Skip to content
AttackFeed by Joe Wagner | Cybersecurity News from Across the Internet

AttackFeed by Joe Wagner

Cybersecurity News from Across the Internet

  • Attack/News Feeds
  • Gov Alerts/ISAC Feeds
  • Vulnerability Alerts
  • Privacy/Governance Feeds
  • Fraud Feeds
  • iOS App
  • Android App
Attack Feeds
Telegram Increasingly Used to Sell Access, Malware and Stolen Logs  – Hackread – Cybersecurity News, Data Breaches, AI and More
March 4, 2026
AttackFeed by Joe Wagner | Why Outdated Maintenance Software Is a Growing Ransomware Risk  - Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds
Why Outdated Maintenance Software Is a Growing Ransomware Risk  – Hackread – Cybersecurity News, Data Breaches, AI and More
May 7, 2026
AttackFeed by Joe Wagner | Fake Laravel Packages on Packagist Deploy RAT on Windows, macOS, and Linux  - The Hacker News
Attack Feeds
Fake Laravel Packages on Packagist Deploy RAT on Windows, macOS, and Linux  – The Hacker News
March 4, 2026
AttackFeed by Joe Wagner | Ivanti, Fortinet, SAP, VMware, n8n Patch RCE, SQL Injection, Privilege Escalation Flaws  - The Hacker News
Attack Feeds
Ivanti, Fortinet, SAP, VMware, n8n Patch RCE, SQL Injection, Privilege Escalation Flaws  – The Hacker News
May 18, 2026
AttackFeed by Joe Wagner | Second iOS exploit kit emerges from suspected Russian hackers using possible U.S. government-developed tools  - CyberScoop
Attack Feeds
Second iOS exploit kit emerges from suspected Russian hackers using possible U.S. government-developed tools  – CyberScoop
March 18, 2026
AttackFeed by Joe Wagner | LuxSci Launches Enterprise-Grade HIPAA-Compliant Email Security for Mid-Sized Healthcare Organizations  - Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds
LuxSci Launches Enterprise-Grade HIPAA-Compliant Email Security for Mid-Sized Healthcare Organizations  – Hackread – Cybersecurity News, Data Breaches, AI and More
May 5, 2026

AI Agents: The Next Wave Identity Dark Matter – Powerful, Invisible, and Unmanaged  – The Hacker News

Posted on March 3, 2026 By [email protected] (The Hacker News)
AI Agents: The Next Wave Identity Dark Matter – Powerful, Invisible, and Unmanaged  – The Hacker News
Attack Feeds

The Rise of MCPs in the Enterprise The Model Context Protocol (MCP) is quickly becoming a practical way to push LLMs from “chat” into real work. By providing structured access to applications, APIs, and data, MCP enables prompt-driven AI agents that can retrieve information, take action, and automate end-to-end business workflows across the enterprise. This … Read More “AI Agents: The Next Wave Identity Dark Matter – Powerful, Invisible, and Unmanaged  – The Hacker News” »

Huge “Shadow Layer” of Organizations Hit by Supply Chain Attacks –

Posted on March 3, 2026 By Joe-W
Huge “Shadow Layer” of Organizations Hit by Supply Chain Attacks –
Privacy/Governance Feed

Black Kite reveals 26,000 unnamed corporate victims linked to 136 third-party breaches – Read More  –  

Microsoft Warns OAuth Redirect Abuse Delivers Malware to Government Targets  – The Hacker News

Posted on March 3, 2026 By [email protected] (The Hacker News)
Microsoft Warns OAuth Redirect Abuse Delivers Malware to Government Targets  – The Hacker News
Attack Feeds

Microsoft on Monday warned of phishing campaigns that employ phishing emails and OAuth URL redirection mechanisms to bypass conventional phishing defenses implemented in email and browsers. The activity, the company said, targets government and public-sector organizations with the end goal of redirecting victims to attacker-controlled infrastructure without stealing their tokens. It described  – Read More  … Read More “Microsoft Warns OAuth Redirect Abuse Delivers Malware to Government Targets  – The Hacker News” »

