Tag: hacker
-
So verlieren Hacker die Lust an MachineAttacken
Hacker sind höchst einfallsreich, wenn es darum geht, sich Zugang zu internen Unternehmenssystemen zu verschaffen. Aktuell richten sie dabei ihr Augenmerk auf nicht-menschliche Cloud-Identitäten. Theus Hossmann*, CTO bei Ontinue gibt eine Übersicht über die aktuelle Gefahrenlage und nennt fünf Schutzmaßnahmen. Management Summary Machine Identities rücken ins Visier: Weil Unternehmen Benutzerkonten stärker absichern, konzentrieren sich… First…
-
CISA Again Sounds Warning Over Exposed PLCs
Internet-Exposed Programmable Logic Controllers ‘An Easy Target’. Thousands of vulnerable industrial devices, accessible from the public internet, are being targeted by Iran-linked hackers, U.S. authorities said this week. The warning was an update to an advisory CISA originally published in April. The revision is because a broader range of device brands are under attack. First…
-
One Password Mistake Helped Hackers Access Chick-fil-A Account
Chick-fil-A disclosed a credential stuffing attack affecting customers across 10 states, underscoring the risks of password reuse and account takeover. The post One Password Mistake Helped Hackers Access Chick-fil-A Account appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-chick-fil-a-credential-stuffing-attack-password-reuse/
-
Russian Hackers Exploit Zimbra Zero-Day Against US, Ukraine Targets
A state-sponsored threat group, dubbed Laundry Bear, sends half-click phishing emails that require a victim only to open or preview the message. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/russian-hackers-zimbra-zero-day-us-ukraine-targets
-
US government says Iran-linked hackers are disrupting American water and energy providers
An updated government advisory warns that Iranian hackers are exploiting systems used by water and energy providers. First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/23/us-government-says-iran-linked-hackers-are-disrupting-american-water-and-energy-providers/
-
Russian hackers exploit Zimbra zero-click flaw for email theft
CISA is warning that the Russian state-sponsored hacking group Laundry Bear, also known as Void Blizzard, is targeting organizations using Zimbra Collaboration email servers by combining phishing attacks with the exploitation of a now-patched Zimbra vulnerability. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/russian-hackers-exploit-zimbra-zero-click-flaw-for-email-theft/
-
CISA, FBI warn that Iran-linked hackers are expanding target set for water, energy
The agencies said threat groups have disrupted critical infrastructure sites by exploiting vulnerable PLC devices. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/cisa-fbi-iran-hackers-target-water-energy/826025/
-
Hackers abuse Notepad++ plugins to stealthily install malware
Ukraine’s CERT has uncovered attacks distributing an archive containing the legitimate Notepad++ application and a malicious utility called LunchPoke disguised as a plugin to establish persistence. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/hackers-abuse-notepad-plus-plus-plugins-to-stealthily-install-malware/
-
Russian Hackers Exploit New ‘Zero-Click’ Attack Against Western Organizations
International agencies issue joint alert over state-backed campaign exploiting a critical vulnerability in the Zimbra Collaboration Suite First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/russian-hackers-zero-click/
-
Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files
Cybersecurity researchers have uncovered a sandbox escape vulnerability in Anthropic’s Claude Cowork that makes it possible to break out of the confines of a Linux virtual machine (VM) within which the agent runs to read or write files anywhere on the Mac.Accomplish AI, which shared details of the vulnerability with The Hacker News ahead of…
-
Iranian Hackers Target Siemens and Schneider Industrial Systems, CISA Warns
US government agencies have warned that Iranian cyber actors are targeting US-based Siemens and Schneider industrial equipment First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/iran-hackers-siemen-schneider-ics/
-
Hackers Turn GitHub Actions Into a Global Botnet for Attacking Web Hosting Servers
Hackers are abusing compromised GitHub repositories and GitHub Actions workflows to build a de facto global botnet that scans and exploits web hosting servers, with a primary focus on cPanel and WHM deployments. The campaign first surfaced when malicious development versions were discovered across ten Packagist PHP packages tied to a legitimate PHP and DevOps…
-
Hackers Lurked for 10 Months Inside South Korea Diplomatic System
The National Diplomatic Academy data breach has raised significant cybersecurity concerns in South Korea after the Ministry of Foreign Affairs confirmed that hackers maintained access to the academy’s online education system for nearly 10 months. The cyberattack resulted in the exposure of personal information belonging to current and former ministry employees, including diplomats serving overseas. First seen on thecyberexpress.com…
-
Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness
A new study of organizations which have fallen victim to ransomware suggests the rise of AI-tools being used by hackers is making life harder for defenders First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/ai-boosts-ransomware-effectiveness/
-
Brazilian Banking Trojan Actively Spreading in Portugal
Portuguese businesses operate in the same native language as Brazilian hackers, making those businesses easy targets. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/brazilian-banking-trojan-spreading-portugal
-
Nach Cyberangriff: Hacker erpressen Zugbauer Stadler um Millionenbetrag
