https://thehackernews.com/... Apple paid @bhavukjain1 a whopping $100,000 bug bounty for this flaw https://twitter.com/...
2020-06-01 View on X
The Hacker News

Apple paid a researcher $100K for reporting a flaw in “Sign in with Apple” in April that could have let attackers hijack any user's account on third-party apps

The Hacker News :

2020-05-31
⚡ A highly critical #vulnerability affecting Apple's ‘Sign in with Apple’ feature could have let attackers hack into anyone's account on 3rd-party service or apps. Read details here ➤ https://thehackernews.com/... Apple paid @bhavukjain1 a whopping $100,000 bug bounty for this flaw https://twitter.com/...
2020-05-31 View on X
The Hacker News

Apple paid a researcher $100K for reporting a flaw in “Sign in with Apple” in April that could have let attackers hijack any user's account on third-party apps

Apple recently paid Indian vulnerability researcher Bhavuk Jain a huge $100,000 bug bounty for reporting …

2020-03-27
— In 2019, Google's Threat Analysis Group (TAG) discovered several zero-day vulnerabilities affecting #Android, Chrome, #iOS, Internet Explorer and Windows. Read Google's report here: https://blog.google/...
2020-03-27 View on X
The Keyword

Google sent users 40K warnings about phishing or malware attempts from nation-states in 2019, a 25% drop YoY; journalist and news outlet impersonations up

Google's Threat Analysis Group (TAG) works to counter targeted and government-backed hacking against Google and the people who use our products.

2020-03-24
Microsoft is working on a security PATCH but said the company will release it to all Windows users as part of the next #PatchTuesday update on the 14th of April. Read more: https://thehackernews.com/... #cyberthreats #infosecurity
2020-03-24 View on X
TechCrunch

Microsoft says attackers are exploiting a critical zero-day flaw in font rendering that is found in all supported versions of Windows; no patch is available

Microsoft says attackers are exploiting a previously undisclosed security vulnerability found in all supported versions of Windows, including Windows 10.

2020-02-06
🔥 CVE-2019-18426 #WhatsApp for Web and Desktop contained multiple vulnerabilities, which, when combined together, could have even allowed remote attackers to read files from a victim's local file-system just by sending messages. Read details: https://thehackernews.com/... #infosec https://twitter.com/...
2020-02-06 View on X
Ars Technica

Facebook says older versions of the WhatsApp desktop app, which uses Electron, let hackers access files on macOS and Windows via a malicious link in messages

Sean Gallagher / Ars Technica :

2019-11-03
👀 UPDATE Kaspersky researchers, who reported #Chrome 0-day exploit to #Google, has now released more technical details about the #cyberattack, which it calls “Operation WizardOpium.” Read: https://thehackernews.com/... #infosec | #cybersecurity | #technews https://twitter.com/...
2019-11-03 View on X
The Hacker News

Google releases patch for a Chrome zero-day vulnerability being used in the wild that allows hackers to escape sandbox protections via malicious websites

Attention readers, if you are using Chrome on your Windows, Mac, and Linux computers, you need to update your web browsing software immediately …

2019-11-02
👀 UPDATE Kaspersky researchers, who reported #Chrome 0-day exploit to #Google, has now released more technical details about the #cyberattack, which it calls “Operation WizardOpium.” Read: https://thehackernews.com/... #infosec | #cybersecurity | #technews https://twitter.com/...
2019-11-02 View on X
The Hacker News

Google releases patch for a Chrome zero-day vulnerability being used in the wild that allows hackers to escape sandbox protections via malicious websites

Attention readers, if you are using Chrome on your Windows, Mac, and Linux computers, you need to update your web browsing software immediately …

2019-10-01
Hacker told @TheHackersNews claiming that he also breached data belonging to some other Zynga-developed games, including the discontinued #OMGPOP, which allegedly exposed plaintext passwords for more than 7 million users. Details: https://thehackernews.com/... #infosec #cybersecurity https://twitter.com/...
2019-10-01 View on X
The Hacker News

Hacker claims to have breached Zynga and stolen info on Words with Friends players; Zynga has started notifying users but has not disclosed size of breach

Words with Friends — game players' login information, including email IDs and passwords. https://thehackernews.com/... #Zynga admitted the breach, revealing it also exposed data fo...

🔥 Exclusive Hacker steals over 218 million Zynga's — Words with Friends — game players' login information, including email IDs and passwords. https://thehackernews.com/... #Zynga admitted the breach, revealing it also exposed data for another popular game “Draw Something” as well. https://twitter.com/...
2019-10-01 View on X
The Hacker News

Hacker claims to have breached Zynga and stolen info on Words with Friends players; Zynga has started notifying users but has not disclosed size of breach

Words with Friends — game players' login information, including email IDs and passwords. https://thehackernews.com/... #Zynga admitted the breach, revealing it also exposed data fo...