Iranian Cyber Threat Actor Targets Iraqi Government Officials in AI-Powered Campaign –

Posted on March 3, 2026 By Joe-W
Iranian Cyber Threat Actor Targets Iraqi Government Officials in AI-Powered Campaign –
Privacy/Governance Feed

Zscaler ThreatLabz assessed with medium to high confidence that an Iranian adversary targeted Iraq’s Ministry of Foreign Affairs in a new cyber-attack – Read More  –  

SloppyLemming Targets Pakistan and Bangladesh Governments Using Dual Malware Chains  – The Hacker News

Posted on March 3, 2026 By [email protected] (The Hacker News)
SloppyLemming Targets Pakistan and Bangladesh Governments Using Dual Malware Chains  – The Hacker News
Attack Feeds

The threat activity cluster known as SloppyLemming has been attributed to a fresh set of attacks targeting government entities and critical infrastructure operators in Pakistan and Bangladesh. The activity, per Arctic Wolf, took place between January 2025 and January 2026. It involves the use of two distinct attack chains to deliver malware families tracked as … Read More “SloppyLemming Targets Pakistan and Bangladesh Governments Using Dual Malware Chains  – The Hacker News” »

Google Confirms CVE-2026-21385 in Qualcomm Android Component Exploited  – The Hacker News

Posted on March 3, 2026 By [email protected] (The Hacker News)
Google Confirms CVE-2026-21385 in Qualcomm Android Component Exploited  – The Hacker News
Attack Feeds

Google on Monday disclosed that a high-severity security flaw impacting an open-source Qualcomm component used in Android devices has been exploited in the wild. The vulnerability in question is CVE-2026-21385 (CVSS score: 7.8), a buffer over-read in the Graphics component. “Memory corruption when adding user-supplied data without checking available buffer space,” Qualcomm said in an … Read More “Google Confirms CVE-2026-21385 in Qualcomm Android Component Exploited  – The Hacker News” »

SloppyLemming Targets Pakistan and Bangladesh Governments Using Dual Malware Chains  – The Hacker News

Posted on March 3, 2026 By [email protected] (The Hacker News)
SloppyLemming Targets Pakistan and Bangladesh Governments Using Dual Malware Chains  – The Hacker News
Attack Feeds

The threat activity cluster known as SloppyLemming has been attributed to a fresh set of attacks targeting government entities and critical infrastructure operators in Pakistan and Bangladesh. The activity, per Arctic Wolf, took place between January 2025 and January 2026. It involves the use of two distinct attack chains to deliver malware families tracked as … Read More “SloppyLemming Targets Pakistan and Bangladesh Governments Using Dual Malware Chains  – The Hacker News” »

DPDP Act Phase 1: 10 Security Safeguards Every CISO Must Implement – JISA Softech Pvt Ltd

Posted on March 3, 2026 By Aakash Chaudhary
DPDP Act Phase 1: 10 Security Safeguards Every CISO Must Implement – JISA Softech Pvt Ltd
Privacy/Governance Feed

The Digital Personal Data Protection Act, 2023 (DPDP Act) in India is a structural change in the manner in… The post DPDP Act Phase 1: 10 Security Safeguards Every CISO Must Implement appeared first on JISA Softech Pvt Ltd.  – Read More  – JISA Softech Pvt Ltd 

Popular Iranian App BadeSaba was Hacked to Send “Help Is on the Way” Alerts  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on March 2, 2026 By Deeba Ahmed
Popular Iranian App BadeSaba was Hacked to Send “Help Is on the Way” Alerts  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Hackers took over Iran’s BadeSaba Calendar prayer app, sending “Help Is on the Way” alerts and messages urging soldiers to lay down weapons.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Google addresses actively exploited Qualcomm zero-day in fresh batch of 129 Android vulnerabilities  – CyberScoop

