News

1.
thehackernews.com
thehackernews.com > 2025 > 12 > threatsday-bulletin-stealth-loaders-ai.html

ThreatsDay Bulletin: Stealth Loaders, AI Chatbot Flaws AI Exploits, Docker Hack, and 15 More Stories

2+ hour, 38+ min ago  (329+ words) It's getting harder to tell where normal tech ends and malicious intent begins. Attackers are no longer just breaking in " they're blending in, hijacking everyday tools, trusted apps, and even AI assistants. What used to feel like clear-cut "hacker stories…...

2.
thehackernews.com
thehackernews.com > 2025 > 12 > attacks-are-evolving-3-ways-to-protect.html

Attacks are Evolving: 3 Ways to Protect Your Business in 2026

1+ day, 12+ hour ago  (489+ words) Every year, cybercriminals find new ways to steal money and data from businesses. Breaching a business network, extracting sensitive data, and selling it on the dark web has become a reliable payday. But in 2025, the data breaches that affected small…...

3.
thehackernews.com
thehackernews.com > 2025 > 12 > two-chrome-extensions-caught-secretly.html

Two Chrome Extensions Caught Secretly Stealing Credentials from Over 170 Sites

2+ day, 9+ hour ago  (588+ words) Cybersecurity researchers have discovered two malicious Google Chrome extensions with the same name and published by the same developer that come with capabilities to intercept traffic and capture user credentials. The extensions are advertised as a "multi-location network speed test…...

4.
The Hacker News
thehackernews.com > 2025 > 12 > fake-whatsapp-api-package-on-npm-steals.html

Fake WhatsApp API Package on npm Steals Messages, Contacts, and Login Tokens

3+ day, 11+ min ago  (780+ words) Cybersecurity researchers have disclosed details of a new malicious package on the npm repository that works as a fully functional WhatsApp API, but also contains the ability to intercept every message and link the attacker's device to a victim's WhatsApp…...

5.
The Hacker News
thehackernews.com > 2025 > 12 > weekly-recap-firewall-exploits-ai-data.html

⚡ Weekly Recap: Firewall Exploits, AI Data Theft, Android Hacks, APT Attacks, Insider Leaks & More

3+ day, 4+ hour ago  (310+ words) Cyber threats last week showed how attackers no longer need big hacks to cause big damage. They're going after the everyday tools we trust most " firewalls, browser add-ons, and even smart TVs " turning small cracks into serious breaches. The real…...

6.
The Hacker News
thehackernews.com > 2025 > 12 > android-malware-operations-merge.html

Android Malware Operations Merge Droppers, SMS Theft, and RAT Capabilities at Scale

3+ day, 10+ hour ago  (1063+ words) Threat actors have been observed leveraging malicious dropper apps masquerading as legitimate applications to deliver an Android SMS stealer dubbed Wonderland in mobile attacks targeting users in Uzbekistan. The financially motivated threat actor behind the malware, TrickyWonders, leverages Telegram as…...

7.
The Hacker News
thehackernews.com > 2025 > 12 > iranian-infy-apt-resurfaces-with-new.html

Iranian Infy APT Resurfaces with New Malware Activity After Years of Silence

4+ day, 12+ hour ago  (681+ words) Threat hunters have discerned new activity associated with an Iranian threat actor known as Infy (aka Prince of Persia), nearly five years after the hacking group was observed targeting victims in Sweden, the Netherlands, and Turkey. "The scale of Prince…...

8.
The Hacker News
thehackernews.com > 2025 > 12 > watchguard-warns-of-active-exploitation.html

WatchGuard Warns of Active Exploitation of Critical Fireware OS VPN Vulnerability

6+ day, 12+ hour ago  (439+ words) WatchGuard has released fixes to address a critical security flaw in Fireware OS that it said has been exploited in real-world attacks. Tracked as CVE-2025-14733 (CVSS score: 9.3), the vulnerability has been described as a case of out-of-bounds write affecting the…...

9.
The Hacker News
thehackernews.com > 2025 > 12 > nigeria-arrests-raccoono365-phishing.html

Nigeria Arrests RaccoonO365 Phishing Developer Linked to Microsoft 365 Attacks

6+ day, 14+ hour ago  (518+ words) Authorities in Nigeria have announced the arrest of three "high-profile internet fraud suspects" who are alleged to have been involved in phishing attacks targeting major corporations, including the main developer behind the RaccoonO365 phishing-as-a-service (PhaaS) scheme. The Nigeria Police Force National…...

10.
The Hacker News
thehackernews.com > 2025 > 12 > new-uefi-flaw-enables-early-boot-dma.html

New UEFI Flaw Enables Early-Boot DMA Attacks on ASRock, ASUS, GIGABYTE, MSI Motherboards

6+ day, 15+ hour ago  (362+ words) Certain motherboard models from vendors like ASRock, ASUSTeK Computer, GIGABYTE, and MSI are affected by a security vulnerability that leaves them susceptible to early-boot direct memory access (DMA) attacks across architectures that implement a Unified Extensible Firmware Interface (UEFI) and…...