Skip to content
AttackFeed by Joe Wagner | Cybersecurity News from Across the Internet

AttackFeed by Joe Wagner

Cybersecurity News from Across the Internet

  • Attack/News Feeds
  • Gov Alerts/ISAC Feeds
  • Vulnerability Alerts
  • Privacy/Governance Feeds
  • Fraud Feeds
  • iOS App
  • Android App
AttackFeed by Joe Wagner | ThreatsDay Bulletin: PQC Push, AI Vuln Hunting, Pirated Traps, Phishing Kits & 20 More Stories  - The Hacker News
Attack Feeds
ThreatsDay Bulletin: PQC Push, AI Vuln Hunting, Pirated Traps, Phishing Kits & 20 More Stories  – The Hacker News
March 26, 2026
AttackFeed by Joe Wagner|18-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCE  – The Hacker News
Attack Feeds
18-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCE  – The Hacker News
May 14, 2026
AttackFeed by Joe Wagner | US Bans New Foreign-Made Home Routers Over National Security Fears  - Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds
US Bans New Foreign-Made Home Routers Over National Security Fears  – Hackread – Cybersecurity News, Data Breaches, AI and More
March 25, 2026
AttackFeed by Joe Wagner | Claude Code Source Leaked via npm Packaging Error, Anthropic Confirms  - The Hacker News
Attack Feeds
Claude Code Source Leaked via npm Packaging Error, Anthropic Confirms  – The Hacker News
April 1, 2026
AttackFeed by Joe Wagner | Anthropic Finds 22 Firefox Vulnerabilities Using Claude Opus 4.6 AI Model  - The Hacker News
Attack Feeds
Anthropic Finds 22 Firefox Vulnerabilities Using Claude Opus 4.6 AI Model  – The Hacker News
March 7, 2026
AttackFeed by Joe Wagner | ‘Copy Fail’ is a real Linux security crisis wrapped in AI slop  - CyberScoop
Attack Feeds
‘Copy Fail’ is a real Linux security crisis wrapped in AI slop  – CyberScoop
May 4, 2026

New Pink Extortion Group Targets Microsoft 365 Cloud Data Via Vishing Scams  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on June 6, 2026 By Deeba Ahmed No Comments on New Pink Extortion Group Targets Microsoft 365 Cloud Data Via Vishing Scams  – Hackread – Cybersecurity News, Data Breaches, AI and More
New Pink Extortion Group Targets Microsoft 365 Cloud Data Via Vishing Scams  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Cybersecurity researchers are warning businesses about Pink Extortion Group, a threat actor that uses voice phishing to bypass multi-factor authentication and steal files from cloud environments.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

New ChatGPT Lockdown Mode Limits Tools That Could Enable Data Exfiltration  – The Hacker News

Posted on June 6, 2026 By [email protected] (The Hacker News) No Comments on New ChatGPT Lockdown Mode Limits Tools That Could Enable Data Exfiltration  – The Hacker News
New ChatGPT Lockdown Mode Limits Tools That Could Enable Data Exfiltration  – The Hacker News
Attack Feeds

OpenAI has begun rolling out a new Lockdown Mode to ChatGPT for eligible personal accounts to reduce the risk of data exfiltration arising from prompt injection attacks. The feature is primarily designed for people and organizations that handle sensitive data and require stricter protection guarantees. Lockdown Mode is available to logged-in users across Free, Go, … Read More “New ChatGPT Lockdown Mode Limits Tools That Could Enable Data Exfiltration  – The Hacker News” »

Miasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain Attack  – The Hacker News

Posted on June 6, 2026 By [email protected] (The Hacker News) No Comments on Miasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain Attack  – The Hacker News
Miasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain Attack  – The Hacker News
Attack Feeds

Microsoft’s GitHub repositories have become the latest to fall victim to the ongoing Miasma self-replicating supply chain attack campaign. The incident impacted 73 Microsoft repositories across four of its GitHub organizations, including Azure, Azure-Samples, Microsoft, and MicrosoftDocs, per OpenSourceMalware. The development has GitHub to disable access to those repositories. “Access to this  – Read More  … Read More “Miasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain Attack  – The Hacker News” »

AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs  – The Hacker News

Posted on June 6, 2026 By [email protected] (The Hacker News) No Comments on AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs  – The Hacker News
AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs  – The Hacker News
Attack Feeds

Two things landed within days of each other this week. A security startup reported 21 previously unknown vulnerabilities in FFmpeg, the media library inside almost everything that touches video, all of them found by an autonomous AI agent. The same week, Google shipped Chrome 149 with patches for 429 security bugs, the most ever in … Read More “AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs  – The Hacker News” »

