Install
The Hacker News is the most trusted and popular cybersecurity publication for information security professionals seeking breaking news, actionable insights and analysis.
- 122articles · 30d
- 1+ day agolatest article
- Aug 17, 2026earliest in window
- 9%with images
- 353avg words
- security 112
- cybersecurity 102
- malware 75
- vulnerability 67
- cyber security news 61
- artificial intelligence 53
- cybercrime 43
- cyber security 41
- technology 39
- ai 38
- cloud security 31
- vulnerabilities 31
- network security 24
- software 23
- infosec 22
- remote code execution 22
- windows 21
- enterprise security 20
- microsoft 20
- cisa 18
- Science & Technology 83
- Software 67
- Computers & Electronics 60
- Conflict, War & Peace 32
- Crime & Law 25
- News 23
- Software Dev. 22
- Internet & Telecom 20
- cyber security news
- cyber news
- cyber security news today
- cyber security updates
- cyber updates
- hacker news
- hacking news
- software vulnerability
- cyber attacks
- data breach
- ransomware malware
- how to hack
- network security
- information security
- the hacker news
- computer security
- top cybersecurity threats
- ⚡ thn weekly recap
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Four Spy Groups Used the Same Chrome and Windows Exploit Kit Within a Week
4+ day, 19+ hour ago (594+ words) The first in-the-wild use of BlueMoon has been attributed to the China-aligned state-sponsored group tracked as APT31 (aka Bronze Vinewood, Judgement Panda, JungleBamboo, PerplexedGoblin, RedBravo, TA412, Tide Castle, and Violet Typhoon) on August 28, 2026. "Within days, several other espionage-motivated clusters began using BlueMoon,…...
New cPanel Flaw Lets a Hosting Account With Mail Privileges Run Code as Root
5+ day, 3+ hour ago (742+ words) cPanel has patched a flaw that it says lets a single hosting account take control of an entire server. An authenticated account holder with mail-related privileges can create files of their choosing on the server through EmailTrack and, from there,…...
F5 BIG-IP APM Malware Injects a PHP Web Shell Into Memory, Evading Disk Scans
5+ day, 4+ hour ago (887+ words) Malware linked to break-ins at F5 BIG-IP Access Policy Manager appliances hides a PHP web shell in memory instead of in a file on disk, Sophos said in an analysis published on September 7. When Apache loads any of the three appliances…...
N-able N-central Pre-Auth RCE Flaw Exploited in the Wild
5+ day, 7+ hour ago (245+ words) The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a maximum-severity security flaw impacting N-able N-central to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the fixes by September 11, 2026. The vulnerability in…...
Adobe Patches Magento Zero-Day Exploited to Deploy Rust Backdoor and PHP Web Shell
6+ day, 3+ hour ago (281+ words) Adobe on Monday released security patches to address a maximum-severity flaw impacting Adobe Commerce and Magento Open Source that has come under active exploitation in the wild. The vulnerability, now tracked as CVE-2026-75650 (CVSS score: 10.0), has been codenamed StyleSmuggler by…...
PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Execution
6+ day, 18+ hour ago (36+ words) PEEP uses Chrome and Edge as a post-compromise backdoor for credential theft and host command execution....
Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts
6+ day, 23+ hour ago (384+ words) According to Huntress, three unrelated incidents have been found to use diverse initial access methods, namely a Quick Assist tech-support scam, a phishing-delivered MSI installer, and a fake Geek Squad refund form lure, to activate a four-stage VBScript chain that…...
Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication
1+ week, 1+ day ago (390+ words) Attackers are exploiting MikroTik routers with their Secure Shell (SSH) remote-access service, which is reachable from the internet, to gain full administrative control without authentication, according to CERT Polska's attack warning, published on September 5. Successful attacks date to at least…...
Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials
1+ week, 1+ day ago (509+ words) JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to breach its own environment. "Cadence users should immediately revoke…...
Critical VMware Workstation and Fusion Flaw Lets VM Admins Execute Host Code
1+ week, 1+ day ago (339+ words) Broadcom has released security updates for two security flaws impacting VMware Workstation and Fusion, including one critical bug that could result in arbitrary code execution under certain conditions. The vulnerability, tracked as CVE-2026-59346 (CVSS score: 9.3), is an integer-overflow vulnerability that…...