Skip to content
AttackFeed by Joe Wagner | Cybersecurity News from Across the Internet

AttackFeed by Joe Wagner

Cybersecurity News from Across the Internet

  • Attack/News Feeds
  • Gov Alerts/ISAC Feeds
  • Vulnerability Alerts
  • Privacy/Governance Feeds
  • Fraud Feeds
  • iOS App
  • Android App
AttackFeed by Joe Wagner | Threat Intel Scraping Without Burning Your Cover or Your Stack  - Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds
Threat Intel Scraping Without Burning Your Cover or Your Stack  – Hackread – Cybersecurity News, Data Breaches, AI and More
April 21, 2026
AttackFeed by Joe Wagner|Lyrie.ai Joins First Batch of Anthropic’s Cyber Verification Program  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds
Lyrie.ai Joins First Batch of Anthropic’s Cyber Verification Program  – Hackread – Cybersecurity News, Data Breaches, AI and More
May 11, 2026
AttackFeed by Joe Wagner | Your AI doctor doesn’t have to follow the same privacy rules as your real one  - CyberScoop
Attack Feeds
Your AI doctor doesn’t have to follow the same privacy rules as your real one  – CyberScoop
February 11, 2026
AttackFeed by Joe Wagner | US Bans New Foreign-Made Home Routers Over National Security Fears  - Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds
US Bans New Foreign-Made Home Routers Over National Security Fears  – Hackread – Cybersecurity News, Data Breaches, AI and More
March 25, 2026
AttackFeed by Joe Wagner | Bell Ambulance Confirms Data Breach Affecting 237,830 Individuals  - Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds
Bell Ambulance Confirms Data Breach Affecting 237,830 Individuals  – Hackread – Cybersecurity News, Data Breaches, AI and More
March 12, 2026
AttackFeed by Joe Wagner | The March 2026 Security Update Review  - Zero Day Initiative - Blog
Attack Feeds
The March 2026 Security Update Review  – Zero Day Initiative – Blog
March 10, 2026

GraphAlgo Scam: Lazarus Hackers Register Real US LLCs to Spread Malware  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on April 10, 2026 By Deeba Ahmed No Comments on GraphAlgo Scam: Lazarus Hackers Register Real US LLCs to Spread Malware  – Hackread – Cybersecurity News, Data Breaches, AI and More
GraphAlgo Scam: Lazarus Hackers Register Real US LLCs to Spread Malware  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

ReversingLabs has discovered a fresh wave of the graphalgo campaign in which North Korean Lazarus hackers are using fake Florida LLCs, mimicking SWFT Blockchain, and using GitHub typo-squatting to target developers with malware.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

UNC6783 Hackers Use Fake Okta Pages in Corporate Breach Campaign  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on April 10, 2026 By Deeba Ahmed No Comments on UNC6783 Hackers Use Fake Okta Pages in Corporate Breach Campaign  – Hackread – Cybersecurity News, Data Breaches, AI and More
UNC6783 Hackers Use Fake Okta Pages in Corporate Breach Campaign  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

UNC6783 hackers and extortionists impersonate support staff, using fake Okta login pages and social engineering to access corporate systems and steal sensitive data.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

GlassWorm Campaign Uses Zig Dropper to Infect Multiple Developer IDEs  – The Hacker News

Posted on April 10, 2026 By [email protected] (The Hacker News) No Comments on GlassWorm Campaign Uses Zig Dropper to Infect Multiple Developer IDEs  – The Hacker News
GlassWorm Campaign Uses Zig Dropper to Infect Multiple Developer IDEs  – The Hacker News
Attack Feeds

Cybersecurity researchers have flagged yet another evolution of the ongoing GlassWorm campaign, which employs a new Zig dropper that’s designed to stealthily infect all integrated development environments (IDEs) on a developer’s machine. The technique has been discovered in an Open VSX extension named “specstudio.code-wakatime-activity-tracker,” which masquerades as WakaTime, a  – Read More  – The Hacker News 

Google Chrome Rolls Out Protection Against Infostealers Targeting Session Cookies –

Posted on April 10, 2026 By Joe-W No Comments on Google Chrome Rolls Out Protection Against Infostealers Targeting Session Cookies –
Privacy/Governance Feed

Chrome’s Device Bound Session Credentials is designed to block infostealers from harvesting session cookie – Read More  –  

Just Three Ransomware Gangs Accounted for 40% of Attacks Last Month –

Posted on April 10, 2026 By Joe-W No Comments on Just Three Ransomware Gangs Accounted for 40% of Attacks Last Month –
Privacy/Governance Feed

