Transparent Tribe Uses AI to Mass-Produce Malware Implants in Campaign Targeting India
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 06/03/2026 15:11
The Pakistan-aligned threat actor known as Transparent Tribe has become the latest hacking group to embrace artificial intelligence (AI)-powered coding tools to strike targets with various implants. The activity is designed to produce a...
Lire l'article →
Multi-Stage VOID#GEIST Malware Delivering XWorm, AsyncRAT, and Xeno RAT
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 06/03/2026 14:33
Cybersecurity researchers have disclosed details of a multi-stage malware campaign that uses batch scripts as a pathway to deliver various encrypted remote access trojan (RATs) payloads that correspond to XWorm, AsyncRAT, and Xeno RAT. The stealthy...
Lire l'article →
The MSP Guide to Using AI-Powered Risk Management to Scale Cybersecurity
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 06/03/2026 10:30
Scaling cybersecurity services as an MSP or MSSP requires technical expertise and a business model that delivers measurable value at scale. Risk-based cybersecurity is the foundation of that model. When done right, it builds client trust, increases...
Lire l'article →
Iran-Linked MuddyWater Hackers Target U.S. Networks With New Dindoor Backdoor
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 06/03/2026 10:23
New research from Broadcom's Symantec and Carbon Black Threat Hunter Team has discovered evidence of an Iranian hacking group embedding itself in several U.S. companies' networks, including banks, airports, non-profit, and the Israeli arm of a...
Lire l'article →
China-Linked Hackers Use TernDoor, PeerTime, BruteEntry in South American Telecom Attacks
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 06/03/2026 08:22
A China-linked advanced persistent threat (APT) actor has been targeting critical telecommunications infrastructure in South America since 2024, targeting Windows and Linux systems and edge devices with three different implants. The activity is...
Lire l'article →
Microsoft Reveals ClickFix Campaign Using Windows Terminal to Deploy Lumma Stealer
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 06/03/2026 06:44
Microsoft on Thursday disclosed details of a new widespread ClickFix social engineering campaign that has leveraged the Windows Terminal app as a way to activate a sophisticated attack chain and deploy the Lumma Stealer malware. The activity,...
Lire l'article →
Hikvision and Rockwell Automation CVSS 9.8 Flaws Added to CISA KEV Catalog
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 06/03/2026 06:30
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added two security flaws impacting Hikvision and Rockwell Automation products to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation....
Lire l'article →
Cisco Confirms Active Exploitation of Two Catalyst SD-WAN Manager Vulnerabilities
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 05/03/2026 15:22
Cisco has disclosed that two more vulnerabilities affecting Catalyst SD-WAN Manager (formerly SD-WAN vManage) have come under active exploitation in the wild. The vulnerabilities in question are listed below - CVE-2026-20122 (CVSS score: 7.1) - An...
Lire l'article →
ThreatsDay Bulletin: DDR5 Bot Scalping, Samsung TV Tracking, Reddit Privacy Fine & More
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 05/03/2026 13:44
Some weeks in cybersecurity feel routine. This one doesn’t. Several new developments surfaced over the past few days, showing how quickly the threat landscape keeps shifting. Researchers uncovered fresh activity, security teams shared new findings,...
Lire l'article →
Preparing for the Quantum Era: Post-Quantum Cryptography Webinar for Security Leaders
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 05/03/2026 13:13
Most organizations assume encrypted data is safe. But many attackers are already preparing for a future where today’s encryption can be broken. Instead of trying to decrypt information now, they are collecting encrypted data and storing it so it can...
Lire l'article →
Dust Specter Targets Iraqi Officials with New SPLITDROP and GHOSTFORM Malware
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 05/03/2026 12:01
A suspected Iran-nexus threat actor has been attributed to a campaign targeting government officials in Iraq by impersonating the country's Ministry of Foreign Affairs to deliver a set of never-before-seen malware. Zscaler ThreatLabz, which observed...
Lire l'article →
Where Multi-Factor Authentication Stops and Credential Abuse Starts
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 05/03/2026 11:00
Organizations typically roll out multi-factor authentication (MFA) and assume stolen passwords are no longer enough to access systems. In Windows environments, that assumption is often wrong. Attackers still compromise networks every day using valid...
Lire l'article →
APT28-Linked Campaign Deploys BadPaw Loader and MeowMeow Backdoor in Ukraine
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 05/03/2026 10:10
Cybersecurity researchers have disclosed details of a new Russian cyber campaign that has targeted Ukrainian entities with two previously undocumented malware families named BadPaw and MeowMeow. "The attack chain initiates with a phishing email...
Lire l'article →
Europol-Led Operation Takes Down Tycoon 2FA Phishing-as-a-Service Linked to 64,000 Attacks
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 05/03/2026 06:51
Tycoon 2FA, one of the prominent phishing-as-a-service (PhaaS) toolkits that allowed cybercriminals to stage adversary-in-the-middle (AitM) credential harvesting attacks at scale, was dismantled by a coalition of law enforcement agencies and...
Lire l'article →
FBI and Europol Seize LeakBase Forum Used to Trade Stolen Credentials
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 05/03/2026 06:34
A joint law enforcement operation has dismantled LeakBase, one of the world's largest online forums for cybercriminals to buy and sell stolen data and cybercrime tools. The LeakBase forum, per the U.S. Department of Justice (DoJ), had over 142,000...
Lire l'article →
149 Hacktivist DDoS Attacks Hit 110 Organizations in 16 Countries After Middle East Conflict
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 04/03/2026 17:21
Cybersecurity researchers have warned of a surge in retaliatory hacktivist activity following the U.S.-Israel coordinated military campaign against Iran, codenamed Epic Fury and Roaring Lion. "The hacktivist threat in the Middle East is highly...
Lire l'article →
Coruna iOS Exploit Kit Uses 23 Exploits Across Five Chains Targeting iOS 13–17.2.1
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 04/03/2026 13:28
Google said it identified a "new and powerful" exploit kit dubbed Coruna (aka CryptoWaters) targeting Apple iPhone models running iOS versions between 13.0 and 17.2.1. The exploit kit featured five full iOS exploit chains and a total of 23 exploits,...
Lire l'article →
New RFP Template for AI Usage Control and AI Governance
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 04/03/2026 11:30
As AI becomes the central engine for enterprise productivity, security leaders are finally getting the green light — and the budget — to secure it. But there’s a quiet crisis unfolding in the boardroom: many organizations know they need "AI...
Lire l'article →
Fake Laravel Packages on Packagist Deploy RAT on Windows, macOS, and Linux
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 04/03/2026 09:37
Cybersecurity researchers have flagged malicious Packagist PHP packages masquerading as Laravel utilities that act as a conduit for a cross-platform remote access trojan (RAT) that's functional on Windows, macOS, and Linux systems. The names of the...
Lire l'article →
APT41-Linked Silver Dragon Targets Governments Using Cobalt Strike and Google Drive C2
The Hacker News
• 👤 info@thehackernews.com (The Hacker News)
• 04/03/2026 08:14
Cybersecurity researchers have disclosed details of an advanced persistent threat (APT) group dubbed Silver Dragon that has been linked to cyber attacks targeting entities in Europe and Southeast Asia since at least mid-2024. "Silver Dragon gains...
Lire l'article →