Posted on March 2, 2026 By Matt Kapko
Google addresses actively exploited Qualcomm zero-day in fresh batch of 129 Android vulnerabilities  – CyberScoop
Attack Feeds

Google disclosed one actively exploited zero-day vulnerability Monday, warning that the high-severity defect affecting an open-source Qualcomm display component for Android devices “may be under limited, targeted exploitation.” The memory-corruption vulnerability — CVE-2026-21385 — which Google’s Android security team reported to Qualcomm Dec. 18, affects 234 chipsets, Qualcomm said in a security bulletin. Qualcomm said … Read More “Google addresses actively exploited Qualcomm zero-day in fresh batch of 129 Android vulnerabilities  – CyberScoop” »

The FBI’s cyber chief is using Winter SHIELD to accelerate China prep, threat intelligence sharing  – CyberScoop

Posted on March 2, 2026 By Tim Starks
The FBI’s cyber chief is using Winter SHIELD to accelerate China prep, threat intelligence sharing  – CyberScoop
Attack Feeds

The FBI’s cyber chief is prioritizing preparation for stepped-up Chinese threats, enhanced confrontation of adversaries in cyberspace and quicker intelligence sharing with industry as the bureau enters the second and final month of a unique cybersecurity awareness campaign. Brett Leatherman, who took over as assistant director of the FBI’s cyber division last summer, listed those … Read More “The FBI’s cyber chief is using Winter SHIELD to accelerate China prep, threat intelligence sharing  – CyberScoop” »

Google Develops Merkle Tree Certificates to Enable Quantum-Resistant HTTPS in Chrome  – The Hacker News

Posted on March 2, 2026 By [email protected] (The Hacker News)
Google Develops Merkle Tree Certificates to Enable Quantum-Resistant HTTPS in Chrome  – The Hacker News
Attack Feeds

Google has announced a new program in its Chrome browser to ensure that HTTPS certificates are secure against the future risk posed by quantum computers. “To ensure the scalability and efficiency of the ecosystem, Chrome has no immediate plan to add traditional X.509 certificates containing post-quantum cryptography to the Chrome Root Store,” the Chrome Secure … Read More “Google Develops Merkle Tree Certificates to Enable Quantum-Resistant HTTPS in Chrome  – The Hacker News” »

New Chrome Vulnerability Let Malicious Extensions Escalate Privileges via Gemini Panel  – The Hacker News

Posted on March 2, 2026 By [email protected] (The Hacker News)
New Chrome Vulnerability Let Malicious Extensions Escalate Privileges via Gemini Panel  – The Hacker News
Attack Feeds

Cybersecurity researchers have disclosed details of a now-patched security flaw in Google Chrome that could have permitted attackers to escalate privileges and gain access to local files on the system. The vulnerability, tracked as CVE-2026-0628 (CVSS score: 8.8), has been described as a case of insufficient policy enforcement in the WebView tag. It was patched … Read More “New Chrome Vulnerability Let Malicious Extensions Escalate Privileges via Gemini Panel  – The Hacker News” »

Expect Iran to Launch Cyber-Attacks Globally, Warns Google Head of Threat Intel –

Posted on March 2, 2026 By Joe-W
Expect Iran to Launch Cyber-Attacks Globally, Warns Google Head of Threat Intel –
Privacy/Governance Feed

John Hultquist suggests “aggressive” Iranian cyber attackers will target the US and its Gulf allies with plausibly deniable ransomware attacks, hacktivist campaigns and more – Read More  –  

Chrome Unveils Plan For Quantum-Safe HTTPS Certificates –

Posted on March 2, 2026 By Joe-W
Chrome Unveils Plan For Quantum-Safe HTTPS Certificates –
Privacy/Governance Feed

Google Chrome initiates quantum-resistant measures via Merkle Tree Certificates to secure HTTPS – Read More  –  

