
- Identity Prioritization isn’t a Backlog Problem – It’s a Risk Math Problemby info@thehackernews.com (The Hacker News) (The Hacker News) on February 24, 2026 at 11:58 am
Most identity programs still prioritize work the way they prioritize IT tickets: by volume, loudness, or “what failed a control check.” That approach breaks the moment your […]
- Lazarus Group Uses Medusa Ransomware in Middle East and U.S. Healthcare Attacksby info@thehackernews.com (The Hacker News) (The Hacker News) on February 24, 2026 at 11:52 am
The North Korea-linked Lazarus Group (aka Diamond Sleet and Pompilus) has been observed using Medusa ransomware in an attack targeting an unnamed entity in the Middle East, […]
- UnsolicitedBooker Targets Central Asian Telecoms With LuciDoor and MarsSnake Backdoorsby info@thehackernews.com (The Hacker News) (The Hacker News) on February 24, 2026 at 9:54 am
The threat activity cluster known as UnsolicitedBooker has been observed targeting telecommunications companies in Kyrgyzstan and Tajikistan, marking a shift from prior attacks […]
- Anthropic Says Chinese AI Firms Used 16 Million Claude Queries to Copy Modelby info@thehackernews.com (The Hacker News) (The Hacker News) on February 24, 2026 at 6:04 am
Anthropic on Monday said it identified “industrial-scale campaigns” mounted by three artificial intelligence (AI) companies, DeepSeek, Moonshot AI, and MiniMax, to illegally […]
- APT28 Targeted European Entities Using Webhook-Based Macro Malwareby info@thehackernews.com (The Hacker News) (The Hacker News) on February 23, 2026 at 7:41 pm
The Russia-linked state-sponsored threat actor tracked as APT28 has been attributed to a new campaign targeting specific entities in Western and Central Europe. The activity, per […]
- Wormable XMRig Campaign Uses BYOVD Exploit and Time-Based Logic Bombby info@thehackernews.com (The Hacker News) (The Hacker News) on February 23, 2026 at 5:59 pm
Cybersecurity researchers have disclosed details of a new cryptojacking campaign that uses pirated software bundles as lures to deploy a bespoke XMRig miner program on compromised […]
- ⚡ Weekly Recap: Double-Tap Skimmers, PromptSpy AI, 30Tbps DDoS, Docker Malware & Moreby info@thehackernews.com (The Hacker News) (The Hacker News) on February 23, 2026 at 1:00 pm
Security news rarely moves in a straight line. This week, it feels more like a series of sharp turns, some happening quietly in the background, others playing out in public view. […]
- How Exposed Endpoints Increase Risk Across LLM Infrastructureby info@thehackernews.com (The Hacker News) (The Hacker News) on February 23, 2026 at 11:58 am
As more organizations run their own Large Language Models (LLMs), they are also deploying more internal services and Application Programming Interfaces (APIs) to support those […]
- Malicious npm Packages Harvest Crypto Keys, CI Secrets, and API Tokensby info@thehackernews.com (The Hacker News) (The Hacker News) on February 23, 2026 at 10:20 am
Cybersecurity researchers have disclosed what they say is an active “Shai-Hulud-like” supply chain worm campaign that has leveraged a cluster of at least 19 malicious npm packages […]
- MuddyWater Targets MENA Organizations with GhostFetch, CHAR, and HTTP_VIPby info@thehackernews.com (The Hacker News) (The Hacker News) on February 23, 2026 at 7:25 am
The Iranian hacking group known as MuddyWater (aka Earth Vetala, Mango Sandstorm, and MUDDYCOAST) has targeted several organizations and individuals mainly located across the […]
- AI-Assisted Threat Actor Compromises 600+ FortiGate Devices in 55 Countriesby info@thehackernews.com (The Hacker News) (The Hacker News) on February 21, 2026 at 2:49 pm
A Russian-speaking, financially motivated threat actor has been observed taking advantage of commercial generative artificial intelligence (AI) services to compromise over 600 […]
- Anthropic Launches Claude Code Security for AI-Powered Vulnerability Scanningby info@thehackernews.com (The Hacker News) (The Hacker News) on February 21, 2026 at 7:58 am
Artificial intelligence (AI) company Anthropic has begun to roll out a new security feature for Claude Code that can scan a user’s software codebase for vulnerabilities and […]
- CISA Adds Two Actively Exploited Roundcube Flaws to KEV Catalogby info@thehackernews.com (The Hacker News) (The Hacker News) on February 21, 2026 at 7:21 am
