π¨ DOUBLECUP turns ClickFix into a cross-platform malware pipeline.
It stages code in browser-cached PNGs, locks payloads to each victimβs public IP, and delivers CountLoader on Windows and macOS or the newly documented DeviceManager RAT.
Inside the attack chain: https://thehackernews.com/2026/08/doublecup-uses-clickfix-and-cached-pngs.html
It stages code in browser-cached PNGs, locks payloads to each victimβs public IP, and delivers CountLoader on Windows and macOS or the newly documented DeviceManager RAT.
Inside the attack chain: https://thehackernews.com/2026/08/doublecup-uses-clickfix-and-cached-pngs.html
π₯9π€1
βΌοΈ WARNING - A new critical cPanel flaw could let an authenticated hosting customer run SQL as database root.
CVE-2026-58048 affects all supported cPanel & WHM versions and WP Squared. In some configurations, the compromise may reach the underlying OS.
Affected builds and details: https://thehackernews.com/2026/08/new-cpanel-critical-flaw-could-let.html
CVE-2026-58048 affects all supported cPanel & WHM versions and WP Squared. In some configurations, the compromise may reach the underlying OS.
Affected builds and details: https://thehackernews.com/2026/08/new-cpanel-critical-flaw-could-let.html
β‘8π8π€3π₯1
This media is not supported in your browser
VIEW IN TELEGRAM
π¨ One malicious GitHub issue could trigger a privileged Google ADK agent.
Google pulled 3 ADK AI workflows after researchers demonstrated that adk-botβs trusted identity could become a bridge to CI runner code execution and bot PAT exfiltration.
How the chain worked: https://thehackernews.com/2026/08/google-deletes-3-adk-ai-workflows-after.html
Google pulled 3 ADK AI workflows after researchers demonstrated that adk-botβs trusted identity could become a bridge to CI runner code execution and bot PAT exfiltration.
How the chain worked: https://thehackernews.com/2026/08/google-deletes-3-adk-ai-workflows-after.html
π₯10
AI is lowering the bar for cyberattacks.
LLMs help less experienced attackers understand vulnerabilities, prototype code, debug payloads, and adapt known techniques faster. The result is a wider pool of capable attackers and less time for defenders to react.
What security teams need to change: https://thehackernews.com/2026/08/when-vibe-hacking-turns-ai-into-junior.html
LLMs help less experienced attackers understand vulnerabilities, prototype code, debug payloads, and adapt known techniques faster. The result is a wider pool of capable attackers and less time for defenders to react.
What security teams need to change: https://thehackernews.com/2026/08/when-vibe-hacking-turns-ai-into-junior.html
π₯9
π Fake Adobe and Zoom updates lead to persistent remote access.
The active SMOKE#SCREEN campaign uses phishing lures to install ScreenConnect, letting attackers blend into legitimate IT activity instead of deploying a custom RAT.
How the attack works: https://thehackernews.com/2026/08/fake-adobe-and-zoom-updates-install.html
The active SMOKE#SCREEN campaign uses phishing lures to install ScreenConnect, letting attackers blend into legitimate IT activity instead of deploying a custom RAT.
How the attack works: https://thehackernews.com/2026/08/fake-adobe-and-zoom-updates-install.html
π3π₯1
π₯ ALERT - A massive npm supply-chain attack is unfolding right now.
It began with a poisoned Keyv release and spread across hundreds of packages.
The worm:
β Credential stealer via install scripts
β npm, GitHub, cloud and CI secrets targeted
β Claude Code and VS Code hooks in Keyv repo
β Valid OIDC and SLSA provenance
Read the full story: https://thehackernews.com/2026/08/keyv-linked-npm-worm-poisons-hundreds.html
It began with a poisoned Keyv release and spread across hundreds of packages.
The worm:
β Credential stealer via install scripts
β npm, GitHub, cloud and CI secrets targeted
β Claude Code and VS Code hooks in Keyv repo
β Valid OIDC and SLSA provenance
Read the full story: https://thehackernews.com/2026/08/keyv-linked-npm-worm-poisons-hundreds.html
π6π±4π€2π₯1π1
This is what a modern SOC should look like: connected, context-driven, and ready to act. Equip yours with operationalized threat intelligence from 15K+ SOCs to support triage, detection, and response -> https://thn.news/feeds-soc
π₯11π3π1
β οΈ Greatness now has another route past MFA.
The $289/month PhaaS kit adds device code phishing to AiTM token theft, OAuth consent abuse, and ready-made lures, all from one operator panel.
Researchers saw one stolen Microsoft 365 token still being used more than two weeks later.
