Security News

105 posts

/nginx-hijacking-no-malware/featured-image.png
Hackers Are Hijacking NGINX Servers Without Installing Malware

February 5, 2026

Hackers are hijacking NGINX web servers and rerouting live traffic through their own infrastructure. No malware installed, no vulnerability exploited. Just a …

/ntlm-finally-disabled/featured-image.png
Why It Took Microsoft 32 Years to Disable NTLM

February 4, 2026

32 years. That is how long it took Microsoft to disable NTLM, the protocol that handles Windows login authentication. A broken system linked to $10 billion in …

/escan-antivirus-breach-2026-technical-analysis/featured-image.png
How eScan Antivirus Delivered Malware Instead of Protection

February 3, 2026

eScan antivirus got hacked. Again. Same company, same update infrastructure exploited, two years apart. This time: hundreds of machines infected in a 2-hour …

/notepad-plus-plus-supply-chain-attack/featured-image.png
Notepad++ Supply Chain Attack Full Story

February 2, 2026

Notepad++ delivered malware for six months. From June to December 2025, the update system was compromised. Millions of people use this software. Some of them …

/moltbook-database-breach-exposed-ai-agents/featured-image.png
How the Moltbook Database Breach Exposed 770,000 AI Agents

February 1, 2026

How the Moltbook Database Breach Exposed 770,000 AI Agents Moltbook, the social network exclusively for AI agents, had its entire database wide open. 770,000 …

/openclaw-moltbot-clawdbot-security-nightmare/featured-image.png
Three Names in Four Days and 1,800 Servers Leaking Credentials

January 31, 2026

Three names in four days! This AI assistant was Clawdbot, then Moltbot, and now OpenClaw. 1,800 exposed instances leaking API keys, passwords, and private …

/ollama-175000-servers-exposed/featured-image.png
Ollama Security Failure Exposes 175,000 AI Servers to Attackers

January 30, 2026

175,000 AI servers wide open to the internet. 130 countries. Attackers are selling access to other people’s hardware at a 50% discount, and using it for …

/openssl-12-cves-ai-january-2026/featured-image.png
AI Finds 12 OpenSSL Vulnerabilities Including a 27-Year-Old Bug

January 29, 2026

An AI just found 12 zero-day vulnerabilities in OpenSSL. All 12. In a single release. One of those bugs is older than OpenSSL itself, sitting in the code since …

/windows-one-update-ten-problems/featured-image.png
One Windows Update, Ten Problems, Two Emergency Patches

January 28, 2026

Microsoft pushed one security update. It broke at least 10 different things. 114 security fixes. Two emergency patches. PCs that won’t boot. Outlook that …

/office-zero-day-cve-2026-21509/featured-image.png
Office Zero-Day Actively Exploited - CVE-2026-21509

January 27, 2026

Microsoft Office zero-day actively exploited. Every version from 2016 to 365, including LTSC 2021 and 2024, over 400 million users. Attackers bypass all the …

/maliciouscorgi-vscode-extensions/featured-image.png
MaliciousCorgi: The VSCode Attack Hiding in Plain Sight - 1.5 Million Installs Affected

January 25, 2026

Two VSCode extensions with 1.5 million installs are stealing source code right now, not last month. Researchers published their findings on January 22. Three …

/telnetd-root-exploit-cve-2026-24061/featured-image.png
CVE-2026-24061. One Command, Root Access: The 11-Year Telnet Bug

January 24, 2026

It’s 2026 and attackers are still getting root shells via Telnet with a single command that requires no password whatsoever. 😏 SSH has existed for 31 …

/snap-store-domain-hijacking/featured-image.png
Snap Store Domain Hijacking Lets Attackers Push Malware Through Trusted Linux Apps

January 23, 2026

Attackers found a way to hijack legitimate apps in the Snap Store. 7000 packages. Millions of Linux users. One victim already lost 9 Bitcoin. That was $490,000. …

/sympy-dev-malware/featured-image.png
Fake SymPy Package Deploys Fileless Cryptominer on Linux Systems

January 22, 2026

A fake SymPy package deploys XMRig cryptominers on Linux machines. The malware hides inside polynomial functions. It only activates when you do math. Over 1,000 …

/voidlink-ai-malware/featured-image.png
VoidLink: 88,000 Lines of AI-Built Malware in 6 Days

January 21, 2026

One developer just built 88,000 lines of advanced malware in six days using AI. A single person with an AI coding assistant created a framework sophisticated …

/cracking-windows-domain-admin-passwords-rainbow-tables/featured-image.png
Cracking Windows Domain Admin Passwords Just Got Simple

January 20, 2026

Cracking Windows domain admin passwords just got simple. A massive set of rainbow tables just went public, a $600 laptop is enough, and it takes 12 hours max. …

