Skip to content
AttackFeed by Joe Wagner | Cybersecurity News from Across the Internet

AttackFeed by Joe Wagner

Cybersecurity News from Across the Internet

  • Attack/News Feeds
  • Gov Alerts/ISAC Feeds
  • Vulnerability Alerts
  • Privacy/Governance Feeds
  • Fraud Feeds
  • iOS App
  • Android App
AttackFeed by Joe Wagner | SloppyLemming Targets Pakistan and Bangladesh Governments Using Dual Malware Chains  - The Hacker News
Attack Feeds
SloppyLemming Targets Pakistan and Bangladesh Governments Using Dual Malware Chains  – The Hacker News
March 3, 2026
AttackFeed by Joe Wagner | Toxic Combinations: When Cross-App Permissions Stack into Risk  - The Hacker News
Attack Feeds
Toxic Combinations: When Cross-App Permissions Stack into Risk  – The Hacker News
April 22, 2026
AttackFeed by Joe Wagner | Rental platform unnecessarily collected the data of millions of Australians, privacy commissioner finds  - Data and computer security | The Guardian
Attack Feeds
Rental platform unnecessarily collected the data of millions of Australians, privacy commissioner finds  – Data and computer security | The Guardian
April 22, 2026
AttackFeed by Joe Wagner | Application Security Strategies Are Changing as AI-generated Code Floods the SDLC  - Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds
Application Security Strategies Are Changing as AI-generated Code Floods the SDLC  – Hackread – Cybersecurity News, Data Breaches, AI and More
May 6, 2026
AttackFeed by Joe Wagner | CPUID Breach Distributes STX RAT via Trojanized CPU-Z and HWMonitor Downloads  - The Hacker News
Attack Feeds
CPUID Breach Distributes STX RAT via Trojanized CPU-Z and HWMonitor Downloads  – The Hacker News
April 12, 2026
AttackFeed by Joe Wagner | Transparent Tribe Uses AI to Mass-Produce Malware Implants in Campaign Targeting India  - The Hacker News
Attack Feeds
Transparent Tribe Uses AI to Mass-Produce Malware Implants in Campaign Targeting India  – The Hacker News
March 6, 2026

Best OSINT Tools for Investigations and Threat Intelligence in 2026  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 6, 2026 By Waqas No Comments on Best OSINT Tools for Investigations and Threat Intelligence in 2026  – Hackread – Cybersecurity News, Data Breaches, AI and More
Best OSINT Tools for Investigations and Threat Intelligence in 2026  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Explore the best OSINT tools for your digital investigations, threat intelligence, reconnaissance, and tracking online activity in 2026.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Smashing Security podcast #466: Meta sees everything, Copy Fail, and a deepfake gets hired  – GRAHAM CLULEY

Posted on May 6, 2026 By Graham Cluley No Comments on Smashing Security podcast #466: Meta sees everything, Copy Fail, and a deepfake gets hired  – GRAHAM CLULEY
Smashing Security podcast #466: Meta sees everything, Copy Fail, and a deepfake gets hired  – GRAHAM CLULEY
Attack Feeds

Meta’s smart glasses promise privacy “designed for you” – but everything they record was being beamed off to workers in Nairobi to label by hand. When those workers blew the whistle, Meta sacked all 1,108 of them. Meanwhile, the IT press is in a frenzy over a new Linux bug called “Copy Fail” – complete … Read More “Smashing Security podcast #466: Meta sees everything, Copy Fail, and a deepfake gets hired  – GRAHAM CLULEY” »

A Vulnerability in PAN-OS Could Allow for Remote Code Execution  – Cyber Security Advisories – MS-ISAC

Posted on May 6, 2026 By Joe-W No Comments on A Vulnerability in PAN-OS Could Allow for Remote Code Execution  – Cyber Security Advisories – MS-ISAC
Gov/ISAC Feeds

A vulnerability has been discovered in the PAN-OS Authentication Portal (aka Captive Portal) service that could allow for remote code execution. PAN-OS is the operating system that runs Palo Alto Networks next-generation firewalls. Successful exploitation could allow an unauthenticated remote attacker to execute arbitrary code with root privileges on the PA-Series and VM-Series firewalls by … Read More “A Vulnerability in PAN-OS Could Allow for Remote Code Execution  – Cyber Security Advisories – MS-ISAC” »

A DOD contractor’s API flaw exposed military course data and service member records  – CyberScoop

Posted on May 6, 2026 By Greg Otto No Comments on A DOD contractor’s API flaw exposed military course data and service member records  – CyberScoop
A DOD contractor’s API flaw exposed military course data and service member records  – CyberScoop
Attack Feeds