Criminal IP to Present Decision-Ready Threat Intelligence at RSAC™ 2026  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on March 2, 2026 By CyberNewswire
Criminal IP to Present Decision-Ready Threat Intelligence at RSAC™ 2026  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Torrance, United States / California, 2nd March 2026, CyberNewswire  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Phishing Pages for Zoom and Google Meet Install Teramind Monitoring Tool  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on March 2, 2026 By Waqas
Phishing Pages for Zoom and Google Meet Install Teramind Monitoring Tool  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Fake Zoom and Google Meet pages trick users into installing Teramind monitoring software on Windows systems through phishing links and fake updates.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Hybrid Middle East Conflict Triggers Surge in Global Cyber Activity –

Posted on March 2, 2026 By Joe-W
Hybrid Middle East Conflict Triggers Surge in Global Cyber Activity –
Privacy/Governance Feed

Military strikes in the Middle East escalate cyber ops, raising spillover risks globally for firms – Read More  –  

⚡ Weekly Recap: SD-WAN 0-Day, Critical CVEs, Telegram Probe, Smart TV Proxy SDK and More  – The Hacker News

Posted on March 2, 2026 By [email protected] (The Hacker News)
⚡ Weekly Recap: SD-WAN 0-Day, Critical CVEs, Telegram Probe, Smart TV Proxy SDK and More  – The Hacker News
Attack Feeds

This week is not about one big event. It shows where things are moving. Network systems, cloud setups, AI tools, and common apps are all being pushed in different ways. Small gaps in access control, exposed keys, and normal features are being used as entry points. The pattern becomes clear only when you see everything … Read More “⚡ Weekly Recap: SD-WAN 0-Day, Critical CVEs, Telegram Probe, Smart TV Proxy SDK and More  – The Hacker News” »

Pakistan’s Top News Channels Hacked and Hijacked With Anti-Military Messages  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on March 2, 2026 By Waqas
Pakistan’s Top News Channels Hacked and Hijacked With Anti-Military Messages  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Major Pakistani TV channels, including Geo News and ARY News, were hit by a coordinated cyberattack on 1 March 2026. Hackers took control of live satellite feeds to display unauthorised messages. Read more about the breach, the regional impact, and the reported counter-cyber response.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI … Read More “Pakistan’s Top News Channels Hacked and Hijacked With Anti-Military Messages  – Hackread – Cybersecurity News, Data Breaches, AI and More” »

6 Ways Agentic AI Changes How Systems Act and Adapt  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on March 2, 2026 By Owais Sultan
6 Ways Agentic AI Changes How Systems Act and Adapt  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Learn how agentic AI changes system behavior in production environments through supervised fine-tuning, structured oversight, and lifecycle governance to improve reliability, manage risk, and support accountable deployment.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

How to Protect Your SaaS from Bot Attacks with SafeLine WAF  – The Hacker News

Posted on March 2, 2026 By [email protected] (The Hacker News)
How to Protect Your SaaS from Bot Attacks with SafeLine WAF  – The Hacker News
Attack Feeds

Most SaaS teams remember the day their user traffic started growing fast. Few notice the day bots started targeting them. On paper, everything looks great: more sign-ups, more sessions, more API calls. But in reality, something feels off: Sign-ups increase, but users aren’t activating. Server costs rise faster than revenue. Logs are filled with repeated … Read More “How to Protect Your SaaS from Bot Attacks with SafeLine WAF  – The Hacker News” »

Alert: NCSC advises UK organisations to take action following conflict in the Middle East  – All Feed

Posted on March 2, 2026 By Joe-W
Gov/ISAC Feeds

In response to the evolving events in the Middle East, the NCSC is advising that UK organisations review their cyber security posture. – Read More – All Feed 

ClawJacked Bug Enables Covert AI Agent Hijacking –

Posted on March 2, 2026 By Joe-W
ClawJacked Bug Enables Covert AI Agent Hijacking –
Privacy/Governance Feed