CISA Adds Actively Exploited SolarWinds Serv-U DoS Flaw to KEV Catalog  – The Hacker News

Posted on June 6, 2026 By [email protected] (The Hacker News) No Comments on CISA Adds Actively Exploited SolarWinds Serv-U DoS Flaw to KEV Catalog  – The Hacker News
CISA Adds Actively Exploited SolarWinds Serv-U DoS Flaw to KEV Catalog  – The Hacker News
Attack Feeds

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity security flaw impacting SolarWinds Serv-U multi-protocol file server software to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability, tracked as CVE-2026-28318 (CVSS score: 7.5), is a denial-of-service (DoS) bug that causes the service to crash  – Read More  … Read More “CISA Adds Actively Exploited SolarWinds Serv-U DoS Flaw to KEV Catalog  – The Hacker News” »

Free Apps Are Quietly Turning Smart TVs Into Web-Scraping Proxies for AI  – The Hacker News

Posted on June 6, 2026 By [email protected] (The Hacker News) No Comments on Free Apps Are Quietly Turning Smart TVs Into Web-Scraping Proxies for AI  – The Hacker News
Free Apps Are Quietly Turning Smart TVs Into Web-Scraping Proxies for AI  – The Hacker News
Attack Feeds

A researcher has reverse-engineered the iOS SDK that Bright Data embeds in consumer apps and documented how it turns devices, including always-on smart TVs, into exit nodes that relay web-scraping traffic for a data business Bright Data markets heavily to the AI industry. The company, the successor to Luminati, operates what it calls the largest … Read More “Free Apps Are Quietly Turning Smart TVs Into Web-Scraping Proxies for AI  – The Hacker News” »

Cisco Catalyst SD-WAN Manager CVE-2026-20245 Flaw Actively Exploited – No Patch Available  – The Hacker News

Posted on June 6, 2026 By [email protected] (The Hacker News) No Comments on Cisco Catalyst SD-WAN Manager CVE-2026-20245 Flaw Actively Exploited – No Patch Available  – The Hacker News
Cisco Catalyst SD-WAN Manager CVE-2026-20245 Flaw Actively Exploited – No Patch Available  – The Hacker News
Attack Feeds

Cisco has warned that a high-severity security flaw impacting Catalyst SD-WAN Manager has come under active exploitation. The vulnerability, tracked as CVE-2026-20245, carries a CVSS score of 7.8 out of a maximum of 10.0. It affects the following deployment types – On-Prem Deployment Cisco SD-WAN Cloud-Pro Cisco SD-WAN Cloud (Cisco Managed) Cisco SD-WAN for Government … Read More “Cisco Catalyst SD-WAN Manager CVE-2026-20245 Flaw Actively Exploited – No Patch Available  – The Hacker News” »

Miasma Malware Hits 32 Red Hat Packages via Compromised GitHub Account  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on June 5, 2026 By Deeba Ahmed No Comments on Miasma Malware Hits 32 Red Hat Packages via Compromised GitHub Account  – Hackread – Cybersecurity News, Data Breaches, AI and More
Miasma Malware Hits 32 Red Hat Packages via Compromised GitHub Account  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

32 Red Hat npm packages compromised by Miasma malware expose cloud tokens, CI/CD secrets and developer credentials in supply chain attack.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

IronWorm and New Miasma Worm Variant Hit npm in Supply Chain Attacks  – The Hacker News

Posted on June 5, 2026 By [email protected] (The Hacker News) No Comments on IronWorm and New Miasma Worm Variant Hit npm in Supply Chain Attacks  – The Hacker News
IronWorm and New Miasma Worm Variant Hit npm in Supply Chain Attacks  – The Hacker News
Attack Feeds

Multiple software supply chain attacks have hit the npm ecosystem, with threat actors using both malicious and poisoned versions of over 50 legitimate packages to distribute a Rust-based information stealer and a self-spreading worm, respectively. According to JFrog, the information stealer “scrapes every secret it can find on a developer’s machine, hides behind an eBPF … Read More “IronWorm and New Miasma Worm Variant Hit npm in Supply Chain Attacks  – The Hacker News” »

Got a LinkedIn message from a recruiter? It might be Chinese intelligence, warn FBI and MI5  – GRAHAM CLULEY

Posted on June 5, 2026 By Graham Cluley No Comments on Got a LinkedIn message from a recruiter? It might be Chinese intelligence, warn FBI and MI5  – GRAHAM CLULEY
Got a LinkedIn message from a recruiter? It might be Chinese intelligence, warn FBI and MI5  – GRAHAM CLULEY
Attack Feeds

If you’ve ever received an out-of-the-blue message via LinkedIn from a recruiter offering some well-paid consultancy work, intelligence agencies have a message for you: be very careful. Read more in my article on the Hot for Security blog.  – Read More  – GRAHAM CLULEY 

