Find a story

Search Spins

Search titles, summaries, and missing voices across published articles — press releases, announcements, and media coverage.

38 results for “cybersecurity researcher”

SPIN Processed News Frame: The Shield

NovaCookies Campaigns Abuse Genuine Docusign Notifications to Steal Microsoft 365 Sessions

NovaCookies is a newly disclosed adversary-in-the-middle phishing toolkit that abuses legitimate DocuSign email notifications to redirect Microsoft 365 sign-in traffic and steal authenticated sessions.

Spin 30% Source-Supported AI Risk Moderate Needs Evidence
The Hacker News

Aug 26, 2026

SPIN Processed News Frame: The Shield

24 npm Packages Abuse unpkg Mirrors to Host Fake Cloudflare CAPTCHA Pages

A cybersecurity research disclosure reveals that 24 malicious npm packages are being used as free hosting infrastructure to serve fake Cloudflare CAPTCHA pages for phishing, exploiting unpkg’s public CDN mirroring service.

Spin 40% Claim Present in Source AI Risk Moderate
The Hacker News

Aug 25, 2026

SPIN Processed News Frame: The Shield

Weedhack Malware Spreads via Fake Minecraft Clients and SEO Poisoning

Weedhack malware is actively distributed to gamers through fake Minecraft client websites using SEO poisoning and brand mimicry, with McAfee reporting over 6,300 blocked access attempts.

Spin 40% Source-Supported AI Risk Moderate Needs Evidence
The Hacker News

Aug 25, 2026

SPIN Processed News Frame: The Shield

Operation QUICSILVER Targets Myanmar Government and IT with QUICAgent Backdoor

A cybersecurity campaign dubbed Operation QUICSILVER used phishing lures mimicking graduation invitations to deploy the QUICAgent Go-based backdoor against Myanmar government and IT entities, attributed by Seqrite Labs to a China-nexus threat actor.

Spin 40% Source-Supported AI Risk Moderate Needs Evidence
The Hacker News

Aug 24, 2026

SPIN Processed News Frame: The Shield

Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet

A new Android-based vehicle head unit malware family, discovered by Kaspersky in June 2026, exploits built-in firmware updaters in DoFun-developed automotive infotainment systems to deploy multi-stage payloads enabling ad fraud and proxy botnet operations.

Spin 45% Source-Supported AI Risk Moderate Needs Evidence
The Hacker News

Aug 21, 2026

SPIN Processed News Frame: The Shield

Isolated-vm Flaw Lets Sandboxed JavaScript Escape to Host for Potential RCE

A critical sandbox escape vulnerability (GHSA-864f-rcv7-6rh4) was disclosed in isolated-vm, an open-source JavaScript sandbox library used to isolate untrusted code, enabling potential remote code execution on the host system.

Spin 25% Claim Present in Source AI Risk Moderate
The Hacker News

Aug 20, 2026

SPIN Processed News Frame: none

Elementor Pro Flaw Could Let Unauthenticated Attackers Upload PHP and Execute Code

A critical remote code execution vulnerability (CVE-2026-32475, CVSS 9.0) was disclosed in Elementor Pro’s Forms module, enabling unauthenticated attackers to upload malicious PHP files.

Spin 0% Claim Present in Source AI Risk Moderate
The Hacker News

Aug 20, 2026

SPIN Processed News Frame: The Fog

Chrome DevTools Technique Enables Authenticated Session Hijacking in Live Windows Browsers

A cybersecurity research team disclosed a post-exploitation technique exploiting Chrome DevTools Protocol (CDP) in live Windows browser processes to hijack authenticated sessions, requiring prior code execution on the host.

Spin 35% Claim Present in Source AI Risk Moderate
The Hacker News

Published Aug 14, 2026 · Analyzed Aug 17, 2026

SPIN Processed News Frame: The Hype

Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing

Kimwolf v7 is a newly identified Android/IoT botnet variant that uses HTTP/2 to mimic legitimate browser traffic during DDoS attacks, increasing evasion capability against network defenses.

Spin 45% Claim Present in Source AI Risk Moderate
The Hacker News

Aug 12, 2026

SPIN Processed News Frame: The Hype

BdThemes Supply Chain Attack Poisons JSON to Create Rogue WordPress Admins

A supply chain attack compromised BdThemes' WordPress plugins by injecting malicious JSON payloads that created unauthorized administrator accounts, without altering source code in the official WordPress.org repository.

Spin 45% Claim Present in Source AI Risk Moderate
The Hacker News

Aug 11, 2026

SPIN Processed News Frame: The Shield

Solidity Pro VS Code Extensions Steal Crypto Wallets, API Keys, and Credentials

Two malicious VS Code extensions named 'solidity-pro' were identified as delivering browser wallet and credential-stealing malware, though they have since been removed from Open VSX.

Spin 40% Claim Present in Source AI Risk Moderate
The Hacker News

Aug 10, 2026

SPIN Processed News Frame: The Shield

Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails

A live phishing campaign exploits adversary-in-the-middle (AitM) techniques to hijack Microsoft 365 accounts via residential proxies, targeting payroll and finance personnel to harvest sensitive email data.

