Tag: hackers

Hackers hijack LinkedIn comments to spread malware – here’s what to look out for

Attackers post fake LinkedIn comments claiming accounts are locked for violationsLinks lead to phishing sites mimicking LinkedIn...

Hackers claim to have Target source code for sale following recent cyberattack

Unknown hackers claim to be selling 860GB of Target internal source code and documentationData allegedly includes wallet...

Hackers are going after top LLM services by cracking misconfigured proxies

GreyNoise logged 91,000 attack sessions against exposed AI systems between Oct 2025 and Jan 2026 Campaigns included...

North Korean hackers using malicious QR codes in spear phishing, FBI warns

North Korean group Kimsuky is using QR code phishing to steal credentialsAttacks bypass MFA via session token...

Hackers use ‘Blue Screen of Death’ malware to target victims

Russian-linked cybercriminals are running a new ClickFix campaign against European hotels and hospitality firmsVictims receive fake booking...

Hackers claim breach of engineering firm, offer sale of info on three major US utilities

Hackers claim to have stolen 800+ sensitive engineering files from Pickett and Associates, tied to major U.S....

NordVPN denies data breach after hackers claim Salesforce leak — here’s everything we know so far

A threat actor known as "1011" claims to have breached a NordVPN development serverNordVPN denies its systems...

Hackers are targeting taxpayers as they file – here’s what to look for

Russia-linked Lynx gang claims ransomware attack on CSA Tax & Advisory, leaking taxpayer dataExposed records include SSNs,...

Hackers say they have stolen 40 million Condé Nast Records – here’s how to stay safe

Hacker "Lovely" breached Condé Nast, leaking data of 2.3M WIRED readersStolen info includes emails, names, phone numbers,...

WhatsApp user warning – hackers are hijacking accounts without any need to crack the authentication, so be on your guard

Hackers can hijack WhatsApp accounts without ever cracking passwords or encryptionGhostPairing attacks exploit legitimate device-linking features to...

Watch out – hackers are coming after your Christmas bonus, as paychecks come under threat

Attackers exploit help desk personnel to gain unauthorized payroll system accessSocial engineering lets hackers redirect employee salaries...

Hackers stole data in UK government cyberattack, minister confirms

UK confirms October hack of Foreign Office system, data possibly stolen Risk to individuals deemed low; investigation...

Cisco says Chinese hackers are exploiting its customers with a new zero-day

A zero‑day in Cisco AsyncOS lets attackers gain root access on Secure Email appliances with Spam Quarantine...

Fortinet products hit by further security flaws – giving hackers access to systems and more

Two critical SAML‑signature flaws (CVE‑2025‑59718/59719) let attackers bypass SSO across multiple Fortinet productsExploitation began December 12, with...

Experts warn Chinese “Ink Dragon” hackers extend reach into European governments

Ink Dragon campaign breaches European governments by exploiting misconfigured IIS and SharePoint serversThe group uses its FinalDraft...

Amazon says Russian hackers behind major cyber campaign to target Western energy sector

AWS says Russian GRU‑linked groups have spent years exploiting misconfigured edge devices to persist inside Western critical...

Hackers posing as law enforcement are tricking Big Tech to get access to private data

Cybercriminals impersonate law enforcement to trick tech firms into handing over user dataTactics include typosquatted police emails...

Hackers distribute thousands of phishing attacks through Mimecast’s secure-link feature

Attackers abused Mimecast’s URL‑rewriting feature to mask malicious links in phishing emailsMore than 40,000 emails hit 6,000+...

Maximum severity React2Shell flaw exploited by North Korean hackers in malware attacks

React2Shell (CVE-2025-55182) critical flaw exploited by Chinese and North Korean groupsNorth Korea deploys EtherRAT implant with Ethereum...

Hackers tricked ChatGPT, Grok and Google into helping them install malware

Ever since reporting earlier this year on how easy it is to trick an agentic browser, I've...

Sneeit WordPress RCE flaw allows hackers to add themselves as admin – here’s how to stay safe

WordFence disclosed critical RCE flaw (CVE-2025-6389) in Sneeit Framework plugin, affecting versions ≤8.3Exploitation allows attackers to create...

React2Shell RCE flaw exploited by Chinese hackers hours after disclosure

Critical React2Shell flaw now exploited in the wild by China-linked groups AWS reports global targeting of finance,...

FBI warns of kidnapping scams as hackers turn to AI to provide ‘proof of life’

FBI warns criminals are using GenAI deepfakes in kidnapping and extortion scamsAttackers generate fake “proof of life”...

Chinese hackers reportedly targeting government entities using ‘Brickstorm’ malware

Hackers with links to China reportedly successfully infiltrated a number of unnamed government and tech entities using...

Chinese hackers used Brickworm malware to breach critical US infrastructure

Chinese state-sponsored actors deploy Brickworm malware to infiltrate government and IT networks worldwideMalware targets VMware vSphere and...

Hackers observed injecting legitimate banking apps with malicious code

Group-IB links poisoned mobile banking apps to GoldFactoryAttackers decompile legitimate apps, add trojans/backdoors, and spread them via...

FBI says hackers have stolen $262 million in account takeover scams in 2025 so far – here’s how you can stay safe

FBI warns attackers can steal credentials through phishing tricks and quickly take over financial accountsHoliday-themed domains lure...

Malicious LLMs are letting even unskilled hackers to craft dangerous new malware

Hackers use untethered LLMs such as WormGPT 4 and KawaiiGPT for cybercrimeWormGPT 4 enables encryptors, exfiltration tools,...

Ransomware hackers attack SMBs being acquired to try and gain access to multiple companies

ReliaQuest warns Akira ransomware often spreads via compromised assets inherited during mergers and acquisitionsMost infections stem from...

Hackers impersonate TechCrunch reporters to steal sensitive information – but you can always trust us

Scammers impersonate TechCrunch reporters to gain access to sensitive corporate and operational informationFake emails increasingly mimic real...

Windows Server flaw targeted by hackers to spread malware – here’s what we know

Chinese state-sponsored actors are exploiting CVE-2025-59287, a critical WSUS flaw enabling unauthenticated RCE with SYSTEM privilegesAhnLab reports...

SonicWall tells customers to patch SonicOS flaw allowing hackers to crash firewalls

SonicWall patches SSLVPN flaw CVE-2025-40601, enabling unauthenticated DoS attacks on Gen7/Gen8 firewallsNo exploitation seen yet; users urged...