Oasis Security reveals how a new ClawJacked vulnerability could allow attackers to silently take over a victim’s OpenClaw agent – Read More  –  

APT28 Tied to CVE-2026-21513 MSHTML 0-Day Exploited Before Feb 2026 Patch Tuesday  – The Hacker News

Posted on March 2, 2026 By [email protected] (The Hacker News)
APT28 Tied to CVE-2026-21513 MSHTML 0-Day Exploited Before Feb 2026 Patch Tuesday  – The Hacker News
Attack Feeds

A recently disclosed security flaw patched by Microsoft may have been exploited by the Russia-linked state-sponsored threat actor known as APT28, according to new findings from Akamai. The vulnerability in question is CVE-2026-21513 (CVSS score: 8.8), a high-severity security feature bypass affecting the MSHTML Framework. “Protection mechanism failure in MSHTML Framework allows an unauthorized  – … Read More “APT28 Tied to CVE-2026-21513 MSHTML 0-Day Exploited Before Feb 2026 Patch Tuesday  – The Hacker News” »

From fake nudes to fake quotes: AI deepfakes plagued Olympic athletes  – CyberScoop

Posted on March 2, 2026 By djohnson
From fake nudes to fake quotes: AI deepfakes plagued Olympic athletes  – CyberScoop
Attack Feeds

While competing for medals and glory in Milan, Italy, U.S. Olympic athletes experienced something that is fast becoming a regular feature of modern public life: the widespread use of AI tools by politicians, trolls and sexual harassers to manipulate their images and voices Users on 4chan and other sites quickly generated and shared “nudified” or … Read More “From fake nudes to fake quotes: AI deepfakes plagued Olympic athletes  – CyberScoop” »

How ‘silent probing’ can make your security playbook a liability  – CyberScoop

Posted on March 2, 2026 By Greg Otto
How ‘silent probing’ can make your security playbook a liability  – CyberScoop
Attack Feeds

For years, cyberattacks followed a familiar pattern: reconnaissance, exploitation, persistence, impact. Defenders built their strategies around that cycle, patching vulnerabilities, monitoring indicators, and working to reduce dwell time. But a quieter shift is underway. Today’s most sophisticated adversaries are using AI to study how organizations defend themselves. They run what we call “silent probing campaigns:” … Read More “How ‘silent probing’ can make your security playbook a liability  – CyberScoop” »

APT28 Tied to CVE-2026-21513 MSHTML 0-Day Exploited Before Feb 2026 Patch Tuesday  – The Hacker News

Posted on March 2, 2026 By Joe-W
Attack Feeds

A recently disclosed security flaw patched by Microsoft may have been exploited by the Russia-linked state-sponsored threat actor known as APT28, according to new findings from Akamai. The vulnerability in question is CVE-2026-21513 (CVSS score: 8.8), a high-severity security feature bypass affecting the MSHTML Framework. “Protection mechanism failure in MSHTML Framework allows an unauthorized  – … Read More “APT28 Tied to CVE-2026-21513 MSHTML 0-Day Exploited Before Feb 2026 Patch Tuesday  – The Hacker News” »

DoJ Seizes $61 Million in Tether Linked to Pig Butchering Crypto Scams  – The Hacker News

Posted on March 2, 2026 By [email protected] (The Hacker News)
DoJ Seizes $61 Million in Tether Linked to Pig Butchering Crypto Scams  – The Hacker News
Attack Feeds

The U.S. Department of Justice (DoJ) this week announced the seizure of $61 million worth of Tether that were allegedly associated with bogus cryptocurrency schemes known as pig butchering. The confiscated funds were traced to cryptocurrency addresses used for the laundering of criminally derived proceeds stolen from victims of cryptocurrency investment scams, the department added. … Read More “DoJ Seizes $61 Million in Tether Linked to Pig Butchering Crypto Scams  – The Hacker News” »

