Install
The Hacker News is the most trusted and popular cybersecurity publication for information security professionals seeking breaking news, actionable insights and analysis.
- 1,797articles · 365d
- 1+ day agolatest article
- Sep 13, 2025earliest in window
- 20%with images
- 353avg words
- security 1,625
- cybersecurity 1,614
- malware 1,071
- cyber security news 1,017
- vulnerability 772
- cyber security 752
- artificial intelligence 595
- technology 544
- ai 471
- network security 435
- computer security 432
- cybercrime 427
- vulnerabilities 371
- windows 332
- software 313
- data breach 292
- phishing 271
- linux 257
- microsoft 233
- cloud security 228
- Science & Technology 1,179
- Software 933
- Computers & Electronics 923
- Conflict, War & Peace 511
- News 431
- Software Dev. 377
- Crime & Law 361
- Internet & Telecom 255
- cyber security news
- cyber news
- cyber security news today
- cyber security updates
- cyber updates
- hacker news
- hacking news
- software vulnerability
- cyber attacks
- data breach
- ransomware malware
- how to hack
- network security
- information security
- the hacker news
- computer security
- top cybersecurity threats
- ⚡ thn weekly recap
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Google Play Early Access Abused to Push Thousands of Deceptive Android Apps
2+ day, 11+ hour ago (467+ words) Bad actors are misusing Google Play's Early Access program to push deceptive apps that claim to offer money, rewards, casino winnings, and premium content. "The same feature that shields developers from unfair criticism also strips users of the earliest warning…...
Infostealer Logs Expose Replayable AI Tokens That Can Bypass MFA
3+ day, 11+ hour ago (883+ words) Cybercriminals are hijacking artificial intelligence (AI) user accounts via information stealer logs to create "stolen keys" that grant illicit access to tools from model providers like Google, Anthropic, and others. Information stealers like Lumma Stealer or Vidar are equipped to…...
Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox
3+ day, 16+ hour ago (321+ words) Google on Thursday released updates to patch 230 security vulnerabilities, including one that has come under active exploitation in the wild. The medium-severity vulnerability, assigned the CVE identifier CVE-2026-87491 (CVSS score: N/A), has been described as an out-of-bounds bug in V8, Chrome's…...
N-able N-central Pre-Auth RCE Flaw Exploited in the Wild
3+ day, 21+ hour ago (245+ words) The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a maximum-severity security flaw impacting N-able N-central to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the fixes by September 11, 2026. The vulnerability in…...
WeChat Zero-Click Worm Took Over Accounts on iPhone and Android via Incoming Calls
4+ day, 14+ hour ago (733+ words) Researchers at the security firm Calif have built a worm that takes over a WeChat account via an incoming call and demonstrated it spreading among three test phones. The person being called does not have to answer or touch their…...
PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Execution
5+ day, 7+ hour ago (36+ words) PEEP uses Chrome and Edge as a post-compromise backdoor for credential theft and host command execution....
Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks
5+ day, 10+ hour ago (360+ words) The activity, which mainly singles out directors, vice presidents, and other executive staff, is being tracked by Arctic Wolf under the moniker PREY-0058, adding it shares significant tradecraft similarities with a data extortion group that Google-owned Mandiant calls UNC6671. It also…...
Attackers Exploit PaperCut Flaws to Steal Credentials From Schools and Universities
1+ week, 18+ hour ago (246+ words) Threat actors are exploiting the newly disclosed PaperCut flaws to facilitate credential theft in attacks targeting the education sector in the U.S. and Europe. The Arctic Wolf Adversary Research Team said it observed attackers exploiting CVE-2026-81578 and CVE-2026-82078 – an authentication bypass…...
GPT-6 Astra Scores 100% on ExploitBench as OpenAI Blocks PoC Exploit Requests
1+ week, 1+ day ago (546+ words) OpenAI on Thursday officially unveiled GPT‑6 Astra, which it described as the "world's most intelligent and aligned model." The development comes days after the artificial intelligence (AI) company said the model had reached the "Critical" cybersecurity capability threshold under its…...
Google, Anthropic, and OpenAI Unveil Cyber AI Models, Safeguards, and Access Programs
1+ week, 3+ day ago (972+ words) Google on Wednesday announced Gemini 3.8 Flash Cyber, which it described as its most capable cybersecurity model, and has made it available to a set of trusted defenders via a new initiative called the Fairwind Program. "The Fairwind Program gives high-priority…...