Category: TheHackerNews

ServiceNow Patches Critical AI Platform Flaw Allowing Unauthenticated User Impersonation
13
Jan
2026

ServiceNow Patches Critical AI Platform Flaw Allowing Unauthenticated User Impersonation

Jan 13, 2026Ravie LakshmananVulnerability / SaaS Security ServiceNow has disclosed details of a now-patched critical security flaw impacting its ServiceNow…

What Should We Learn From How Attackers Leveraged AI in 2025?
13
Jan
2026

What Should We Learn From How Attackers Leveraged AI in 2025?

Jan 13, 2026The Hacker NewsThreat Intelligence / Identity Security Old Playbook, New Scale: While defenders are chasing trends, attackers are…

New Malware Campaign Delivers Remcos RAT Through Multi-Stage Windows Attack
13
Jan
2026

New Malware Campaign Delivers Remcos RAT Through Multi-Stage Windows Attack

Jan 13, 2026Ravie LakshmananMalware / Endpoint Security Cybersecurity researchers have disclosed details of a new campaign dubbed SHADOW#REACTOR that employs…

CISA Warns of Active Exploitation of Gogs Vulnerability Enabling Code Execution
13
Jan
2026

CISA Warns of Active Exploitation of Gogs Vulnerability Enabling Code Execution

Jan 13, 2026Ravie LakshmananVulnerability / Network Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has warned of active exploitation…

n8n Supply Chain Attack Abuses Community Nodes to Steal OAuth Tokens
12
Jan
2026

n8n Supply Chain Attack Abuses Community Nodes to Steal OAuth Tokens

Jan 12, 2026Ravie LakshmananVulnerability / Workflow Automation Threat actors have been observed uploading a set of eight packages on the…

GoBruteforcer Botnet
12
Jan
2026

GoBruteforcer Botnet Targets Crypto Project Databases by Exploiting Weak Credentials

A new wave of GoBruteforcer attacks has targeted databases of cryptocurrency and blockchain projects to co-opt them into a botnet…

Anthropic Launches Claude AI for Healthcare with Secure Health Record Access
12
Jan
2026

Anthropic Launches Claude AI for Healthcare with Secure Health Record Access

Jan 12, 2026Ravie LakshmananArtificial Intelligence / Healthcare Anthropic has become the latest Artificial intelligence (AI) company to announce a new…

Researchers Uncover Service Providers Fueling Industrial-Scale Pig Butchering Fraud
12
Jan
2026

Researchers Uncover Service Providers Fueling Industrial-Scale Pig Butchering Fraud

Cybersecurity researchers have shed light on two service providers that supply online criminal networks with the necessary tools and infrastructure…

MuddyWater Launches RustyWater RAT via Spear-Phishing Across Middle East Sectors
10
Jan
2026

MuddyWater Launches RustyWater RAT via Spear-Phishing Across Middle East Sectors

Jan 10, 2026Ravie LakshmananCyber Espionage / Malware The Iranian threat actor known as MuddyWater has been attributed to a spear-phishing…

Europol Arrests 34 Black Axe Members in Spain Over €5.9M Fraud and Organized Crime
10
Jan
2026

Europol Arrests 34 Black Axe Members in Spain Over €5.9M Fraud and Organized Crime

Jan 10, 2026Ravie LakshmananCybercrime / Financial Crime Europol on Friday announced the arrest of 34 individuals in Spain who are…

China-Linked Hackers Exploit VMware ESXi Zero-Days to Escape Virtual Machines
09
Jan
2026

China-Linked Hackers Exploit VMware ESXi Zero-Days to Escape Virtual Machines

Jan 09, 2026Ravie LakshmananVirtualization / Vulnerability Chinese-speaking threat actors are suspected to have leveraged a compromised SonicWall VPN appliance as…

Russian APT28
09
Jan
2026

Russian APT28 Runs Credential-Stealing Campaign Targeting Energy and Policy Organizations

Jan 09, 2026Ravie LakshmananEmail Security / Threat Intelligence Russian state-sponsored threat actors have been linked to a fresh set of…