Ru
Главная → Каналы → IT → The Hacker News

The Hacker News

@thehackernews · IT
163 000подписчиков сейчас
Подписаться в Telegram

Публикации всего: 518

Постов на странице: 10 30 50 Страница 1 из 52
Nearly 1,000 of roughly 1,280 third-party products embedding AI were not behind SSO in environments studied for a 2026 report. The blind spot: AI agents can enter through existing enterprise software without a separate security review. Here's what security teams need to know → https://thehackernews.com/2026/10/the-third-party-agent-problem-why.html
Перейти к публикации →
🛑 During internal tests, Claude Mythos Preview exploited injection flaws to run commands on a university server. Claude Haiku 4.5 sent a false homicide tip to Philadelphia police. Anthropic is cutting live internet access for all internal evaluations. Read: https://thehackernews.com/2026/10/anthropic-cuts-live-internet-access-for.html
👍 7 🤯 3 😁 2 · всего 13 Перейти к публикации →
🚨 More than 500 GitHub accounts committed credential-stealing Actions workflows to tens of thousands of repositories. Disguised as security audits, the malicious workflows harvest AWS keys, API tokens, and secrets from Git history. Read: https://thehackernews.com/2026/10/credential-stealing-github-actions.html
🔥 5 🤯 5 🤔 1 · всего 12 Перейти к публикации →
‼️ BREAKING - FBI announces a third ShinyHunters-linked arrest made public since its jobs portal breach. The suspect is reportedly a Canadian detained in Pennsylvania, believed to have been directly involved in the hack. Details: https://thehackernews.com/2026/10/fbi-arrests-another-shinyhunters.html
😁 12 🔥 3 😱 2 Перейти к публикации →
🚨 DarkSword's new P7 iOS variant goes beyond data theft. Its implant can extract iCloud Keychain and crypto wallet data, execute attacker commands, and poll for new commands every 15 seconds. Details: https://thehackernews.com/2026/10/p7-darksword-ios-exploit-kit-adds.html
👍 5 😁 1 Перейти к публикации →
🛑 TP-Link now faces lawsuits in 5 U.S. states. The latest four allege misleading router security claims and overstated separation from China. TP-Link denies the allegations. 21 state AGs have also raised concerns with the FCC over new router approvals. Read → https://thehackernews.com/2026/10/tp-link-sued-by-four-more-us-states.html
🤔 7 🔥 2 ⚡ 1 Перейти к публикации →
⚡ Anthropic launches OSS Scanner, a free AI-powered vulnerability scanning service for open-source projects. Selected projects can opt in for periodic security scans, with fully AI-generated vulnerability reports that require no human review. Read → https://thehackernews.com/2026/10/anthropic-launches-free-ai.html
🔥 12 Перейти к публикации →
‼️ Researchers have published a working exploit for an AnyDesk Linux flaw that can execute commands as root before connection approval. Called AnyPwn, the exploit targets version 8.0.2 via direct TCP port 7070. The flaw was fixed in 8.0.3. Details → https://thehackernews.com/2026/10/researchers-publish-working-exploit-for.html
👍 5 🔥 3 👏 1 Перейти к публикации →
🚨 Attackers are exploiting two AhsayCBS flaws to deploy web shells and XMRig miners disguised as Microsoft Edge (edge.exe). Huntress says even the latest version, 10.3.4, remains vulnerable. Read about it here → https://thehackernews.com/2026/10/attackers-exploit-ahsaycbs-flaws-to.html
🔥 2 Перейти к публикации →
⚠️ China-linked Flax Typhoon exploited five flaws now added to CISA's KEV catalog. The flaws affect ProFTPD, ONLYOFFICE, Strapi, Apache Struts, and ISC BIND. U.S. federal agencies must patch or stop using affected software by October 11. Read → https://thehackernews.com/2026/10/flax-typhoon-exploits-five-flaws-as.html
🔥 5 👍 1 Перейти к публикации →
1 2 3 … 51 52

Другие каналы категории