Install
The Hacker News is the most trusted and popular cybersecurity publication for information security professionals seeking breaking news, actionable insights and analysis.
- 178articles · 30d
- 1+ day agolatest article
- Aug 14, 2026earliest in window
- 11%with images
- 353avg words
- security 166
- cybersecurity 146
- malware 110
- vulnerability 100
- cyber security news 91
- artificial intelligence 70
- cyber security 65
- cybercrime 61
- technology 61
- ai 52
- vulnerabilities 52
- cloud security 38
- windows 36
- network security 34
- remote code execution 33
- infosec 31
- linux 31
- enterprise security 28
- microsoft 28
- cisa 27
- Science & Technology 122
- Software 100
- Computers & Electronics 86
- Conflict, War & Peace 46
- News 38
- Crime & Law 36
- Software Dev. 31
- Internet & Telecom 29
- cyber security news
- cyber news
- cyber security news today
- cyber security updates
- cyber updates
- hacker news
- hacking news
- software vulnerability
- cyber attacks
- data breach
- ransomware malware
- how to hack
- network security
- information security
- the hacker news
- computer security
- top cybersecurity threats
- ⚡ thn weekly recap
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Gigabud Creates Android Work Profiles to Hide From Banking App Malware Checks
2+ day, 21+ hour ago (921+ words) A work profile is a separate space that Android typically reserves for employer apps, and what's inside it is kept separate from everything in the personal space. That split hides the trojan from the banking app's own malware checks, Group-IB…...
Four Spy Groups Used the Same Chrome and Windows Exploit Kit Within a Week
3+ day, 15+ hour ago (594+ words) The first in-the-wild use of BlueMoon has been attributed to the China-aligned state-sponsored group tracked as APT31 (aka Bronze Vinewood, Judgement Panda, JungleBamboo, PerplexedGoblin, RedBravo, TA412, Tide Castle, and Violet Typhoon) on August 28, 2026. "Within days, several other espionage-motivated clusters began using BlueMoon,…...
F5 BIG-IP APM Malware Injects a PHP Web Shell Into Memory, Evading Disk Scans
4+ day, 1+ hour ago (887+ words) Malware linked to break-ins at F5 BIG-IP Access Policy Manager appliances hides a PHP web shell in memory instead of in a file on disk, Sophos said in an analysis published on September 7. When Apache loads any of the three appliances…...
BengalSEO Poisons Bing Search Results to Deliver MayaBot and Tech Support Scams
4+ day, 23+ hour ago (1052+ words) Cybersecurity researchers have disclosed details of a sprawling search engine optimization (SEO) poisoning campaign that paves the way for malware deployment and tech support scams. The campaign, discovered by the DFIR Report in March 2026, has been codenamed BengalSEO. It has…...
Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts
5+ day, 19+ hour ago (384+ words) According to Huntress, three unrelated incidents have been found to use diverse initial access methods, namely a Quick Assist tech-support scam, a phishing-delivered MSI installer, and a fake Geek Squad refund form lure, to activate a four-stage VBScript chain that…...
JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies
6+ day, 49+ min ago (494+ words) Malvertising campaigns distributing the malware make use of two ZIP archives delivered via PowerShell: one containing the Node.js runtime and the other containing the main payload and other auxiliary components. As recently as last month, ad security platform Confiant…...
Attackers Turn Trusted Node.js Runtime Into Malware Delivery Tool in Targeted Attacks
1+ week, 2+ day ago (665+ words) Threat actors are leveraging the trusted Node.js JavaScript runtime in multiple cyber attacks as a way to deploy malicious payloads. According to a new report published by the Symantec Threat Hunter Team today, the attack method has been put…...
Fake Software Installers Disable Windows Update and Weaken Microsoft Defender
1+ week, 3+ day ago (599+ words) An active malware campaign is using bogus software-download websites to impersonate trusted vendors and distribute malicious installers. The websites observed as part of the campaign are hosted on the.com.cn and.hl.cn infrastructure and use Chinese-language lure content…...
Meta Ads Push StreamRat Android Trojan That Can Gain Near-Complete Device Control
1+ week, 3+ day ago (523+ words) Cybersecurity researchers have disclosed details of a new Android banking trojan called StreamRat that was promoted to Spanish-speaking users through a fake television-streaming campaign on Meta and can give operators near-complete control of infected devices. ThreatFabric said the campaign's advertisement…...
13 Malicious Packagist Packages Target Unpatched iPhones to Steal Crypto Wallet Seeds
1+ week, 4+ day ago (571+ words) Cybersecurity researchers have identified a set of 13 malicious Composer theme packages on Packagist that are designed to inject JavaScript into Vietnamese movie and comic streaming sites that install those libraries and initiate the deployment of spyware aimed at unpatched iOS…...