Category: Hacker News

AI-Assisted Threat Actor Compromises 600+ FortiGate Devices in 55 Countries
EC-Council Expands AI Certification Portfolio to Strengthen U.S. AI Workforce Readiness and Security
Anthropic Launches Claude Code Security for AI-Powered Vulnerability Scanning
CISA Adds Two Actively Exploited Roundcube Flaws to KEV Catalog
BeyondTrust Flaw Used for Web Shells, Backdoors, and Data Exfiltration
Cline CLI 2.3.0 Supply Chain Attack Installed OpenClaw on Developer Systems
ClickFix Campaign Abuses Compromised Sites to Deploy MIMICRAT RAT
Identity Cyber Scores: The New Metric Shaping Cyber Insurance in 2026
Ukrainian National Sentenced to 5 Years in North Korea IT Worker Fraud Case
FBI Reports 1,900 ATM Jackpotting Incidents Since 2020, $20M Lost in 2025
Three Former Google Engineers Indicted Over Trade Secret Transfers to Iran
Microsoft Patches CVE-2026-26119 Privilege Escalation in Windows Admin Center
PromptSpy Android Malware Abuses Gemini AI to Automate Recent-Apps Persistence
INTERPOL Operation Red Card 2.0 Arrests 651 in African Cybercrime Crackdown
ThreatsDay Bulletin: OpenSSL RCE, Foxit 0-Days, Copilot Leak, AI Password Flaws & 20+ Stories
From Exposure to Exploitation: How AI Collapses Your Response Window
Fake IPTV Apps Spread Massiv Android Malware Targeting Mobile Banking Users
CRESCENTHARVEST Campaign Targets Iran Protest Supporters With RAT Malware
Grandstream GXP1600 VoIP Phones Exposed to Unauthenticated Remote Code Execution
Citizen Lab Finds Cellebrite Tool Used on Kenyan Activist’s Phone in Police Custody
Critical Flaws Found in Four VS Code Extensions with Over 125 Million Installs
Cybersecurity Tech Predictions for 2026: Operating in a World of Permanent Instability
Dell RecoverPoint for VMs Zero-Day CVE-2026-22769 Exploited Since Mid-2024
3 Ways to Start Your Intelligent Workflow Program
CISA Flags Four Security Flaws Under Active Exploitation in Latest KEV Update
Notepad++ Fixes Hijacked Update Mechanism Used to Deliver Targeted Malware
Researchers Show Copilot and Grok Can Be Abused as Malware C2 Proxies
Keenadu Firmware Backdoor Infects Android Tablets via Signed OTA Updates
SmartLoader Attack Uses Trojanized Oura MCP Server to Deploy StealC Infostealer
My Day Getting My Hands Dirty with an NDR System
Webinar: How Modern SOC Teams Use AI and Context to Investigate Cloud Breaches Faster
Microsoft Finds “Summarize with AI” Prompts Manipulating Chatbot Recommendations
Apple Tests End-to-End Encrypted RCS Messaging in iOS 26.4 Developer Beta
Study Uncovers 25 Password Recovery Attacks in Major Cloud Password Managers
Infostealer Steals OpenClaw AI Agent Configuration Files and Gateway Tokens
Weekly Recap: Outlook Add-Ins Hijack, 0-Day Patches, Wormable Botnet & AI Malware
Safe and Inclusive E‑Society: How Lithuania Is Bracing for AI‑Driven Cyber Fraud
New ZeroDayRAT Mobile Spyware Enables Real-Time Surveillance and Data Theft
New Chrome Zero-Day (CVE-2026-2441) Under Active Attack — Patch Released
Microsoft Discloses DNS-Based ClickFix Attack Using Nslookup for Malware Staging
Google Links China, Iran, Russia, North Korea to Coordinated Defense Sector Cyber Operations
Google Ties Suspected Russian Actor to CANFAIL Malware Attacks on Ukrainian Orgs
UAT-9921 Deploys VoidLink Malware to Target Technology and Financial Sectors
Malicious Chrome Extensions Caught Stealing Business Data, Emails, and Browsing History
npm’s Update to Harden Their Supply Chain, and Points to Consider
Researchers Observe In-the-Wild Exploitation of BeyondTrust CVSS 9.9 Vulnerability
Lazarus Campaign Plants Malicious Packages in npm and PyPI Ecosystems
Google Reports State-Backed Hackers Using Gemini AI for Recon and Attack Support
ThreatsDay Bulletin: AI Prompt RCE, Claude 0-Click, RenEngine Loader, Auto 0-Days & 25+ Stories
The CTEM Divide: Why 84% of Security Programs Are Falling Behind