Atlas Menu Data Breach Exposes 64,000 GTA V and CS2 Cheat Service Users  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on June 5, 2026 By Deeba Ahmed No Comments on Atlas Menu Data Breach Exposes 64,000 GTA V and CS2 Cheat Service Users  – Hackread – Cybersecurity News, Data Breaches, AI and More
Atlas Menu Data Breach Exposes 64,000 GTA V and CS2 Cheat Service Users  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Atlas Menu Data Breach exposes 64,000 GTA V and CS2 cheat service users, leaking emails, IPs, support tickets and hashed passwords.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Android Spyware Asin Targets Arabic Users via Fake News, PDF and War Map Apps  – The Hacker News

Posted on June 5, 2026 By [email protected] (The Hacker News) No Comments on Android Spyware Asin Targets Arabic Users via Fake News, PDF and War Map Apps  – The Hacker News
Android Spyware Asin Targets Arabic Users via Fake News, PDF and War Map Apps  – The Hacker News
Attack Feeds

Arabic-speaking users have emerged as the target of a new Android spyware codenamed Asin, according to findings from ESET. The Slovakian cybersecurity company said it first detected the malware spread via multiple campaigns in early 2025, with each attack wave making use of distinct websites mimicking utilities, war-related updates, and a government news source: govlens[.]net, … Read More “Android Spyware Asin Targets Arabic Users via Fake News, PDF and War Map Apps  – The Hacker News” »

Reaper macOS Infostealer Abuses Script Editor to Steal Crypto and Passwords  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on June 5, 2026 By Deeba Ahmed No Comments on Reaper macOS Infostealer Abuses Script Editor to Steal Crypto and Passwords  – Hackread – Cybersecurity News, Data Breaches, AI and More
Reaper macOS Infostealer Abuses Script Editor to Steal Crypto and Passwords  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Threat actors are deploying an updated SHub Stealer variant named Reaper that exploits the native macOS Script Editor to bypass OS-level protections and compromise cryptocurrency assets.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Nightmare Eclipse incident shows the researcher-vendor fights may never fully go away  – CyberScoop

Posted on June 5, 2026 By Matt Kapko No Comments on Nightmare Eclipse incident shows the researcher-vendor fights may never fully go away  – CyberScoop
Nightmare Eclipse incident shows the researcher-vendor fights may never fully go away  – CyberScoop
Attack Feeds

Microsoft reopened some wounds and has reignited debate over the past couple weeks about vulnerability disclosure and the sometimes adversarial dynamic it creates between security researchers and vendors.  The latest controversy ensued when Microsoft threatened criminal legal action against a security researcher who publicly disclosed a series of zero-day vulnerabilities with proof-of-concept exploits. Microsoft insisted … Read More “Nightmare Eclipse incident shows the researcher-vendor fights may never fully go away  – CyberScoop” »

Cisco Patches CVE-2026-20230 in Unified CM as Exploit Code Goes Public  – The Hacker News

Posted on June 5, 2026 By [email protected] (The Hacker News) No Comments on Cisco Patches CVE-2026-20230 in Unified CM as Exploit Code Goes Public  – The Hacker News
Cisco Patches CVE-2026-20230 in Unified CM as Exploit Code Goes Public  – The Hacker News
Attack Feeds

Cisco has patched a bug in Unified Communications Manager that lets an unauthenticated attacker on the network write files to the box and, from there, climb to root. It is tracked as CVE-2026-20230, and proof-of-concept exploit code is already public. Cisco’s PSIRT says it has not seen the flaw used in attacks yet. The PoC … Read More “Cisco Patches CVE-2026-20230 in Unified CM as Exploit Code Goes Public  – The Hacker News” »

A Vulnerability in Cisco Products Could Allow for Server-Side Request Forgery  – Cyber Security Advisories – MS-ISAC

Posted on June 5, 2026 By Joe-W No Comments on A Vulnerability in Cisco Products Could Allow for Server-Side Request Forgery  – Cyber Security Advisories – MS-ISAC
Gov/ISAC Feeds

A vulnerability has been discovered in Cisco products that could allow for Server-Side Request Forgery. Cisco Unified Communications Manager (Unified CM) / Cisco Unified Communications Manager Session Management Edition (Unified CM SME) is Cisco’s central, software-based call control and session management platform for enterprise communication. Successful exploitation of this vulnerability could allow for Server-Side Request … Read More “A Vulnerability in Cisco Products Could Allow for Server-Side Request Forgery  – Cyber Security Advisories – MS-ISAC” »

New Threat Cluster OP-512 Targets Microsoft IIS Servers with Custom Web Shell Framework  – The Hacker News