Qilin, Akira and Dragonforce were responsible for 40% of 672 ransomware incidents reported in March, says Check Point – Read More  –  

Marimo RCE Flaw CVE-2026-39987 Exploited Within 10 Hours of Disclosure  – The Hacker News

Posted on April 10, 2026 By [email protected] (The Hacker News) No Comments on Marimo RCE Flaw CVE-2026-39987 Exploited Within 10 Hours of Disclosure  – The Hacker News
Marimo RCE Flaw CVE-2026-39987 Exploited Within 10 Hours of Disclosure  – The Hacker News
Attack Feeds

A critical security vulnerability in Marimo, an open-source Python notebook for data science and analysis, has been exploited within 10 hours of public disclosure, according to findings from Sysdig. The vulnerability in question is CVE-2026-39987 (CVSS score: 9.3), a pre-authenticated remote code execution vulnerability impacting all versions of Marimo prior to and including  – Read More  – The Hacker … Read More “Marimo RCE Flaw CVE-2026-39987 Exploited Within 10 Hours of Disclosure  – The Hacker News” »

Browser Extensions Are the New AI Consumption Channel That No One Is Talking About  – The Hacker News

Posted on April 10, 2026 By [email protected] (The Hacker News) No Comments on Browser Extensions Are the New AI Consumption Channel That No One Is Talking About  – The Hacker News
Browser Extensions Are the New AI Consumption Channel That No One Is Talking About  – The Hacker News
Attack Feeds

While much of the discussion on AI security centers around protecting ‘shadow’ AI and GenAI consumption, there’s a wide-open window nobody’s guarding: AI browser extensions.  A new report from LayerX exposes just how deep this blind spot goes, and why AI extensions may be the most dangerous AI threat surface in your network that isn’t on anyone’s   – Read More  – The … Read More “Browser Extensions Are the New AI Consumption Channel That No One Is Talking About  – The Hacker News” »

Google Rolls Out DBSC in Chrome 146 to Block Session Theft on Windows  – The Hacker News

Posted on April 10, 2026 By [email protected] (The Hacker News) No Comments on Google Rolls Out DBSC in Chrome 146 to Block Session Theft on Windows  – The Hacker News
Google Rolls Out DBSC in Chrome 146 to Block Session Theft on Windows  – The Hacker News
Attack Feeds

Google has made Device Bound Session Credentials (DBSC) generally available to all Windows users of its Chrome web browser, months after it began testing the security feature in open beta. The public availability is currently limited to Windows users on Chrome 146, with macOS expansion planned in an upcoming Chrome release. “This project represents a significant  – Read More  – The … Read More “Google Rolls Out DBSC in Chrome 146 to Block Session Theft on Windows  – The Hacker News” »

Backdoored Smart Slider 3 Pro Update Distributed via Compromised Nextend Servers  – The Hacker News

Posted on April 10, 2026 By [email protected] (The Hacker News) No Comments on Backdoored Smart Slider 3 Pro Update Distributed via Compromised Nextend Servers  – The Hacker News
Backdoored Smart Slider 3 Pro Update Distributed via Compromised Nextend Servers  – The Hacker News
Attack Feeds

Unknown threat actors have hijacked the update system for the Smart Slider 3 Pro plugin for WordPress and Joomla to push a poisoned version containing a backdoor. The incident impacts Smart Slider 3 Pro version 3.5.1.35 for WordPress, per WordPress security company Patchstack. Smart Slider 3 is a popular WordPress slider plugin with more than 800,000 active installations across … Read More “Backdoored Smart Slider 3 Pro Update Distributed via Compromised Nextend Servers  – The Hacker News” »

Why is the timeline to quantum-proof everything constantly shrinking?  – CyberScoop

Posted on April 9, 2026 By djohnson No Comments on Why is the timeline to quantum-proof everything constantly shrinking?  – CyberScoop
Why is the timeline to quantum-proof everything constantly shrinking?  – CyberScoop
Attack Feeds

When Google announced last month it was moving up its own internal timeline for migrating to quantum-resistant forms of encryption, it started a broader conversation in the cybersecurity and cryptography communities: Just what was pushing one of the largest tech companies in the world to significantly accelerate its adoption of post-quantum protections for its systems, … Read More “Why is the timeline to quantum-proof everything constantly shrinking?  – CyberScoop” »

