Compromised MemTensor npm and PyPI packages deliver sckit, a Go-based stealer targeting cloud, registry, source-code, and developer credentials.
A North Korean APT group used a new Linux espionage toolkit to compromise load balancers, gain access to communications, and ...
The Hacker News is the top cybersecurity news platform, delivering real-time updates, threat intelligence, data breach ...
IntroductionIn June 2026, Zscaler ThreatLabz identified a new malware family, tracked as SloppyRAT, that is likely leveraged by a ransomware-related threat actor. ThreatLabz observed SloppyRAT being ...
Leak site Distributed Denial of Secrets has released a dump of the filesystems of a Flock camera, and Micah Lee has published a dive into the contents.  Apparently the Flock security model did not ...
An active exploitation campaign targeting FortiGate firewalls, in which attackers weaponize a critical vulnerability to plant a custom-built Node.js remote access trojan (RAT) capable of turning ...
Nozomi researchers use snapshot fuzzing to uncover four memory-corruption flaws in Siemens SCALANCE LPE9403 equipment.
Un test di 72 ore misura fino a 348 comunicazioni all'ora tra Pixel 8 e infrastrutture Google. Con GrapheneOS il traffico crolla, ma TLS impedisce di conoscere con certezza il contenuto dei singoli me ...
Flet 1.0: build web, desktop and mobile apps in Python with declarative UI, bundled Python 3.12 to 3.14, on device testing and MCP tools.
Acronis Threat Research Unit (TRU) uncovered a multinational campaign in which a Chinese-speaking threat actor, tracked as Red Heron, rapidly weaponized CVE-2026-60004 to compromise internet-facing ...
Three ways to find the IP address of a website (browser, terminal, API), why you often get several IPs or a CDN address, and how to geolocate the result to see where a site is really hosted.
On Sep 23, 2026, security researchers reported that unknown threat actors compromised two legitimate MemTensor packages on ...