New Hacking Campaign Targeting Ukrainian Government with IcedID Malware

Blog WriterThe Hacker News - Original news source is thehackernews.com

The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new wave of social engineering campaigns delivering IcedID malware and leveraging Zimbra exploits with the goal of stealing …

GitHub Says Hackers Breached Dozens of Organizations Using Stolen OAuth Access Tokens

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cloud-based repository hosting service GitHub on Friday revealed that it discovered evidence of an unnamed adversary capitalizing on stolen OAuth user tokens to unauthorizedly download private data from several organizations. …

Lazarus Group Behind $540 Million Axie Infinity Crypto Hack and Attacks on Chemical Sector

Blog WriterThe Hacker News - Original news source is thehackernews.com

The U.S. Treasury Department has implicated the North Korea-backed Lazarus Group (aka Hidden Cobra) in the theft of $540 million from video game Axie Infinity’s Ronin Network last month. On …

Critical Auth Bypass Bug Reported in Cisco Wireless LAN Controller Software

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cisco has released patches to contain a critical security vulnerability affecting the Wireless LAN Controller (WLC) that could be abused by an unauthenticated, remote attacker to take control of an …

Haskers Gang Gives Away ZingoStealer Malware to Other Cybercriminals for Free

Blog WriterThe Hacker News - Original news source is thehackernews.com

A crimeware-related threat actor known as Haskers Gang has released an information-stealing malware called ZingoStealer for free on, allowing other criminal groups to leverage the tool for nefarious purposes. “It features the …

Google Releases Urgent Chrome Update to Patch Actively Exploited Zero-Day Flaw

Blog WriterThe Hacker News - Original news source is thehackernews.com

Google on Thursday shipped emergency patches to address two security issues in its Chrome web browser, one of which it says is being actively exploited in the wild. Tracked as CVE-2022-1364, …