Website profile

The Hacker News

The Hacker News is the most trusted and popular cybersecurity publication for information security professionals seeking breaking news, actionable insights and analysis.

  • 179articles · 30d
  • 1+ day agolatest article
  • Aug 14, 2026earliest in window
  • 11%with images
  • 353avg words
articles per day
Categories
  • Science & Technology 122
  • Software 100
  • Computers & Electronics 86
  • Conflict, War & Peace 47
  • News 39
  • Crime & Law 37
  • Software Dev. 31
  • Internet & Telecom 29

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

thehackernews.com
thehackernews.com > 2026 > 09 > f5-big-ip-apm-malware-injects-php-web.html

F5 BIG-IP APM Malware Injects a PHP Web Shell Into Memory, Evading Disk Scans

3+ day, 17+ hour ago   (887+ words) Malware linked to break-ins at F5 BIG-IP Access Policy Manager appliances hides a PHP web shell in memory instead of in a file on disk, Sophos said in an analysis published on September 7. When Apache loads any of the three appliances…...

The Hacker News
thehackernews.com > 2026 > 09 > n-able-n-central-pre-auth-rce-flaw.html

N-able N-central Pre-Auth RCE Flaw Exploited in the Wild

3+ day, 20+ hour ago   (245+ words) The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a maximum-severity security flaw impacting N-able N-central to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the fixes by September 11, 2026. The vulnerability in…...

thehackernews.com
thehackernews.com > 2026 > 09 > peep-turns-chrome-and-edge-into-post.html

PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Execution

5+ day, 6+ hour ago   (36+ words) PEEP uses Chrome and Edge as a post-compromise backdoor for credential theft and host command execution....

The Hacker News
thehackernews.com > 2026 > 09 > rogue-screenconnect-clients-spread-four.html

Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts

5+ day, 11+ hour ago   (384+ words) According to Huntress, three unrelated incidents have been found to use diverse initial access methods, namely a Quick Assist tech-support scam, a phishing-delivered MSI installer, and a fake Geek Squad refund form lure, to activate a four-stage VBScript chain that…...

The Hacker News
thehackernews.com > 2026 > 09 > attackers-breached-jetbrains-cadence.html

Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials

1+ week, 7+ hour ago   (509+ words) JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to breach its own environment. "Cadence users should immediately revoke…...

The Hacker News
thehackernews.com > 2026 > 09 > critical-vmware-workstation-and-fusion.html

Critical VMware Workstation and Fusion Flaw Lets VM Admins Execute Host Code

1+ week, 8+ hour ago   (339+ words) Broadcom has released security updates for two security flaws impacting VMware Workstation and Fusion, including one critical bug that could result in arbitrary code execution under certain conditions. The vulnerability, tracked as CVE-2026-59346 (CVSS score: 9.3), is an integer-overflow vulnerability that…...

The Hacker News
thehackernews.com > 2026 > 09 > attackers-turn-trusted-nodejs-runtime.html

Attackers Turn Trusted Node.js Runtime Into Malware Delivery Tool in Targeted Attacks

1+ week, 2+ day ago   (665+ words) Threat actors are leveraging the trusted Node.js JavaScript runtime in multiple cyber attacks as a way to deploy malicious payloads. According to a new report published by the Symantec Threat Hunter Team today, the attack method has been put…...

The Hacker News
thehackernews.com > 2026 > 08 > china-linked-fire-ant-hijacks-cisco.html

China-Linked Fire Ant Hijacks Cisco Routers to Steal Credentials and Blind Security Logs

1+ week, 5+ day ago   (777+ words) A China-nexus cyber espionage actor tracked as Fire Ant has expanded a long-running campaign beyond VMware hypervisors to compromise Cisco IOS XR routers, Terminal Access Controller Access-Control System (TACACS) servers, and Linux management hosts used to route, authenticate, and manage…...

The Hacker News
thehackernews.com > 2026 > 08 > five-critical-wordpress-plugin-and.html

Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE

2+ week, 8+ hour ago   (123+ words) Multiple critical security flaws have been disclosed in WordPress plugins and themes, including WPMU DEV Dashboard, Avada, TranslatePress, Pods, and GiveWP, that could lead to authentication bypass, account takeover, and arbitrary code execution. The vulnerabilities, according to Wordfence and Patchstack,…...

The Hacker News
thehackernews.com > 2026 > 08 > uat-10147-uses-ai-to-scale-server.html

UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit

2+ week, 5+ day ago   (763+ words) Cybersecurity researchers have disclosed details of a Chinese-speaking cybercrime group dubbed UAT-10147 that's targeting Windows and Linux web servers globally across the education, media, technology, and gaming sectors. The vast majority of the targets are located in Brazil, Bolivia, China,…...