TGINSIGHT CHAT
The Hacker News
@thehackernews
Technologies⭐ Official THN Telegram Channel — A trusted, widely read, independent source for breaking news and tech coverage about cybersecurity and hacking. 📨 Contact: [email protected] 🌐 Website: https://thehackernews.com
Recent posts
Page 21 of 85 · 1,016 posts
Posted Apr 2
⚡ AI is speeding up code—and risk. 145% more vulnerabilities and 3x more fixes in one quarter, as Python (72.1%) and PostgreSQL (+73%) surge with AI. 96% of risk sits outside core tools. 🔗 Where most security exposure actually lives → https://thehackernews.com/2026/04/the-state-of-trusted-open-source-report.html
Posted Apr 2
⚠️ Brazil-based attackers are targeting Spanish-speaking users with a multi-channel phishing campaign delivering Casbaneiro. Court-themed PDFs trigger malware, then Horabot spreads it via phishing emails sent from victims’ Outlook accounts. 🔗 How email hijacking drives the spread → https://thehackernews.com/2026/04/casbaneiro-phishing-targets-latin.html
Posted Apr 2
A critical Oracle WebLogic flaw (CVSS 10.0) saw exploitation almost immediately after public exploit code was released. CloudSEK observed automated scanning targeting this and older flaws via VPS infrastructure in a spray-and-pray campaign. 🔗 Full attack patterns → https://thehackernews.com/2026/03/weekly-recap-telecom-sleeper-cells-llm.html#:~:text=Exploitation%20Against%20Oracle%20WebLogic%20Servers
Posted Apr 2
🛑 WhatsApp alerted ~200 users targeted by a fake iOS app carrying #spyware, mostly in Italy. The attack used social engineering to mimic #WhatsApp. Meta is acting against an Italian firm linked to the spyware. 🔗 Read details here → https://thehackernews.com/2026/04/whatsapp-alerts-200-users-after-fake.html
Posted Apr 2
🔥 Apple expanded iOS 18.7.7 security updates to more iPhones and iPads to fix DarkSword exploits. The fixes were released in 2025, and now also protect devices that are not on iOS 26—so users can stay on iOS 18 & still get security updates. 🔗 Read → https://thehackernews.com/2026/04/apple-expands-ios-1877-update-to-more.html
Posted Apr 1
🤔 Threat intelligence is great, but do you have proof that your defenses actually work against real threat actors? Stop guessing. Start validating. Join this practical session to learn how to leverage modern tooling to automate security testing and continuously improve your posture. WATCH NOW ⬇️https://thehacker.news/automate-testing-security-posture
Posted Apr 1
CERT-UA warned of a phishing campaign impersonating the agency to spread AGEWHEEZE malware. The malware enables full system control, but confirmed infections were limited despite wide targeting. 🔗 Campaign details and malware capabilities → https://thehackernews.com/2026/04/cert-ua-impersonation-campaign-spread.html
Posted Apr 1
🚫 Blocking #ChatGPT or DeepSeek doesn’t stop usage—it pushes it out of sight. 70% of users in one firm still used AI via browser extensions after a block, routing data externally without detection. This is “theatrical security”: control on paper, blind in practice. 🔗 Why security is shifting to browser-level governance → https://thehackernews.com/2026/04/block-prompt-not-work-end-of-doctor-no.html
Hashtags
Posted Apr 1
🚨 Microsoft identified a campaign using WhatsApp to deliver malicious VBS files. The attack renames Windows tools, uses cloud payloads and installs AnyDesk to enable stealthy persistence and remote access while blending into normal activity. 🔗 Read → https://thehackernews.com/2026/04/microsoft-warns-of-whatsapp-delivered.html
Posted Apr 1
Cyberattacks are shifting away from malware. 84% now use built-in tools like PowerShell and WMIC to move inside systems without raising alarms. These actions look normal, making detection harder while excess access creates hidden risk. 🔗 Why attackers now use your own tools → https://thehackernews.com/2026/04/3-reasons-attackers-are-using-your.html
Posted Apr 1
🛑 Chrome 0-day Warning! Tracked as CVE-2026-5281, this WebGPU (Dawn) use-after-free bug allows code execution via a crafted page if the renderer is compromised. It’s the 4th exploited Chrome browser zero-day in 2026. 🔗 Read → https://thehackernews.com/2026/04/new-chrome-zero-day-cve-2026-5281-under.html
Posted Apr 1
Vulnerability management is shifting from periodic scans to continuous monitoring. Exploitation can start within hours, making CVSS scores and patch cycles too slow. Teams now need continuous visibility, threat context, and real-time detection to manage actual risk. 🔗 Why proactive vulnerability management is replacing scans → https://thehackernews.com/expert-insights/2026/03/wazuh-for-proactive-vulnerability.html