A defense technology company with Department of Defense contracts exposed user records and military training materials through API endpoints that lacked meaningful authorization checks, according to an account published by Strix, an open-source autonomous security testing project. The issue affected Schemata, an AI-powered virtual training platform used in military and defense settings. According to Strix, … Read More “A DOD contractor’s API flaw exposed military course data and service member records  – CyberScoop” »

Google Fixes CVSS 10 Gemini CLI Vulnerability Enabling GitHub Issue-Based RCE  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 6, 2026 By Deeba Ahmed No Comments on Google Fixes CVSS 10 Gemini CLI Vulnerability Enabling GitHub Issue-Based RCE  – Hackread – Cybersecurity News, Data Breaches, AI and More
Google Fixes CVSS 10 Gemini CLI Vulnerability Enabling GitHub Issue-Based RCE  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Google patches a CVSS 10 Gemini CLI vulnerability that allowed hackers to use prompt injection and privilege escalation for a full supply chain compromise.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Mirai-Based xlabs_v1 Botnet Exploits ADB to Hijack IoT Devices for DDoS Attacks  – The Hacker News

Posted on May 6, 2026 By [email protected] (The Hacker News) No Comments on Mirai-Based xlabs_v1 Botnet Exploits ADB to Hijack IoT Devices for DDoS Attacks  – The Hacker News
Mirai-Based xlabs_v1 Botnet Exploits ADB to Hijack IoT Devices for DDoS Attacks  – The Hacker News
Attack Feeds

Cybersecurity researchers have exposed a new Mirai-derived botnet that self-identifies as xlabs_v1 and targets internet-exposed devices running Android Debug Bridge (ADB) to enlist them in a network capable of carrying out distributed denial-of-service (DDoS) attacks. Hunt.io, which detailed the malware, said it made the discovery after identifying an exposed directory on a Netherlands-hosted  – Read … Read More “Mirai-Based xlabs_v1 Botnet Exploits ADB to Hijack IoT Devices for DDoS Attacks  – The Hacker News” »

Windows Phone Link Exploited by CloudZ RAT to Steal Credentials and OTPs  – The Hacker News

Posted on May 6, 2026 By [email protected] (The Hacker News) No Comments on Windows Phone Link Exploited by CloudZ RAT to Steal Credentials and OTPs  – The Hacker News
Windows Phone Link Exploited by CloudZ RAT to Steal Credentials and OTPs  – The Hacker News
Attack Feeds

Cybersecurity researchers have disclosed details of an intrusion that involved the use of a CloudZ remote access tool (RAT) and a previous undocumented plugin dubbed Pheno with the aim of facilitating credential theft. “According to the functionalities of the CloudZ RAT and Pheno plugin, this was with the intention of stealing victims’ credentials and potentially … Read More “Windows Phone Link Exploited by CloudZ RAT to Steal Credentials and OTPs  – The Hacker News” »

A Vulnerability in Apache HTTP Server Could Allow for Remote Code Execution  – Cyber Security Advisories – MS-ISAC

Posted on May 6, 2026 By Joe-W No Comments on A Vulnerability in Apache HTTP Server Could Allow for Remote Code Execution  – Cyber Security Advisories – MS-ISAC
Gov/ISAC Feeds

A vulnerability has been discovered in Apache HTTP Server with the HTTP/2 protocol that could allow for remote code execution. Apache is a free, open-source web server software that enables the delivery of web content over the internet. Successful exploitation could result in denial of service, crashing worker processes with minimal effort. In certain setups, especially … Read More “A Vulnerability in Apache HTTP Server Could Allow for Remote Code Execution  – Cyber Security Advisories – MS-ISAC” »

A critical Palo Alto PAN-OS zero-day is being exploited in the wild  – CyberScoop

Posted on May 6, 2026 By Matt Kapko No Comments on A critical Palo Alto PAN-OS zero-day is being exploited in the wild  – CyberScoop
A critical Palo Alto PAN-OS zero-day is being exploited in the wild  – CyberScoop
Attack Feeds

Attackers are actively exploiting a zero-day vulnerability affecting some Palo Alto Networks’ customers’ firewalls, the security vendor said in an advisory Tuesday. The critical memory corruption vulnerability — CVE-2026-0300 — affects the authentication portal of PAN-OS, and allows unauthenticated attackers to run  code with root privileges on the vendor’s PA-Series and VM-Series firewalls, the company … Read More “A critical Palo Alto PAN-OS zero-day is being exploited in the wild  – CyberScoop” »

