The Hacker News Daily Updates
[Newsletter]( [cover]( [THN Webinar: Master the Six Phases of Incident Response]( React fast, respond smart: Master the six phases of Incident Response with Cynet's IR Leader! [Download Now]( Sponsored LATEST NEWS Mar 24, 2023 [THN Webinar: Inside the High Risk of 3rd-Party SaaS Apps]( Any app that can improve business operations is quickly added to the SaaS stack. However, employees don't realize that this SaaS-to-SaaS connectivity, which typically takes place outside the view of the security team, significantly increases risk. Whether employees connect through Microsoft 365, Google Workspace, Slack, Salesforce, or any other app, security teams have no way to quantify ... [Read More](
[Twitter]( [Facebook]( [LinkedIn]( [GitHub Swiftly Replaces Exposed RSA SSH Key to Protect Git Operations]( Cloud-based repository hosting service GitHub said it took the step of replacing its RSA SSH host key used to secure Git operations "out of an abundance of caution" after it was briefly exposed in a public repository. The activity, which was carried out at 05:00 UTC on March 24, 2023, is said to have been undertaken as a measure to prevent any bad actor from impersonating the service ... [Read More](
[Twitter]( [Facebook]( [LinkedIn]( ["There's no better compliance platform than Drata." — Drata customer]( Book a demo and discover why Drata has a 5-star rating on G2 for cloud compliance.>> [Read More](
[Twitter]( [Facebook]( [LinkedIn]( [Researchers Uncover Chinese Nation State Hackers' Deceptive Attack Strategies]( A recent campaign undertaken by Earth Preta indicates that nation-state groups aligned with China are getting increasingly proficient at bypassing security solutions. The threat actor, active since at least 2012, is tracked by the broader cybersecurity community under Bronze President, HoneyMyte, Mustang Panda, RedDelta, and Red Lich. Attack chains mounted by the group commence with ... [Read More](
[Twitter]( [Facebook]( [LinkedIn]( [Critical WooCommerce Payments Plugin Flaw Patched for 500,000+ WordPress Sites]( Patches have been released for a critical security flaw impacting the WooCommerce Payments plugin for WordPress, which is installed on over 500,000 websites. The flaw, if left unresolved, could enable a bad actor to gain unauthorized admin access to impacted stores, the company said in an advisory on March 23, 2023. It impacts versions 4.8.0 through 5.6.1. Put differently, the issue could ... [Read More](
[Twitter]( [Facebook]( [LinkedIn]( [Fake ChatGPT Chrome Browser Extension Caught Hijacking Facebook Accounts]( Google has stepped in to remove a bogus Chrome browser extension from the official Web Store that masqueraded as OpenAI's ChatGPT service to harvest Facebook session cookies and hijack the accounts. The "ChatGPT For Google" extension, a trojanized version of a legitimate open source browser add-on, attracted over 9,000 installations since March 14, 2023, prior to its removal. It was ... [Read More](
[Twitter]( [Facebook]( [LinkedIn]( [Nexus: A New Rising Android Banking Trojan Targeting 450 Financial Apps]( An emerging Android banking trojan dubbed Nexus has already been adopted by several threat actors to target 450 financial applications and conduct fraud. "Nexus appears to be in its early stages of development," Italian cybersecurity firm Cleafy said in a report published this week. "Nexus provides all the main features to perform ATO attacks (Account Takeover) against banking portals ... [Read More](
[Twitter]( [Facebook]( [LinkedIn]( [2023 Cybersecurity Maturity Report Reveals Organizational Unpreparedness for Cyberattacks]( In 2022 alone, global cyberattacks increased by 38%, resulting in substantial business loss, including financial and reputational damage. Meanwhile, corporate security budgets have risen significantly because of the growing sophistication of attacks and the number of cybersecurity solutions introduced into the market. With this rise in threats, budgets, and solutions, how prepared are ... [Read More](
[Twitter]( [Facebook]( [LinkedIn]( [cover]( [THN Webinar: Master the Six Phases of Incident Response]( React fast, respond smart: Master the six phases of Incident Response with Cynet's IR Leader! [Download Now]( Sponsored This email was sent to {EMAIL}. You are receiving this newsletter because you opted-in to receive relevant communications from The Hacker News. To manage your email newsletter preferences, please [click here](. Contact The Hacker News: info@thehackernews.com
[Unsubscribe]( The Hacker News | Pearls Omaxe, Netaji Subash Place, Pitampura, Delhi 110034 India