BetaIT-Hub is in early access — your feedback helps us improve. Use the chat or email [email protected]

Latest
Ex-school district employee jailed for hacks on former employerBleepingComputer · 9h agoAmazon CEO reportedly raised Anthropic model concerns before government crackdownTechCrunch Security · 10h agoExtradited Ukrainian Man Admits Role in Conti Ransomware AttacksHackRead · 15h agoChinese hackers hijack auth flow, spy on isolated network for a decadeBleepingComputer · 15h agoCritical Splunk Enterprise Flaw Lets Attackers Run Code Without AuthenticationThe Hacker News · 16h agoThe FBI built its own replica small town to simulate real-world cyberattacksTechCrunch Security · 18h agoU.S. Orders Anthropic to Suspend Fable 5 and Mythos 5 Access for Foreign NationalsThe Hacker News · 1d agoWeekly Metasploit Update: New Kerberos/Certificate tracing options, and multiple new modulesRapid7 · 1d agoFriday Squid Blogging: Squid-Inspired Fluid PumpSchneier on Security · 1d agoChinese cybercrime operation that used AI to scam ‘hundreds of thousands of victims’ sued by GoogleTechCrunch Security · 1d agoMaine disables data breach notification portal after fake disclosuresBleepingComputer · 1d ago400+ Arch Linux AUR Packages Hijacked to Install Rust Credential StealerThe Hacker News · 1d agoGoogle Sues Chinese Smishing Network Accused of Using Gemini AI in PhishingThe Hacker News · 1d agophpBB forum fixes auth bypass bug lurking for a decadeBleepingComputer · 1d agoChina-Linked Hackers Backdoored Linux Login Software to Hide for Nearly a DecadeThe Hacker News · 1d agoEx-school district employee jailed for hacks on former employerBleepingComputer · 9h agoAmazon CEO reportedly raised Anthropic model concerns before government crackdownTechCrunch Security · 10h agoExtradited Ukrainian Man Admits Role in Conti Ransomware AttacksHackRead · 15h agoChinese hackers hijack auth flow, spy on isolated network for a decadeBleepingComputer · 15h agoCritical Splunk Enterprise Flaw Lets Attackers Run Code Without AuthenticationThe Hacker News · 16h agoThe FBI built its own replica small town to simulate real-world cyberattacksTechCrunch Security · 18h agoU.S. Orders Anthropic to Suspend Fable 5 and Mythos 5 Access for Foreign NationalsThe Hacker News · 1d agoWeekly Metasploit Update: New Kerberos/Certificate tracing options, and multiple new modulesRapid7 · 1d agoFriday Squid Blogging: Squid-Inspired Fluid PumpSchneier on Security · 1d agoChinese cybercrime operation that used AI to scam ‘hundreds of thousands of victims’ sued by GoogleTechCrunch Security · 1d agoMaine disables data breach notification portal after fake disclosuresBleepingComputer · 1d ago400+ Arch Linux AUR Packages Hijacked to Install Rust Credential StealerThe Hacker News · 1d agoGoogle Sues Chinese Smishing Network Accused of Using Gemini AI in PhishingThe Hacker News · 1d agophpBB forum fixes auth bypass bug lurking for a decadeBleepingComputer · 1d agoChina-Linked Hackers Backdoored Linux Login Software to Hide for Nearly a DecadeThe Hacker News · 1d ago

Security & IT News

Live

Real-time news from 13+ trusted sources — BleepingComputer, The Hacker News, Krebs on Security, Dark Reading & more.

VulnerabilityThe Hacker News·52d ago
Malicious KICS Docker Images and VS Code Extensions Hit Checkmarx Supply Chain

Cybersecurity researchers have warned of malicious images pushed to the official "checkmarx/kics" Docker Hub repository. In an alert published today, software supply chain security company Socket revealed that unknown threat actors managed to have overwritten existing tags, including v2.1.20 and alpine, while also introducing a new v2.1.21 tag that does not correspond to an official release. The

🦠 MalwareThe Hacker News·52d ago
Self-Propagating Supply Chain Worm Hijacks npm Packages to Steal Developer Tokens

Cybersecurity researchers have flagged a fresh set of packages that have been compromised by bad actors to deliver a self-propagating worm that spreads through stolen developer npm tokens. The supply chain worm has been detected by both Socket and StepSecurity, with the companies tracking the activity under the name CanisterSprawl owing to the use of an ICP canister to exfiltrate the stolen data

🩹 PatchMicrosoft Security·52d ago
AI-powered defense for an AI-accelerated threat landscape

We are at an inflection point in cybersecurity. Recent advances in AI model capabilities are changing how vulnerabilities are discovered and exploited. AI models can autonomously discover weaknesses, chain multiple lower-severity issues into working end-to-end exploits, and produce working proof-of-concept code. This significantly compresses the window between vulnerability discovery and exploitation. These changes require organizations to rethink exposure, response, and risk. However, the same capabilities that can give attackers an advantage also create a unique opportunity for defenders. When applied correctly, they can accelerate vulnerability discovery, improve detection engineering, and reduce time to mitigation. We look forward to working together as an industry to use these AI model capabilities as part of enterprise-grade solutions to tilt the balance in favor of defenders. Partnering with leading model providers Security has been and remains the top priority at Microsoft. Over the last two years, through our Secure Future Initiative (SFI) , we have strengthened our security foundations for this age of AI, in part by using AI to accelerate vulnerability discovery and remediation and help defend against threats. We have also invested in fundamental AI for security research, including the development of open-source industry benchmarks that can be used to evaluate whether models are ready for real-world security work. As we move forward, we are accelerating this work and partnering with the industry to use leading models, paired with our platforms and expertise, to turn AI-driven discovery into protection at scale. Through Project Glasswing , Microsoft is working closely with Anthropic and industry partners to test Claude Mythos Preview, identify and mitigate vulnerabilities earlier, and coordinate defensive response. We evaluated Mythos using CTI-REALM , our open-source benchmark for real-world detection engineering tasks, and the results showed substantial improvements relative to prior models. Microsoft is also evaluating other models. As part of our overall security approach, we continuously evaluate models from multiple providers as they are made available and integrate them into our enterprise-grade security platform. This multi-model approach is intentional as no single model defines our strategy. Taking action in three fundamental areas Defenders need to move faster to keep pace with AI-driven threats. We are focusing on three areas to help customers reduce risk and improve resilience. 1. AI-led vulnerability discovery and mitigations to stay current on software We plan to incorporate advanced AI models, like Claude Mythos Preview, directly into our Security Development Lifecycle (SDL) to identify vulnerabilities and develop mitigations and updates. This allows us to discover more issues more quickly across a broader surface area than previous methods and address them earlier in the lifecycle. AI-assisted discoveries are handled thr

VulnerabilityThe Hacker News·52d ago
Harvester Deploys Linux GoGra Backdoor in South Asia Using Microsoft Graph API

The threat actor known as Harvester has been attributed to a new Linux version of its GoGra backdoor deployed as part of attacks likely targeting entities in South Asia. "The malware uses the legitimate Microsoft Graph API and Outlook mailboxes as a covert command-and-control (C2) channel, allowing it to bypass traditional perimeter network defenses," the Symantec and Carbon Black Threat Hunter