ShinyHunters’ Instructure Canvas LMS and Vimeo Breaches Impact Millions of Users  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 6, 2026 By Deeba Ahmed No Comments on ShinyHunters’ Instructure Canvas LMS and Vimeo Breaches Impact Millions of Users  – Hackread – Cybersecurity News, Data Breaches, AI and More
ShinyHunters’ Instructure Canvas LMS and Vimeo Breaches Impact Millions of Users  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

ShinyHunters breached Instructure and Vimeo, exposing millions of student and user records through direct and supply chain attacks.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

CloudZ Malware Abuses Phone Link to Steal SMS OTPs –

Posted on May 6, 2026 By Joe-W No Comments on CloudZ Malware Abuses Phone Link to Steal SMS OTPs –
CloudZ Malware Abuses Phone Link to Steal SMS OTPs –
Privacy/Governance Feed

Cisco Talos uncovers CloudZ RAT and Pheno plugin abusing Microsoft Phone Link to intercept SMS OTPs – Read More  –  

MuddyWater Uses Microsoft Teams to Steal Credentials in False Flag Ransomware Attack  – The Hacker News

Posted on May 6, 2026 By [email protected] (The Hacker News) No Comments on MuddyWater Uses Microsoft Teams to Steal Credentials in False Flag Ransomware Attack  – The Hacker News
MuddyWater Uses Microsoft Teams to Steal Credentials in False Flag Ransomware Attack  – The Hacker News
Attack Feeds

The Iranian state-sponsored hacking group known as MuddyWater (aka Mango Sandstorm, Seedworm, and Static Kitten) has been attributed to a ransomware attack in what has been described as a “false flag” operation. The attack, observed by Rapid7 in early 2026, has been found to leverage social engineering techniques via Microsoft Teams to initiate the infection … Read More “MuddyWater Uses Microsoft Teams to Steal Credentials in False Flag Ransomware Attack  – The Hacker News” »

Building Strategic Advantage With Integrated Planning  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 6, 2026 By Owais Sultan No Comments on Building Strategic Advantage With Integrated Planning  – Hackread – Cybersecurity News, Data Breaches, AI and More
Building Strategic Advantage With Integrated Planning  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Siloed planning slows decisions and hides risk. Integrated business planning connects finance, demand, supply, and strategy into a single disciplined cycle.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Iran-Linked APT Posed as Chaos Ransomware Member in Espionage Campaign –

Posted on May 6, 2026 By Joe-W No Comments on Iran-Linked APT Posed as Chaos Ransomware Member in Espionage Campaign –
Iran-Linked APT Posed as Chaos Ransomware Member in Espionage Campaign –
Privacy/Governance Feed

Rapid7 reveals an Iranian false flag operation masquerading as a Chaos ransomware attack – Read More  –  

CISA Urges Critical Infrastructure Providers to Make Plans to Remain Operational if hit by Cyber-Attack –

Posted on May 6, 2026 By Joe-W No Comments on CISA Urges Critical Infrastructure Providers to Make Plans to Remain Operational if hit by Cyber-Attack –
CISA Urges Critical Infrastructure Providers to Make Plans to Remain Operational if hit by Cyber-Attack –
Privacy/Governance Feed

CISA’s CI Fortify initiative aim for critical infrastructure operators to build isolation & recovery – Read More  –  

Your AI Agents Are Already Inside the Perimeter. Do You Know What They’re Doing?  – The Hacker News

Posted on May 6, 2026 By [email protected] (The Hacker News) No Comments on Your AI Agents Are Already Inside the Perimeter. Do You Know What They’re Doing?  – The Hacker News
Your AI Agents Are Already Inside the Perimeter. Do You Know What They’re Doing?  – The Hacker News
Attack Feeds

Analysts recently confirmed what identity security teams have quietly feared: AI agents are being deployed faster than enterprises can govern them. In their inaugural Market Guide for Guardian Agents, Gartner states that “enterprise adoption of AI agents is accelerating, outpacing maturity of governance policy controls.” Enterprise leaders can request access to the Gartner Market Guide … Read More “Your AI Agents Are Already Inside the Perimeter. Do You Know What They’re Doing?  – The Hacker News” »

The Hacker News Launches ‘Cybersecurity Stars Awards 2026’ — Submissions Now Open  – The Hacker News

Posted on May 6, 2026 By [email protected] (The Hacker News) No Comments on The Hacker News Launches ‘Cybersecurity Stars Awards 2026’ — Submissions Now Open  – The Hacker News
The Hacker News Launches ‘Cybersecurity Stars Awards 2026’ — Submissions Now Open  – The Hacker News
Attack Feeds

