unix_root's profile picture. Founder — @TheHackersNews | Cyber Alchemist | Curious by Nature, Educator by Choice, Disciplined by Trading, Solution-Driven by Coding.

Mohit Kumar

@unix_root

Founder — @TheHackersNews | Cyber Alchemist | Curious by Nature, Educator by Choice, Disciplined by Trading, Solution-Driven by Coding.

Mohit Kumar gönderiyi yeniden yayınladı

🚨 Heads up, devs! A fake VS Code extension was found spreading a remote access trojan named SleepyDuck. It had 14,000 downloads before turning malicious in a new update. The malware hides its command server inside an Ethereum contract. Learn more → thehackernews.com/2025/11/malici…

TheHackersNews's tweet image. 🚨 Heads up, devs!

A fake VS Code extension was found spreading a remote access trojan named SleepyDuck.

It had 14,000 downloads before turning malicious in a new update.

The malware hides its command server inside an Ethereum contract.

Learn more → thehackernews.com/2025/11/malici…

Mohit Kumar gönderiyi yeniden yayınladı

Last week: hacked security tools, broken chip protections, smart AI malware, and dev tools used to attack us. Hackers are moving faster than we can stop them. See all the top threats: thehackernews.com/2025/11/weekly…


Mohit Kumar gönderiyi yeniden yayınladı

🕵️ Two Android trojans are silently draining accounts. 🔹 One pretends to be a government ID app. 🔹 The other hides as a food delivery tracker. They even mute your phone — so you never hear it happen. Learn more about BankBot-YNRK & DeliveryRAT ↓ thehackernews.com/2025/11/resear…


Mohit Kumar gönderiyi yeniden yayınladı

🚨 A single line of JavaScript can crash any Chromium browser. Researcher Jose Pino calls it Brash — it abuses how document.title handles rapid updates. 24 million title changes per second = instant crash. Still unpatched. Details ↓ thehackernews.com/2025/10/new-br…


Mohit Kumar gönderiyi yeniden yayınladı

⚡ Cybercrime just got quieter, cheaper, and a lot more precise. 💥 DNS flaws exploited 💥 Rust binaries hiding payloads 💥 Supply-chain heists rising 💥 New RATs everywhere Your weekly ThreatsDay recap has it all → thehackernews.com/2025/10/threat…


Mohit Kumar gönderiyi yeniden yayınladı

🚨 PHP servers are under attack. Mirai, Mozi, and Gafgyt botnets are exploiting old CVEs to hijack WordPress and Craft CMS sites. Some break-ins start from leftover PhpStorm debug sessions still running in production. Check if yours is exposed ↓ thehackernews.com/2025/10/expert…


Mohit Kumar gönderiyi yeniden yayınladı

⚠️ AI browsers like ChatGPT Atlas and Perplexity Comet can be tricked into using fake data. A new exploit — “AI-targeted cloaking” — lets attackers show one version of a page to humans and another to AI crawlers. Same old SEO trick. New weapon: misinformation at scale. Read…

TheHackersNews's tweet image. ⚠️ AI browsers like ChatGPT Atlas and Perplexity Comet can be tricked into using fake data.

A new exploit — “AI-targeted cloaking” — lets attackers show one version of a page to humans and another to AI crawlers.

Same old SEO trick.
New weapon: misinformation at scale.

Read…

Mohit Kumar gönderiyi yeniden yayınladı

🚨 Russian hackers breached Ukrainian networks — no malware needed. They hijacked Windows tools (PowerShell, RDPClip, OpenSSH) to steal data and stay hidden for months. Real fileless persistence — living in memory, invisible to AV. Learn how they did it & how to detect it ↓…

TheHackersNews's tweet image. 🚨 Russian hackers breached Ukrainian networks — no malware needed.

They hijacked Windows tools (PowerShell, RDPClip, OpenSSH) to steal data and stay hidden for months.

Real fileless persistence — living in memory, invisible to AV.

Learn how they did it & how to detect it ↓…

Mohit Kumar gönderiyi yeniden yayınladı

🚨 10 fake npm packages (~9.9K installs) hid a cross-platform info stealer. It spawns a fake terminal, pulls a 24 MB payload from 195.133.79[.]43, and drains keyrings — not just browser creds. Instant access to email, cloud, VPNs, and prod DBs. Read details ↓…

TheHackersNews's tweet image. 🚨 10 fake npm packages (~9.9K installs) hid a cross-platform info stealer.

It spawns a fake terminal, pulls a 24 MB payload from 195.133.79[.]43, and drains keyrings — not just browser creds.

Instant access to email, cloud, VPNs, and prod DBs.