Iranian attacks on US critical infrastructure puts 3,900 devices in crosshairs  – CyberScoop

Posted on April 9, 2026 By Matt Kapko No Comments on Iranian attacks on US critical infrastructure puts 3,900 devices in crosshairs  – CyberScoop
Iranian attacks on US critical infrastructure puts 3,900 devices in crosshairs  – CyberScoop
Attack Feeds

The fallout and potential exposure from Iran’s state-backed targeting of U.S. critical infrastructure extends to more than 5,200 internet-connected devices, researchers at Censys said in a threat intelligence brief Wednesday.   Of the programmable logic controllers manufactured by Rockwell Automation/Allen-Bradley that Censys identified as  potentially exposed to Iranian government attackers, nearly 3,900, or about 3 out … Read More “Iranian attacks on US critical infrastructure puts 3,900 devices in crosshairs  – CyberScoop” »

Why is the timeline to quantum-proof everything constantly shrinking?  – CyberScoop

Posted on April 9, 2026 By djohnson No Comments on Why is the timeline to quantum-proof everything constantly shrinking?  – CyberScoop
Why is the timeline to quantum-proof everything constantly shrinking?  – CyberScoop
Attack Feeds

When Google announced last month it was moving up its own internal timeline for migrating to quantum-resistant forms of encryption, it started a broader conversation in the cybersecurity and cryptography communities: Just what was pushing one of the largest tech companies in the world to significantly accelerate its adoption of post-quantum protections for its systems, … Read More “Why is the timeline to quantum-proof everything constantly shrinking?  – CyberScoop” »

EngageLab SDK Flaw Exposed 50M Android Users, Including 30M Crypto Wallets  – The Hacker News

Posted on April 9, 2026 By [email protected] (The Hacker News) No Comments on EngageLab SDK Flaw Exposed 50M Android Users, Including 30M Crypto Wallets  – The Hacker News
EngageLab SDK Flaw Exposed 50M Android Users, Including 30M Crypto Wallets  – The Hacker News
Attack Feeds

Details have emerged about a now-patched security vulnerability in a widely used third-party Android software development kit (SDK) called EngageLab SDK that could have put millions of cryptocurrency wallet users at risk. “This flaw allows apps on the same device to bypass Android security sandbox and gain unauthorized access to private data,” the Microsoft Defender  – Read More  – The … Read More “EngageLab SDK Flaw Exposed 50M Android Users, Including 30M Crypto Wallets  – The Hacker News” »

Adobe Reader Zero-Day Exploited to Steal Data via Malicious PDFs  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on April 9, 2026 By Deeba Ahmed No Comments on Adobe Reader Zero-Day Exploited to Steal Data via Malicious PDFs  – Hackread – Cybersecurity News, Data Breaches, AI and More
Adobe Reader Zero-Day Exploited to Steal Data via Malicious PDFs  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

An Adobe Reader zero-day vulnerability is being actively exploited via malicious PDFs, allowing hackers to steal data without user interaction, with no patch available.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

UAT-10362 Targets Taiwanese NGOs with LucidRook Malware in Spear-Phishing Campaigns  – The Hacker News

Posted on April 9, 2026 By [email protected] (The Hacker News) No Comments on UAT-10362 Targets Taiwanese NGOs with LucidRook Malware in Spear-Phishing Campaigns  – The Hacker News
UAT-10362 Targets Taiwanese NGOs with LucidRook Malware in Spear-Phishing Campaigns  – The Hacker News
Attack Feeds

A previously undocumented threat cluster dubbed UAT-10362 has been attributed to spear-phishing campaigns targeting Taiwanese non-governmental organizations (NGOs) and suspected universities to deploy a new Lua-based malware called LucidRook. “LucidRook is a sophisticated stager that embeds a Lua interpreter and Rust-compiled libraries within a dynamic-link library (DLL) to download and  – Read More  – The Hacker … Read More “UAT-10362 Targets Taiwanese NGOs with LucidRook Malware in Spear-Phishing Campaigns  – The Hacker News” »

Bitcoin Depot Reports $3.6m Crypto Theft After System Breach –

Posted on April 9, 2026 By Joe-W No Comments on Bitcoin Depot Reports $3.6m Crypto Theft After System Breach –
Bitcoin Depot Reports $3.6m Crypto Theft After System Breach –
Privacy/Governance Feed

Bitcoin Depot has disclosed a cyber-attack that led to the theft of more than 50 Bitcoin, worth $3.66m, after hackers accessed its internal systems – Read More  –  

