• Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects
    Monday, August 17, 2026 from THN : The Hacker News
    GitLab has released security updates to address a critical vulnerability impacting its Community Edition (CE) and Enterprise Edition (EE) software that, under certain conditions, could allow an unauthenticated attacker to remotely modify...
  • Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection
    Monday, August 17, 2026 from THN : The Hacker News
    Cybersecurity researchers at Wiz have disclosed a new GitHub Actions workflow injection vulnerability in Snowflake's public snowflakedb/snowflake-connector-net repository that it said could be exploited through a crafted GitHub...
  • Forminator WordPress Flaw Can Enable Unauthenticated RCE via Malicious PHP Uploads
    Monday, August 17, 2026 from THN : The Hacker News
    A critical security flaw has been disclosed in Forminator Forms, a WordPress plugin with more than 600,000 active installations, that could be exploited to achieve arbitrary code execution on susceptible sites. The vulnerability, tracked...
  • Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic
    Monday, August 17, 2026 from THN : The Hacker News
    Cybersecurity researchers have traced the continued evolution of the Cavern (aka Cav3rn) command-and-control (C2) framework used by Iranian nation-state hackers in attacks targeting entities in Israel. Russian cybersecurity company...
  • ⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More
    Monday, August 17, 2026 from THN : The Hacker News
    The expensive attacks are not always the clever ones. This week had plenty of proof. Exposed services got hit, old bugs found fresh use, browser sessions became attack paths, and supply-chain problems kept spreading farther than the...
  • How MCP Servers Can Expose Enterprise Secrets
    Monday, August 17, 2026 from THN : The Hacker News
    MCP servers can expose enterprise secrets through plaintext configuration files, over-permissioned access and prompt injection, often before security teams even know the server is running. As more organizations adopt AI agents into their...
  • Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access
    Monday, August 17, 2026 from THN : The Hacker News
    Security researchers at SSD Secure Disclosure have published a two-stage exploit chain that achieves full Android kernel access on devices running Unisoc modem firmware through a VoLTE video call, with no fix from the chipset maker....
  • Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies
    Monday, August 17, 2026 from THN : The Hacker News
    Cybersecurity researchers have flagged a previously undocumented Linux botnet family dubbed Evooo1Bot that derives its core functionality from the Mirai botnet source code and is equipped to turn internet-facing devices into SOCKS...
  • Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware
    Monday, August 17, 2026 from THN : The Hacker News
    Cybersecurity researchers have attributed the exploitation of a newly patched security flaw in Broadcom VMware vCenter to a suspected China-nexus advanced persistent threat (APT). The attacks involve the exploitation of CVE-2026-59310...
  • AI‑Designed Viruses Are a Test of Whether Biosecurity Can Keep Pace
    Saturday, August 15, 2026 from Homeland Security News Wire
    8/15/26 Enable IntenseDebate Comments:  Enable IntenseDebate Comments Scientists have crossed an important line in biological engineering. In  a recent study , researchers used artificial intelligence to design complete sets of...
  • The Significance of the Pentagon’s Investment in a Bauxite Mine in Guyana
    Saturday, August 15, 2026 from Homeland Security News Wire
    8/14/26 THE AMERICAS Enable IntenseDebate Comments:  Enable IntenseDebate Comments The Trump administration’s decision to put $85.5 million of U.S. government money into a bauxite operation in Guyana looks, at first glance, like an...
  • No more “Hypothetical Situations”: States Move to Fortify Elections Against Trump
    Saturday, August 15, 2026 from Homeland Security News Wire
    8/15/26 DEMOCRACY WATCH Enable IntenseDebate Comments:  Enable IntenseDebate Comments State Democratic officials are preparing for chaos at the polls this November, as President Donald Trump casts doubt on election security and...
  • How Trump’s Unprecedented Effort to Prosecute Noncitizen Voters Fell Apart
    Saturday, August 15, 2026 from Homeland Security News Wire
    8/15/26 DEMOCRACY WATCH Enable IntenseDebate Comments:  Enable IntenseDebate Comments Reporting Highlights read more
  • AI Detects “Foreign-Linked Opinion Manipulation” in 110 Million News Comments
    Saturday, August 15, 2026 from Homeland Security News Wire
    8/15/26 FOREIGN MEDDLING Enable IntenseDebate Comments:  Enable IntenseDebate Comments During election seasons or major national issues, online news comment sections often become heated spaces of conflict across gender, generation,...