Spin 40% Claim Present in Source AI Risk Moderate
The Hacker News

Aug 7, 2026

SPIN Processed News Frame: The Cushion

Apple iCloud Private Relay Can Expose Real IPs Through WebKit Proxy Bypasses

Security researchers identified WebKit-based proxy bypass vulnerabilities that can leak users' real IP addresses despite iCloud Private Relay's dual-hop privacy architecture.

Spin 45% Source-Supported AI Risk Moderate Needs Evidence
The Hacker News

Aug 6, 2026

SPIN Processed News Frame: The Shield

Poison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer Prompt

Cybersecurity researchers identified 'Poison Claude', an illicit service advertising unauthorized access to Anthropic's LLMs on underground forums, raising concerns about model leakage, prompt interception, and AI supply chain integrity.

Spin 40% Claim Present in Source AI Risk Moderate
The Hacker News

Aug 5, 2026

SPIN Processed News Frame: The Shield

Trojanized npm Packages Employ NullReceiver Tactic to Decode C2 IP from Blockchain

Cybersecurity researchers identified a novel malware technique called NullReceiver that hides command-and-control server IP addresses in empty Ethereum transaction destination addresses within compromised npm packages.

Spin 35% Claim Present in Source AI Risk Moderate
The Hacker News

Aug 5, 2026

SPIN Processed News Frame: The Shield

QuickFox Supply Chain Attack Delivers FDMTP Backdoor via Trojanized Windows Installer

A supply chain attack compromised QuickFox's Windows installer to deliver the FDMTP backdoor, targeting overseas Chinese users since at least August 2025.

Spin 65% Source-Supported AI Risk Moderate Needs Evidence
The Hacker News

Aug 5, 2026

SPIN Processed News Frame: The Shield

Fake Adobe and Zoom Updates Install ScreenConnect for Persistent Remote Access

A cybersecurity threat campaign named SMOKE#SCREEN is actively using fake Adobe and Zoom update lures to socially engineer users into installing ConnectWise ScreenConnect — a legitimate RMM tool — for unauthorized, persistent remote access.

Spin 35% Claim Present in Source AI Risk Moderate
The Hacker News

Aug 4, 2026

SPIN Processed News Frame: The Shield

Nine-Year Fraud Campaign Clones Russian Company Sites to Steal Advance Payments

A nine-year cyberfraud operation cloned websites of Russian industrial firms to trick international buyers into sending advance payments to fraudulent accounts.

Spin 40% Source-Supported AI Risk Moderate Needs Evidence
The Hacker News

Jul 29, 2026

SPIN Processed News Frame: The Shield

Public PoC Released for Exploited Check Point SmartConsole Authentication Bypass

A critical authentication bypass vulnerability (CVE-2026-16232, CVSS 9.3) in Check Point’s SmartConsole login process has been actively exploited in the wild, and researchers have now released a public proof-of-concept exploit.

Spin 40% Claim Present in Source AI Risk Moderate
The Hacker News

Jul 29, 2026

SPIN Processed News Frame: The Shield

24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login

Security researchers discovered 24,650 internet-exposed BMCs leaking IPMI password hashes pre-authentication — a critical credential exposure risk enabling offline brute-force attacks.

Spin 25% Claim Present in Source AI Risk Moderate
The Hacker News

Jul 28, 2026

SPIN Processed News Frame: The Shield

ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing Link

A critical vulnerability dubbed AgentForger was disclosed in OpenAI's ChatGPT Workspace Agents, enabling unauthorized deployment of autonomous AI agents via phishing links; it has been patched as of June 8.

Spin 65% Claim Present in Source AI Risk Moderate
The Hacker News

Jul 24, 2026

SPIN Processed News Frame: The Shield

How AI guardrails are impeding the work of offensive cybersecurity researchers

Cybersecurity researchers report that AI model guardrails from OpenAI and Anthropic are interfering with legitimate offensive security research, raising concerns about unintended constraints on vulnerability discovery.

Spin 55% Claim Present in Source AI Risk Moderate
TechCrunch

Jul 24, 2026

SPIN Processed News Frame: The Shield

Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files

A sandbox escape vulnerability was disclosed in Anthropic's Claude Cowork AI agent, enabling unauthorized file access on macOS hosts by breaking out of its Linux VM confinement.

Spin 65% Claim Present in Source AI Risk Moderate
The Hacker News

Jul 23, 2026

SPIN Processed News Frame: none

Ubuntu snap-confine Flaw Could Give Local Users Root on Default Desktop Installs

A high-severity local privilege escalation vulnerability (CVE-2026-8933, CVSS 7.8) in snap-confine allows unprivileged users to gain root access on default Ubuntu Desktop installations (24.04, 25.10, 26.04), posing immediate system compromise risk.

Spin 0% Claim Present in Source
The Hacker News

Jul 23, 2026

Page 1 / 2 Next →