For nearly 20 years, we at The Hacker News have mostly told scary stories about cyberspace — big hacks, broken systems, and new threats. But behind every headline, there’s a quieter, better story. It’s the story of leaders making tough calls under pressure, teams building smarter defenses, and security products that keep hunting threats 24/7 … Read More “The Hacker News Launches ‘Cybersecurity Stars Awards 2026’ — Submissions Now Open  – The Hacker News” »

The “Juice” Factor: Designing Game Feel  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 6, 2026 By Uzair Amir No Comments on The “Juice” Factor: Designing Game Feel  – Hackread – Cybersecurity News, Data Breaches, AI and More
The “Juice” Factor: Designing Game Feel  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Designing game feel requires responsive controls, hit-stop, sound, animation, and feedback systems that make gameplay satisfying.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Application Security Strategies Are Changing as AI-generated Code Floods the SDLC  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 6, 2026 By Owais Sultan No Comments on Application Security Strategies Are Changing as AI-generated Code Floods the SDLC  – Hackread – Cybersecurity News, Data Breaches, AI and More
Application Security Strategies Are Changing as AI-generated Code Floods the SDLC  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

AI-generated code is changing AppSec workflows, forcing teams to rethink SDLC security, dependency checks, code review, and risk prioritization.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Google’s Android Apps Get Public Verification to Stop Supply Chain Attacks  – The Hacker News

Posted on May 6, 2026 By [email protected] (The Hacker News) No Comments on Google’s Android Apps Get Public Verification to Stop Supply Chain Attacks  – The Hacker News
Google’s Android Apps Get Public Verification to Stop Supply Chain Attacks  – The Hacker News
Attack Feeds

Google has announced expanded Binary Transparency for Android as a way to safeguard the ecosystem from supply chain attacks. “This new public ledger ensures the Google apps on your device are exactly what we intended to build and distribute,” Google’s product and security teams said. The initiative builds upon the foundation of Pixel Binary Transparency, … Read More “Google’s Android Apps Get Public Verification to Stop Supply Chain Attacks  – The Hacker News” »

The CISO’s DPDP Framework: Security Controls to Board-Level Accountability – JISA Softech Pvt Ltd

Posted on May 6, 2026 By Aakash Chaudhary No Comments on The CISO’s DPDP Framework: Security Controls to Board-Level Accountability – JISA Softech Pvt Ltd
The CISO’s DPDP Framework: Security Controls to Board-Level Accountability – JISA Softech Pvt Ltd
Privacy/Governance Feed

The Digital Personal Data Protection (DPDP) Act of India is a decisive move in the direction of making the… The post The CISO’s DPDP Framework: Security Controls to Board-Level Accountability appeared first on JISA Softech Pvt Ltd.  – Read More  – JISA Softech Pvt Ltd 

One in Eight Workers Has Sold Their Corporate Logins –

Posted on May 6, 2026 By Joe-W No Comments on One in Eight Workers Has Sold Their Corporate Logins –
One in Eight Workers Has Sold Their Corporate Logins –
Privacy/Governance Feed

Cifas says that 13% of employees admit selling company credentials to a former colleague – Read More  –  

Palo Alto PAN-OS Flaw Under Active Exploitation Enables Remote Code Execution  – The Hacker News

Posted on May 6, 2026 By [email protected] (The Hacker News) No Comments on Palo Alto PAN-OS Flaw Under Active Exploitation Enables Remote Code Execution  – The Hacker News
Palo Alto PAN-OS Flaw Under Active Exploitation Enables Remote Code Execution  – The Hacker News
Attack Feeds

Palo Alto Networks has released an advisory warning that a critical buffer overflow vulnerability in its PAN-OS software has been exploited in the wild. The vulnerability, tracked as CVE-2026-0300, has been described as a case of unauthenticated remote code execution. It carries a CVSS score of 9.3 if the User-ID Authentication Portal is configured to … Read More “Palo Alto PAN-OS Flaw Under Active Exploitation Enables Remote Code Execution  – The Hacker News” »

Massive “Low and Slow” DDoS Attack Hits Platform With 2.45 Billion in 5 Hours  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 6, 2026 By Deeba Ahmed No Comments on Massive “Low and Slow” DDoS Attack Hits Platform With 2.45 Billion in 5 Hours  – Hackread – Cybersecurity News, Data Breaches, AI and More
Massive “Low and Slow” DDoS Attack Hits Platform With 2.45 Billion in 5 Hours  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

