Category: Hacker News

F5 Patches Two Critical NGINX Open Source Flaws Enabling Remote Code Execution
ThreatsDay Bulletin: Claude Chat Abuse, NastyC2 npm Packages, Device-Code Phishing + 25 More Stories
INC Ransomware Emerges as Major RaaS Threat in 2026 with 830+ Victims Since 2023
Microsoft Details Windows Clipper Malware Campaign Using USB LNK Worm and Tor-Based C2
Orphaned AI Agents: How to Find Hidden Access Risks Inside Your Network
DragonForce Hackers Abuse Microsoft Teams Relays to Hide Backdoor.Turn C2 Traffic
The Scripts on Your Checkout Page Are Now a PCI DSS Problem
Microsoft Confirms RoguePlanet Defender Zero-Day, Says Patch is in Development
Crypto Clipper Campaign Abuses Fake Reviews, AI Narrators, and VirusTotal Comments
Junior Hacker Used Tailscale and OpenSSH to Keep Access After His C2 Went Offline
The Top 10 Attack Surface Exposures in 2026
Adversarial Exposure Validation Turns Security Visibility into Confident Prioritization
Malicious JetBrains Plugins Steal AI API Keys as Chrome Extensions Capture Chatbot Chats
144 Mastra npm Packages Compromised via Hijacked Contributor Account
CISA Warns of Actively Exploited Joomla JCE Flaw Allowing PHP Code Execution
ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update Lures
Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket Squatting
New Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet Funds
Survey: 94% of Incidents Involve Anonymized Infrastructure. Teams Are Still Reactive
Attackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last Week
China-Linked SprySOCKS Backdoor Expands to Windows with Driver-Based Stealth
Fake Microsoft Alerts Used to Deploy North Korean NarwhalRAT Malware
Cisco Releases Security Updates for Actively Exploited SD-WAN Manager Flaw
CISA Flags LiteSpeed cPanel Plugin Flaw Exploited for Root Privilege Escalation
Chinese Hackers Abused Google Workspace Rules to Steal Research and Defense Emails
North Korean Hackers Are Turning Developer Tools Into Malware Delivery Channels
LiteLLM Vulnerability Chain Lets Low-Privilege Users Take Over AI Gateway Servers
One-Click Microsoft 365 Copilot Flaw Could Have Let Attackers Steal Emails, Files, and MFA Codes
⚡ Weekly Recap: Chrome 0-Day, UniFi Exploits, macOS Stealers, VPN Flaw and More
Popular WordPress Plugin Scripts Tampered to Plant Hidden Backdoors on Sites
152 Chrome Wallpaper Extensions with 105K Installs Linked to Adware and Fake Traffic
The Onboarding Password Mistake That Creates Unnecessary Risk
Sniper Dz Scams Target MENA Users via Fake Facebook Offers and Browser Alerts
Palo Alto Warns of Active Exploitation of PAN-OS GlobalProtect VPN Flaw
Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication
U.S. Orders Anthropic to Suspend Fable 5 and Mythos 5 Access for Foreign Nationals
China-Linked Hackers Backdoored Linux Login Software to Hide for Nearly a Decade
Google Sues Chinese Smishing Network Accused of Using Gemini AI in Phishing
Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF Rootkit
Rethinking MDR as Attackers and Defenders Embrace AI
Agentjacking Attack Tricks AI Coding Agents Into Running Malicious Code
INTERPOL Operation Takes Down Sniper Dz Phishing Platform, Arrests Administrator
LangGraph Flaw Chain Exposes Self-Hosted AI Agents to Remote Code Execution
Europol Disrupts AudiA6 Crypto Laundering Service Used by Ransomware Gangs
ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities
New GreatXML Exploit Bypasses Windows BitLocker via Recovery Partition XML Files
New Attacks Trick OpenClaw AI Agent Into Running Code and Leaking Secrets
The Gentlemen Ransomware Claims 478 Victims, Can Spread Like a Worm
ThreatsDay Bulletin: Worm Code Leaked, AI Agent Phished, Claude Action Patch + 28 New Stories
Cybersecurity Stars Awards 2026: Winners Announced Across 95 Categories