Cisco Confirms Salt Typhoon Exploited CVE-2018-0171 to Target U.S. Telecom Networks

THN Daily Updates
Newsletter
cover

⚡ LIVE WEBINAR ➟ Opening the Fast Lane for Secure Deployments

Learn How to Align Dev and Sec Teams Without Compromising Speed and Security

Download Now Sponsored
LATEST NEWS Feb 21, 2025

AI-Powered Deception is a Menace to Our Societies

Wherever there’s been conflict in the world, propaganda has never been far away. Travel back in time to 515 BC and read the Behistun Inscription, an autobiography by Persian King Darius that discusses his rise to ...

Read More
Twitter Facebook LinkedIn

Cisco Confirms Salt Typhoon Exploited CVE-2018-0171 to Target U.S. Telecom Networks

Cisco has confirmed that a Chinese threat actor known as Salt Typhoon gained access by likely abusing a known security flaw tracked as CVE-2018-0171, and by obtaining legitimate victim login credentials as part of a tar...

Read More
Twitter Facebook LinkedIn

Download Guide: Proven Best Practices for Hardened Container Management

Containers speed up deployment but can introduce vulnerabilities; this guide offers strategies to stay ahead.

Read More
Twitter Facebook LinkedIn

CISA Flags Craft CMS Vulnerability CVE-2025-23209 Amid Active Attacks

A high-severity security flaw impacting the Craft content management system (CMS) has been added by the U.S. Cybersecurity and Infrastructure Security Agency (CISA) to its Known Exploited Vulnerabilities (KEV) catalog, ...

Read More
Twitter Facebook LinkedIn

North Korean Hackers Target Freelance Developers in Job Scam to Deploy Malware

Freelance software developers are the target of an ongoing campaign that leverages job interview-themed lures to deliver cross-platform malware families known as BeaverTail and InvisibleFerret. The activity, linked to N...

Read More
Twitter Facebook LinkedIn

China-Linked Attackers Exploit Check Point Flaw to Deploy ShadowPad and Ransomware

A previously unknown threat activity cluster targeted European organizations, particularly those in the healthcare sector, to deploy PlugX and its successor, ShadowPad, with the intrusions ultimately leading to deploym...

Read More
Twitter Facebook LinkedIn

PCI DSS 4.0 Mandates DMARC By 31st March 2025

The payment card industry has set a critical deadline for businesses handling cardholder data or processing payments- by March 31, 2025, DMARC implementation will be mandatory! This requirement highlights the importance...

Read More
Twitter Facebook LinkedIn

Cybercriminals Use Eclipse Jarsigner to Deploy XLoader Malware via ZIP Archives

A malware campaign distributing the XLoader malware has been observed using the DLL side-loading technique by making use of a legitimate application associated with the Eclipse Foundation. "The legitimate application us...

Read More
Twitter Facebook LinkedIn
cover

⚡ LIVE WEBINAR ➟ Opening the Fast Lane for Secure Deployments

Learn How to Align Dev and Sec Teams Without Compromising Speed and Security

Download Now Sponsored

This email was sent to sikubaycom.s3cr3tz@blogger.com. You are receiving this newsletter because you opted-in to receive relevant communications from THN. To manage your email newsletter preferences, please click here.

Contact THN: info@thehackernews.com
Unsubscribe

THN | 2nd Floor, 219, K.P BLock, Pitampura, Delhi