DataDome researchers uncovered a massive low and slow DDoS attack that delivered 2.45 billion requests using 1.2 million IP addresses.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

CISA wants critical infrastructure to operate ‘weeks to months’ in isolation during conflict  – CyberScoop

Posted on May 5, 2026 By djohnson No Comments on CISA wants critical infrastructure to operate ‘weeks to months’ in isolation during conflict  – CyberScoop
CISA wants critical infrastructure to operate ‘weeks to months’ in isolation during conflict  – CyberScoop
Attack Feeds

The Cybersecurity and Infrastructure Security Agency is urging critical infrastructure owners and operators to plan for delivering essential services under emergency conditions – potentially for months at a time. The federal government’s top cybersecurity agency warned that state-sponsored hackers, particularly two Chinese groups known as Salt Typhoon and Volt Typhoon, continue to threaten critical sectors … Read More “CISA wants critical infrastructure to operate ‘weeks to months’ in isolation during conflict  – CyberScoop” »

CISA boasts AI automation improvements to threat analysis, mission support  – CyberScoop

Posted on May 5, 2026 By Tim Starks No Comments on CISA boasts AI automation improvements to threat analysis, mission support  – CyberScoop
CISA boasts AI automation improvements to threat analysis, mission support  – CyberScoop
Attack Feeds

The Cybersecurity and Infrastructure Security Agency has gotten “by far” the biggest gains from artificial intelligence automation in its security operations unit to help analysts sift through threats, but it’s also proven valuable elsewhere within the agency, CISA officials said Tuesday. It’s “really allowing those analysts to do triage very fast, so they focus on … Read More “CISA boasts AI automation improvements to threat analysis, mission support  – CyberScoop” »

CISA boasts AI automation improvements to threat analysis, mission support  – CyberScoop

Posted on May 5, 2026 By Tim Starks No Comments on CISA boasts AI automation improvements to threat analysis, mission support  – CyberScoop
CISA boasts AI automation improvements to threat analysis, mission support  – CyberScoop
Attack Feeds

The Cybersecurity and Infrastructure Security Agency has gotten “by far” the biggest gains from artificial intelligence automation in its security operations unit to help analysts sift through threats, but it’s also proven valuable elsewhere within the agency, CISA officials said Tuesday. It’s “really allowing those analysts to do triage very fast, so they focus on … Read More “CISA boasts AI automation improvements to threat analysis, mission support  – CyberScoop” »

DAEMON Tools Supply Chain Attack Compromises Official Installers with Malware  – The Hacker News

Posted on May 5, 2026 By [email protected] (The Hacker News) No Comments on DAEMON Tools Supply Chain Attack Compromises Official Installers with Malware  – The Hacker News
DAEMON Tools Supply Chain Attack Compromises Official Installers with Malware  – The Hacker News
Attack Feeds

A newly identified supply chain attack targeting DAEMON Tools software has compromised its installers to serve a malicious payload, according to findings from Kaspersky. “These installers are distributed from the legitimate website of DAEMON Tools and are signed with digital certificates belonging to DAEMON Tools developers,” Kaspersky researchers  Igor Kuznetsov, Georgy Kucherin, Leonid  – Read … Read More “DAEMON Tools Supply Chain Attack Compromises Official Installers with Malware  – The Hacker News” »

Critical Apache HTTP/2 Flaw (CVE-2026-23918) Enables DoS and Potential RCE  – The Hacker News

Posted on May 5, 2026 By [email protected] (The Hacker News) No Comments on Critical Apache HTTP/2 Flaw (CVE-2026-23918) Enables DoS and Potential RCE  – The Hacker News
Critical Apache HTTP/2 Flaw (CVE-2026-23918) Enables DoS and Potential RCE  – The Hacker News
Attack Feeds

The Apache Software Foundation (ASF) has released security updates to address several security vulnerabilities in the HTTP Server, including a severe vulnerability that could potentially lead to remote code execution (RCE). The vulnerability, tracked as CVE-2026-23918 (CVSS score: 8.8), has been described as a case of “double free and possible RCE” in the HTTP/2 protocol … Read More “Critical Apache HTTP/2 Flaw (CVE-2026-23918) Enables DoS and Potential RCE  – The Hacker News” »

Latvian national sentenced for ransomware attacks run by former Conti leaders  – CyberScoop

Posted on May 5, 2026 By Matt Kapko No Comments on Latvian national sentenced for ransomware attacks run by former Conti leaders  – CyberScoop
Latvian national sentenced for ransomware attacks run by former Conti leaders  – CyberScoop
Attack Feeds

