BetaIT-Hub is in early access — your feedback helps us improve. Use the chat or email [email protected]

Latest
Suspicious Polyfill login prompts pop up on Toshiba, Muji websitesBleepingComputer · 5h agoFormer cyber executive turned whistleblower accuses IBM of covering up several data breachesTechCrunch Security · 7h agoCISA: Hackers now exploit SolarWinds Serv-U flaw to crash serversBleepingComputer · 8h agoMiasma Malware Hits 32 Red Hat Packages via Compromised GitHub AccountHackRead · 8h agoChinese APT deploys new malware to keep access to hacked networksBleepingComputer · 9h agoIronWorm and New Miasma Worm Variant Hit npm in Supply Chain AttacksThe Hacker News · 9h agoDark web Nemesis Market vendor gets 26 years for selling drugsBleepingComputer · 9h agoAtlas Menu Data Breach Exposes 64,000 GTA V and CS2 Cheat Service UsersHackRead · 10h agoWeekly Metasploit Update: Apache ActiveMQ RCE, Gogs Rebase RCE, and Windows Kernel Pointer EnumRapid7 · 10h agoSecuring CI/CD in an agentic world: Claude Code Github action caseMicrosoft Security · 10h agoGoogle and FBI warn of ransomware group that sends fake IT workers to hack victims in personTechCrunch Security · 11h agoAndroid Spyware Asin Targets Arabic Users via Fake News, PDF and War Map AppsThe Hacker News · 12h agoOver 900 US gas station tank gauge systems exposed to attacksBleepingComputer · 12h agoNSA said to be readying Anthropic’s Mythos for use in cyber operationsTechCrunch Security · 13h agoWhat 2026 DBIR Confirms: Attacks Are Living in the BrowserBleepingComputer · 13h agoSuspicious Polyfill login prompts pop up on Toshiba, Muji websitesBleepingComputer · 5h agoFormer cyber executive turned whistleblower accuses IBM of covering up several data breachesTechCrunch Security · 7h agoCISA: Hackers now exploit SolarWinds Serv-U flaw to crash serversBleepingComputer · 8h agoMiasma Malware Hits 32 Red Hat Packages via Compromised GitHub AccountHackRead · 8h agoChinese APT deploys new malware to keep access to hacked networksBleepingComputer · 9h agoIronWorm and New Miasma Worm Variant Hit npm in Supply Chain AttacksThe Hacker News · 9h agoDark web Nemesis Market vendor gets 26 years for selling drugsBleepingComputer · 9h agoAtlas Menu Data Breach Exposes 64,000 GTA V and CS2 Cheat Service UsersHackRead · 10h agoWeekly Metasploit Update: Apache ActiveMQ RCE, Gogs Rebase RCE, and Windows Kernel Pointer EnumRapid7 · 10h agoSecuring CI/CD in an agentic world: Claude Code Github action caseMicrosoft Security · 10h agoGoogle and FBI warn of ransomware group that sends fake IT workers to hack victims in personTechCrunch Security · 11h agoAndroid Spyware Asin Targets Arabic Users via Fake News, PDF and War Map AppsThe Hacker News · 12h agoOver 900 US gas station tank gauge systems exposed to attacksBleepingComputer · 12h agoNSA said to be readying Anthropic’s Mythos for use in cyber operationsTechCrunch Security · 13h agoWhat 2026 DBIR Confirms: Attacks Are Living in the BrowserBleepingComputer · 13h ago

Security & IT News

Live

Real-time news from 13+ trusted sources — BleepingComputer, The Hacker News, Krebs on Security, Dark Reading & more.

247 results in Malware

🦠 MalwareThe Hacker News·46d ago
Researchers Detect ZionSiphon Malware Targeting Israeli Water, Desalination OT Systems

Cybersecurity researchers have flagged a new malware called ZionSiphon that appears to be specifically designed to target Israeli water treatment and desalination systems. The malware has been codenamed ZionSiphon by Darktrace, highlighting its ability to set up persistence, tamper with local configuration files, and scan for operational technology (OT)-relevant services on the local subnet.

🦠 MalwareThe Hacker News·48d ago
Mirai Variant Nexcorium Exploits CVE-2024-3721 to Hijack TBK DVRs for DDoS Botnet

Threat actors are exploiting security flaws in TBK DVR and end‑of‑life (EoL) TP-Link Wi-Fi routers to deploy Mirai-botnet variants on compromised devices, according to findings from Fortinet FortiGuard Labs and Palo Alto Networks Unit 42. The attack targeting TBK DVR devices has been found to exploit CVE-2024-3721 (CVSS score: 6.3), a medium-severity command injection vulnerability affecting

🦠 MalwareThe Hacker News·50d ago
Newly Discovered PowMix Botnet Hits Czech Workers Using Randomized C2 Traffic

Cybersecurity researchers have warned of an active malicious campaign that's targeting the workforce in the Czech Republic with a previously undocumented botnet dubbed PowMix since at least December 2025. "PowMix employs randomized command-and-control (C2) beaconing intervals, rather than persistent connection to the C2 server, to evade the network signature detections," Cisco Talos

🦠 MalwareThe Hacker News·50d ago
UAC-0247 Targets Ukrainian Clinics and Government in Data-Theft Malware Campaign

The Computer Emergencies Response Team of Ukraine (CERT-UA) has disclosed details of a new campaign that has targeted governments and municipal healthcare institutions, mainly clinics and emergency hospitals, to deliver malware capable of stealing sensitive data from Chromium-based web browsers and WhatsApp. The activity, which was observed between March and April