LAPSUS$ Hackers Claim to Have Breached Microsoft and Authentication Firm Okta

Blog WriterThe Hacker News - Original news source is thehackernews.com

Microsoft and authentication services provider Okta said they are investigating claims of a potential breach alleged by the LAPSUS$ extortionist gang. The development, which was first reported by Vice and Reuters, comes after …

Microsoft and Okta Confirm Breach by LAPSUS$ Extortion Group

Blog WriterThe Hacker News - Original news source is thehackernews.com

Microsoft on Tuesday confirmed that the LAPSUS$ extortion-focused hacking crew had gained “limited access” to its systems, as authentication services provider Okta revealed that nearly 2.5% of its customers have been potentially …

New Dell BIOS Bugs Affect Millions of Inspiron, Vostro, XPS, Alienware Systems

Blog WriterThe Hacker News - Original news source is thehackernews.com

Five new security weaknesses have been disclosed in Dell BIOS that, if successfully exploited, could lead to code execution on vulnerable systems, joining the likes of firmware vulnerabilities recently uncovered …

U.S. Government Warns Companies of Potential Russian Cyber Attacks

Blog WriterThe Hacker News - Original news source is thehackernews.com

The U.S. government on Monday once again cautioned of potential cyber attacks from Russia in retaliation for economic sanctions imposed by the west on the country following its military assault on Ukraine last month. …

New Browser-in-the Browser (BITB) Attack Makes Phishing Nearly Undetectable

Blog WriterThe Hacker News - Original news source is thehackernews.com

A novel phishing technique called browser-in-the-browser (BitB) attack can be exploited to simulate a browser window within the browser in order to spoof a legitimate domain, thereby making it possible …

‘CryptoRom’ Crypto Scam Abusing iPhone Features to Target Mobile Users

Blog WriterThe Hacker News - Original news source is thehackernews.com

Social engineering attacks leveraging a combination of romantic lures and cryptocurrency fraud have been luring unsuspecting victims into installing fake apps by taking advantage of legitimate iOS features like TestFlight …

New Backdoor Targets French Entities via Open-Source Package Installer

Blog WriterThe Hacker News - Original news source is thehackernews.com

Researchers have exposed a new targeted email campaign aimed at French entities in the construction, real estate, and government sectors that leverages the Chocolatey Windows package manager to deliver a …