STX RAT Targets Finance Sector With Advanced Stealth Tactics –

Posted on April 9, 2026 By Joe-W No Comments on STX RAT Targets Finance Sector With Advanced Stealth Tactics –
STX RAT Targets Finance Sector With Advanced Stealth Tactics –
Privacy/Governance Feed

STX RAT, a newly identified remote access trojan, attempted deployment in finance, showing advanced C2 and stealthy delivery methods – Read More  –  

Inside the FBI’s router takedown that cut off APT28’s ‘tremendous access’  – CyberScoop

Posted on April 9, 2026 By Tim Starks No Comments on Inside the FBI’s router takedown that cut off APT28’s ‘tremendous access’  – CyberScoop
Inside the FBI’s router takedown that cut off APT28’s ‘tremendous access’  – CyberScoop
Attack Feeds

The recent FBI-led operation to knock Russian government hackers off routers sought to topple an especially insidious and threateningly contagious cyberespionage campaign, top bureau cyber official Brett Leatherman told CyberScoop. Researchers, along with U.S. and foreign government agencies, revealed details of the campaign this week by which APT28 — also known as Forest Blizzard or … Read More “Inside the FBI’s router takedown that cut off APT28’s ‘tremendous access’  – CyberScoop” »

New macOS Malware notnullOSX Targets Crypto Wallets Over $10K  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on April 9, 2026 By Deeba Ahmed No Comments on New macOS Malware notnullOSX Targets Crypto Wallets Over $10K  – Hackread – Cybersecurity News, Data Breaches, AI and More
New macOS Malware notnullOSX Targets Crypto Wallets Over $10K  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

macOS Malware notnullOSX targets crypto wallets over $10K, using fake apps, Terminal tricks, and backdoors to steal funds and sensitive data.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Mallory Launches AI-Native Threat Intelligence Platform, Turning Global Threat Data Into Prioritized Action  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on April 9, 2026 By CyberNewswire No Comments on Mallory Launches AI-Native Threat Intelligence Platform, Turning Global Threat Data Into Prioritized Action  – Hackread – Cybersecurity News, Data Breaches, AI and More
Mallory Launches AI-Native Threat Intelligence Platform, Turning Global Threat Data Into Prioritized Action  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Austin, Texas, United States, 9th April 2026, CyberNewswire  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Claude Code Can Be Manipulated via CLAUDE.md to Run SQL Injection Attacks  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on April 9, 2026 By Deeba Ahmed No Comments on Claude Code Can Be Manipulated via CLAUDE.md to Run SQL Injection Attacks  – Hackread – Cybersecurity News, Data Breaches, AI and More
Claude Code Can Be Manipulated via CLAUDE.md to Run SQL Injection Attacks  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

LayerX researchers have discovered how to bypass Claude Code’s safety rules using the CLAUDE.md file. This exploit allows…  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

ThreatsDay Bulletin: Hybrid P2P Botnet, 13-Year-Old Apache RCE and 18 More Stories  – The Hacker News

Posted on April 9, 2026 By [email protected] (The Hacker News) No Comments on ThreatsDay Bulletin: Hybrid P2P Botnet, 13-Year-Old Apache RCE and 18 More Stories  – The Hacker News
ThreatsDay Bulletin: Hybrid P2P Botnet, 13-Year-Old Apache RCE and 18 More Stories  – The Hacker News
Attack Feeds

Thursday. Another week, another batch of things that probably should’ve been caught sooner but weren’t. This one’s got some range — old vulnerabilities getting new life, a few “why was that even possible” moments, attackers leaning on platforms and tools you’d normally trust without thinking twice. Quiet escalations more than loud zero-days, but the kind that matter more … Read More “ThreatsDay Bulletin: Hybrid P2P Botnet, 13-Year-Old Apache RCE and 18 More Stories  – The Hacker News” »

Bitter-Linked Hack-for-Hire Campaign Targets Journalists Across MENA Region  – The Hacker News

Posted on April 9, 2026 By [email protected] (The Hacker News) No Comments on Bitter-Linked Hack-for-Hire Campaign Targets Journalists Across MENA Region  – The Hacker News
Bitter-Linked Hack-for-Hire Campaign Targets Journalists Across MENA Region  – The Hacker News
Attack Feeds

An apparent hack-for-hire campaign likely orchestrated by a threat actor with suspected ties to the Indian government targeted journalists, activists, and government officials across the Middle East and North Africa (MENA), according to findings from Access Now, Lookout, and SMEX. Two of the targets included prominent Egyptian journalists and government critics, Mostafa  – Read More  – The Hacker News 