Exploitation of Cisco Catalyst SD-WAN  – All Feed

Posted on March 2, 2026 By Joe-W
Gov/ISAC Feeds

Agencies strongly encourage immediate investigation of potential compromise of Cisco Catalyst SD-WAN. – Read More – All Feed 

Ransomware Payments Decline 8% as Attacks Surge 50% –

Posted on March 2, 2026 By Joe-W
Ransomware Payments Decline 8% as Attacks Surge 50% –
Privacy/Governance Feed

Chainalysis reveals a big surge in median ransomware payment size in 2025 despite overall drop in criminal revenue – Read More  –  

Link11 Releases European Cyber Report 2026: DDoS Attacks Become a Constant Threat  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on March 2, 2026 By CyberNewswire
Link11 Releases European Cyber Report 2026: DDoS Attacks Become a Constant Threat  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Frankfurt am Main, Germany, 2nd March 2026, CyberNewswire  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

North Korean Hackers Publish 26 npm Packages Hiding Pastebin C2 for Cross-Platform RAT  – The Hacker News

Posted on March 2, 2026 By [email protected] (The Hacker News)
North Korean Hackers Publish 26 npm Packages Hiding Pastebin C2 for Cross-Platform RAT  – The Hacker News
Attack Feeds

Cybersecurity researchers have disclosed a new iteration of the ongoing Contagious Interview campaign, where the North Korean threat actors have published a set of 26 malicious packages to the npm registry. The packages masquerade as developer tools, but contain functionality to extract the actual command-and-control (C2) by using seemingly harmless Pastebin content as a dead … Read More “North Korean Hackers Publish 26 npm Packages Hiding Pastebin C2 for Cross-Platform RAT  – The Hacker News” »

Fake Xeno and Roblox Utilities Used to Install Windows RAT, Microsoft Warns  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on March 1, 2026 By Waqas
Fake Xeno and Roblox Utilities Used to Install Windows RAT, Microsoft Warns  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Fake Xeno and Roblox gaming tools are spreading a Windows RAT (remote access trojan) using PowerShell and LOLBins, Microsoft Threat Intelligence warns.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

ClawJacked Flaw Lets Malicious Sites Hijack Local OpenClaw AI Agents via WebSocket  – The Hacker News

Posted on February 28, 2026 By [email protected] (The Hacker News)
ClawJacked Flaw Lets Malicious Sites Hijack Local OpenClaw AI Agents via WebSocket  – The Hacker News
Attack Feeds

OpenClaw has fixed a high-severity security issue that, if successfully exploited, could have allowed a malicious website to connect to a locally running artificial intelligence (AI) agent and take over control. “Our vulnerability lives in the core system itself – no plugins, no marketplace, no user-installed extensions – just the bare OpenClaw gateway, running exactly … Read More “ClawJacked Flaw Lets Malicious Sites Hijack Local OpenClaw AI Agents via WebSocket  – The Hacker News” »

5 IoT Vulnerabilities That Stop Projects and How to Avoid Them  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on February 28, 2026 By Owais Sultan
5 IoT Vulnerabilities That Stop Projects and How to Avoid Them  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Stop the 75% failure rate. Learn which device vulnerabilities stall deployments and the exact fixes that get IoT projects to production.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Who is the Kimwolf Botmaster “Dort”?  – Krebs on Security

Posted on February 28, 2026 By BrianKrebs
Who is the Kimwolf Botmaster “Dort”?  – Krebs on Security
Attack Feeds

In early January 2026, KrebsOnSecurity revealed how a security researcher disclosed a vulnerability that was used to build Kimwolf, the world’s largest and most disruptive botnet. Since then, the person in control of Kimwolf — who goes by the handle “Dort” — has coordinated a barrage of distributed denial-of-service (DDoS), doxing and email flooding attacks … Read More “Who is the Kimwolf Botmaster “Dort”?  – Krebs on Security” »

Thousands of Public Google Cloud API Keys Exposed with Gemini Access After API Enablement  – The Hacker News