A federal judge sentenced a Latvian national to 102 months in prison for his involvement in a series of ransomware attacks for more than two years prior to his arrest in 2023, the Justice Department said Monday. Deniss Zolotarjovs, a resident of Moscow at the time, helped an organization led by former leaders of the … Read More “Latvian national sentenced for ransomware attacks run by former Conti leaders  – CyberScoop” »

Microsoft Flags Mass Phishing Campaign Using Fake Compliance Emails –

Posted on May 5, 2026 By Joe-W No Comments on Microsoft Flags Mass Phishing Campaign Using Fake Compliance Emails –
Microsoft Flags Mass Phishing Campaign Using Fake Compliance Emails –
Privacy/Governance Feed

Microsoft researchers warn of a large-scale phishing campaign using fake compliance emails to steal credentials, targeting 35,000 users across 13,000 organizations worldwide – Read More  –  

China-Linked UAT-8302 Targets Governments Using Shared APT Malware Across Regions  – The Hacker News

Posted on May 5, 2026 By [email protected] (The Hacker News) No Comments on China-Linked UAT-8302 Targets Governments Using Shared APT Malware Across Regions  – The Hacker News
China-Linked UAT-8302 Targets Governments Using Shared APT Malware Across Regions  – The Hacker News
Attack Feeds

A sophisticated China-nexus advanced persistent threat (APT) group has been attributed to attacks targeting government entities in South America since at least late 2024 and government agencies in southeastern Europe in 2025. The activity is being tracked by Cisco Talos under the moniker UAT-8302, with post-exploitation involving the deployment of custom-made malware families that have … Read More “China-Linked UAT-8302 Targets Governments Using Shared APT Malware Across Regions  – The Hacker News” »

North Korean APT Targets Yanbian Gamers via Trojanized Platform –

Posted on May 5, 2026 By Joe-W No Comments on North Korean APT Targets Yanbian Gamers via Trojanized Platform –
North Korean APT Targets Yanbian Gamers via Trojanized Platform –
Privacy/Governance Feed

ESET warns that North Korean hackers compromised a Yanbian gaming site in a supply‑chain attack, trojanizing Windows and Android software to spy on users – Read More  –  

LuxSci Launches Enterprise-Grade HIPAA-Compliant Email Security for Mid-Sized Healthcare Organizations  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 5, 2026 By CyberNewswire No Comments on LuxSci Launches Enterprise-Grade HIPAA-Compliant Email Security for Mid-Sized Healthcare Organizations  – Hackread – Cybersecurity News, Data Breaches, AI and More
LuxSci Launches Enterprise-Grade HIPAA-Compliant Email Security for Mid-Sized Healthcare Organizations  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Cambridge, MA, 5th May 2026, CyberNewswire  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Fake SSA Emails Drive Venomous#Helper Phishing Campaign –

Posted on May 5, 2026 By Joe-W No Comments on Fake SSA Emails Drive Venomous#Helper Phishing Campaign –
Fake SSA Emails Drive Venomous#Helper Phishing Campaign –
Privacy/Governance Feed

Venomous#Helper attackers impersonate the US Social Security Administration to deploy signed RMM software and maintain persistent access across US networks – Read More  –  

MetInfo CMS CVE-2026-29014 Exploited for Remote Code Execution Attacks  – The Hacker News

Posted on May 5, 2026 By [email protected] (The Hacker News) No Comments on MetInfo CMS CVE-2026-29014 Exploited for Remote Code Execution Attacks  – The Hacker News
MetInfo CMS CVE-2026-29014 Exploited for Remote Code Execution Attacks  – The Hacker News
Attack Feeds

Threat actors are actively exploiting a critical security flaw impacting an open-source content management system (CMS) known as MetInfo, according to new findings from VulnCheck. The vulnerability in question is CVE-2026-29014 (CVSS score: 9.8), a code injection flaw that could result in arbitrary code execution. “MetInfo CMS versions 7.9, 8.0, and 8.1 contain an unauthenticated … Read More “MetInfo CMS CVE-2026-29014 Exploited for Remote Code Execution Attacks  – The Hacker News” »

The Back Door Attackers Know About — and Most Security Teams Still Haven’t Closed  – The Hacker News

Posted on May 5, 2026 By [email protected] (The Hacker News) No Comments on The Back Door Attackers Know About — and Most Security Teams Still Haven’t Closed  – The Hacker News
The Back Door Attackers Know About — and Most Security Teams Still Haven’t Closed  – The Hacker News
Attack Feeds