Posted on June 5, 2026 By [email protected] (The Hacker News) No Comments on New Threat Cluster OP-512 Targets Microsoft IIS Servers with Custom Web Shell Framework  – The Hacker News
New Threat Cluster OP-512 Targets Microsoft IIS Servers with Custom Web Shell Framework  – The Hacker News
Attack Feeds

Cybersecurity researchers have discovered a previously unreported threat cluster dubbed OP-512 that has been observed targeting Microsoft Internet Information Services (IIS) servers to deploy a bespoke web shell framework. ReliaQuest has assessed with moderate to high confidence that the espionage-focused activity is linked to China. “OP-512 was highly likely conducting espionage through a  – Read … Read More “New Threat Cluster OP-512 Targets Microsoft IIS Servers with Custom Web Shell Framework  – The Hacker News” »

Only 10% of SOCs Say They’re Getting Excellent Value From AI. Here’s What the Second Wave Has to Deliver  – The Hacker News

Posted on June 5, 2026 By [email protected] (The Hacker News) No Comments on Only 10% of SOCs Say They’re Getting Excellent Value From AI. Here’s What the Second Wave Has to Deliver  – The Hacker News
Only 10% of SOCs Say They’re Getting Excellent Value From AI. Here’s What the Second Wave Has to Deliver  – The Hacker News
Attack Feeds

Eighteen months ago, the AI SOC was a marketing line. Today it’s a budget item. The category has crossed over from interesting to inevitable, with billions of dollars now flowing into AI-powered security operations platforms, agentic SOC tools, and AI co-pilots built into every layer of the security stack. The data shows SOCs are buying, … Read More “Only 10% of SOCs Say They’re Getting Excellent Value From AI. Here’s What the Second Wave Has to Deliver  – The Hacker News” »

Infosecurity Europe: OWASP Introduces Agentic AI Security Maturity Framework –

Posted on June 5, 2026 By Joe-W No Comments on Infosecurity Europe: OWASP Introduces Agentic AI Security Maturity Framework –
Infosecurity Europe: OWASP Introduces Agentic AI Security Maturity Framework –
Privacy/Governance Feed

The OWASP agentic AI security framework helps organizations assess governance maturity vs adoption and adjust governance as needed – Read More  –  

Infosecurity Europe: Practical Lessons From Lloyds’ Agentic AI Security Playbook –

Posted on June 5, 2026 By Joe-W No Comments on Infosecurity Europe: Practical Lessons From Lloyds’ Agentic AI Security Playbook –
Infosecurity Europe: Practical Lessons From Lloyds’ Agentic AI Security Playbook –
Privacy/Governance Feed

Lloyds Banking Group shared its approach for securing agentic AI workflows, with a mix of hands on experimentation and cross functional governance – Read More  –  

Hackers Exploit Critical Everest Forms Pro WordPress Plugin Flaw to Take Over Sites  – The Hacker News

Posted on June 5, 2026 By [email protected] (The Hacker News) No Comments on Hackers Exploit Critical Everest Forms Pro WordPress Plugin Flaw to Take Over Sites  – The Hacker News
Hackers Exploit Critical Everest Forms Pro WordPress Plugin Flaw to Take Over Sites  – The Hacker News
Attack Feeds

Threat actors are actively exploiting a critical security flaw in Everest Forms Pro, a WordPress plugin with about 4,000 active installations, to execute arbitrary code, leading to a complete site compromise. The vulnerability in question is CVE-2026-3300 (CVSS score: 9.8), a remote code execution bug impacting all versions of the plugin up to, and including, … Read More “Hackers Exploit Critical Everest Forms Pro WordPress Plugin Flaw to Take Over Sites  – The Hacker News” »

Infosecurity Europe: AI Coding Tools Need Built-In Security for Agentic Development Era –

Posted on June 5, 2026 By Joe-W No Comments on Infosecurity Europe: AI Coding Tools Need Built-In Security for Agentic Development Era –
Infosecurity Europe: AI Coding Tools Need Built-In Security for Agentic Development Era –
Privacy/Governance Feed

Ox Security field CTO, Boaz Barzel, makes the case for vibe security to tackle AI agent coding risks – Read More  –  

Infosecurity Europe: Reactive Security Is Failing Healthcare Organizations, Experts Warn –

Posted on June 5, 2026 By Joe-W No Comments on Infosecurity Europe: Reactive Security Is Failing Healthcare Organizations, Experts Warn –
Infosecurity Europe: Reactive Security Is Failing Healthcare Organizations, Experts Warn –
Privacy/Governance Feed

A perfect storm of legacy devices, hyper connectivity and human fatigue is bad news for the healthcare sector, warns Cyber Salus – Read More  –  