Posted on February 28, 2026 By [email protected] (The Hacker News)
Thousands of Public Google Cloud API Keys Exposed with Gemini Access After API Enablement  – The Hacker News
Attack Feeds

New research has found that Google Cloud API keys, typically designated as project identifiers for billing purposes, could be abused to authenticate to sensitive Gemini endpoints and access private data. The findings come from Truffle Security, which discovered nearly 3,000 Google API keys (identified by the prefix “AIza”) embedded in client-side code to provide Google-related … Read More “Thousands of Public Google Cloud API Keys Exposed with Gemini Access After API Enablement  – The Hacker News” »

Pentagon Designates Anthropic Supply Chain Risk Over AI Military Dispute  – The Hacker News

Posted on February 28, 2026 By [email protected] (The Hacker News)
Pentagon Designates Anthropic Supply Chain Risk Over AI Military Dispute  – The Hacker News
Attack Feeds

Anthropic on Friday hit back after U.S. Secretary of Defense Pete Hegseth directed the Pentagon to designate the artificial intelligence (AI) upstart as a “supply chain risk.” “This action follows months of negotiations that reached an impasse over two exceptions we requested to the lawful use of our AI model, Claude: the mass domestic surveillance … Read More “Pentagon Designates Anthropic Supply Chain Risk Over AI Military Dispute  – The Hacker News” »

ShinyHunters Leak 2M Records From Dutch Telecom Odido, Claim 21M Stolen  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on February 27, 2026 By Deeba Ahmed
ShinyHunters Leak 2M Records From Dutch Telecom Odido, Claim 21M Stolen  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

ShinyHunters hackers leak 2 million records from Dutch telecom Odido after ransom refusal, claiming up to 21 million customer records were stolen in the breach.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

ClawJacked Vulnerability in OpenClaw Could Let Websites Hijack AI Agents  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on February 27, 2026 By Deeba Ahmed
ClawJacked Vulnerability in OpenClaw Could Let Websites Hijack AI Agents  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Is your AI assistant safe? Oasis Security researchers have found a critical ClawJacked vulnerability in OpenClaw that allows hackers to hijack AI agents through a simple browser tab.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

900+ Sangoma FreePBX Instances Compromised in Ongoing Web Shell Attacks  – The Hacker News

Posted on February 27, 2026 By [email protected] (The Hacker News)
900+ Sangoma FreePBX Instances Compromised in Ongoing Web Shell Attacks  – The Hacker News
Attack Feeds

The Shadowserver Foundation has revealed that over 900 Sangoma FreePBX instances still remain infected with web shells as part of attacks that exploited a command injection vulnerability starting in December 2025. Of these, 401 instances are located in the U.S., followed by 51 in Brazil, 43 in Canada, 40 in Germany, and 36 in France. … Read More “900+ Sangoma FreePBX Instances Compromised in Ongoing Web Shell Attacks  – The Hacker News” »

Malicious Go Crypto Module Steals Passwords, Deploys Rekoobe Backdoor  – The Hacker News

Posted on February 27, 2026 By [email protected] (The Hacker News)
Malicious Go Crypto Module Steals Passwords, Deploys Rekoobe Backdoor  – The Hacker News
Attack Feeds

Cybersecurity researchers have disclosed details of a malicious Go module that’s designed to harvest passwords, create persistent access via SSH, and deliver a Linux backdoor named Rekoobe. The Go module, github[.]com/xinfeisoft/crypto, impersonates the legitimate “golang.org/x/crypto” codebase, but injects malicious code that’s responsible for exfiltrating secrets entered via terminal password  – Read More  – The Hacker … Read More “Malicious Go Crypto Module Steals Passwords, Deploys Rekoobe Backdoor  – The Hacker News” »

North Korea’s APT37 Expands Toolkit to Breach Air-Gapped Networks –

Posted on February 27, 2026 By Joe-W
North Korea’s APT37 Expands Toolkit to Breach Air-Gapped Networks –
Privacy/Governance Feed

