Website profile

The Hacker News

The Hacker News is the most trusted and popular cybersecurity publication for information security professionals seeking breaking news, actionable insights and analysis.

  • 175articles · 30d
  • 7+ hour agolatest article
  • Aug 14, 2026earliest in window
  • 11%with images
  • 353avg words
articles per day
Categories
  • Science & Technology 119
  • Software 98
  • Computers & Electronics 84
  • Conflict, War & Peace 47
  • News 37
  • Crime & Law 36
  • Internet & Telecom 30
  • Software Dev. 30

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

The Hacker News
thehackernews.com > 2026 > 09 > papercut-attacker-uses-hundreds-of-ai.html

PaperCut Attacker Uses Hundreds of AI Agents to Compromise 440+ Instances

3+ day, 6+ hour ago   (772+ words) A suspected Russian-speaking cyber actor has been attributed to the use of artificial intelligence (AI) to devise exploits targeting a recently disclosed pair of security flaws in PaperCut NG/MF and break into hundreds of instances. According to independent reports…...

The Hacker News
thehackernews.com > 2026 > 09 > deepseek-harness-flaw-let-ai-agents.html

DeepSeek Harness Flaw Let AI Agents Disable Their Own File Sandbox Without Approval

4+ day, 6+ hour ago   (1039+ words) A flaw in DeepSeek Harness, DeepSeek's open-source tool for running AI coding agents on a developer's machine, let a sandboxed agent turn off its own sandbox with a single command. The tool runs an agent's commands inside an operating-system sandbox,…...

thehackernews.com
thehackernews.com > 2026 > 09 > f5-big-ip-apm-malware-injects-php-web.html

F5 BIG-IP APM Malware Injects a PHP Web Shell Into Memory, Evading Disk Scans

4+ day, 10+ hour ago   (887+ words) Malware linked to break-ins at F5 BIG-IP Access Policy Manager appliances hides a PHP web shell in memory instead of in a file on disk, Sophos said in an analysis published on September 7. When Apache loads any of the three appliances…...

The Hacker News
thehackernews.com > 2026 > 09 > researcher-drops-new-microsoft-defender.html

Researcher Drops New Microsoft Defender PoC Showing ShieldBreak Patch Can Be Bypassed

4+ day, 11+ hour ago   (356+ words) The security researcher known as Chaotic Eclipse has dropped a proof-of-concept (PoC) for yet another zero-day in Microsoft Defender. The vulnerability, codenamed ShieldCrash, is assessed to be a patch bypass for CVE-2026-69414 (CVSS score: 7.8), also called ShieldBreak, which the researcher…...

The Hacker News
thehackernews.com > 2026 > 09 > chatgpt-flaw-let-planted-prompt-send.html

ChatGPT Flaw Let a Planted Prompt Send a Victim's Gmail Data to Another Account

5+ day, 3+ hour ago   (813+ words) Check Point Research said in a report published today that a single instruction planted in a ChatGPT conversation could cause ChatGPT to quietly work for an attacker while answering the user's question as usual. In the company's proof of concept,…...

The Hacker News
thehackernews.com > 2026 > 09 > what-it-took-to-reach-1-billion-build.html

What It Took to Reach 1 Billion Build Manifests

5+ day, 5+ hour ago   (361+ words) Let’s be precise about what we're counting. How do we define a “build manifest”? Think of it as every time the Chainguard Factory produces a new, verifiable artifact: a fresh image for go:1.26.5, a rebuild of nginx triggered by a…...

The Hacker News
thehackernews.com > 2026 > 09 > jsceal-malware-can-bypass-google.html

JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies

6+ day, 10+ hour ago   (494+ words) Malvertising campaigns distributing the malware make use of two ZIP archives delivered via PowerShell: one containing the Node.js runtime and the other containing the main payload and other auxiliary components. As recently as last month, ad security platform Confiant…...

The Hacker News
thehackernews.com > 2026 > 09 > four-revstealer-linked-modules-disable.html

Four REVSTEALER-Linked Modules Disable Windows Update and Defender to Run a Crypto Miner

1+ week, 9+ hour ago   (912+ words) Elastic Security Labs has documented four previously unreported programs associated with REVSTEALER, an emerging Windows information stealer, that remain on an infected machine after the stealer deletes itself. One of them switches off Windows Update and Microsoft Defender before running…...

The Hacker News
thehackernews.com > 2026 > 09 > attackers-breached-jetbrains-cadence.html

Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials

1+ week, 1+ day ago   (509+ words) JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to breach its own environment. "Cadence users should immediately revoke…...

The Hacker News
thehackernews.com > 2026 > 09 > critical-vmware-workstation-and-fusion.html

Critical VMware Workstation and Fusion Flaw Lets VM Admins Execute Host Code

1+ week, 1+ day ago   (339+ words) Broadcom has released security updates for two security flaws impacting VMware Workstation and Fusion, including one critical bug that could result in arbitrary code execution under certain conditions. The vulnerability, tracked as CVE-2026-59346 (CVSS score: 9.3), is an integer-overflow vulnerability that…...