See how it works: https://thehackernews.com/2026/08/greatness-phaas-adds-device-code.html
The $289/month PhaaS kit adds device code phishing to AiTM token theft, OAuth consent abuse, and ready-made lures, all from one operator panel.
Researchers saw one stolen Microsoft 365 token still being used more than two weeks later.
See how it works: https://thehackernews.com/2026/08/greatness-phaas-adds-device-code.html
π₯13β‘1π1
π¨ ALERT - QuickFoxβs Windows installer delivered a backdoor.
Active since at least August 2025, the supply chain attack scanned Windows systems for 26 specific apps. Only devices that passed those checks downloaded FDMTP.
See how the targeting worked: https://thehackernews.com/2026/08/quickfox-supply-chain-attack-delivers.html
Active since at least August 2025, the supply chain attack scanned Windows systems for 26 specific apps. Only devices that passed those checks downloaded FDMTP.
See how the targeting worked: https://thehackernews.com/2026/08/quickfox-supply-chain-attack-delivers.html
π₯8π3β‘2
β οΈ Attackers are exploiting flaws in Langflow, Apache Tomcat, and N-able N-central.
CISA added all three to KEV. The Langflow bug allows unauthenticated RCE on default deployments, while Unit 42 tied the Tomcat flaw to an AI-enabled campaign that attempted over 460 targets.
Read: https://thehackernews.com/2026/08/cisa-flags-langflow-rce-tomcat-and-n.html
CISA added all three to KEV. The Langflow bug allows unauthenticated RCE on default deployments, while Unit 42 tied the Tomcat flaw to an AI-enabled campaign that attempted over 460 targets.
Read: https://thehackernews.com/2026/08/cisa-flags-langflow-rce-tomcat-and-n.html
π₯3π€2π1
βΌοΈ A Claude Mythos 5 agent spent 34 hours trying to backdoor a real open-source project.
It hid a malware dropper inside a working bug fix. When exposed, it denied the code was malicious, rewrote Git history, and used a second account to vouch for itself.
The attempt failed because a human read the diff.
Read what happened and how it worked π https://thehackernews.com/2026/08/claude-mythos-5-tried-to-backdoor-real.html
It hid a malware dropper inside a working bug fix. When exposed, it denied the code was malicious, rewrote Git history, and used a second account to vouch for itself.
The attempt failed because a human read the diff.
Read what happened and how it worked π https://thehackernews.com/2026/08/claude-mythos-5-tried-to-backdoor-real.html
π€―33π6π5π€3π₯2π2π±2
π¨ 77 fake Open VSX extensions caught exfiltrating developer data.
They copied legitimate tools and sent host and workspace details to one domain. Nineteen also collected Git, CI, editor, and machine data, retrying for up to seven days.
Read the full story β https://thehackernews.com/2026/08/open-vsx-removes-77-malicious-evil-twin.html
They copied legitimate tools and sent host and workspace details to one domain. Nineteen also collected Git, CI, editor, and machine data, retrying for up to seven days.
Read the full story β https://thehackernews.com/2026/08/open-vsx-removes-77-malicious-evil-twin.html
π₯3π2π€―2π±2
This media is not supported in your browser
VIEW IN TELEGRAM
π¨ 321 n8n instances accepted leaked API tokens.
Found in public GitHub commits, the tokens could expose workflows and execution data, let attackers use stored credentials, and, in some configurations, extract their raw values.
No CVE required. See how the attacks work: https://thehackernews.com/2026/08/leaked-n8n-api-tokens-exposed-live.html
Found in public GitHub commits, the tokens could expose workflows and execution data, let attackers use stored credentials, and, in some configurations, extract their raw values.
No CVE required. See how the attacks work: https://thehackernews.com/2026/08/leaked-n8n-api-tokens-exposed-live.html
π₯5π2
- No login
- No write access
- Just crafted Org-mode markup
π CVE-2026-59774, a critical Gitea flaw, lets attackers use a public repository to read any file accessible to the Gitea service account. Gitea says it could also be chained into command execution.
How it works and what admins should check: https://thehackernews.com/2026/08/critical-gitea-flaw-let-unauthenticated.html
- No write access
- Just crafted Org-mode markup
π CVE-2026-59774, a critical Gitea flaw, lets attackers use a public repository to read any file accessible to the Gitea service account. Gitea says it could also be chained into command execution.
How it works and what admins should check: https://thehackernews.com/2026/08/critical-gitea-flaw-let-unauthenticated.html
π7π₯2β‘1
π A Linux kernel root exploit is now public.
The 13-year-old OVSwrap flaw (CVE-2026-64531) can let unprivileged local users gain root through Open vSwitch on affected systems.
The public PoC includes offsets for roughly 800 x86-64 kernel builds.