Read details ↓…

Mohit Kumar gönderiyi yeniden yayınladı

🚨 CISA confirmed ACTIVE exploitation of new flaws in Dassault Systèmes’ DELMIA Apriso and XWiki. One lets any guest run code. Another gives full admin access. Hackers are already dropping crypto miners. Agencies have until Nov 18 to patch ↓ thehackernews.com/2025/10/active…


Mohit Kumar gönderiyi yeniden yayınladı

🔥 Researchers just broke Intel & AMD’s newest “secure” enclaves — again. A sub-$1K hardware rig can steal attestation keys from fully patched systems running SGX, TDX, and SEV-SNP with Ciphertext Hiding. Even constant-time crypto and DDR5 encryption couldn’t stop it. Learn…

TheHackersNews's tweet image. 🔥 Researchers just broke Intel & AMD’s newest “secure” enclaves — again.

A sub-$1K hardware rig can steal attestation keys from fully patched systems running SGX, TDX, and SEV-SNP with Ciphertext Hiding.

Even constant-time crypto and DDR5 encryption couldn’t stop it.

Learn…

Mohit Kumar gönderiyi yeniden yayınladı

🚨 North Korea–linked BlueNoroff is running two active campaigns — GhostCall & GhostHire — into 2025. GhostCall fakes Zoom/Teams meetings to drop malware via bogus SDK “updates.” GhostHire targets Web3 devs on Telegram with booby-trapped GitHub tests. Full report ↓…

TheHackersNews's tweet image. 🚨 North Korea–linked BlueNoroff is running two active campaigns — GhostCall & GhostHire — into 2025.

GhostCall fakes Zoom/Teams meetings to drop malware via bogus SDK “updates.”

GhostHire targets Web3 devs on Telegram with booby-trapped GitHub tests.

Full report ↓…

Mohit Kumar gönderiyi yeniden yayınladı

🚨 New Android Trojan ‘Herodotus’ is on the move. It’s hitting phones in 🇮🇹 Italy & 🇧🇷 Brazil — stealing 2FA codes, logins, even lock PINs — and typing like a human to slip past fraud detection. 🔗 Read full report → thehackernews.com/2025/10/new-an…


Mohit Kumar gönderiyi yeniden yayınladı

⚠️ WARNING: X users with security keys (like YubiKeys) must re-enroll 2FA by Nov 10, 2025 — or get locked out. The update moves keys from twitter[.]com to x[.]com as Twitter’s domain is retired. Details ↓ thehackernews.com/2025/10/x-warn…


Mohit Kumar gönderiyi yeniden yayınladı

⚡ Security and speed shouldn’t be enemies. But when AI agents multiply faster than controls can keep up, most orgs fall into firefighting mode. Join our live session to see how forward-thinking teams are: ✅ Governing thousands of AI agents automatically ✅ Embedding security…

TheHackersNews's tweet image. ⚡ Security and speed shouldn’t be enemies.

But when AI agents multiply faster than controls can keep up, most orgs fall into firefighting mode.

Join our live session to see how forward-thinking teams are:

✅ Governing thousands of AI agents automatically
✅ Embedding security…

Mohit Kumar gönderiyi yeniden yayınladı

🔥 The week in cyber: patches weren’t fast enough, trust wasn’t enough, and attackers weren’t waiting. → WSUS exploited → LockBit 5.0 returns → Telegram backdoor → F5 breach deepens → YouTube malware surge → MuddyWater spying → Lazarus fake jobs → CoPhish OAuth attack →…

TheHackersNews's tweet image. 🔥 The week in cyber: patches weren’t fast enough, trust wasn’t enough, and attackers weren’t waiting.

→ WSUS exploited
→ LockBit 5.0 returns
→ Telegram backdoor
→ F5 breach deepens
→ YouTube malware surge
→ MuddyWater spying
→ Lazarus fake jobs
→ CoPhish OAuth attack
→…

Mohit Kumar gönderiyi yeniden yayınladı

⚡ OpenAI’s new ChatGPT Atlas browser can be hijacked by a fake URL. A prompt injection disguised as a normal link tricks the omnibox into running hidden commands. One click, and your AI agent takes orders from attackers. Read here ↓ thehackernews.com/2025/10/chatgp…


Mohit Kumar gönderiyi yeniden yayınladı

Qilin ransomware just got smarter. It’s hitting Windows and Linux together, wiping Veeam backups, and using a vulnerable driver to shut down security tools — all in one strike. Over 100 victims in June alone. Full story ↓ thehackernews.com/2025/10/qilin-…


Mohit Kumar gönderiyi yeniden yayınladı

Your SOC passed every test. But your people? Failed the real one. Modern AEV tools prove your defenses work — until humans enter the equation. The next frontier of validation isn’t technical. It’s behavioral ↓ thehackernews.com/expert-insight…


Mohit Kumar gönderiyi yeniden yayınladı

India’s BOSS Linux systems are under silent attack. A Pakistan-linked group just dropped a new Golang RAT — DeskRAT — hidden inside fake government PDFs. It sticks around with 4 persistence tricks and steals files through WebSockets. Read ↓ thehackernews.com/2025/10/apt36-…


Loading...

Something went wrong.


Something went wrong.