HackenPost blogs HackenPost blogs
0
99
5
90
12
189
0
0
HackenPost blogs HackenPost blogs
dark
HackenPost blogs HackenPost blogs
Hand-Picked Top-Read Stories
Microsoft Links 30+ Rotating Domains to MacSync Stealer Infrastructure
Clop-Linked Windchill Web Shell Decrypts Credentials and Maps Engineering Data
Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps
Trending Tags
  • Vulnerability
  • Unauthorized access risks
  • Two-factor authentication best practices
  • Tech
  • System vulnerability patches
  • System security tips
  • Strong password guidelines
  • Stealer
  • Staying informed on cyber threats
  • Security software updates importance
  • Data Breaches

Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCs

A solo Russian-speaking threat actor known as “bandcampro” outsourced a chunk of their operations to Google’s open-source Gemini…
July 20, 2026
  • Data Breaches

World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent

In an ironic twist, open-source artificial intelligence (AI) platform Hugging Face revealed that it was the victim of…
July 20, 2026
  • Data Breaches

SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines

Cybersecurity researchers have flagged a new software supply chain attack codenamed SleeperGem targeting the Ruby ecosystem after three…
July 20, 2026
  • Data Breaches

Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution

F5 has shipped fixes for a critical nginx flaw that lets a remote, unauthenticated attacker trigger a heap…
July 19, 2026
  • Data Breaches

New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code

Updated July 18, 2026: the two flaws now carry CVE IDs, the full mechanism has been published, a…
July 17, 2026
  • Data Breaches

OpenSSL HollowByte Flaw Could Freeze Server Memory with 11-Byte TLS Requests

Eleven bytes will make an unpatched OpenSSL server set aside up to 131 KB of memory for a…
July 17, 2026
  • Data Breaches

Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RAT

Cybersecurity researchers have discovered a cluster of seven malicious npm packages targeting the Vite frontend tooling ecosystem as…
July 17, 2026
  • Data Breaches

New NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes Tokens

A Go botnet called NadMesh turned up in early July hunting exposed AI services, and the operator’s own…
July 17, 2026
  • Data Breaches

GoldenEyeDog Subgroup Linked to DigiCert Breach and Code-Signing Certificate Theft

Cybersecurity researchers have attributed the April 2026 DigiCert security incident to a threat activity cluster dubbed CylindricalCanine. Expel,…
July 17, 2026
  • Data Breaches

ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 Files

ACR Stealer, an infostealer in circulation since 2024, is walking out of enterprise networks with saved browser passwords,…
July 17, 2026

Posts pagination

Previous 1 … 11 12 13 … 146 Next
Featured Posts
  • Microsoft Links 30+ Rotating Domains to MacSync Stealer Infrastructure

    August 19, 2026
  • Clop-Linked Windchill Web Shell Decrypts Credentials and Maps Engineering Data

    August 19, 2026
  • Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps

    August 18, 2026
  • Attackers Exploit MLflow SSRF Flaw to Steal Cloud Credentials and Secrets

    August 18, 2026
  • Ransom Busters Claims It Hacked Ransomware Servers, Asks Victims for Up to $60,000

    August 18, 2026
Recent Posts
  • Attackers Exploit SharePoint Authentication Bypass After Public PoC Release

  • Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor

Categories
  • Cyber Attacks (5)
  • Data Breaches (1,443)
  • News (4)
  • Technology (3)
  • Vulnerabilities (2)
HackenPost blogs HackenPost blogs
Designed & Developed by Hackenpost
0
99
5
90
12
189
0
0