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added two security flaws impacting Roundcube webmail software to its Known Exploited Vulnerabilities […]
- EC-Council Expands AI Certification Portfolio to Strengthen U.S. AI Workforce Readiness and Securityby info@thehackernews.com (The Hacker News) (The Hacker News) on February 21, 2026 at 4:30 am
With $5.5 trillion in global AI risk exposure and 700,000 U.S. workers needing reskilling, four new AI certifications and Certified CISO v4 help close the gap between AI adoption […]
- BeyondTrust Flaw Used for Web Shells, Backdoors, and Data Exfiltrationby info@thehackernews.com (The Hacker News) (The Hacker News) on February 20, 2026 at 3:45 pm
Threat actors have been observed exploiting a recently disclosed critical security flaw impacting BeyondTrust Remote Support (RS) and Privileged Remote Access (PRA) products to […]
- Cline CLI 2.3.0 Supply Chain Attack Installed OpenClaw on Developer Systemsby info@thehackernews.com (The Hacker News) (The Hacker News) on February 20, 2026 at 2:20 pm
In yet another software supply chain attack, the open-source, artificial intelligence (AI)-powered coding assistant Cline CLI was updated to stealthily install OpenClaw, a […]
- ClickFix Campaign Abuses Compromised Sites to Deploy MIMICRAT Malwareby info@thehackernews.com (The Hacker News) (The Hacker News) on February 20, 2026 at 11:55 am
Cybersecurity researchers have disclosed details of a new ClickFix campaign that abuses compromised legitimate sites to deliver a previously undocumented remote access trojan […]
- Identity Cyber Scores: The New Metric Shaping Cyber Insurance in 2026by info@thehackernews.com (The Hacker News) (The Hacker News) on February 20, 2026 at 10:30 am
With one in three cyber-attacks now involving compromised employee accounts, insurers and regulators are placing far greater emphasis on identity posture when assessing cyber […]
- Ukrainian National Sentenced to 5 Years in North Korea IT Worker Fraud Caseby info@thehackernews.com (The Hacker News) (The Hacker News) on February 20, 2026 at 9:52 am
A 29-year-old Ukrainian national has been sentenced to five years in prison in the U.S. for his role in facilitating North Korea’s fraudulent information technology (IT) worker […]
- FBI Reports 1,900 ATM Jackpotting Incidents Since 2020, $20M Lost in 2025by info@thehackernews.com (The Hacker News) (The Hacker News) on February 20, 2026 at 8:05 am
The U.S. Federal Bureau of Investigation (FBI) has warned of an increase in ATM jackpotting incidents across the country, leading to losses of more than $20 million in 2025. The […]
- Former Google Engineers Indicted Over Trade Secret Transfers to Iranby info@thehackernews.com (The Hacker News) (The Hacker News) on February 20, 2026 at 5:27 am
Two former Google engineers and one of their husbands have been indicted in the U.S. for allegedly committing trade secret theft from the search giant and other tech firms and […]
- PromptSpy Android Malware Abuses Gemini AI to Automate Recent-Apps Persistenceby info@thehackernews.com (The Hacker News) (The Hacker News) on February 19, 2026 at 5:52 pm
Cybersecurity researchers have discovered what they say is the first Android malware that abuses Gemini, Google’s generative artificial intelligence (AI) chatbot, as part of its […]
- INTERPOL Operation Red Card 2.0 Arrests 651 in African Cybercrime Crackdownby info@thehackernews.com (The Hacker News) (The Hacker News) on February 19, 2026 at 5:50 pm
An international cybercrime operation against online scams has led to 651 arrests and recovered more than $4.3 million as part of an effort led by law enforcement agencies from 16 […]
- Microsoft Patches CVE-2026-26119 Privilege Escalation in Windows Admin Centerby info@thehackernews.com (The Hacker News) (The Hacker News) on February 19, 2026 at 5:40 pm
Microsoft has disclosed a now-patched security flaw in Windows Admin Center that could allow an attacker to escalate their privileges. Windows Admin Center is a locally deployed, […]
- ThreatsDay Bulletin: OpenSSL RCE, Foxit 0-Days, Copilot Leak, AI Password Flaws & 20+ Storiesby info@thehackernews.com (The Hacker News) (The Hacker News) on February 19, 2026 at 2:35 pm
The cyber threat space doesn’t pause, and this week makes that clear. New risks, new tactics, and new security gaps are showing up across platforms, tools, and industries — […]