Adobe Reader Zero-Day Exploited via Malicious PDFs Since December 2025  – The Hacker News

Posted on April 9, 2026 By [email protected] (The Hacker News) No Comments on Adobe Reader Zero-Day Exploited via Malicious PDFs Since December 2025  – The Hacker News
Adobe Reader Zero-Day Exploited via Malicious PDFs Since December 2025  – The Hacker News
Attack Feeds

Threat actors have been exploiting a previously unknown zero-day vulnerability in Adobe Reader using maliciously crafted PDF documents since at least December 2025. The finding, detailed by EXPMON’s Haifei Li, has been described as a highly-sophisticated PDF exploit. The artifact (“Invoice540.pdf”) first appeared on the VirusTotal platform on November 28, 2025. A second   – Read More  – The Hacker … Read More “Adobe Reader Zero-Day Exploited via Malicious PDFs Since December 2025  – The Hacker News” »

The Hidden Security Risks of Shadow AI in Enterprises  – The Hacker News

Posted on April 9, 2026 By [email protected] (The Hacker News) No Comments on The Hidden Security Risks of Shadow AI in Enterprises  – The Hacker News
The Hidden Security Risks of Shadow AI in Enterprises  – The Hacker News
Attack Feeds

As AI tools become more accessible, employees are adopting them without formal approval from IT and security teams. While these tools may boost productivity, automate tasks, or fill gaps in existing workflows, they also operate outside the visibility of security teams, bypassing controls and creating new blind spots in what is known as shadow AI. While similar to … Read More “The Hidden Security Risks of Shadow AI in Enterprises  – The Hacker News” »

Don’t just fight fraud, hunt it  – CyberScoop

Posted on April 9, 2026 By Greg Otto No Comments on Don’t just fight fraud, hunt it  – CyberScoop
Don’t just fight fraud, hunt it  – CyberScoop
Attack Feeds

Our nation has entered a new fraud arms race fueled by AI. With billions of dollars in fraud losses mounting in both the private and public sectors, it’s clear the old ways of deterring fraud aren’t working. That’s why we need a new playbook that starts with understanding how fraudsters operate, evolving our defenses, and … Read More “Don’t just fight fraud, hunt it  – CyberScoop” »

Middle East Hack-for-Hire Operation Traced to South Asian Cyber Espionage Group –

Posted on April 9, 2026 By Joe-W No Comments on Middle East Hack-for-Hire Operation Traced to South Asian Cyber Espionage Group –
Middle East Hack-for-Hire Operation Traced to South Asian Cyber Espionage Group –
Privacy/Governance Feed

A spear-phishing campaign which spread across the Middle East between 2023 and 2024 has now been linked to Bitter APT group – Read More  –  

Atomic Stealer MacOS ClickFix Attack Bypasses Apple Security Warnings –

Posted on April 9, 2026 By Joe-W No Comments on Atomic Stealer MacOS ClickFix Attack Bypasses Apple Security Warnings –
Atomic Stealer MacOS ClickFix Attack Bypasses Apple Security Warnings –
Privacy/Governance Feed

macOS 26.4 update introduced security warnings into Terminal to prevent ClickFix attacks, so attackers have shifted to Script Editor instead – Read More  –  

Governance Gaps Emerge as AI Agents Drive 76% Increase in NHIs –

Posted on April 9, 2026 By Joe-W No Comments on Governance Gaps Emerge as AI Agents Drive 76% Increase in NHIs –
Privacy/Governance Feed

SANS Institute reveals that AI agents are behind a 76% surge in non-human identities – Read More  –  

GPU Rowhammer Attack Enables Privilege Escalation and Full System Compromise –

Posted on April 9, 2026 By Joe-W No Comments on GPU Rowhammer Attack Enables Privilege Escalation and Full System Compromise –
GPU Rowhammer Attack Enables Privilege Escalation and Full System Compromise –
Privacy/Governance Feed

GPUBreach uses GPU Rowhammer on GDDR6 to flip bits, corrupt page tables and escalate to system root – Read More  –  

Google Warns of New Threat Group Targeting BPOs and Helpdesks –

Posted on April 9, 2026 By Joe-W No Comments on Google Warns of New Threat Group Targeting BPOs and Helpdesks –
Google Warns of New Threat Group Targeting BPOs and Helpdesks –
Privacy/Governance Feed