Every AI tool, workflow automation, and productivity app your employees connected to Google or Microsoft this year left something behind: a persistent OAuth token with no expiration date, no automatic cleanup, and in most organizations, no one watching it. Your perimeter controls don’t see it. Your MFA doesn’t stop it. And when an attacker gets … Read More “The Back Door Attackers Know About — and Most Security Teams Still Haven’t Closed  – The Hacker News” »

Anti-ICE Site GTFO ICE Accused of Exposing Data of 17,000+ Activists  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 5, 2026 By Deeba Ahmed No Comments on Anti-ICE Site GTFO ICE Accused of Exposing Data of 17,000+ Activists  – Hackread – Cybersecurity News, Data Breaches, AI and More
Anti-ICE Site GTFO ICE Accused of Exposing Data of 17,000+ Activists  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

An anti-ICE website, GTFO ICE, linked to Miles Taylor, is accused of exposing the personal details of 17,662 activists, sparking concerns that the data may have reached government agencies.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

FEMITBOT Network Abuses Telegram Mini Apps for Crypto Scams and Android Malware  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 5, 2026 By Deeba Ahmed No Comments on FEMITBOT Network Abuses Telegram Mini Apps for Crypto Scams and Android Malware  – Hackread – Cybersecurity News, Data Breaches, AI and More
FEMITBOT Network Abuses Telegram Mini Apps for Crypto Scams and Android Malware  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

A massive fraud network called FEMITBOT uses Telegram Mini Apps and fake brand names like Apple, Disney, and…  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

AI Adoption Outpaces Safety Policies, Leaving Organizations Exposed to Cyber Risk –

Posted on May 5, 2026 By Joe-W No Comments on AI Adoption Outpaces Safety Policies, Leaving Organizations Exposed to Cyber Risk –
AI Adoption Outpaces Safety Policies, Leaving Organizations Exposed to Cyber Risk –
Privacy/Governance Feed

ISACA report warns that while AI has become the norm, many organizations are yet to formally apply safety or security policies around its use – Read More  –  

We Scanned 1 Million Exposed AI Services. Here’s How Bad the Security Actually Is  – The Hacker News

Posted on May 5, 2026 By [email protected] (The Hacker News) No Comments on We Scanned 1 Million Exposed AI Services. Here’s How Bad the Security Actually Is  – The Hacker News
We Scanned 1 Million Exposed AI Services. Here’s How Bad the Security Actually Is  – The Hacker News
Attack Feeds

While the software industry has made genuine strides over the past few decades to deliver products securely, the furious pace of AI adoption is putting that progress at risk. Businesses are moving fast to self-host LLM infrastructure, drawn by the promise of AI as a force multiplier and the pressure to deliver more value faster. … Read More “We Scanned 1 Million Exposed AI Services. Here’s How Bad the Security Actually Is  – The Hacker News” »

NCSC Warns of an AI-Fuelled “Vulnerability Patch Wave” –

Posted on May 5, 2026 By Joe-W No Comments on NCSC Warns of an AI-Fuelled “Vulnerability Patch Wave” –
NCSC Warns of an AI-Fuelled “Vulnerability Patch Wave” –
Privacy/Governance Feed

The UK’s National Cyber Security Centre is urging organizations to prepare for glut of new software updates – Read More  –  

ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and Windows  – The Hacker News

Posted on May 5, 2026 By [email protected] (The Hacker News) No Comments on ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and Windows  – The Hacker News
ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and Windows  – The Hacker News
Attack Feeds

The North Korea-aligned state-sponsored hacking group known as ScarCruft has compromised a video game platform in a supply chain espionage attack, trojanizing its components with a backdoor called BirdCallto likely target ethnic Koreans residing in China. While prior versions of the backdoor have primarily targeted Windows users only, the supply chain attack is assessed to … Read More “ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and Windows  – The Hacker News” »

Trellix Reveals Unauthorized Access to Source Code –

Posted on May 5, 2026 By Joe-W No Comments on Trellix Reveals Unauthorized Access to Source Code –
Trellix Reveals Unauthorized Access to Source Code –
Privacy/Governance Feed

Security vendor Trellix has suffered a breach involving unauthorized access – Read More  –  

Microsoft Details Phishing Campaign Targeting 35,000 Users Across 26 Countries  – The Hacker News

Posted on May 5, 2026 By [email protected] (The Hacker News) No Comments on Microsoft Details Phishing Campaign Targeting 35,000 Users Across 26 Countries  – The Hacker News
Microsoft Details Phishing Campaign Targeting 35,000 Users Across 26 Countries  – The Hacker News
Attack Feeds