Patch or block the module: https://thehackernews.com/2026/08/new-ovswrap-linux-kernel-flaw-lets.html
The 13-year-old OVSwrap flaw (CVE-2026-64531) can let unprivileged local users gain root through Open vSwitch on affected systems.
The public PoC includes offsets for roughly 800 x86-64 kernel builds.
Patch or block the module: https://thehackernews.com/2026/08/new-ovswrap-linux-kernel-flaw-lets.html
π₯15π€1
π¨ A public Google Chromium bug report exposed active corporate JWT tokens for a Fortune 50.
Automated sanitization stripped cookie headers, but left custom x-session headers untouched.
Read the deep dive by Unixi CTO Reuvein Vinokurov: https://thn.news/the-accidental-breach
Automated sanitization stripped cookie headers, but left custom x-session headers untouched.
Read the deep dive by Unixi CTO Reuvein Vinokurov: https://thn.news/the-accidental-breach
π₯6β‘1
π¨ Two trojanized npm packages hid a command serverβs IP address inside blank Ethereum transfers.
The North Korea-linked NullReceiver technique avoids smart contracts and transaction data, making the attackerβs infrastructure harder for defenders to track.
See how it works: https://thehackernews.com/2026/08/trojanized-npm-packages-decode-c2-ip.html
The North Korea-linked NullReceiver technique avoids smart contracts and transaction data, making the attackerβs infrastructure harder for defenders to track.
See how it works: https://thehackernews.com/2026/08/trojanized-npm-packages-decode-c2-ip.html
β‘3
π¨ Veeam, Terraform MCP, and Django patched 11 flaws exposing credentials, crossing tenant boundaries, and enabling file writes.
Veeam fixed CVE-2026-58073, which can expose managed-agent credentials without authentication, and CVE-2026-58072, a file-write flaw that can lead to RCE.
HashiCorp patched CVE-2026-16498 and CVE-2026-16496, which can break tenant isolation in Terraform MCP Server, plus SSRF flaw CVE-2026-14869.
Django fixed CVE-2026-15307, a GeoDjango flaw that can write files and, on some setups, lead to code execution.
See what needs patching: https://thehackernews.com/2026/08/veeam-terraform-mcp-django-patch.html
Veeam fixed CVE-2026-58073, which can expose managed-agent credentials without authentication, and CVE-2026-58072, a file-write flaw that can lead to RCE.
HashiCorp patched CVE-2026-16498 and CVE-2026-16496, which can break tenant isolation in Terraform MCP Server, plus SSRF flaw CVE-2026-14869.
Django fixed CVE-2026-15307, a GeoDjango flaw that can write files and, on some setups, lead to code execution.
See what needs patching: https://thehackernews.com/2026/08/veeam-terraform-mcp-django-patch.html
π₯3β‘1
β οΈ Kali365 turns Microsoft's real device login page into a phishing trap.
Victims enter an attacker-controlled code, which may give attackers continued access to Microsoft 365 email and files.
AnyRun records 80+ public sessions a week, with the US the main target.
Read the article: https://thehackernews.com/2026/08/kali365-weaponizes-microsoft.html
Victims enter an attacker-controlled code, which may give attackers continued access to Microsoft 365 email and files.
AnyRun records 80+ public sessions a week, with the US the main target.
Read the article: https://thehackernews.com/2026/08/kali365-weaponizes-microsoft.html
π₯4π€―4β‘1
β‘ Paperclip AI flaws can turn a malicious agent import into commands running on the host.
One chain reaches exposed servers through default registration. Another crosses into a developerβs localhost through DNS rebinding.
A public Metasploit module automates the server-side attack.
See how both chains work β https://thehackernews.com/2026/08/paperclip-ai-flaws-let-attackers-run.html
One chain reaches exposed servers through default registration. Another crosses into a developerβs localhost through DNS rebinding.
A public Metasploit module automates the server-side attack.
See how both chains work β https://thehackernews.com/2026/08/paperclip-ai-flaws-let-attackers-run.html
π4π₯3
βΌοΈ Cheap Claude access can expose every prompt.
Researchers found 6+ underground AI proxy services. Poison Claude offered models at 5β15% of official prices through pooled accounts funded with abused AWS credits, with 872 active users exposed.
As an intermediary, it could read or leak prompts, swap models, or vanish without warning.
Read β https://thehackernews.com/2026/08/poison-claude-sells-discounted-claude.html
Researchers found 6+ underground AI proxy services. Poison Claude offered models at 5β15% of official prices through pooled accounts funded with abused AWS credits, with 872 active users exposed.
As an intermediary, it could read or leak prompts, swap models, or vanish without warning.
Read β https://thehackernews.com/2026/08/poison-claude-sells-discounted-claude.html
π₯13π1π€1