FIFA World Cup 2026 Scams Are Already Live: Fake Sites, Banking Malware, and Stolen Logins  – The Hacker News

Posted on June 5, 2026 By [email protected] (The Hacker News) No Comments on FIFA World Cup 2026 Scams Are Already Live: Fake Sites, Banking Malware, and Stolen Logins  – The Hacker News
FIFA World Cup 2026 Scams Are Already Live: Fake Sites, Banking Malware, and Stolen Logins  – The Hacker News
Attack Feeds

Security researchers and the FBI are warning that a wave of FIFA-themed fraud is already hitting World Cup 2026 fans, days before the June 11 kickoff. Recent reports describe thousands of lookalike FIFA domains, banking malware hidden inside pirate streaming apps, and at least one operation that copies FIFA’s login page well enough to take … Read More “FIFA World Cup 2026 Scams Are Already Live: Fake Sites, Banking Malware, and Stolen Logins  – The Hacker News” »

PCPJack Hijacks 230 AWS, Google Cloud, and Azure Servers for Covert SMTP Relay Network  – The Hacker News

Posted on June 5, 2026 By [email protected] (The Hacker News) No Comments on PCPJack Hijacks 230 AWS, Google Cloud, and Azure Servers for Covert SMTP Relay Network  – The Hacker News
PCPJack Hijacks 230 AWS, Google Cloud, and Azure Servers for Covert SMTP Relay Network  – The Hacker News
Attack Feeds

The threat actor known as PCPJack has hijacked cloud servers associated with Amazon Web Services (AWS), Google Cloud, and Microsoft Azure to create a covert SMTP email relay network. “Compromised business servers across the U.S., Europe, and Asia were quietly converted into SMTP proxies, verified for mail relay capability, and synced to a downstream consumer … Read More “PCPJack Hijacks 230 AWS, Google Cloud, and Azure Servers for Covert SMTP Relay Network  – The Hacker News” »

[REVIVE-SA-2026-002] Revive Adserver Vulnerabilities  – Full Disclosure

Posted on June 4, 2026 By Joe-W No Comments on [REVIVE-SA-2026-002] Revive Adserver Vulnerabilities  – Full Disclosure
[REVIVE-SA-2026-002] Revive Adserver Vulnerabilities  – Full Disclosure
Alert Feeds

  Posted by Matteo Beccati on Jun 04 ======================================================================== Revive Adserver Security Advisory REVIVE-SA-2026-002 ———————————————————————— https://www.revive-adserver.com/security/revive-sa-2026-002 ———————————————————————— Date: 2026-06-03 Risk Level: Medium to High Applications affected: Revive Adserver Versions… – Read More  – Full Disclosure 

Hill Dems hammer GOP for $250M CISA budget cut  – CyberScoop

Posted on June 4, 2026 By Tim Starks No Comments on Hill Dems hammer GOP for $250M CISA budget cut  – CyberScoop
Hill Dems hammer GOP for $250M CISA budget cut  – CyberScoop
Attack Feeds

House Democrats criticized a draft Republican Department of Homeland Security spending bill Thursday that they said would cut funding for the Cybersecurity and Infrastructure Security Agency by $250 million. Republicans said the bill provides $2.4 billion for CISA, and that among its focuses are “improving cybersecurity resilience,” in the words of House Appropriations Chairman Tom … Read More “Hill Dems hammer GOP for $250M CISA budget cut  – CyberScoop” »

Meta’s own AI chatbot to blame for Instagram accounts being stolen in seconds  – GRAHAM CLULEY

Posted on June 4, 2026 By Graham Cluley No Comments on Meta’s own AI chatbot to blame for Instagram accounts being stolen in seconds  – GRAHAM CLULEY
Attack Feeds

Hackers have been hijacking Instagram accounts at scale by exploiting Meta’s AI support chatbot. And, as if that weren’t bad enough, the technique required no technical skill whatsoever. Read more in my article on the Fortra blog.  – Read More  – GRAHAM CLULEY 

Your AI agent could become your biggest insider threat   – CyberScoop

Posted on June 4, 2026 By djohnson No Comments on Your AI agent could become your biggest insider threat   – CyberScoop
Your AI agent could become your biggest insider threat   – CyberScoop
Attack Feeds

Government agencies, cybersecurity companies and threat researchers are pouring resources into studying how fast-developing AI tools can be wielded by malicious actors to hack into victim organizations. But as agentic AI becomes more embedded in business infrastructure, there’s also a high possibility that a breach could be caused by an insider guiding the tool, whether … Read More “Your AI agent could become your biggest insider threat   – CyberScoop” »

Agentic AI Is Transforming Defense, But Only Secure IT Infrastructure Will Maximize It  – The Hacker News

