Website profile

The Hacker News

The Hacker News is the most trusted and popular cybersecurity publication for information security professionals seeking breaking news, actionable insights and analysis.

  • 145articles · 30d
  • 21+ hour agolatest article
  • Aug 15, 2026earliest in window
  • 10%with images
  • 352avg words
articles per day
Categories
  • Science & Technology 100
  • Software 83
  • Computers & Electronics 67
  • Conflict, War & Peace 37
  • News 34
  • Crime & Law 30
  • Internet & Telecom 24
  • Software Dev. 24

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

The Hacker News
thehackernews.com > 2026 > 09 > attackers-use-passkey-phishing-to.html

Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data

21+ hour, 55+ min ago   (734+ words) Microsoft has disclosed details of two campaigns in which threat actors are abusing third-party email delivery infrastructure to blast financial fraud scam messages and using passkey-themed social engineering to breach cloud environments. Evidence indicates that the operators behind the campaign…...

The Hacker News
thehackernews.com > 2026 > 09 > gigabud-creates-android-work-profiles.html

Gigabud Creates Android Work Profiles to Hide From Banking App Malware Checks

3+ day, 20+ hour ago   (921+ words) A work profile is a separate space that Android typically reserves for employer apps, and what's inside it is kept separate from everything in the personal space. That split hides the trojan from the banking app's own malware checks, Group-IB…...

The Hacker News
thehackernews.com > 2026 > 09 > four-spy-groups-used-same-chrome-and.html

Four Spy Groups Used the Same Chrome and Windows Exploit Kit Within a Week

4+ day, 15+ hour ago   (594+ words) The first in-the-wild use of BlueMoon has been attributed to the China-aligned state-sponsored group tracked as APT31 (aka Bronze Vinewood, Judgement Panda, JungleBamboo, PerplexedGoblin, RedBravo, TA412, Tide Castle, and Violet Typhoon) on August 28, 2026. "Within days, several other espionage-motivated clusters began using BlueMoon,…...

The Hacker News
thehackernews.com > 2026 > 09 > chrome-v8-zero-day-exploited-in-wild.html

Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox

4+ day, 22+ hour ago   (321+ words) Google on Thursday released updates to patch 230 security vulnerabilities, including one that has come under active exploitation in the wild. The medium-severity vulnerability, assigned the CVE identifier CVE-2026-87491 (CVSS score: N/A), has been described as an out-of-bounds bug in V8, Chrome's…...

thehackernews.com
thehackernews.com > 2026 > 09 > new-cpanel-flaw-lets-hosting-account.html

New cPanel Flaw Lets a Hosting Account With Mail Privileges Run Code as Root

4+ day, 23+ hour ago   (742+ words) cPanel has patched a flaw that it says lets a single hosting account take control of an entire server. An authenticated account holder with mail-related privileges can create files of their choosing on the server through EmailTrack and, from there,…...

thehackernews.com
thehackernews.com > 2026 > 09 > f5-big-ip-apm-malware-injects-php-web.html

F5 BIG-IP APM Malware Injects a PHP Web Shell Into Memory, Evading Disk Scans

5+ day, 36+ min ago   (887+ words) Malware linked to break-ins at F5 BIG-IP Access Policy Manager appliances hides a PHP web shell in memory instead of in a file on disk, Sophos said in an analysis published on September 7. When Apache loads any of the three appliances…...

The Hacker News
thehackernews.com > 2026 > 09 > sap-patches-cvss-100-kernel-flaw.html

SAP Patches CVSS 10.0 Kernel Flaw Enabling Unauthenticated Remote Code Execution

5+ day, 1+ hour ago   (526+ words) SAP has released security updates to address multiple vulnerabilities, including a maximum-severity flaw in SAP Extended Passport (EPP) Processing that could have a severe impact on the confidentiality, integrity, and availability of the application The vulnerability, tracked as CVE-2026-44756 (CVSS…...

thehackernews.com
thehackernews.com > 2026 > 09 > slim-spider-steals-crypto-custody.html

Slim Spider Steals Crypto Custody Secrets From Brazilian Financial Institution

5+ day, 15+ hour ago   (686+ words) A previously undocumented financially motivated threat actor has been linked to attacks targeting Brazilian financial institutions since at least March 2026. Cybersecurity company CrowdStrike is tracking the Brazil-based activity cluster under the name Slim Spider. Slim Spider has been observed orchestrating…...

The Hacker News
thehackernews.com > 2026 > 09 > wechat-zero-click-worm-took-over.html

WeChat Zero-Click Worm Took Over Accounts on iPhone and Android via Incoming Calls

5+ day, 20+ hour ago   (733+ words) Researchers at the security firm Calif have built a worm that takes over a WeChat account via an incoming call and demonstrated it spreading among three test phones. The person being called does not have to answer or touch their…...

The Hacker News
thehackernews.com > 2026 > 09 > freeipa-flaw-chain-lets-anonymous.html

FreeIPA Flaw Chain Lets Anonymous Clients Create Reusable Administrator Credentials

5+ day, 20+ hour ago   (1041+ words) A flaw in FreeIPA lets a client that has never logged in create a Kerberos identity of its own choosing in the directory and end up in the administrators group, Red Hat says. FreeIPA is the system that determines who…...