Stay Informed

Cybersecurity News

Home / News

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

The Hacker News
The Hacker News Breaches & leaks

UNC1069 Social Engineering of Axios Maintainer Led to npm Supply Chain Attack

The maintainer of the Axios npm package has confirmed that the supply chain compromise was the result of a highly-targeted social engineering campaign orchestr…

The Hacker News
The Hacker News Breaches & leaks

Why Third-Party Risk Is the Biggest Gap in Your Clients' Security Posture

The next major breach hitting your clients probably won't come from inside their walls. It'll come through a vendor they trust, a SaaS tool their finance team …

The Hacker News
The Hacker News

Drift Loses $285 Million in Durable Nonce Social Engineering Attack Linked to DPRK

Solana-based decentralized exchange Drift has confirmed that attackers drained about $285 million from the platform during a security incident that took place …

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

Long-Term Linux Support Isnt Free: The Security Tradeoffs Behind 14-Year Lifecycles

Upgrading an operating system sounds simple until you try to do it in a highly regulated environment. In a bank or a hospital, a major OS migration isn't a qui…

Linux

The Hacker News
The Hacker News

CERT-UA Impersonation Campaign Spread AGEWHEEZE Malware to 1 Million Emails

The Computer Emergency Response Team of Ukraine (CERT-UA) has disclosed details of a new phishing campaign in which the cybersecurity agency itself was imperso…

The Hacker News
The Hacker News Alerts

Microsoft Warns of WhatsApp-Delivered VBS Malware Hijacking Windows via UAC Bypass

Microsoft is calling attention to a new campaign that has leveraged WhatsApp messages to distribute malicious Visual Basic Script (VBS) files.The activity, beg…

Windows

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

The Two-Person Wall: Why the Linux Backbone is More Fragile Than You Think

Ever wonder what happens to a piece of software when the people who wrote it just stop showing up? In the industry, we call this the bus factor. It is a morbid…

Linux

The Hacker News
The Hacker News Breaches & leaks

Google Attributes Axios npm Supply Chain Attack to North Korean Group UNC1069

Google has formally attributed the supply chain compromise of the popular Axios npm package to a financially motivated North Korean threat activity cluster tra…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

CI/CD Pipelines Vulnerabilities in Trusted Execution Paths March 2026

Time and time again, Linux systems execute attacker-controlled code during normal operation, and nothing in the system reports it as a failure.Security models …

Linux

The Hacker News
The Hacker News Breaches & leaks

Vertex AI Vulnerability Exposes Google Cloud Data and Private Artifacts

Cybersecurity researchers have disclosed a security "blind spot" in Google Cloud's Vertex AI platform that could allow artificial intelligence (AI) agents to b…

Google Cloud Palo Alto

The Hacker News
The Hacker News

Silver Fox Expands Asia Cyber Campaign with AtlasCross RAT and Fake Domains

Chinese-speaking users are the target of an active campaign that uses typosquatted domains impersonating trusted software brands to deliver a previously undocu…

VPN

The Hacker News
The Hacker News Breaches & leaks

Axios Supply Chain Attack Pushes Cross-Platform RAT via Compromised npm Account

The popular HTTP client known as Axios has suffered a supply chain attack after two newly published versions of the npm package introduced a malicious dependen…

Linux Windows Apple

The Hacker News
The Hacker News Breaches & leaks

OpenAI Patches ChatGPT Data Exfiltration Flaw and Codex GitHub Token Vulnerability

A previously unknown vulnerability in OpenAI ChatGPT allowed sensitive conversation data to be exfiltrated without user knowledge or consent, according to new …

GitHub

The Hacker News
The Hacker News

DeepLoad Malware Uses ClickFix and WMI Persistence to Steal Browser Credentials

A new campaign has leveraged the ClickFix social engineering tactic as a way to distribute a previously undocumented malware loader referred to as DeepLoad."It…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

FortiClient EMS SQL Injection Risk on Linux Systems CVE-2026-21643

One unauthenticated HTTP request is all it takes. From there, attackers can move from the edge straight into your internal network, operating from a system you…

Linux Fortinet

The Hacker News
The Hacker News

Russian CTRL Toolkit Delivered via Malicious LNK Files Hijacks RDP via FRP Tunnels

Cybersecurity researchers have discovered a remote access toolkit of Russian-origin that's distributed via malicious Windows shortcut (LNK) files that are disg…

Windows

The Hacker News
The Hacker News

Three China-Linked Clusters Target Southeast Asian Government in 2025 Cyber Campaign

Three threat activity clusters aligned with China have targeted a government organization in Southeast Asia as part of what has been described as a "complex an…

The Hacker News
The Hacker News Breaches & leaks

Iran-Linked Hackers Breach FBI Director’s Personal Email, Hit Stryker With Wiper Attack

Threat actors with ties to Iran successfully broke into the personal email account of Kash Patel, the director of the U.S. Federal Bureau of Investigation (FBI…

The Hacker News
The Hacker News Breaches & leaks

TeamPCP Pushes Malicious Telnyx Versions to PyPI, Hides Stealer in WAV Files

TeamPCP, the threat actor behind the supply chain attack targeting Trivy, KICS, and litellm, has now compromised the telnyx Python package by pushing two malic…

The Hacker News
The Hacker News Vulnerabilities

Open VSX Bug Let Malicious VS Code Extensions Bypass Pre-Publish Security Checks

Cybersecurity researchers have disclosed details of a now-patched bug impacting Open VSX's pre-publish scanning pipeline to cause the tool to allow a malicious…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

What Is a Checksum? Meaning, Examples & Why You Should Use Them

A checksum is a calculated value that represents the exact contents of a file or message. If the file changes — even by a single byte — the checksum changes as…

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Breaches & leaks

How NoSQL Database Developers Prevent Hacking Loopholes

Database security breaches can have devastating consequences for businesses, exposing sensitive data, damaging reputations, and…How NoSQL Database Developers P…

The Hacker News
The Hacker News Breaches & leaks

Bearlyfy Hits 70+ Russian Firms with Custom GenieLocker Ransomware

A pro-Ukrainian group called Bearlyfy has been attributed to more than 70 cyber attacks targeting Russian companies since it first surfaced in the threat lands…

Windows

The Hacker News
The Hacker News Breaches & leaks

Bearlyfy Hits Russian Firms with Custom GenieLocker Ransomware

A pro-Ukrainian group called Bearlyfy has been attributed to more than 70 cyber attacks targeting Russian companies since it first surfaced in the threat lands…

Windows