Posted on June 4, 2026 By [email protected] (The Hacker News) No Comments on Agentic AI Is Transforming Defense, But Only Secure IT Infrastructure Will Maximize It  – The Hacker News
Agentic AI Is Transforming Defense, But Only Secure IT Infrastructure Will Maximize It  – The Hacker News
Attack Feeds

Over the past several weeks, the cybersecurity community has been reminded how quickly frontier and agentic AI in defense networks can challenge our assumptions. When Anthropic’s Claude Mythos model was made available to a limited set of organizations as a technical preview, it was reported that an unauthorized group claimed that it had gained access … Read More “Agentic AI Is Transforming Defense, But Only Secure IT Infrastructure Will Maximize It  – The Hacker News” »

Agentic AI Is Transforming Defense, But Only Secure IT Infrastructure Will Maximize It  – The Hacker News

Posted on June 4, 2026 By [email protected] (The Hacker News) No Comments on Agentic AI Is Transforming Defense, But Only Secure IT Infrastructure Will Maximize It  – The Hacker News
Agentic AI Is Transforming Defense, But Only Secure IT Infrastructure Will Maximize It  – The Hacker News
Attack Feeds

Over the past several weeks, the cybersecurity community has been reminded how quickly frontier and agentic AI in defense networks can challenge our assumptions. When Anthropic’s Claude Mythos model was made available to a limited set of organizations as a technical preview, it was reported that an unauthorized group claimed that it had gained access … Read More “Agentic AI Is Transforming Defense, But Only Secure IT Infrastructure Will Maximize It  – The Hacker News” »

iFood Confirms Data Breach Affecting 1.2 Million Users in Brazil  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on June 4, 2026 By Deeba Ahmed No Comments on iFood Confirms Data Breach Affecting 1.2 Million Users in Brazil  – Hackread – Cybersecurity News, Data Breaches, AI and More
iFood Confirms Data Breach Affecting 1.2 Million Users in Brazil  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

iFood confirms a data breach affecting 1.2 million customers in Brazil, while hackers on BreachForums claim the actual theft is much larger.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Everest Forms Pro Vulnerability Allows Remote Code Execution on WordPress Sites –

Posted on June 4, 2026 By Joe-W No Comments on Everest Forms Pro Vulnerability Allows Remote Code Execution on WordPress Sites –
Everest Forms Pro Vulnerability Allows Remote Code Execution on WordPress Sites –
Privacy/Governance Feed

Critical Everest Forms Pro RCE flaw exploited to create rogue WordPress admin accounts – Read More  –  

Lazarus Group Uses npm Brandjacking Campaign to Target Developers  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on June 4, 2026 By Waqas No Comments on Lazarus Group Uses npm Brandjacking Campaign to Target Developers  – Hackread – Cybersecurity News, Data Breaches, AI and More
Lazarus Group Uses npm Brandjacking Campaign to Target Developers  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

North Korean Lazarus Group targets npm developers with brandjacking packages that mimic trusted tools, drop malware and put credentials at risk.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New Stories  – The Hacker News

Posted on June 4, 2026 By [email protected] (The Hacker News) No Comments on ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New Stories  – The Hacker News
ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New Stories  – The Hacker News
Attack Feeds

It got stupid again. The internet still feels held together with tape. Bad plugins, old bugs, fake tools, trusted apps doing shady things. Same mess, new wrapper. And now the weird stuff is normal. Forums go down and come back worse. Cheap hackers get better toys. AI starts breaking real systems. Great. Read the whole … Read More “ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New Stories  – The Hacker News” »

Inside the race to adapt to an AI-powered security world  – CyberScoop

Posted on June 4, 2026 By Greg Otto No Comments on Inside the race to adapt to an AI-powered security world  – CyberScoop
Inside the race to adapt to an AI-powered security world  – CyberScoop
Attack Feeds

Troy West was in Warsaw when his dinner was interrupted by his phone. But he was happy about it. West, associate director of cybersecurity for autonomous offensive security company XBOW, had just learned that a trial version of the company’s platform had found a vulnerability that led to a full takedown of a development environment … Read More “Inside the race to adapt to an AI-powered security world  – CyberScoop” »

Why eSIMs Are Replacing Traditional SIM Cards  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on June 4, 2026 By Waqas No Comments on Why eSIMs Are Replacing Traditional SIM Cards  – Hackread – Cybersecurity News, Data Breaches, AI and More
Why eSIMs Are Replacing Traditional SIM Cards  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

From SIM swap protection to remote provisioning, eSIMs are quickly replacing physical SIM cards. Here’s why the shift matters for security and convenience.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Claude Code GitHub Action Flaw Let One Malicious Issue Hijack Repositories  – The Hacker News