Google’s threat intel team warns UNC6783, a new extortion group possibly linked to the “Raccoon” persona, is targeting BPOs and enterprises – Read More  –  

Critical Vulnerability in Ninja Forms Exposes WordPress Sites –

Posted on April 8, 2026 By Joe-W No Comments on Critical Vulnerability in Ninja Forms Exposes WordPress Sites –
Critical Vulnerability in Ninja Forms Exposes WordPress Sites –
Privacy/Governance Feed

Ninja Forms File Upload RCE via unauthenticated arbitrary file upload; update to 3.3.27 immediately – Read More  –  

Google API Keys Quietly Gain Access to Gemini on Android Devices –

Posted on April 8, 2026 By Joe-W No Comments on Google API Keys Quietly Gain Access to Gemini on Android Devices –
Google API Keys Quietly Gain Access to Gemini on Android Devices –
Privacy/Governance Feed

Google API key flaw exposes mobile apps to Gemini AI access, private files and billing risks – Read More  –  

Smashing Security podcast #462: LinkedIn is spying on you, and you agreed to nothing  – GRAHAM CLULEY

Posted on April 8, 2026 By Graham Cluley No Comments on Smashing Security podcast #462: LinkedIn is spying on you, and you agreed to nothing  – GRAHAM CLULEY
Smashing Security podcast #462: LinkedIn is spying on you, and you agreed to nothing  – GRAHAM CLULEY
Attack Feeds

LinkedIn has been secretly scanning your browser for over 6,000 installed extensions — on every single click you make. It can tell if you’re job hunting, what religion you are, and whether you have ADHD. And none of this is mentioned anywhere in their privacy policy. Meanwhile, California’s crypto millionaires are learning that no amount … Read More “Smashing Security podcast #462: LinkedIn is spying on you, and you agreed to nothing  – GRAHAM CLULEY” »

New Chaos Variant Targets Misconfigured Cloud Deployments, Adds SOCKS Proxy  – The Hacker News

Posted on April 8, 2026 By [email protected] (The Hacker News) No Comments on New Chaos Variant Targets Misconfigured Cloud Deployments, Adds SOCKS Proxy  – The Hacker News
New Chaos Variant Targets Misconfigured Cloud Deployments, Adds SOCKS Proxy  – The Hacker News
Attack Feeds

Cybersecurity researchers have flagged a new variant ofmalware called Chaosthat’scapable of hitting misconfigured cloud deployments, marking an expansion of the botnet’s targeting infrastructure. “Chaos malware is increasingly targeting misconfigured cloud deployments, expanding beyond its traditional focus on routers and edge devices,” Darktrace said in a new report.  – Read More  – The Hacker News 

Operation Masquerade: FBI Disrupts Russian Router Hacking Campaign  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on April 8, 2026 By Deeba Ahmed No Comments on Operation Masquerade: FBI Disrupts Russian Router Hacking Campaign  – Hackread – Cybersecurity News, Data Breaches, AI and More
Operation Masquerade: FBI Disrupts Russian Router Hacking Campaign  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Operation Masquerade: The FBI and DoJ disrupted a Russian GRU campaign that hijacked routers via DNS attacks to spy on users and steal credentials.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Masjesu Botnet Emerges as DDoS-for-Hire Service Targeting Global IoT Devices  – The Hacker News

Posted on April 8, 2026 By [email protected] (The Hacker News) No Comments on Masjesu Botnet Emerges as DDoS-for-Hire Service Targeting Global IoT Devices  – The Hacker News
Masjesu Botnet Emerges as DDoS-for-Hire Service Targeting Global IoT Devices  – The Hacker News
Attack Feeds

Cybersecurity researchers have lifted the curtain on a stealthy botnet that’s designed for distributed denial-of-service (DDoS) attacks. Called Masjesu, the botnet has been advertised via Telegram as a DDoS-for-hire service since it first surfaced in 2023. It’s capable of targeting a wide range of IoT devices, such as routers and gateways, spanning multiple architectures. “Built for  … Read More “Masjesu Botnet Emerges as DDoS-for-Hire Service Targeting Global IoT Devices  – The Hacker News” »

Hack-for-hire spyware campaign targets journalists in Middle East, North Africa  – CyberScoop

Posted on April 8, 2026 By Tim Starks No Comments on Hack-for-hire spyware campaign targets journalists in Middle East, North Africa  – CyberScoop
Hack-for-hire spyware campaign targets journalists in Middle East, North Africa  – CyberScoop
Attack Feeds

