Mao Chan
maochan928.bsky.social
Mao Chan
@maochan928.bsky.social
- Iran’s APT42 hackers are now targeting defense officials and their families.

They send fake WhatsApp invites that install a PowerShell backdoor called TAMECAT using Cloudflare, Discord, and Telegram.

It’s active and still spreading.
November 21, 2025 at 1:02 PM
- China’s hackers used Anthropic’s AI to run cyber attacks — almost fully on its own.

They turned Claude into a self-running hacking tool that hit tech, finance, and government targets.

AI did about 90% of the work by itself.
November 19, 2025 at 1:36 AM
- ⚠️ Hackers are actively exploiting a Fortinet FortiWeb bug that lets them skip login and make admin accounts.

Fortinet quietly fixed it in v8.0.2 — no CVE, no warning.

If you haven’t patched yet, your device might already be hit.
November 15, 2025 at 1:08 PM
- Hackers made 4,300+ fake hotel websites copying Booking[.]com, Airbnb, and Expedia.

Each fake page looks real, changes based on your booking link, and steals your card details.
November 14, 2025 at 7:24 AM
- Google sued a Chinese hacker group that runs a phishing service called Lighthouse.

It tricked over 1 million people in 120 countries and made more than $1 billion using fake Google and USPS pages.

They sold the phishing kits — $88 a week to $1,588 a year.
November 13, 2025 at 4:17 AM
- Active Directory is the single point of failure for most enterprises.

One bad password or missed update can give attackers full control. They know it. Most teams don’t act on it.
November 12, 2025 at 12:12 PM
- Wild find from Microsoft.

Even when your AI chats are encrypted, someone watching the network can still guess what you’re talking about.

They call it "Whisper Leak" side-channel attack.

And in tests, models like OpenAI and Mistral gave away topics with 98% accuracy.
November 10, 2025 at 7:58 AM
- Two Android trojans are silently draining accounts.

🔹 One pretends to be a government ID app.
🔹 The other hides as a food delivery tracker.

They even mute your phone — so you never hear it happen.

Learn more about BankBot-YNRK & DeliveryRAT ↓ thehackernews.com/2025/11/rese...
Researchers Uncover BankBot-YNRK and DeliveryRAT Android Trojans Stealing Financial Data
Researchers expose BankBot-YNRK and DeliveryRAT—Android trojans hijacking phones, stealing data, and evading detection.
thehackernews.com
November 8, 2025 at 1:51 PM
- China is testing robot dogs for firefighting

They can crawl into places that are hard for firefighters to access inside burning buildings. The robots also collect data on toxic gases and temperature.
November 7, 2025 at 3:09 AM
- GOOGLE MAPS just unveiled AI-powered Live Lane Guidance that uses a car’s front camera to analyze real-time road conditions and guide drivers through complex interchanges.
The feature rolls out first to Polestar 4 vehicles in the U.S. in the coming months and will expand to more automakers.
November 5, 2025 at 2:24 PM
- over 400 Cisco routers hacked across Australia!

A new implant called BADCANDY is exploiting CVE-2023-20198 — even after patches.

Rebooting won’t help. Hackers just come back.
November 2, 2025 at 3:17 AM
- OpenAI just launched an AI #cybersecurity researcher.

It finds bugs, proves they’re real, and patches them — all by itself.

Powered by GPT-5, it’s already discovered 10 vulnerabilities
November 1, 2025 at 4:04 AM
- PHP servers are under attack.

Mirai, Mozi, and Gafgyt botnets are exploiting old CVEs to hijack WordPress and Craft CMS sites.

Some break-ins start from leftover PhpStorm debug sessions still running in production
October 30, 2025 at 9:45 AM
- SideWinder hackers strike again.

A European embassy in New Delhi was hit using fake Adobe Reader updates and signed apps to sneak in StealerBot malware — stealing passwords, screenshots, and files.

Other targets: Sri Lanka, Pakistan, and Bangladesh
October 28, 2025 at 5:02 AM
- Apple reportedly plans to launch a new type of iPhone every year through 2028 including two foldable models and a 20th anniversary model
October 27, 2025 at 2:04 AM
- 🚨 194,000 fake sites. $1B stolen.

The Smishing Triad is posing as USPS, banks, and toll services — all hosted on U.S. clouds to stay invisible.

Next target: brokerage accounts.

Full report ↓ thehackernews.com/2025/10/smis...
October 26, 2025 at 3:03 PM