Category: Hacker News

Trivy Supply Chain Attack Triggers Self-Spreading CanisterWorm Across 47 npm Packages
Trivy Security Scanner GitHub Actions Breached, 75 Tags Hijacked to Steal CI/CD Secrets
Critical Langflow Flaw CVE-2026-33017 Triggers Attacks within 20 Hours of Disclosure
Magento PolyShell Flaw Enables Unauthenticated Uploads, RCE and Account Takeover
Google Adds 24-Hour Wait for Unverified App Sideloading to Reduce Malware and Scams
The Importance of Behavioral Analytics in AI-Enabled Cyber Attacks
Apple Warns Older iPhones Vulnerable to Coruna, DarkSword Exploit Kit Attacks
DoJ Disrupts 3 Million-Device IoT Botnets Behind Record 31.4 Tbps Global DDoS Attacks
Speagle Malware Hijacks Cobra DocGuard to Steal Data via Compromised Servers
54 EDR Killers Use BYOVD to Exploit 34 Signed Vulnerable Drivers and Disable Security
New Perseus Android Banking Malware Monitors Notes Apps to Extract Sensitive Data
ThreatsDay Bulletin: FortiGate RaaS, Citrix Exploits, MCP Abuse, LiveChat Phish & More
How Ceros Gives Security Teams Visibility and Control in Claude Code
DarkSword iOS Exploit Kit Uses 6 Flaws, 3 Zero-Days for Full Device Takeover
CISA Warns of Zimbra, SharePoint Flaw Exploits; Cisco Zero-Day Hit in Ransomware Attacks
Interlock Ransomware Exploits Cisco FMC Zero-Day CVE-2026-20131 for Root Access
OFAC Sanctions DPRK IT Worker Network Funding WMD Programs Through Fake Remote Jobs
9 Critical IP KVM Flaws Enable Unauthenticated Root Access Across Four Vendors
Product Walkthrough: How Mesh CSMA Reveals and Breaks Attack Paths to Crown Jewels
Claude Code Security and Magecart: Getting the Threat Model Right
Ubuntu CVE-2026-3888 Bug Lets Attackers Gain Root via systemd Cleanup Timing Exploit
Apple Fixes WebKit Vulnerability Enabling Same-Origin Policy Bypass on iOS and macOS
Critical Unpatched Telnetd Flaw (CVE-2026-32746) Enables Unauthenticated Root RCE via Port 23
AI Flaws in Amazon Bedrock, LangSmith, and SGLang Enable Data Exfiltration and RCE
LeakNet Ransomware Uses ClickFix via Hacked Sites, Deploys Deno In-Memory Loader
AI is Everywhere, But CISOs are Still Securing It with Yesterday’s Skills and Tools, Study Finds
Konni Deploys EndRAT Through Phishing, Uses KakaoTalk to Propagate Malware
CISA Flags Actively Exploited Wing FTP Vulnerability Leaking Server Paths
GlassWorm Attack Uses Stolen GitHub Tokens to Force-Push Malware Into Python Repos
⚡ Weekly Recap: Chrome 0-Days, Router Botnets, AWS Breach, Rogue AI Agents & More
ClickFix Campaigns Spread MacSync macOS Infostealer via Fake AI Tool Installers
Why Security Validation Is Becoming Agentic
DRILLAPP Backdoor Targets Ukraine, Abuses Microsoft Edge Debugging for Stealth Espionage
Android 17 Blocks Non-Accessibility Apps from Accessibility API to Prevent Malware Abuse
OpenClaw AI Agent Flaws Could Enable Prompt Injection and Data Exfiltration
GlassWorm Supply-Chain Attack Abuses 72 Open VSX Extensions to Target Developers
Meta to Shut Down Instagram End-to-End Encrypted Chat Support Starting May 2026
Chinese Hackers Target Southeast Asian Militaries with AppleChris and MemFun Malware
Storm-2561 Spreads Trojan VPN Clients via SEO Poisoning to Steal Credentials
INTERPOL Dismantles 45,000 Malicious IPs, Arrests 94 in Global Cybercrime
Investigating a New Click-Fix Variant
Nine CrackArmor Flaws in Linux AppArmor Enable Root Escalation, Bypass Container Isolation
Google Fixes Two Chrome Zero-Days Exploited in the Wild Affecting Skia and V8
Veeam Patches 7 Critical Backup & Replication Flaws Allowing Remote Code Execution
Authorities Disrupt SocksEscort Proxy Botnet Exploiting 369,000 IPs Across 163 Countries
Hive0163 Uses AI-Assisted Slopoly Malware for Persistent Access in Ransomware Attacks
Rust-Based VENON Malware Targets 33 Brazilian Banks with Credential-Stealing Overlays
How to Scale Phishing Detection in Your SOC: 3 Steps for CISOs
ThreatsDay Bulletin: OAuth Trap, EDR Killer, Signal Phishing, Zombie ZIP, AI Platform Hack & More
Apple Issues Security Updates for Older iOS Devices Targeted by Coruna WebKit Exploit