An apparent hack-for-hire campaign from a group with suspected Indian government connections targeted Middle Eastern and North African journalists and activists using spyware, three collaborating organizations said in reports published Wednesday. The attacks shared infrastructure that pointed to the advanced persistent threat group known as Bitter, which most frequently targets government, military, diplomatic and critical … Read More “Hack-for-hire spyware campaign targets journalists in Middle East, North Africa  – CyberScoop” »

Node.js Trust Falls: Dangerous Module Resolution on Windows  – Zero Day Initiative – Blog

Posted on April 8, 2026 By Bobby Gould and Michael DePlante No Comments on Node.js Trust Falls: Dangerous Module Resolution on Windows  – Zero Day Initiative – Blog
Node.js Trust Falls: Dangerous Module Resolution on Windows  – Zero Day Initiative – Blog
Attack Feeds

In September of 2024, ZDI received a vulnerability submission from an anonymous researcher affecting npm CLI that revealed a fundamental design issue in Node.js. This blog details how it continues to expose applications to local privilege escalation (LPE) attacks on Windows systems, including the Discord desktop app (CVE-2026-0776 0-Day), which remains unpatched and vulnerable. The … Read More “Node.js Trust Falls: Dangerous Module Resolution on Windows  – Zero Day Initiative – Blog” »

APT28 Deploys PRISMEX Malware in Campaign Targeting Ukraine and NATO Allies  – The Hacker News

Posted on April 8, 2026 By [email protected] (The Hacker News) No Comments on APT28 Deploys PRISMEX Malware in Campaign Targeting Ukraine and NATO Allies  – The Hacker News
APT28 Deploys PRISMEX Malware in Campaign Targeting Ukraine and NATO Allies  – The Hacker News
Attack Feeds

The Russian threat actor known as APT28 (aka Forest Blizzard and Pawn Storm) has been linked to a fresh spear-phishing campaign targeting Ukraine and its allies to deploy a previously undocumented malware suite codenamed PRISMEX. “PRISMEX combines advanced steganography, component object model (COM) hijacking, and legitimate cloud service abuse for command-and-control,” Trend Micro  – Read More  – … Read More “APT28 Deploys PRISMEX Malware in Campaign Targeting Ukraine and NATO Allies  – The Hacker News” »

Storm-1175 Deploys Medusa Ransomware Within 24 Hours of Flaw Disclosure  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on April 8, 2026 By Deeba Ahmed No Comments on Storm-1175 Deploys Medusa Ransomware Within 24 Hours of Flaw Disclosure  – Hackread – Cybersecurity News, Data Breaches, AI and More
Storm-1175 Deploys Medusa Ransomware Within 24 Hours of Flaw Disclosure  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Microsoft researchers have uncovered a fast-moving group, Storm-1175, launching high-speed Medusa ransomware attacks against healthcare and education sectors in the UK, US, and Australia by exploiting security flaws in as little as 24 hours.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Russian Forest Blizzard Hackers Hijack Home Routers for Global Spying  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on April 8, 2026 By Deeba Ahmed No Comments on Russian Forest Blizzard Hackers Hijack Home Routers for Global Spying  – Hackread – Cybersecurity News, Data Breaches, AI and More
Russian Forest Blizzard Hackers Hijack Home Routers for Global Spying  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Microsoft Threat Intelligence reveals how Russian hacking group Forest Blizzard uses home routers for DNS hijacking and spying.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Shrinking the IAM Attack Surface through Identity Visibility and Intelligence Platforms (IVIP)  – The Hacker News

Posted on April 8, 2026 By [email protected] (The Hacker News) No Comments on Shrinking the IAM Attack Surface through Identity Visibility and Intelligence Platforms (IVIP)  – The Hacker News
Shrinking the IAM Attack Surface through Identity Visibility and Intelligence Platforms (IVIP)  – The Hacker News
Attack Feeds

The Fragmented State of Modern Enterprise Identity Enterprise IAM is approaching a breaking point. As organizations scale, identity becomes increasingly fragmented across thousands of applications, decentralized teams, machine identities, and autonomous systems.  The result is Identity Dark Matter: identity activity that sits outside the visibility of centralized IAM and  – Read More  – The Hacker News 

Anthropic Launches Project Glasswing to Use AI to Find and Fix Critical Software Vulnerabilities –

Posted on April 8, 2026 By Joe-W No Comments on Anthropic Launches Project Glasswing to Use AI to Find and Fix Critical Software Vulnerabilities –
Anthropic Launches Project Glasswing to Use AI to Find and Fix Critical Software Vulnerabilities –
Privacy/Governance Feed

