Install
The Hacker News is the most trusted and popular cybersecurity publication for information security professionals seeking breaking news, actionable insights and analysis.
- 174articles · 30d
- 8+ hour agolatest article
- Aug 15, 2026earliest in window
- 10%with images
- 353avg words
- security 162
- cybersecurity 142
- malware 108
- vulnerability 98
- cyber security news 88
- artificial intelligence 70
- cyber security 62
- cybercrime 59
- technology 58
- ai 52
- vulnerabilities 52
- cloud security 39
- windows 35
- network security 33
- remote code execution 33
- linux 30
- enterprise security 29
- microsoft 29
- infosec 28
- cisa 27
- Science & Technology 118
- Software 98
- Computers & Electronics 84
- Conflict, War & Peace 47
- News 37
- Crime & Law 35
- Software Dev. 30
- Internet & Telecom 29
- cyber security news
- cyber news
- cyber security news today
- cyber security updates
- cyber updates
- hacker news
- hacking news
- software vulnerability
- cyber attacks
- data breach
- ransomware malware
- how to hack
- network security
- information security
- the hacker news
- computer security
- top cybersecurity threats
- ⚡ thn weekly recap
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Anthropic Says Seven China-Based AI Labs Ran Industrial-Scale Claude Distillation Attacks
2+ day, 3+ hour ago (461+ words) Anthropic on Thursday said it identified and disrupted industrial-scale illicit distillation attacks against Claude from seven labs based in China, including Alibaba, Moonshot, DeepSeek, Z.ai (aka Zhipu), and MiniMax. Knowledge distillation by itself is a legitimate training method. It refers…...
ThreatsDay: 200 Android Flaws, Browser-Built Phishing, 119K Scam Shops + 23 More Stories
3+ day, 1+ hour ago (271+ words) A lot of this week’s security news has the same awkward answer to one question: “Why was that allowed to work?” An extension asks for access and takes too much. A trusted service becomes part of a phishing chain. An…...
DeepSeek Harness Flaw Let AI Agents Disable Their Own File Sandbox Without Approval
4+ day, 7+ hour ago (1039+ words) A flaw in DeepSeek Harness, DeepSeek's open-source tool for running AI coding agents on a developer's machine, let a sandboxed agent turn off its own sandbox with a single command. The tool runs an agent's commands inside an operating-system sandbox,…...
BengalSEO Poisons Bing Search Results to Deliver MayaBot and Tech Support Scams
5+ day, 10+ hour ago (1052+ words) Cybersecurity researchers have disclosed details of a sprawling search engine optimization (SEO) poisoning campaign that paves the way for malware deployment and tech support scams. The campaign, discovered by the DFIR Report in March 2026, has been codenamed BengalSEO. It has…...
JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies
6+ day, 11+ hour ago (494+ words) Malvertising campaigns distributing the malware make use of two ZIP archives delivered via PowerShell: one containing the Node.js runtime and the other containing the main payload and other auxiliary components. As recently as last month, ad security platform Confiant…...
Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials
1+ week, 1+ day ago (509+ words) JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to breach its own environment. "Cadence users should immediately revoke…...
Attackers Turn Trusted Node.js Runtime Into Malware Delivery Tool in Targeted Attacks
1+ week, 3+ day ago (665+ words) Threat actors are leveraging the trusted Node.js JavaScript runtime in multiple cyber attacks as a way to deploy malicious payloads. According to a new report published by the Symantec Threat Hunter Team today, the attack method has been put…...
Fake Software Installers Disable Windows Update and Weaken Microsoft Defender
1+ week, 4+ day ago (599+ words) An active malware campaign is using bogus software-download websites to impersonate trusted vendors and distribute malicious installers. The websites observed as part of the campaign are hosted on the.com.cn and.hl.cn infrastructure and use Chinese-language lure content…...
Malicious.git Configs Can Make Claude, Codex, Cursor, and Other AI Agents Run Attacker Code
1+ week, 4+ day ago (983+ words) Manifold Security has disclosed eight security flaws across seven command-line AI coding agents in which a repository's own Git configuration names a command that the agent runs on the developer's machine, four of them still unpatched at publication. The command…...
How to Secure Enterprise AI: From Adoption to Incident Readiness
1+ week, 4+ day ago (1098+ words) The debate about whether AI delivers business value is over. The challenge now is implementing it at scale and securely across every function while meeting board-level pressure to move fast. Organizations must focus on adopting AI at business speed without…...