New Case Study: The Evil Twin Checkout PageThe Hacker News·Oct 8, 10:58 UTC · Oct 8, 2024Data breach60
Microsoft Warns of Web Skimmers Mimicking Google Analytics and Meta Pixel CodeThe Hacker News·May 25, 03:04 UTC · May 25, 2022Data breach145
Third-Party ChatGPT Plugins Could Lead to Account TakeoversThe Hacker News·Mar 18, 05:47 UTC · Mar 18, 2024Data breach45
Magecart group compromises customer ratings tool, affecting 'hundreds' of online storesCyberScoop·Oct 9, 13:36 UTC · Oct 9, 2018Data breach in the wild60
Hackers Exploit WordPress mu-Plugins to Inject Spam and Hijack Site ImagesThe Hacker News·Apr 1, 05:37 UTC · Apr 1, 2025Data breachCVE-2024-27956CVE-2024-8353CVE-2024-434560
Feroot raises $11 million to meet growing customer demand for client-side security solutionsHelp Net Security·Mar 4, 00:00 UTC · Mar 4, 2022Data breach45
cside targets hidden website privacy violations with Privacy WatchHelp Net Security·Jan 21, 00:00 UTC · Jan 21, 2026Data breach57
Notepad++ Hosting Breach Attributed to ChinaThe Hacker News·Feb 8, 07:21 UTC · Feb 8, 2026Data breach57
A e-skimmer found on WordPress site using the WooCommerce pluginSecurity Affairs·Apr 12, 10:43 UTC · Apr 12, 2020Data breach60
Microsoft Warns of COLDRIVER's Evolving Evasion and CredentialThe Hacker News·Jan 18, 16:33 UTC · Jan 18, 2024Data breach45
IronWorm and New Miasma Worm Variant Hit npm in Supply Chain AttacksThe Hacker News·Jun 6, 06:23 UTC · Jun 6, 2026Data breach57
Credit Card ‘Sniffers’ Pose Persistent Threat to Growing ERecorded Future·Jun 23, 00:00 UTC · Jun 23, 2026Data breach57
Self-Replicating Worm Hits 180+ npm Packages to Steal Credentials in Latest Supply Chain AttackThe Hacker News·Sep 22, 15:17 UTC · Sep 22, 2025Data breach157
⚡ Weekly Recap: Qualcomm 0-Day, iOS Exploit Chains, AirSnitch Attack & VibeThe Hacker News·Mar 9, 18:22 UTC · Mar 9, 2026Data breach in the wildCVE-2026-21385CVE-2026-2796CVE-2026-2256+13 CVEs60
Automating web app testing to secure your environmentHelp Net Security·Jan 17, 10:05 UTC · Jan 17, 2023Data breach57
Fake Security Plugin on WordPress Enables Remote Admin Access for AttackersThe Hacker News·May 2, 05:57 UTC · May 2, 2025Data breach57
North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer SecretsThe Hacker News·Jul 3, 16:07 UTC · Jul 3, 2026Data breach57
Suspected Chinese-Speaking Hackers Target Central Asian Governments With OctLurk and SilkLurkThe Hacker News·Aug 1, 05:19 UTC · Aug 1, 2026Data breach57
TeamPCP Hacks Checkmarx GitHub Actions Using Stolen CI CredentialsThe Hacker News·Mar 25, 06:34 UTC · Mar 25, 2026Data breachCVE-2026-33634160
My reading of the "ENISA Threat Landscape" reportSecurity Affairs·Jan 9, 09:01 UTC · Jan 9, 2013Data breach60
An overview of targeted attacks and APTs on LinuxKaspersky Securelist·Sep 10, 10:00 UTC · Sep 10, 2020Data breachCVE-2015-511960
Update, March 13: Talos on the developing situation in the Middle EastCisco Talos·Mar 3, 00:55 UTC · Mar 3, 2026Data breach160
SleeperGem Uses Three Malicious RubyGems Packages to Target Developer MachinesThe Hacker News·Jul 20, 05:15 UTC · Jul 20, 2026Data breach157
3,500 Websites Hijacked to Secretly Mine Crypto Using Stealth JavaScript and WebSocket TacticsThe Hacker News·Jul 21, 06:29 UTC · Jul 21, 2025Data breach57
How to Avoid the Common Pitfalls While Browsing the WebRecorded Future·Jul 31, 00:00 UTC · Jul 31, 2025Data breach57
⚡ Weekly Recap: Rogue AI Models, $88M Bitcoin Theft, WaterThe Hacker News·Aug 3, 14:03 UTC · Aug 3, 2026Data breachCVE-2026-42897CVE-2026-6606660
Checkers and Brute Forcers Highlight Dangers of Poor Password ManagementRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Data breach57
ThreatsDay Bulletin: Cisco 0-Days, AI Bug Bounties, Crypto Heists, StateThe Hacker News·May 27, 15:52 UTC · May 27, 2026Data breach60