All Articles
Security Intelligence
3410 articles · Updated every 8 hours
Advertisement
Windows Phone Link Abuse: CloudZ RAT Bypasses 2FA via SMS Interception
Hackers are deploying CloudZ RAT and its Pheno plugin to exploit Windows Phone Link, enabling 2FA bypass and SMS theft. Learn to detect and mitigate this threat.
Advancing Cybersecurity Training with AI-Powered Platforms
Herd Security raises $3M to expand its AI-powered cybersecurity training platform, aiming to enhance skill development and adapt to evolving threats.
Autonomous Offensive Security Platforms: XBOW Secures $35M for AI
XBOW secures $35 million in Series C funding to accelerate the development of autonomous offensive security agents and automated vulnerability discovery tools.
MuddyWater Exploits Microsoft Teams via Chaos Ransomware Decoy
Iranian APT MuddyWater utilizes Microsoft Teams social engineering and Chaos ransomware decoys to mask state-sponsored espionage operations.
Ransomware Attackers Target Backup Infrastructure to Block Recovery
Explore how ransomware operators neutralize backup systems to prevent recovery. This analysis covers attacker TTPs and mitigation steps for backups.
Cybersecurity Stars Awards 2026: The Hacker News Recognizes Defenders
The Hacker News announces the Cybersecurity Stars Awards 2026 to celebrate defensive excellence, leadership, and product innovation in the security industry.
Advertisement
MuddyWater Exploits Microsoft Teams for False Flag Ransomware
Iranian APT MuddyWater is leveraging Microsoft Teams social engineering to deploy false flag ransomware, obscuring state-sponsored espionage activities.
Securing Embodied AI: Risks in Humanoid and Quadruped Robotics
An analysis of security risks in embodied AI systems as humanoid and quadruped robots transition from research spectacles to industrial and commercial staffing.
NVIDIA Ampere GPU Rowhammer Attacks Enable Full Host Compromise
Researchers demonstrate Rowhammer attacks on NVIDIA Ampere GPUs using GDDR bitflips to gain full CPU memory control when IOMMU is disabled by default.
UAE Critical Infrastructure Faces Surge in Geopolitical Cyberattacks
Breach attempts against the UAE have tripled following regional tensions, specifically targeting critical infrastructure and government sectors.
Evolution of Modern Threats: From Stuxnet to AI-Driven Vulnerabilities
An analysis of the 20-year evolution of the cybersecurity landscape, detailing the shift from industrial sabotage to automated, AI-driven exploitation.
CISA Guidance: Mastering Network Isolation and Recovery
CISA urges critical infrastructure to prioritize network isolation and rapid recovery to counter persistent threats from foreign nation-state actors.
Gavril Sandu Extradited to US for Historical Phishing Scheme
Gavril Sandu, a Romanian national, faces US charges for a 2007-2008 phishing operation that targeted financial institutions and thousands of victims.
PAN-OS RCE via CVE-2024-0012: Palo Alto Networks Exploitation Guide
Palo Alto Networks warns of active exploitation of CVE-2024-0012 and CVE-2024-0013 affecting PAN-OS management interfaces. Secure your firewall now.
CloudZ RAT Exploits Windows Phone Link to Steal Credentials and OTPs
Researchers identify CloudZ RAT and the Pheno plugin exploiting Windows Phone Link to bypass MFA by stealing one-time passwords from synchronized devices.
Google Android Binary Transparency: Defending Against Supply Chain Attacks
Google expands Binary Transparency to Android apps, providing a public ledger to verify app integrity and mitigate risks of mobile supply chain attacks.
CVE-2026-0300: Critical Zero-Day in PAN-OS Captive Portal Service
Palo Alto Networks warns of CVE-2026-0300, a critical zero-day vulnerability in the PAN-OS Captive Portal service currently being exploited in the wild.
ABB B&R Automation Runtime DoS via CVE-2025-11044 — Patch Now
An unauthenticated network DoS vulnerability (CVE-2025-11044) affects ABB B&R Automation Runtime, allowing permanent system halts. Immediate patching is critical.
CVE-2025-11043: ABB Automation Studio <6.5 Improper Certificate Validation
Critical manufacturing systems running ABB B&R Automation Studio <6.5 are vulnerable to CVE-2025-11043, allowing data interception and spoofing via improper certificate…
Microsoft Edge Password Storage: Risk of Credential Dumping
Microsoft Edge stores sensitive user passwords in process memory. A PoC exploit demonstrates how attackers with admin privileges can dump credentials, posing significant…
AI Red Teaming: Guardrail Manipulation via Jailbreaking and Data Poisoning
Explores AI red teaming methods like jailbreaking and data poisoning used to manipulate AI guardrails and harden machine learning models against adversarial attacks.
Instructure Data Theft Claim: 280 Million Records from 8,800+ Schools
A hacker claims to have stolen 280 million student and staff data records from 8,809 educational institutions impacted by a breach at Instructure.
Stealthy Quasar Linux (QLNX) Malware Targets Developers
New Quasar Linux (QLNX) malware is infecting developers' Linux systems, utilizing rootkit, backdoor, and credential-stealing techniques. Learn to detect and mitigate.
DAEMON Tools Supply Chain Attack: Compromised Official Installers
Official DAEMON Tools installers were compromised in a supply chain attack to distribute malware signed with legitimate certificates. Technical analysis and mitigation.