  • Research Uncovers Hidden Patterns in Hurricane Storm Surge
    Saturday, August 15, 2026 from Homeland Security News Wire
    8/14/26 Enable IntenseDebate Comments:  Enable IntenseDebate Comments When a hurricane roars toward land, forecasters try to predict how high sea levels will rise to help coastal communities prepare for the worst impacts. But...
  • Yes, the Iran War Really Is Similar to Vietnam | The Flawed Logic of Trump’s Airplane Escape | Navy Weighs Major Warship Redesign to Match Trump’s Preferences, and more
    Saturday, August 15, 2026 from Homeland Security News Wire
    8/15/26 OUR PICKS Enable IntenseDebate Comments:  0 Navy Weighs Major Warship Redesign to Match Trump’s Preferences   (Noah Robertson and Tara Copp, Washington Post ) The president wants the new fleet of aircraft carriers to...
  • Iran War: A Master Class in Squandering a Superpower’s Credibility | Taliban in Power: Entrenched, Embattled and Defiant | How to Beat an Earthquake, and more
    Saturday, August 15, 2026 from Homeland Security News Wire
    8/15/26 WORLD ROUNDUP Enable IntenseDebate Comments:  0 The Iran War Is a Master Class in Squandering a Superpower’s Credibility  (Fareed Zakaria, Washington Post ) Trump treats promises like bluffs. Allies are responding by...
  • SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch
    Saturday, August 15, 2026 from THN : The Hacker News
    A maximum-severity security vulnerability impacting SAP Commerce Cloud is witnessing active exploitation efforts. The vulnerability, tracked as CVE-2026-58231, is rated 10.0 on the CVSS scoring system. It relates to an instance of...
  • Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner
    Saturday, August 15, 2026 from THN : The Hacker News
    A recently patched security flaw in Apple macOS has come under active exploitation in the wild to deploy a cryptocurrency miner, the Netherlands National Cyber Security Centre (NCSC-NL) has warned. The vulnerability in question is...
  • Hackers Spend Nearly $7 Million on Expired Domains to Redirect Traffic to Scams and Malware
    Friday, August 14, 2026 from THN : The Hacker News
    Threat actors are acquiring expired domains to inherit website traffic and reputation to redirect victims to scams and malware on a large scale. DNS threat intelligence firm Infoblox has given the name dropcatch domains to those that get...
  • IAM Compliance Requirements and Best Practices
    Friday, August 14, 2026 from THN : The Hacker News
    IAM compliance is the practice of demonstrating that identity and access controls are not only documented but actually enforced across users, applications, infrastructure, and non-human identities. This guide explains what IAM compliance...
  • Mustang Panda Adds Signed Windows Rootkit to CoolClient Backdoor for Stealth
    Friday, August 14, 2026 from THN : The Hacker News
    The threat actor known as HoneyMyte (aka Mustang Panda) has been observed deploying an updated version of the CoolClient backdoor with a signed Windows kernel-mode rootkit that can hide and protect malicious processes, files,...
  • Chrome DevTools Technique Enables Authenticated Session Hijacking in Live Windows Browsers
    Friday, August 14, 2026 from THN : The Hacker News
    Cybersecurity researchers have detailed a post-exploitation technique that enables the Chrome DevTools Protocol (CDP) inside a running Google Chrome or Microsoft Edge process on Windows, allowing an operator to access cookies,...
  • CTM360 Uncovers Over 3,000 Recruitment Phishing URLs Using Browser-in-the-Browser (BitB) Credential Traps
    Friday, August 14, 2026 from THN : The Hacker News
    Cybersecurity researchers have uncovered a large-scale, global recruitment-themed phishing campaign that uses fake interview scheduling pages and Browser-in-the-Browser (BitB) windows to steal Google and Facebook credentials and, in more...
  • Apple Warns Users in 110 Countries They May Be Targets of Mercenary Spyware
    Friday, August 14, 2026 from THN : The Hacker News
    Apple on Thursday sent a fresh batch of notifications to customers whom it suspects may have been targeted by mercenary spyware attacks. In a statement shared with TechCrunch, the iPhone maker said it alerted an unspecified number of...
