Security News

A PostgreSQL zero-day was also exploited in US Treasury hack (CVE-2025-1094)
2025-02-17 13:48

The suspected Chinese state-sponsored hackers who breached workstations of several US Treasury employees in December 2024 did so by leveraging not one, but two zero-days, according to Rapid7...

⚡ THN Weekly Recap: Google Secrets Stolen, Windows Hack, New Crypto Scams and More
2025-02-17 09:19

Welcome to this week’s Cybersecurity News Recap. Discover how cyber attackers are using clever tricks like fake codes and sneaky emails to gain access to sensitive data. We cover everything from...

HPE notifies employees of data breach after Russian Office 365 hack
2025-02-07 19:21

Hewlett Packard Enterprise (HPE) is notifying employees whose data was stolen from the company's Office 365 email environment by Russian state-sponsored hackers in a May 2023 cyberattack. [...]

Chinese cyberspies use new SSH backdoor in network device hacks
2025-02-04 17:39

A Chinese hacking group is hijacking the SSH daemon on network appliances by injecting malware into the process for persistent access and covert operations. [...]

Bitwarden makes it harder to hack password vaults without MFA
2025-01-27 21:00

Open-source password manager Bitwarden is adding an extra layer of security for accounts that are not protected by two-factor authentication, requiring email verification before allowing access to...

U.S. Sanctions Chinese Cybersecurity Firm Over Treasury Hack Tied to Salt Typhoon
2025-01-18 06:06

The U.S. Treasury Department's Office of Foreign Assets Control (OFAC) has imposed sanctions against a Chinese cybersecurity company and a Shanghai-based cyber actor for their alleged links to the...

US sanctions Chinese firm, hacker behind telecom and Treasury hacks
2025-01-17 16:57

The U.S. Department of the Treasury's Office of Foreign Assets Control (OFAC) has sanctioned Yin Kecheng, a Shanghai-based hacker for his role in the recent Treasury breach and a company...

FCC orders telecoms to secure their networks after Salt Tyhpoon hacks
2025-01-17 16:05

The Federal Communications Commission (FCC) has ordered U.S. telecommunications carriers to secure their networks following last year's Salt Typhoon security breaches. [...]

Stolen Path of Exile 2 admin account used to hack player accounts
2025-01-13 20:33

Path of Exile 2 developers confirmed that a hacked admin account allowed a threat actor to change the password and access at least 66 accounts, finally explaining how PoE 2 accounts have been...

US Treasury hack linked to Silk Typhoon Chinese state hackers
2025-01-09 16:49

​Chinese state-backed hackers, tracked as Silk Typhoon, have been linked to the U.S. Office of Foreign Assets Control (OFAC) hack in early December. [...]