/ghostposter-malware-browser-extension-png-steganography/featured-image.png
GhostPoster Malware: How Browser Extensions Hide JavaScript in PNG Icons

January 19, 2026

Your browser extension logo just became malware. Not the code. The actual image file. A PNG icon sitting in your toolbar, looking normal, hiding JavaScript that …

/gootloader-zip-evasion-2026/featured-image.png
GootLoader Tricks Security Tools Into Seeing a Safe File While Windows Runs Malware

January 18, 2026

GootLoader is back. This week, researchers discovered their newest trick: a way to make security tools completely blind. Your antivirus scans the ZIP file. …

/aws-supply-chain-vulnerability/featured-image.png
Two Missing Characters Nearly Compromised the AWS Supply Chain

January 17, 2026

Netflix. Twitch. iCloud. The servers of the CIA and NSA. 30% of all cloud infrastructure worldwide runs on Amazon Web Services. Two missing characters in a …

/pixel-9-zero-click-exploit/featured-image.png
Pixel 9 Zero-Click Exploit: How a Single Audio Message Can Compromise Your Phone

January 16, 2026

Someone sends you an audio message. You don’t open it, you don’t play it, you don’t even look at your phone. And you’re already hacked. …

/microsoft-copilot-reprompt-data-theft-one-click/featured-image.png
Microsoft Patches Copilot Vulnerability That Leaked Data with One Click

January 15, 2026

January 13, 2026. Microsoft patches a vulnerability in Copilot that let attackers steal personal data with a single click. The security bypass that worked for …

/cve-2023-31096-microsoft-modem-driver-exploit/featured-image.png
CVE-2023-31096: Microsoft Modem Driver Exploit Fixed Three Years Later

January 14, 2026

In January 2026, Microsoft had already patched 114 vulnerabilities! Four modem drivers deleted since October. Companies that wrote them: gone. Source code: …

/sap-patch-tuesday-four-critical-vulnerabilities-cve-2026-0501/featured-image.png
SAP Just Got Breached: Four Critical Vulnerabilities Let Attackers Steal Financial Data (CVE-2026-0501)

January 13, 2026

SAP just patched four critical vulnerabilities SAP just patched four critical vulnerabilities. CVSS scores up to 9.9. One lets attackers run code with nothing …

/ios-webkit-zero-day-iphone-compromise-cve-2025-43529/featured-image.png
Your iPhone Just Got Owned: iOS WebKit Zero-Days Require No Click (CVE-2025-43529)

January 12, 2026

Your iPhone can be compromised by loading a webpage. No click. No download. Just visit the wrong site. Apple patched this a month ago. Only 16% of users have …

/unix-v4-1973-buffer-overflow-history/featured-image.png
52-Year-Old Unix Tape Reveals the Same Buffer Overflow We're Still Making Today

January 11, 2026

A 52-year-old tape just revealed a buffer overflow that looks exactly like the bugs we’re still finding today. 😏 In July 2025, someone found a magnetic …

/ni8mare-n8n-cve-2026-21858-rce/featured-image.png
Ni8mare: n8n Vulnerability Gives Full Admin Access with One HTTP Header Change

January 10, 2026

100,000 servers. One HTTP header change. Full admin access. No password required. They call it “Ni8mare.” CVSS 10.0. The patch existed for 7 weeks. …

/notion-ai-prompt-injection-data-exfiltration/featured-image.png
Notion AI Leaks Data Before You Click OK: Prompt Injection Hits 100 Million Users

January 8, 2026

Notion AI steals data before the user clicks OK. 100 million users. 4 million paying customers. Amazon. Nike. Uber. Pixar. More than half of Fortune 500 …

/chrome-extensions-steal-chatgpt-conversations/featured-image.jpg
Malicious Chrome Extensions Steal ChatGPT Conversations from 900,000 Users

January 8, 2026

Two Chrome extensions. 900,000 users. Every ChatGPT and DeepSeek conversation stolen. Sent to attacker servers every 30 minutes. Google gave one of them a …

/fake-bsod-clickfix-dcrat-malware/featured-image.jpg
Fake Blue Screen of Death Installs $5 RAT Malware via ClickFix Attack

January 6, 2026

$5 buys two months of complete access to someone’s computer. Keylogging, webcam, passwords, files. The malware is called DCRat. The delivery method: a …

/esa-breach-200gb-data-stolen/featured-image.jpg
European Space Agency Hacked: 200GB Stolen in 7 Days, Data Sold on FBI Honeypot

January 5, 2026

€7.68 billion budget. 3,000 staff. A brand new Cyber Security Operations Centre opened. A hacker spent 7 days inside their systems downloading 200GB of data. …