  • Trump Memo Paves Way for U.S. Firms to Hack and Disrupt Foreign Crime Groups
    Friday, August 14, 2026 from THN : The Hacker News
    A new White House memo signed by U.S. President Donald Trump has instructed the National Coordination Center (NCC) to establish a program that would allow private sector companies to take advantage of their "innovative capabilities" to...
  • China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud
    Friday, August 14, 2026 from THN : The Hacker News
    The China-linked threat actor known as Jewelbug has been observed carrying out cyber espionage operations targeting governments and militaries, while simultaneously engaging in cryptocurrency fraud. "Both missions are administered from a...
  • Quintas Energy deploys AI through Box to power workflows
    Friday, August 14, 2026 from ComputerWeekly: IT security
    The company is using artificial intelligence with Box to help it classify and understand documentation
  • CW@60: Still amazed - three times computers changed my life
    Thursday, August 13, 2026 from ComputerWeekly: IT security
    Despite disappointment at the pollution of the internet's utopian ideals, cyber security expert Martin Lee sees hope in future generations experiencing the spark of amazement that launched his career in tech
  • GeoServer Zero-Day Targeted in Active Exploitation Attempts, Can Lead to RCE
    Thursday, August 13, 2026 from THN : The Hacker News
    A newly disclosed zero-day flaw in GeoServer is seeing active exploitation efforts, per watchTowr. The vulnerability, which has yet to be assigned a CVE identifier, is an SQL injection vulnerability in the open-source platform that can...
  • ThreatsDay: GhostJacking AI Attacks, EtherHiding ClickFix, Cursor CLI Flaw + 17 More Stories
    Thursday, August 13, 2026 from THN : The Hacker News
    Some weeks have one big security story. Others bring many smaller updates that are easy to miss but still matter. This week has plenty of them, covering cloud services, AI tools, malware, data breaches, scams, and new attack methods. The...
  • New PATCHCORD Backdoor Targets Afghan Telecom and Indian Critical Infrastructure
    Thursday, August 13, 2026 from THN : The Hacker News
    Afghan telecom providers and South Asian critical infrastructure organizations have emerged as the target of a new ongoing campaign that delivers a previously undocumented backdoor called PATCHCORD. According to Acronis Threat Research...
  • AmnesiaStealer Hijacks Chromium Sessions to Give Attackers Live Browser Control on macOS
    Thursday, August 13, 2026 from THN : The Hacker News
    Cybersecurity researchers have disclosed details of a new macOS-oriented, Rust-based information stealer called AmnesiaStealer that's capable of hijacking Chromium web browsers to steal session data. The multi-stage stealer is spread via...
  • WindRelay Android Malware Turns Victims' Phones Into NFC Relays for Payment Fraud
    Thursday, August 13, 2026 from THN : The Hacker News
    A previously unseen Android near field communication (NFC) relay malware family dubbed WindRelay is being deployed in conjunction with a known remote access trojan (RAT) called SpyNote as part of a contactless payment fraud scheme. The...
  • A U.S. Strategy to Prevent the Creation of Mirror Life
    Thursday, August 13, 2026 from Homeland Security News Wire
    8/13/26 MIRROR LIFE Enable IntenseDebate Comments:  Enable IntenseDebate Comments Mirror life  is a hypothetical form of life built from biomolecules with the opposite chirality—or molecular orientation—of those used by all...
  • The Digital Panopticon: Why Automated Surveillance Threatens a Free Society
    Thursday, August 13, 2026 from Homeland Security News Wire
    8/13/26 SURVEILLANCE Enable IntenseDebate Comments:  Enable IntenseDebate Comments In an essay in  The Atlantic  titled “ In Defense of Flock ,” the Manhattan Institute’s Charles Fain Lehman rightly recognizes a...
  • North Korean Remote Workers Are Infiltrating Government and Businesses: How to Expose Them Before Hiring
    Thursday, August 13, 2026 from THN : The Hacker News
    Companies are used to thinking about attackers as outsiders trying to break in. North Korean IT workers flip that model. They apply for jobs, pass interviews, receive legitimate credentials, and can end up inside the same systems...
