Website profile

The Hacker News

The Hacker News is the most trusted and popular cybersecurity publication for information security professionals seeking breaking news, actionable insights and analysis.

  • 1,796articles · 365d
  • 1+ day agolatest article
  • Sep 14, 2025earliest in window
  • 20%with images
  • 353avg words
articles per day
Categories
  • Science & Technology 1,179
  • Software 933
  • Computers & Electronics 923
  • Conflict, War & Peace 510
  • News 430
  • Software Dev. 377
  • Crime & Law 360
  • Internet & Telecom 255

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

thehackernews.com
thehackernews.com > 2026 > 09 > your-critical-vulnerabilities-might-not.html

Your Critical Vulnerabilities Might Not Be Your Biggest Risk

1+ day, 22+ hour ago   (1309+ words) Security teams have become exceptionally talented at finding vulnerabilities. Now, it’s time to turn our attention to optimizing the process for determining which of those vulnerabilities actually create a path to compromise. A critical vulnerability may look alarming on a…...

The Hacker News
thehackernews.com > 2026 > 09 > alby-hub-critical-flaw-could-let.html

Alby Hub Critical Flaw Could Let Attackers Take Over Internet-Exposed Bitcoin Wallets

3+ day, 23+ hour ago   (798+ words) Bitcoin wallet company Alby has warned of a critical flaw in Alby Hub that could have let an attacker take over a wallet and send its funds, but only where the owner had made the Hub reachable from the internet....

The Hacker News
thehackernews.com > 2026 > 09 > microsoft-365-attackers-use-help-desk.html

Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks

5+ day, 17+ hour ago   (360+ words) The activity, which mainly singles out directors, vice presidents, and other executive staff, is being tracked by Arctic Wolf under the moniker PREY-0058, adding it shares significant tradecraft similarities with a data extortion group that Google-owned Mandiant calls UNC6671. It also…...

The Hacker News
thehackernews.com > 2026 > 09 > weekly-recap-chrome-0-day-router.html

⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and More

5+ day, 19+ hour ago   (299+ words) Turning off email images should at least stop the pictures. This week, attackers had a workaround: a scannable QR code built out of text. It still appears, even with images blocked. A small detail, but an annoying one if that…...

Google News
thehackernews.com > 2026 > 09 > authorities-turn-salitys-p2p-network.html

Authorities Turn Sality's P2P Network Against Itself, Cutting Off New Malware Payloads

1+ week, 4+ day ago   (937+ words) The U.S. Department of Justice (DoJ) on Tuesday announced the takedown of a long-standing peer-to-peer (P2P) botnet known as Sality as part of a coordinated law enforcement operation. "Cybercriminals, botnets, and malware are a clear and present danger to our nation's security…...

The Hacker News
thehackernews.com > 2026 > 09 > attackers-exploit-critical-langflow-and.html

Attackers Exploit Critical Langflow and Rails Flaws in Credential-Probing and C2 Activity

1+ week, 5+ day ago   (379+ words) Threat actors are exploiting two critical flaws impacting Langflow and Ruby on Rails, according to new findings from VulnCheck. The vulnerabilities in question are listed below - Attackers can exploit CVE-2026-66066 by uploading a crafted image by taking advantage of the…...

The Hacker News
thehackernews.com > 2026 > 09 > threat-actors-dont-want-better-attacks.html

Threat Actors Don’t Want Better Attacks. They Want Repeatable Ones

1+ week, 5+ day ago   (1263+ words) The most common way into a company last year was to ask. What happens next is just as ordinary. When Bitdefender analyzed 700,000 security incidents, 84% of the high-severity ones involved binaries that were already on the machine - the same administrative tools…...

The Hacker News
thehackernews.com > 2026 > 08 > north-korean-job-fraud-expands-beyond.html

North Korean Job Fraud Expands Beyond IT Into Healthcare and Sales

1+ week, 5+ day ago   (884+ words) Threat actors with ties to the Democratic People's Republic of Korea (aka DPRK or North Korea) have been observed seeking job opportunities beyond the information technology (IT) sector, with recent investigations identifying suspected workers employed in sales and marketing and…...

The Hacker News
thehackernews.com > 2026 > 08 > weekly-recap-chinese-spy-proxy-ai.html

⚡ Weekly Recap: Chinese Spy Proxy, AI Agents Go Off-Task, Router Backdoors and More

1+ week, 5+ day ago   (280+ words) The boring parts caused most of the trouble. A router shipped ready to listen. A fake check turned the user into the installer. Trusted systems collected traffic and passwords, then cleaned the logs. Old bugs formed new attack chains. Even…...

The Hacker News
thehackernews.com > 2026 > 08 > china-linked-fire-ant-hijacks-cisco.html

China-Linked Fire Ant Hijacks Cisco Routers to Steal Credentials and Blind Security Logs

1+ week, 6+ day ago   (777+ words) A China-nexus cyber espionage actor tracked as Fire Ant has expanded a long-running campaign beyond VMware hypervisors to compromise Cisco IOS XR routers, Terminal Access Controller Access-Control System (TACACS) servers, and Linux management hosts used to route, authenticate, and manage…...