Posted on June 4, 2026 By [email protected] (The Hacker News) No Comments on Claude Code GitHub Action Flaw Let One Malicious Issue Hijack Repositories  – The Hacker News
Claude Code GitHub Action Flaw Let One Malicious Issue Hijack Repositories  – The Hacker News
Attack Feeds

A security researcher found a flaw in Anthropic’s Claude Code GitHub Action that let an attacker take over vulnerable public repositories running it, with nothing more than a single opened GitHub issue. Because Anthropic’s own action repo used the same workflow, a working attack could have pushed malicious code into the action itself and onto … Read More “Claude Code GitHub Action Flaw Let One Malicious Issue Hijack Repositories  – The Hacker News” »

Infosecurity Europe: AI Adoption Creates New Opportunities for Attackers to Distribute Malware, Microsoft Warns –

Posted on June 4, 2026 By Joe-W No Comments on Infosecurity Europe: AI Adoption Creates New Opportunities for Attackers to Distribute Malware, Microsoft Warns –
Infosecurity Europe: AI Adoption Creates New Opportunities for Attackers to Distribute Malware, Microsoft Warns –
Privacy/Governance Feed

Microsoft Detection and Response Team (DART) details how it has uncovered malicious AI applications as cyber criminals manipulate organizations adopting AI tools – Read More  –  

Chinese-Speaking Actor TA4922 Widens Its Global Reach –

Posted on June 4, 2026 By Joe-W No Comments on Chinese-Speaking Actor TA4922 Widens Its Global Reach –
Chinese-Speaking Actor TA4922 Widens Its Global Reach –
Privacy/Governance Feed

Newly named Chinese-speaking actor TA4922 expands from East Asia into Europe and Africa – Read More  –  

FlutterShell Backdoor Spreads to macOS via Malicious Google and YouTube Ads  – The Hacker News

Posted on June 4, 2026 By [email protected] (The Hacker News) No Comments on FlutterShell Backdoor Spreads to macOS via Malicious Google and YouTube Ads  – The Hacker News
FlutterShell Backdoor Spreads to macOS via Malicious Google and YouTube Ads  – The Hacker News
Attack Feeds

Cybersecurity researchers have shed light on a macOS malvertising campaign codenamed Operation FlutterBridge that spreads a new backdoor called FlutterShell. According to Palo Alto Networks Unit 42, the campaign is said to be the next stage of a previously reported activity cluster dubbed JSCoreRunner (aka FileRipple) in late August 2025. The cybercrime group behind the … Read More “FlutterShell Backdoor Spreads to macOS via Malicious Google and YouTube Ads  – The Hacker News” »

China-Linked TA4922 Expands Phishing Attacks to UK, Germany, Italy, and South Africa  – The Hacker News

Posted on June 4, 2026 By [email protected] (The Hacker News) No Comments on China-Linked TA4922 Expands Phishing Attacks to UK, Germany, Italy, and South Africa  – The Hacker News
China-Linked TA4922 Expands Phishing Attacks to UK, Germany, Italy, and South Africa  – The Hacker News
Attack Feeds

A new China-linked cybercrime group known as TA4922 has expanded its targeting focus to target European organizations in the U.K., Germany, Italy, and South Africa. These efforts have been complemented by a “rapid operational tempo” and a continually evolving malware arsenal comprising known families like ValleyRAT (aka Winos 4.0) and Atlas RAT (aka AtlasCross RAT), … Read More “China-Linked TA4922 Expands Phishing Attacks to UK, Germany, Italy, and South Africa  – The Hacker News” »

Infosecurity Europe: How Proton Fights Against Cybercriminals Using Its Services –

Posted on June 4, 2026 By Joe-W No Comments on Infosecurity Europe: How Proton Fights Against Cybercriminals Using Its Services –
Infosecurity Europe: How Proton Fights Against Cybercriminals Using Its Services –
Privacy/Governance Feed

Proton uses machine learning models to detect abuse of its services – especially email addresses used by cybercriminals – Read More  –  

Infosecurity Europe: Mythos Outperforms GPT5.5 on Google Chrome Vulnerability Exploits, Says New Benchmark –

Posted on June 4, 2026 By Joe-W No Comments on Infosecurity Europe: Mythos Outperforms GPT5.5 on Google Chrome Vulnerability Exploits, Says New Benchmark –
Infosecurity Europe: Mythos Outperforms GPT5.5 on Google Chrome Vulnerability Exploits, Says New Benchmark –
Privacy/Governance Feed

A Bugcrowd researcher has unveiled ExploitBench, an independent benchmark of AI models for vulnerability exploitation – Read More  –  