Microsoft has disclosed details of a large-scale credential theft campaign that has leveraged a combination of code of conduct-themed lures and legitimate email services to direct users to attacker-controlled domains and steal authentication tokens. The multi-stage campaign, observed between April 14 and 16, 2026, targeted more than 35,000 users across over 13,000 organizations in 26 … Read More “Microsoft Details Phishing Campaign Targeting 35,000 Users Across 26 Countries  – The Hacker News” »

Weaver E-cology RCE Flaw CVE-2026-22679 Actively Exploited via Debug API  – The Hacker News

Posted on May 5, 2026 By [email protected] (The Hacker News) No Comments on Weaver E-cology RCE Flaw CVE-2026-22679 Actively Exploited via Debug API  – The Hacker News
Weaver E-cology RCE Flaw CVE-2026-22679 Actively Exploited via Debug API  – The Hacker News
Attack Feeds

A critical security vulnerability in Weaver (Fanwei) E-cology, an enterprise office automation (OA) and collaboration platform, has come under active exploitation in the wild. The vulnerability (CVE-2026-22679, CVSS score: 9.8) relates to a case of unauthenticated remote code execution affecting Weaver E-cology 10.0 versions prior to 20260312. The issue resides in the “/papi/esearch/data/devops/  – Read … Read More “Weaver E-cology RCE Flaw CVE-2026-22679 Actively Exploited via Debug API  – The Hacker News” »

How CryptoBind’s Encryption Suite Addresses DPDP Act Requirements – JISA Softech Pvt Ltd

Posted on May 5, 2026 By Aakash Chaudhary No Comments on How CryptoBind’s Encryption Suite Addresses DPDP Act Requirements – JISA Softech Pvt Ltd
How CryptoBind’s Encryption Suite Addresses DPDP Act Requirements – JISA Softech Pvt Ltd
Privacy/Governance Feed

India’s Digital Personal Data Protection (DPDP) Act, 2023 is no longer a distant legislative horizon.As enforcement provisions are actively… The post How CryptoBind’s Encryption Suite Addresses DPDP Act Requirements appeared first on JISA Softech Pvt Ltd.  – Read More  – JISA Softech Pvt Ltd 

The DPDP Act 2023: A Complete Compliance Guide for Indian Enterprises – JISA Softech Pvt Ltd

Posted on May 5, 2026 By Aakash Chaudhary No Comments on The DPDP Act 2023: A Complete Compliance Guide for Indian Enterprises – JISA Softech Pvt Ltd
The DPDP Act 2023: A Complete Compliance Guide for Indian Enterprises – JISA Softech Pvt Ltd
Privacy/Governance Feed

The Digital Personal Data Protection (DPDP) Act 2023 of India is a watershed moment in the history of regulatory… The post The DPDP Act 2023: A Complete Compliance Guide for Indian Enterprises appeared first on JISA Softech Pvt Ltd.  – Read More  – JISA Softech Pvt Ltd 

OpenAI To Extend Cyber Program to Government Agencies –

Posted on May 4, 2026 By Joe-W No Comments on OpenAI To Extend Cyber Program to Government Agencies –
OpenAI To Extend Cyber Program to Government Agencies –
Privacy/Governance Feed

OpenAI announced its intention to expand the Trusted Access for Cyber program for cyber defenders at the federal, state and local government levels – Read More  –  

Small Defense Firms Lack Network Data to Stop Nation-State Hackers, Analyst Says –

Posted on May 4, 2026 By Joe-W No Comments on Small Defense Firms Lack Network Data to Stop Nation-State Hackers, Analyst Says –
Small Defense Firms Lack Network Data to Stop Nation-State Hackers, Analyst Says –
Privacy/Governance Feed

Team Cymru’s Stephen Campbell warned that small US defense contractors are not well prepared to face cyber intrusions through edge devices – Read More  –  

Posts pagination

Previous 1 … 9 10 11 … 41 Next
  • Attack Feeds
  • Privacy/Governance Feed
  • Gov/ISAC Feeds
  • Alert Feeds
  • Privacy Policy
  • Wagner Cybersecurity

Copyright © 2026 AttackFeed by Joe Wagner.

Theme: Oceanly News Dark by ScriptsTown

We are using cookies for analytics purposes only.  We do not store, track or sell user information.

You can find out more about which cookies we are using or switch them off in .

AttackFeed by Joe Wagner
Powered by  GDPR Cookie Compliance
Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

Strictly Necessary Cookies

Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.