Attack & News

Attack & News

Latest cybersecurity news, threat reports, and attack campaigns

NEWShighThe Hacker Newsabout 1 month ago

Researcher Analyzes 3,000 Live ClickFix Payloads, Exposing API-Driven Malware Delivery

NEWSSecurity Magazineabout 1 month ago

Nearly Half of Organizations Lack "Full" Visibility Into Employee AI Usage

NEWSCVE-2026-84517.5 HIGHThe Hacker Newsabout 1 month ago

Citrix Patches Six NetScaler Flaws Allowing File Read and Denial-of-Service

NEWSBleeping Computerabout 1 month ago

Anthropic to restore Claude Fable access on Wednesday

NEWSBleeping Computerabout 1 month ago

Anthropic rolls out Sonnet 5 with near-Opus 4.8 performance at a lower price

NEWSBleeping Computerabout 1 month ago

New BioShocking attack manipulates AI browser into data theft

NEWSCyberScoopabout 1 month ago

Citrix patches a new NetScaler flaw with echoes of CitrixBleed

NEWSBleeping Computerabout 1 month ago

Microsoft accelerates quantum-safe roadmap as risks grow

NEWShighBleeping Computerabout 1 month ago

Malicious PyPI packages give hackers control of Telegram bot servers

NEWSCyberScoopabout 1 month ago

Trump budget boss Russell Vought open to re-staffing CISA

NEWSThe Registerabout 1 month ago

Infosec professionals sour on automated pentesting tools

NEWSThe Hacker Newsabout 1 month ago

Microsoft Warns Poisoned MCP Tool Descriptions Can Make AI Agents Leak Data

NEWSThe Hacker Newsabout 1 month ago

RustDuck Botnet Rebuilds in Rust to Hijack Routers and Servers for DDoS

NEWSHackreadabout 1 month ago

New EvilTokens Attack Exposes Browser Visibility Gap in Enterprise SOCs

NEWSThe Registerabout 1 month ago

Huntress CEO says threat hunter used 'poor judgment' in alerting ransomware crim about law enforcement probe

NEWSHackreadabout 1 month ago

Modern Enterprises: How to Evaluate the Security and Compliance of Office Software

NEWScriticalInfosecurity Magazineabout 1 month ago

Nissan Discloses Employee Data Breach Linked to Oracle Zero-Day

NEWShighCVE-2026-330179.8 CRITICALThe Hacker Newsabout 1 month ago

Langflow RCE Exploited to Deploy Monero Miner on Exposed AI App Endpoints

NEWSBleeping Computerabout 1 month ago

Fake Perplexity extension on Chrome Web Store tracked searches

NEWSThe Hacker Newsabout 1 month ago

Silent Swap Crypto Clipper Uses Fake Google Notes Extension to Replace Wallet Addresses

NEWScriticalInfosecurity Magazineabout 1 month ago

Critical SimpleHelp Vulnerability Exploited For Malware Delivery

NEWScriticalCyberScoopabout 1 month ago

DHS to unveil replacement council for critical infrastructure cybersecurity

NEWShighHackreadabout 1 month ago

Hackers Use Fake FIFA World Cup 2026 T-Shirt Offers to Spread Voidrift Malware

NEWSHackreadabout 1 month ago

NDSS Symposium Heads to Seoul in 2027 to Expand Global Cybersecurity Collaboration

NEWSHackreadabout 1 month ago

Reflectiz to Host Webinar, Joined by Taboola, on Securing Third-Party Marketing in the AI Era

NEWSThe Hacker Newsabout 1 month ago

GuardFall Exposes Open-Source AI Coding Agents to Decades-Old Shell Injection Risks

NEWSBleeping Computerabout 1 month ago

Lessons from the Underground: How to Combat Business Email Compromise

NEWScriticalCVE-2026-338257.8 HIGHSecurityWeekabout 1 month ago

BlueHammer Vulnerability Exploited in Ransomware Attacks

NEWSThe Hacker Newsabout 1 month ago

282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study

NEWSSecurity Magazineabout 1 month ago

Security Organizations Reveal Threat Management Fails to Match Visibility