The security researchers from Zscaler ThreatLabz have also discovered five new tools deployed by the North Korean hacking group – Read More  –  

ScarCruft Uses Zoho WorkDrive and USB Malware to Breach Air-Gapped Networks  – The Hacker News

Posted on February 27, 2026 By [email protected] (The Hacker News)
ScarCruft Uses Zoho WorkDrive and USB Malware to Breach Air-Gapped Networks  – The Hacker News
Attack Feeds

The North Korean threat actor known as ScarCruft has been attributed to a fresh set of tools, including a backdoor that uses Zoho WorkDrive for command-and-control (C2) communications to fetch more payloads and an implant that uses removable media to relay commands and breach air-gapped networks. The campaign, codenamed Ruby Jumper by Zscaler ThreatLabz, involves … Read More “ScarCruft Uses Zoho WorkDrive and USB Malware to Breach Air-Gapped Networks  – The Hacker News” »

UK Vulnerability Monitoring Service Cuts Unresolved Security Flaws by 75% –

Posted on February 27, 2026 By Joe-W
UK Vulnerability Monitoring Service Cuts Unresolved Security Flaws by 75% –
Privacy/Governance Feed

The UK government says its new Vulnerability Monitoring Service has cut unresolved security flaws by 75% and reduced cyber-attack fix times from nearly two months to just over a week – Read More  –  

SpaceX IPO Date Explained: Key Insights Investors Need to Know  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on February 27, 2026 By Owais Sultan
SpaceX IPO Date Explained: Key Insights Investors Need to Know  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Guide to the SpaceX IPO date, company profile, pricing method, risks, and how investors can prepare to buy shares when the company goes public soon.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

Hackers Use 1Campaign to Hide Malicious Ads From Google Reviewers  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on February 27, 2026 By Deeba Ahmed
Hackers Use 1Campaign to Hide Malicious Ads From Google Reviewers  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Varonis Threat Labs reveals 1Campaign, a platform used to trick Google Ads and hide phishing pages. Learn how this cloaking tool targets real users while evading security.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

‘Project Compass’ Cracks Down on ‘The Com’: 30 Members of Notorious Cybercrime Gang Arrested –

Posted on February 27, 2026 By Joe-W
‘Project Compass’ Cracks Down on ‘The Com’: 30 Members of Notorious Cybercrime Gang Arrested –
Privacy/Governance Feed

International law enforcement operation led by Europol targets network of teenagers and young adults involved in ransomware attacks, extortion and other crimes – Read More  –  

Trojanized Gaming Tools Spread Java-Based RAT via Browser and Chat Platforms  – The Hacker News

Posted on February 27, 2026 By [email protected] (The Hacker News)
Trojanized Gaming Tools Spread Java-Based RAT via Browser and Chat Platforms  – The Hacker News
Attack Feeds

Threat actors are luring unsuspecting users into running trojanized gaming utilities that are distributed via browsers and chat platforms to distribute a remote access trojan (RAT). “A malicious downloader staged a portable Java runtime and executed a malicious Java archive (JAR) file named jd-gui.jar,” the Microsoft Threat Intelligence team said in a post on X. … Read More “Trojanized Gaming Tools Spread Java-Based RAT via Browser and Chat Platforms  – The Hacker News” »

Posts pagination

Previous 1 … 32 33 34 … 40 Next
  • Attack Feeds
  • Privacy/Governance Feed
  • Gov/ISAC Feeds
  • Alert Feeds
  • Privacy Policy
  • Wagner Cybersecurity

Copyright © 2026 AttackFeed by Joe Wagner.

Theme: Oceanly News Dark by ScriptsTown

We are using cookies for analytics purposes only.  We do not store, track or sell user information.

You can find out more about which cookies we are using or switch them off in .

AttackFeed by Joe Wagner
Powered by  GDPR Cookie Compliance
Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

Strictly Necessary Cookies

Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.