  • Attackers Exploit SharePoint Authentication Bypass After Public PoC Release
    Thursday, August 13, 2026 from THN : The Hacker News
    Threat actors have begun to exploit a newly disclosed Microsoft SharePoint vulnerability following the release of a proof-of-concept (PoC) code. The vulnerability in question is CVE-2026-55040 (CVSS score: 9.1), which refers to a...
  • Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
    Wednesday, August 12, 2026 from THN : The Hacker News
    The North Korean threat actor known as Lazarus Group has been attributed to the zero-day exploitation of a newly patched security flaw impacting Microsoft Windows to deliver a never-before-seen backdoor targeting defense and aerospace...
  • 737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One
    Wednesday, August 12, 2026 from THN : The Hacker News
    A massive set of 737 free VPN and proxy extensions have been found to mainly target Russian-speaking users seeking access to blocked services with an aim to intercept browser traffic and route them through a proxy infrastructure. The...
  • OpenAI, Anthropic, Google API Flaw Let Weaker AI Models Decode Stronger Models' Reasoning
    Wednesday, August 12, 2026 from THN : The Hacker News
    A newly disclosed flaw in the way OpenAI, Anthropic, and Google carried hidden AI reasoning between API calls let researchers recover internal reasoning and secrets from session logs, including API keys and passwords. The weakness...
  • Enterprise Defenses Recovered at the Edge and Collapsed Inside
    Wednesday, August 12, 2026 from THN : The Hacker News
    Enterprise defenses are tuned to catch the attacks that make noise. This year's data shows attackers winning by making none. According to Picus Labs' new Blue Report 2026, which measured more than 338 million real attack simulations...
  • Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws
    Wednesday, August 12, 2026 from THN : The Hacker News
    Adobe has shipped updates to address multiple critical security vulnerabilities impacting ColdFusion, Commerce, and Campaign Classic that, if successfully exploited, could result in arbitrary code execution and privilege escalation. The...
  • Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access
    Wednesday, August 12, 2026 from THN : The Hacker News
    Threat actors have begun to actively exploit a recently patched critical security flaw in Broadcom VMware vCenter, according to new findings from QUIRSO. The vulnerability in question is CVE-2026-59310 (CVSS score: 9.8), a...
  • Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations
    Wednesday, August 12, 2026 from THN : The Hacker News
    Two malicious LiteLLM releases sat on PyPI for about 40 minutes in March carrying credential-stealing code capable of harvesting cloud keys, SSH keys, Kubernetes tokens, database passwords, and other secrets from systems that installed...
  • SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code
    Wednesday, August 12, 2026 from THN : The Hacker News
    SAP has released patches to address a maximum-severity security flaw impacting Commerce Cloud (Data Hub Adapter) that could result in arbitrary code execution. The vulnerability, assigned the CVE identifier CVE-2026-58231, is rated 10.0...
  • ShieldBreak Zero-Day PoC Claims Microsoft Defender Patch Bypass With SYSTEM Access
    Wednesday, August 12, 2026 from THN : The Hacker News
    The security researcher going by the name Chaotic Eclipse (aka INFINITE NIGHTMARE, MSNightmare, and Nightmare-Eclipse) has released a proof-of-concept (PoC) for a new Microsoft zero-day called ShieldBreak. The vulnerability, rooted in...
  • Cisco ASA and FTD Flaw Exploited in the Wild Can Trigger Remote DoS
    Wednesday, August 12, 2026 from THN : The Hacker News
    Cisco has warned that a new vulnerability impacting Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software has been exploited in the wild. The high-severity flaw, tracked as...
  • Why sexualisation of women by Grok’s GenAI is a data privacy issue
    Tuesday, August 11, 2026 from ComputerWeekly: IT security
    MP Jess Asato discusses her landmark legal case against xAI, explaining why she believes AI companies must be held accountable for privacy violations
  • Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack
    Tuesday, August 11, 2026 from THN : The Hacker News
    Microsoft released its monthly security updates on Tuesday, and one of the flaws it closed is already being used in attacks. The bug sits in a core Windows kernel driver that handles network socket operations. An attacker with code...
  • Powered by Feed Informer