Hacker fordern von dem Zughersteller Stadler nach einem IT-Einbruch 10 Millionen Schweizer Franken. Doch Stadler hält sich für nicht erpressbar. First seen on golem.de Jump to article: www.golem.de/news/nach-cyberangriff-hacker-erpressen-zugbauer-stadler-um-millionenbetrag-2607-211182.html
-
Critical Adobe Acrobat Chrome Extension Flaw “HermeticReader” Lets Hackers Hijack WhatsApp Chats of 300M+ Users
Guardio Labs has disclosed a critical vulnerability chain in the Adobe Acrobat Chrome extension that could allow a malicious website to hijack and exfiltrate rendered WhatsApp Web data from affected users. This vulnerability is tracked as CVE-2026-48294 and has impacted Adobe Acrobat extension version 26.5.2. The extension is installed across approximately 329 million browsers. Adobe…
-
North Korean hackers target South Korean software vendors
First seen on scworld.com Jump to article: www.scworld.com/brief/north-korean-hackers-target-south-korean-software-vendors
-
Smashing Security podcast #477: How 14 orders of chicken McNuggets helped nail a suspected Russian hacker
A Russian intelligence-linked hacker is arrested in Thailand while enjoying a beach holiday – and the trail of evidence that nailed him to the Russian government includes 14 separate orders of chicken McNuggets. First seen on grahamcluley.com Jump to article: grahamcluley.com/smashing-security-podcast-477/
-
South Korea discloses data breach impacting diplomats worldwide
South Korea disclosed that hackers breached the National Diplomatic Academy’s online education system for ten months and stole personal information belonging to current and former employees of the Ministry of Foreign Affairs (MFA), including overseas diplomats. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/south-korea-discloses-data-breach-impacting-diplomats-worldwide/
-
If you pay a hacker’s ransom, chances are that they’ll come back for more
The long-held understanding among security researchers and network defenders is that it’s impossible to negotiate in good faith with an extortion racket because there’s no incentive for the other side to actually walk away. First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/22/if-you-pay-a-hackers-ransom-chances-are-that-theyll-come-back-for-more/
-
Hugging Face ‘hacker’ was rogue OpenAI model
A hacker who broke into Hugging Face’s systems last week has been exposed as a pair of advanced OpenAI frontier models that were trying to cheat on an exam First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366646003/Hugging-Face-hacker-was-rogue-OpenAI-model
-
Hackers Exploit Windmill Flaw to Read Arbitrary Server Files Without Authentication
A high-severity security flaw impacting open-source developer platform Windmill has come under active exploitation in the wild, per VulnCheck.The vulnerability in question is CVE-2026-29059 (CVSS score: 7.5), a case of unauthenticated path traversal impacting Windmill’s “get_log_file” endpoint (“/api/w/{workspace}/jobs_u/get_log_file/{filename}”).”The filename parameter is concatenated into First seen on thehackernews.com Jump to article: thehackernews.com/2026/07/hackers-exploit-windmill-flaw-to-read.html
-
Hackers Clone Microsoft Login Portals to Capture Credentials and Session Tokens in Real Time
An active adversary-in-the-middle (AiTM) phishing campaign that clones Microsoft authentication pages to intercept credentials, Multi-Factor Authentication (MFA) codes, and session tokens in real time. Rather than relying on simple password harvesting, this technique hijacks authenticated user sessions directly. Detailed by Infoblox Threat Intel researchers Darby Wise and Nick Sundvall, the widespread campaign has targeted universities,…
-
North Korean Hackers Use Fake Job Interviews to Deploy PylangGhost and GolangGhost RATs
North Korea’s Famous Chollima threat group, also tracked as Wagemole, is actively running a sophisticated cyberespionage campaign dubbed ClickFake Interview. The operation targets cryptocurrency and Web3 professionals, tricking candidates into executing terminal commands that infect their devices with platform-specific Remote Access Trojans (RATs): PylangGhost on Windows and GolangGhost on macOS. Detailed analysis by the SOCRadar…
-
Critical SharePoint RCE flaw exploited to steal machine keys
Hackers are actively exploiting the critical CVE-2026-50522 vulnerability in Microsoft SharePoint to steal machine keys and maintain access even after affected servers are patched. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/critical-sharepoint-rce-flaw-exploited-to-steal-machine-keys/
-
Hackers Already Exploiting Newly Patched WordPress Flaws, Researchers Warn
Security researchers warn hackers are actively exploiting two patched WordPress Core vulnerabilities that could let attackers fully compromise unpatched websites. The post Hackers Already Exploiting Newly Patched WordPress Flaws, Researchers Warn appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-wordpress-core-vulnerabilities-active-exploitation/
-
Hacker Turns AI Jailbreaks Into Offensive Attack Platform
A Russian-speaking actor, Trim, dismantled publicly available frontier models and integrated them with offensive security tools. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/hacker-ai-jailbreaks-offensive-attack-platform
-
Critical wp2shell WordPress flaws exploited to install webshells
Hackers are exploiting the “wp2shell” critical vulnerability suite (CVE-2026-63030 and CVE-2026-60137) affecting WordPress Core to deploy persistent webshells and install malicious plugins on affected servers. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/critical-wp2shell-wordpress-flaws-exploited-to-install-webshells/
-
AI music generator Suno breach affects 55M users, per Have I Been Pwned
A hacker took names, phone numbers, and physical addresses of millions of customers who used AI music generator Suno. First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/21/ai-music-generator-suno-breach-affects-55m-users-per-have-i-been-pwned/

