‼️ NEW - Critical Check Point management flaw lets unauthenticated attackers run code as root. The 9.8-rated bug (CVE-2026-91843) sits in the login path before authentication. Affected versions and fix details: https://lnkd.in/dwzzP5bm
The Hacker News
Computer and Network Security
NY, New York 730,883 followers
The #1 trusted source for cybersecurity news, insights, and analysis — built for defenders and trusted by decision-maker
About us
The #1 trusted source for cybersecurity news, insights, and analysis — built for defenders and trusted by decision-makers.
- Website
-
https://thehackernews.com
External link for The Hacker News
- Industry
- Computer and Network Security
- Company size
- 11-50 employees
- Headquarters
- NY, New York
- Type
- Privately Held
- Founded
- 2010
- Specialties
- Penetration Testing, Computer Security, Information Security, Network Security, Computer Forensics, Vulnerability Assessment, Security Awareness, Cryptography, Mobile Security, Encryption, Web Application Security, OWASP, CISSP, Kali Linux, Technology, Information Technology, Hacking, Ethical Hacker, Linux, Network Administration, Server Administration, Information Security Management, Malware, Computers, Cybersecurity, Infosec, Tech News, Cybersecurity News, Cyber Security News, IT Security News, Hacker News, and Hacking News
Locations
-
Primary
Get directions
NY, New York, US
Employees at The Hacker News
Updates
-
🔥 25 New CYBER stories in this week’s ThreatsDay Bulletin: → Exposed AI systems breached → Stealers hunt agent tokens + prompts → Agents rewrite their own models → Ransomware jumps on a fresh flaw → Telnet brute-force still works → RF attacks leak audio remotely → and more... Check out the full list of threats here: https://lnkd.in/dXP9cnX2
-
-
‼️ ALERT - Critical Docker Sandboxes flaw lets malicious guest code escape the shared workspace and read or modify files across a macOS host. CVE-2026-77179 crosses the virtio-fs boundary with the host account’s rights. Read how the escape works → https://lnkd.in/ecsRChXB
-
-
🚨 Iran-linked Handala Hack is tied to a Telegram-controlled backdoor that can steal passwords and messaging data. HEAVYGRAM also executes commands, captures screenshots, and downloads additional malware. See how Telegram becomes the control channel: https://lnkd.in/dtm6iWN7
-
-
⚡ Can you prove a CVE is exploitable without running the exploit? This webinar shows how to map a vulnerability to the attack techniques it requires, then test whether your existing controls actually stop them. Can’t join live? Sign up and get the recording: https://lnkd.in/dd6JgJJW
-
-
‼️ Critical Unbound DNSSEC validator flaw (CVE-2026-82717) could allow remote code execution. An attacker who controls a malicious zone can trigger the heap overflow by querying a vulnerable resolver. 1.26.0 and earlier are affected. Read details → https://lnkd.in/d_fGP73A
-
-
Meet Georgetown's cybersecurity faculty on Sept 22 to learn more about the Cybersecurity Risk Management master's program. Advance in the Field of Cybersecurity with Georgetown → https://lnkd.in/d5VUTw4X
-
-
🛑 China-aligned FamousSparrow has shifted to a previously unreported backdoor in attacks across Latin America. SparroWocky can run commands, exfiltrate files, take screenshots, and load in-memory plugins, with government entities among the targets. Read: https://lnkd.in/dcXBsscP
-
-
Attackers weaponize new vulnerabilities in ~5 days. The median org takes 43 days to patch known-exploited flaws. Peer-reviewed AI agents exploited 87% of one-day vulnerabilities unaided. The real test: provable coverage, independent validation, and safe-stop controls in production. https://lnkd.in/dugB2iSu
-
-
‼️ An OpenAI model found and used an exposed GitHub API key without authorization. The key worked, but the requested data remained unavailable. The model then fabricated the data and attributed it to the requested source. https://lnkd.in/dZNAfxEt It’s one of 6 misalignment incidents OpenAI disclosed.
-