Six browser attack techniques in 2026 span ClickFix, OAuth abuse, malicious extensions, credential stuffing, and session hijacking.
Glow found over 13,000 internal images from 300+ organizations exposed in public GitHub repos during AI-assisted code reviews ...
CSuite phishing targets Microsoft 365 sessions and deploys remote-access tools, with 51% of 351 sandbox submissions coming from the U.S.
Unknown attackers exploit a patched Citrix NetScaler flaw to gain root access and deploy web shells and a tunneler.
Citrix NetScaler CVE-2026-88772 is exploited in the wild and can enable remote code execution through a DTLS buffer overflow.
OpenSSL fixed a DTLS flaw rated High that can leak heap memory or crash software using OpenSSL for DTLS; no attacks are reported.
Read the latest updates about Search results for OpenSSL on The Hacker News cybersecurity and information technology ...
An attacker used stolen passwords of staff at France's tax administration to take tax data on hundreds of thousands of ...
Spectre BTR reuses stale JIT branch targets; Linux PoCs recover the root password hash within minutes on a fully patched ...
Star Blizzard uses fake event invites and RedFlick scheduled tasks to install CosmicPulse on Windows systems tied to Ukraine.
Kiteworks fixed a critical flaw in a capability enabled for under 1% of customers, with no evidence it was ever exploited ...
Cybersecurity researchers have identified a cluster of 101 npm packages that are used to trap developers into a WhatsApp ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results