Skip to content
Tech News
clear
Topics: Today This Week This Month This Year
91.
Malicious crypto-stealing VSCode extensions resurface on OpenVSX (bleepingcomputer.com)
92.
A New Attack Lets Hackers Steal 2-Factor Authentication Codes From Android Phones (wired.com)
93.
Hackers can steal 2FA codes and private messages from Android phones (arstechnica.com)
94.
Researchers find just 250 malicious documents can leave LLMs vulnerable to backdoors (engadget.com)
95.
Malicious Rust packages on Crates.io steal crypto wallet keys (bleepingcomputer.com)
96.
NPM package caught using QR Code to fetch cookie-stealing malware (bleepingcomputer.com)
97.
Hidden risk in Notion 3.0 AI agents: Web search tool abuse for data exfiltration (news.ycombinator.com)
98.
CISA exposes malware kits deployed in Ivanti EPMM attacks (bleepingcomputer.com)
99.
Tinycolor supply chain attack post-mortem (news.ycombinator.com)
100.
Microsoft adds malicious link warnings to Teams private chats (bleepingcomputer.com)
101.
Hackers left empty-handed after massive NPM supply-chain attack (bleepingcomputer.com)
102.
Hackers steal 3,325 secrets in GhostAction GitHub supply chain attack (bleepingcomputer.com)
103.
6 browser-based attacks all security teams should be ready for in 2025 (bleepingcomputer.com)
104.
Threat actors abuse X’s Grok AI to spread malicious links (bleepingcomputer.com)
105.
Why you should delete your browser extensions right now - or do this to stay safe (zdnet.com)
106.
How RubyGems.org protects OSS infrastructure (news.ycombinator.com)
107.
Malicious Android apps with 19M installs removed from Google Play (bleepingcomputer.com)
108.
LLMs and coding agents are a security nightmare (news.ycombinator.com)
109.
LLMs and Coding Agents = Security Nightmare (news.ycombinator.com)
110.
DoubleAgents: Fine-Tuning LLMs for Covert Malicious Tool Calls (news.ycombinator.com)
111.
60 malicious Ruby gems downloaded 275,000 times steal credentials (bleepingcomputer.com)
112.
Fake WhatsApp developer libraries hide destructive data-wiping code (bleepingcomputer.com)
113.
Wave of 150 crypto-draining extensions hits Firefox add-on store (bleepingcomputer.com)
114.
Attackers exploit link-wrapping services to steal Microsoft 365 logins (bleepingcomputer.com)
115.
Inside a Real Clickfix Attack: How This Social Engineering Hack Unfolds (bleepingcomputer.com)
116.
Flaw in Gemini CLI AI coding assistant allowed stealthy code execution (bleepingcomputer.com)
117.
Hackers breach Toptal GitHub account, publish malicious npm packages (bleepingcomputer.com)
118.
Firefox-patch-bin, librewolf-fix-bin AUR packages contain malware (news.ycombinator.com)
119.
GitHub abused to distribute payloads on behalf of malware-as-a-service (arstechnica.com)
120.
Beware! Research shows Gmail’s AI email summaries can be hacked (androidauthority.com)
Today's top topics: apple anthropic google spacex amazon elon musk openai ios 27 microsoft meta
View all today's topics →