BetaIT-Hub is in early access — your feedback helps us improve. Use the chat or email [email protected]

Latest
UN food agency discloses breach affecting 600,000 Gaza householdsBleepingComputer · 9m agoEverest Forms Pro Vulnerability Allows Remote Code Execution on WordPress SitesInfosecurity Magazine · 33m agoNew IronWorm malware hits 36 packages in npm supply-chain attackBleepingComputer · 1h agoClaude Code GitHub Action Flaw Let One Malicious Issue Hijack RepositoriesThe Hacker News · 1h agoWhy eSIMs Are Replacing Traditional SIM CardsHackRead · 1h agoChinese spies are using LinkedIn to lure Westerners into sharing sensitive informationTechCrunch Security · 1h agoHackers Are After the Gaps in Your Vulnerability Program: Here's Their PlaybookBleepingComputer · 2h agoThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New StoriesThe Hacker News · 2h agoInfosecurity Europe: AI Adoption Creates New Opportunities for Attackers to Distribute Malware, Microsoft WarnsInfosecurity Magazine · 2h agoChinese-Speaking Actor TA4922 Widens Its Global ReachInfosecurity Magazine · 2h agoHow the “Swiss Cheese” model can help you choose the right MDR providerRapid7 · 2h agoMicrosoft blames unexpected Windows driver updates on caching issueBleepingComputer · 3h agoInfosecurity Europe: Mythos Outperforms GPT5.5 on Google Chrome Vulnerability Exploits, Says New BenchmarkInfosecurity Magazine · 3h agoLazarus Group Uses npm Brandjacking Campaign to Target DevelopersHackRead · 4h agoInfosecurity Europe: How Proton Fights Against Cybercriminals Using Its ServicesInfosecurity Magazine · 4h agoUN food agency discloses breach affecting 600,000 Gaza householdsBleepingComputer · 9m agoEverest Forms Pro Vulnerability Allows Remote Code Execution on WordPress SitesInfosecurity Magazine · 33m agoNew IronWorm malware hits 36 packages in npm supply-chain attackBleepingComputer · 1h agoClaude Code GitHub Action Flaw Let One Malicious Issue Hijack RepositoriesThe Hacker News · 1h agoWhy eSIMs Are Replacing Traditional SIM CardsHackRead · 1h agoChinese spies are using LinkedIn to lure Westerners into sharing sensitive informationTechCrunch Security · 1h agoHackers Are After the Gaps in Your Vulnerability Program: Here's Their PlaybookBleepingComputer · 2h agoThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New StoriesThe Hacker News · 2h agoInfosecurity Europe: AI Adoption Creates New Opportunities for Attackers to Distribute Malware, Microsoft WarnsInfosecurity Magazine · 2h agoChinese-Speaking Actor TA4922 Widens Its Global ReachInfosecurity Magazine · 2h agoHow the “Swiss Cheese” model can help you choose the right MDR providerRapid7 · 2h agoMicrosoft blames unexpected Windows driver updates on caching issueBleepingComputer · 3h agoInfosecurity Europe: Mythos Outperforms GPT5.5 on Google Chrome Vulnerability Exploits, Says New BenchmarkInfosecurity Magazine · 3h agoLazarus Group Uses npm Brandjacking Campaign to Target DevelopersHackRead · 4h agoInfosecurity Europe: How Proton Fights Against Cybercriminals Using Its ServicesInfosecurity Magazine · 4h ago

Security & IT News

Live

Real-time news from 13+ trusted sources — BleepingComputer, The Hacker News, Krebs on Security, Dark Reading & more.

VulnerabilityThe Hacker News·17d ago
Developer Workstations Are Now Part of the Software Supply Chain

Supply chain attackers are not only trying to slip malicious code into trusted software. They are trying to steal the access that makes trusted software possible. Recently, three separate campaigns hit npm, PyPI, and Docker Hub in a 48-hour window, and all three targeted secrets from developer environments and CI/CD pipelines, including API keys, cloud credentials, SSH keys, and tokens. This is

🧪 ResearchSchneier on Security·17d ago
Zero-Day Exploit Against Windows BitLocker

It’s nasty , but it requires physical access to the computer: The exploit, named YellowKey, was published earlier this week by a researcher who goes by the alias Nightmare-Eclipse. It reliably bypasses default Windows 11 deployments of BitLocker, the full-volume encryption protection Microsoft provides to make disk contents off-limits to anyone without the decryption key, which is stored in a secured piece of hardware known as a trusted platform module (TPM). BitLocker is a mandatory protection for many organizations, including those that contract with governments. Slashdot thread . And here’s Nightmare-Eclipse’s GitHub account.

🩹 PatchThe Hacker News·17d ago
Ivanti, Fortinet, SAP, VMware, n8n Patch RCE, SQL Injection, Privilege Escalation Flaws

Ivanti, Fortinet, n8n, SAP, and VMware have released security fixes for various vulnerabilities that could be exploited by bad actors to bypass authentication and execute arbitrary code. Topping the list is a critical flaw impacting Ivanti Xtraction (CVE-2026-8043, CVSS score: 9.6) that could be exploited to achieve information disclosure or client-side attacks. "External control of a file name

🦠 MalwareThe Hacker News·17d ago
Four Malicious npm Packages Deliver Infostealers and Phantom Bot DDoS Malware

Cybersecurity researchers have discovered four new npm packages containing information-stealing malware, one of which is a clone of the Shai-Hulud worm open-sourced by TeamPCP. The list of identified packages is below - chalk-tempalte (825 Downloads) @deadcode09284814/axios-util (284 Downloads) axois-utils (963 Downloads) color-style-utils (934 Downloads) "One of the packages (chalk-tempalte)

🦠 MalwareThe Hacker News·17d ago
Pre-Stuxnet Fast16 Malware Tampered with Nuclear Weapons Simulations

A new analysis of the Lua-based fast16 malware has confirmed that it was a cyber sabotage tool designed to tamper with nuclear weapons testing simulations. According to Broadcom-owned Symantec and Carbon Black teams, the pre-Stuxnet tool was engineered to corrupt uranium-compression simulations that are central to nuclear weapon design. "Fast16's hook engine is selectively interested in

🧪 ResearchThe Hacker News·17d ago
MiniPlasma Windows 0-Day Enables SYSTEM Privilege Escalation on Fully Patched Systems

Chaotic Eclipse, the security researcher behind the recently disclosed Windows flaws, YellowKey and GreenPlasma, has released a proof-of-concept (PoC) for a Windows privilege escalation zero-day flaw that grants attackers SYSTEM privileges on fully patched Windows systems. Codenamed MiniPlasma, the vulnerability impacts "cldflt.sys," which refers to the Windows Cloud Files Mini Filter Driver,

VulnerabilityThe Hacker News·18d ago
NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCE

A newly disclosed security flaw impacting NGINX Plus and NGINX Open has come under active exploitation in the wild, days after its public disclosure, according to VulnCheck. The vulnerability, tracked as CVE-2026-42945 (CVSS score: 9.2), is a heap buffer overflow in ngx_http_rewrite_module affecting NGINX versions 0.6.27 through 1.30.0. According to AI-native security company depthfirst, the