Security news

Latest security news

Today · Wed, 16 Sept 2026

  1. N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security

    N0va is targeting organizations across North America and Europe with phishing campaigns that impersonate trusted services and abuse legitimate authentication flows. Successful attacks can give threat actors access to valid accounts without relying on obvious malware activity. From there, a single compromised identity can open the door to sensitive data, business systems, and additional cloud

    The Hacker News
  2. Spain gets its first taste of AI-aided cyber attack

    Data protection chiefs call for 'immediate review' of data protection models

    The Register
  3. Cyber-Attacks Cost Organizations $52,000 on Average

    Hiscox highlighted the huge financial and operational costs of cyber-attacks, with the average cost of an incident at $52,000

    Infosecurity Magazine

Yesterday · Tue, 15 Sept 2026

  1. Malcious Admin Menu Editor Pro plugin backdoors 1,500 WordPress sites

    Malicious versions of the Admin Menu Editor Pro plugin for WordPress have been distributed to more than 200 customers after a threat actor compromised the maintainer's website and pushed updates that created a hidden user account.

    BleepingComputerWordPress
  2. CenterPoint Energy confirms customer data stolen in cyberattack

    CenterPoint Energy disclosed a breach compromising some customers' personal information after an attacker leaked data allegedly stolen from the utility company.

    BleepingComputer
  3. Thai Broadband Provider Hacked via Fortinet Vulnerability

    The hackers staged numerous scripts for reconnaissance and CVE probing, along with brute-force utilities and privilege escalation tools.

    SecurityWeekFortinet
  4. Microsoft AI Code of Conduct Sets Cyberattack Boundaries, Chain of Command, Safety Constraints

    The Humanist AI Code of Conduct draws a line between defensive cyber research and operational attack capability.

    SecurityWeekMicrosoft
  5. Hacked HBO Max Reddit Account Used for Malware Delivery via ClickFix Attack

    Ads led to a ClickFix page designed to trick macOS and Windows users into installing malware.

    SecurityWeekWindows
  6. China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE

    A Chinese threat actor has been attributed to a spear-phishing campaign that exploits recently patched security flaws in Google Chrome and Microsoft Windows to deliver a malicious JavaScript backdoor called GRIMWEDGE. Volexity, which is tracking the threat cluster under the moniker UTA0560, said the activity targeted multiple non-governmental organizations (NGOs) on September 1, 2026. "The

    The Hacker NewsGoogle, Microsoft, Windows

Mon, 14 Sept 2026

  1. HBO Max Reddit account compromised to serve ClickFix attacks

    Part of a 'massive 48-hour malvertising blitz' targeting macOS and Windows machines with malware

    The RegisterWindows

About this news

1,256
Stories
41
Added in the last 24 hours
19
Critical in the last 7 days
4
Reported by several outlets