Anthropic launches Project Glasswing, using its Claude Mythos Preview AI to autonomously identify and fix undiscovered vulnerabilities in critical software – Read More  –  

Claude Discovers Apache ActiveMQ Bug Hidden for 13 Years –

Posted on April 8, 2026 By Joe-W No Comments on Claude Discovers Apache ActiveMQ Bug Hidden for 13 Years –
Claude Discovers Apache ActiveMQ Bug Hidden for 13 Years –
Privacy/Governance Feed

Anthropic’s Claude AI has helped researchers find a vulnerability in Apache ActiveMQ Classic – Read More  –  

US Thwarts DNS Hijacking Network Controlled by Russian APT28 Hackers –

Posted on April 8, 2026 By Joe-W No Comments on US Thwarts DNS Hijacking Network Controlled by Russian APT28 Hackers –
US Thwarts DNS Hijacking Network Controlled by Russian APT28 Hackers –
Privacy/Governance Feed

The FBI deployed a method to unplug US-based routers compromised by APT28 from the threat actor’s malicious network – Read More  –  

New ClickFix Attack Uses Node.js Malware via Tor to Steal Crypto  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on April 8, 2026 By Deeba Ahmed No Comments on New ClickFix Attack Uses Node.js Malware via Tor to Steal Crypto  – Hackread – Cybersecurity News, Data Breaches, AI and More
New ClickFix Attack Uses Node.js Malware via Tor to Steal Crypto  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Netskope Threat Labs report a new ClickFix attack using fake CAPTCHAs to deploy Tor-backed NodeJS malware and drain crypto wallets on Windows.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Anthropic’s Claude Mythos Finds Thousands of Zero-Day Flaws Across Major Systems  – The Hacker News

Posted on April 8, 2026 By [email protected] (The Hacker News) No Comments on Anthropic’s Claude Mythos Finds Thousands of Zero-Day Flaws Across Major Systems  – The Hacker News
Anthropic’s Claude Mythos Finds Thousands of Zero-Day Flaws Across Major Systems  – The Hacker News
Attack Feeds

Artificial Intelligence (AI) company Anthropic announced a new cybersecurity initiative called Project Glasswing that will use a preview version of its new frontier model, Claude Mythos, to find and address security vulnerabilities. The model will be used by a small set of organizations, including Amazon Web Services, Apple, Broadcom, Cisco, CrowdStrike,&  – Read More  – The Hacker News 

N. Korean Hackers Spread 1,700 Malicious Packages Across npm, PyPI, Go, Rust  – The Hacker News

Posted on April 8, 2026 By [email protected] (The Hacker News) No Comments on N. Korean Hackers Spread 1,700 Malicious Packages Across npm, PyPI, Go, Rust  – The Hacker News
N. Korean Hackers Spread 1,700 Malicious Packages Across npm, PyPI, Go, Rust  – The Hacker News
Attack Feeds

The North Korea-linked persistent campaign known as Contagious Interview has spread its tentacles by publishing malicious packages targeting the Go, Rust, and PHP ecosystems. “The threat actor’s packages were designed to impersonate legitimate developer tooling […], while quietly functioning as malware loaders, extending Contagious Interview’s established playbook into a coordinated  – Read More  – The Hacker News 

Iran‑Backed Threat Actors Hit US CNI Providers via Internet‑Facing OT Assets –

Posted on April 8, 2026 By Joe-W No Comments on Iran‑Backed Threat Actors Hit US CNI Providers via Internet‑Facing OT Assets –
Iran‑Backed Threat Actors Hit US CNI Providers via Internet‑Facing OT Assets –
Privacy/Governance Feed

CISA has revealed Iranian attacks causing disruption and financial loss at US critical infrastructure firms – Read More  –  

Posts pagination

Previous 1 … 18 19 20 … 40 Next
  • Attack Feeds
  • Privacy/Governance Feed
  • Gov/ISAC Feeds
  • Alert Feeds
  • Privacy Policy
  • Wagner Cybersecurity

Copyright © 2026 AttackFeed by Joe Wagner.

Theme: Oceanly News Dark by ScriptsTown

We are using cookies for analytics purposes only.  We do not store, track or sell user information.

You can find out more about which cookies we are using or switch them off in .

AttackFeed by Joe Wagner
Powered by  GDPR Cookie Compliance
Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

Strictly Necessary Cookies

Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.