A Chinese-speaking threat actor has been exploiting vulnerabilities in ZyXEL GS1900 Smart Managed Switches and WordPress to ...
CISA added Zyxel CVE-2026-7273 to KEV after active exploitation, while Arctic Wolf reported attacks on a Veeam Windows flaw.
Blackpoint uncovers ChainScript, a Node.js RAT that queries a Polygon smart contract to find and rotate its command server.
Hackers claim breach of Russia's election commission; OpenAI was behind the RubyGems May incident; Gyazo and Revolut got ...
WordPress Click2Shell vulnerability lets attackers silently install themes on any admin’s site via a single crafted link, ...
A Brevo supply-chain attack used compromised Cloudflare access to inject malware into websites, potentially affecting over ...
The BrokenPipe exploit targets steamservice.exe, a Windows service installed with Valve's Steam client that runs with SYSTEM ...
Explore the latest news, real-world incidents, expert analysis, and trends in Vulnerability — only on The Hacker News, the ...
Attackers are exploiting MikroTik routers by accessing their Secure Shell (SSH) remote service from the internet, gaining full administrative control without authentication, according to CERT Polska’s ...
Contractors would be allowed to conduct military hacking operations with US government approval under a Senate defense bill that would mark the first time Congress has explicitly authorized the ...
A critical authentication bypass vulnerability (CVE-2026-82329) in JFrog Artifactory is being exploited in attacks to create tokens that provide administrative access.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results