Five Eyes Warns Chinese Spies Are Using Fake Job Ads to Target Military Staff  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on June 4, 2026 By Deeba Ahmed No Comments on Five Eyes Warns Chinese Spies Are Using Fake Job Ads to Target Military Staff  – Hackread – Cybersecurity News, Data Breaches, AI and More
Five Eyes Warns Chinese Spies Are Using Fake Job Ads to Target Military Staff  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Five Eyes warns that Chinese spies are using fake job ads on LinkedIn, Indeed, and Upwork to target military staff and steal sensitive data.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Google DoubleClick Abused in New Malspam Campaign to Deliver DesckVB RAT  – The Hacker News

Posted on June 4, 2026 By [email protected] (The Hacker News) No Comments on Google DoubleClick Abused in New Malspam Campaign to Deliver DesckVB RAT  – The Hacker News
Google DoubleClick Abused in New Malspam Campaign to Deliver DesckVB RAT  – The Hacker News
Attack Feeds

Cybersecurity researchers have flagged a new malspam campaign that makes use of Google’s DoubleClick domain as a way to evade detection and ultimately deliver a remote access trojan (RAT) named DesckVB RAT. “Before the victim ever reaches attacker-controlled infrastructure, the lure routes through DoubleClick, a legitimate Google-owned domain that many security tools are less likely … Read More “Google DoubleClick Abused in New Malspam Campaign to Deliver DesckVB RAT  – The Hacker News” »

Hackers Spied on a Stock Exchange Executive’s Outlook Mailbox for Five Months  – The Hacker News

Posted on June 4, 2026 By [email protected] (The Hacker News) No Comments on Hackers Spied on a Stock Exchange Executive’s Outlook Mailbox for Five Months  – The Hacker News
Hackers Spied on a Stock Exchange Executive’s Outlook Mailbox for Five Months  – The Hacker News
Attack Feeds

Unknown attackers spent at least five months inside the Outlook mailbox of a senior executive at a major global stock exchange, copying the inbox out in small, repeated batches and routing it through Dropbox and OneDrive so the traffic blended into normal cloud activity. Symantec and Carbon Black’s Threat Hunter Team reported the campaign this … Read More “Hackers Spied on a Stock Exchange Executive’s Outlook Mailbox for Five Months  – The Hacker News” »

Fake Sites Mimicking Open-Source Tools Rank High on Google to Deliver Malware via TDS  – The Hacker News

Posted on June 4, 2026 By [email protected] (The Hacker News) No Comments on Fake Sites Mimicking Open-Source Tools Rank High on Google to Deliver Malware via TDS  – The Hacker News
Fake Sites Mimicking Open-Source Tools Rank High on Google to Deliver Malware via TDS  – The Hacker News
Attack Feeds

Cybersecurity researchers have flagged a large-scale operation that impersonates open-source and freeware projects to funnel unsuspecting users through a Traffic Distribution System (TDS) and deliver malware families like Remus Stealer, AnimateClipper, and the SessionGate framework. “The sites are well-designed and often look like legitimate project portals at a glance, sometimes referencing  – Read More  – … Read More “Fake Sites Mimicking Open-Source Tools Rank High on Google to Deliver Malware via TDS  – The Hacker News” »

Infosecurity Europe: How Businesses Can Prepare for a Cybersecurity Crisis with Effective Plans –

Posted on June 4, 2026 By Joe-W No Comments on Infosecurity Europe: How Businesses Can Prepare for a Cybersecurity Crisis with Effective Plans –
Infosecurity Europe: How Businesses Can Prepare for a Cybersecurity Crisis with Effective Plans –
Privacy/Governance Feed

Cybersecurity and business leaders with experience of dealing with major incidents from within the NCSC and at JLR detail what you need to prioritize if your organization is hit by a cyber-attack – Read More  –  

CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog  – The Hacker News

Posted on June 4, 2026 By [email protected] (The Hacker News) No Comments on CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog  – The Hacker News
CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog  – The Hacker News
Attack Feeds

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a critical flaw impacting Mirasvit Cache Warmer, a popular Magento full-page cache extension, to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploitation in the wild. The vulnerability, tracked as CVE-2026-45247 (CVSS score: 9.8), is a case of deserialization of untrusted  – … Read More “CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog  – The Hacker News” »

Posts pagination

1 2 … 41 Next
  • Attack Feeds
  • Privacy/Governance Feed
  • Gov/ISAC Feeds
  • Alert Feeds
  • Privacy Policy
  • Wagner Cybersecurity

Copyright © 2026 AttackFeed by Joe Wagner.

Theme: Oceanly News Dark by ScriptsTown

We are using cookies for analytics purposes only.  We do not store, track or sell user information.

You can find out more about which cookies we are using or switch them off in .

AttackFeed by Joe Wagner
Powered by  GDPR Cookie Compliance
Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

Strictly Necessary Cookies

Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.