8 Aug 2026, 02:36 UTC1 viewsread 8 August 2026 Nearly 800 Malicious npm Packages Deliver Cross-Platform RAT and Infostealer
https://thehackernews.com/2026/08/nearly-800-malicious-npm-packages.html
A cluster of nearly 800 malicious packages has been published to the npm registry as part of a new campaign designed to deliver cross-platform malware targeting Windows, Mac, and Linux systems.
"These packages appear to use AI slop squatted, or randomly generated typo…
Signed T3C#Z0N3
8 Aug 2026, 02:35 UTC1 viewsread 8 August 2026 ClickFix Attacks Deliver macOS Stealer That Can Drain Crypto Wallets
https://thehackernews.com/2026/08/clickfix-attacks-deliver-macos-stealer.html
ClickFix-style attacks are being used to deliver a Go-based malware capable of stealing cryptocurrency assets, as well as browser-stored passwords, Apple iCloud Keychain data, and cached credentials.
The macOS-focused infection chain is designed to deliver a shell script…
Signed T3C#Z0N3
8 Aug 2026, 02:34 UTC1 viewsread 8 August 2026 UNC6671 Vishing Attacks Target Personal Phones to Steal SaaS Data
https://thehackernews.com/2026/08/unc6671-vishing-attacks-target-personal.html
A recent wave of cyber attacks targeting financial services, private equity, and professional services is attributed to a data extortion group known as UNC6671.
"UNC6671 continues to rely on voice phishing (vishing) to target enterprise employees, posing as IT help desk st…
Signed T3C#Z0N3
7 Aug 2026, 14:15 UTC1 viewsread 8 August 2026 New WordPress Pre-Auth XSS Could Lead to PHP Code Execution - Patch ASAP
https://thehackernews.com/2026/08/new-wordpress-pre-auth-xss-could-lead.html
WordPress has fixed a pre-authentication reflected cross-site scripting (XSS) flaw in its login screen that affects every version of the content management system. Under additional conditions, the bug can be chained into PHP code execution on the server.
Tracked as CV…
Signed T3C#Z0N3
7 Aug 2026, 14:14 UTC1 viewsread 8 August 2026 Growing Up The Hard Way
https://thehackernews.com/2026/08/growing-up-hard-way.html
Open Source had a great childhood.
For two decades it got to be a kid. It ran around barefoot, gave everything away, trusted strangers, and never once thought about who was watching. It ran the kind of lemonade stand that took IOUs from anyone who wandered up — take what you need, pay me back whenever, no need to leave a name. It was…
Signed T3C#Z0N3
7 Aug 2026, 14:13 UTC1 viewsread 8 August 2026 18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers
https://thehackernews.com/2026/08/18-year-old-linux-sctp-flaw-could-let.html
A use-after-free bug in Linux's SCTP networking code can be turned into full root on a host, and Tencent researchers say they used it to escape a container and reach the machine underneath.
The flaw has existed since 2008. The fix already shipped: stable kern…
Signed T3C#Z0N3
7 Aug 2026, 11:22 UTC4 viewsread 8 August 2026 Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails
https://thehackernews.com/2026/08/microsoft-365-aitm-phishing-hijacks.html
Cybersecurity researchers have called attention to an active "widespread email-driven phishing campaign" that employs adversary-in-the-middle (AitM) techniques to take control of Microsoft 365 accounts with an aim to identify key personnel involved in financial…
Signed T3C#Z0N3
7 Aug 2026, 11:21 UTC4 viewsread 8 August 2026 AI-Assisted HTTP Terminator Finds Novel HTTP Desync Techniques and Apache Zero-Day
https://thehackernews.com/2026/08/ai-assisted-http-terminator-finds-novel.html
PortSwigger says HTTP Terminator, an artificial intelligence (AI)-assisted research system built by James Kettle, generated and proved new HTTP desynchronization techniques after exploring 30,000 candidate attack vectors.
PortSwigger said a separate human-…
Signed T3C#Z0N3
7 Aug 2026, 10:02 UTC2 viewsread 8 August 2026 New NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables
https://thehackernews.com/2026/08/new-natjack-attacks-hijack-tcp-sessions.html
Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that manipulates network address translation (NAT) connection state to hijack active TCP sessions, spoof DNS responses, expose mapped ports, and exhaust NAT tables.
Presented a…
Signed T3C#Z0N3
7 Aug 2026, 10:01 UTC3 viewsread 8 August 2026 Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access
https://thehackernews.com/2026/08/malware-can-abuse-windows-hello-for.html
Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that manipulates network address translation (NAT) connection state to hijack active TCP sessions, spoof DNS responses, disclose victim IP addresses and mapped ports, and exhaust NA…
Signed T3C#Z0N3
7 Aug 2026, 10:00 UTC4 viewsread 8 August 2026 Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets
https://thehackernews.com/2026/08/claude-code-and-gemini-cli-flaws-let.html
A GitHub issue opened by an account with no repository privileges was enough to execute code on the CI runners behind Anthropic's and Google's own coding-agent repositories. On OpenAI's, it was enough to hijack the next agent run.
Novee Security ran the attack aga…
Signed T3C#Z0N3
7 Aug 2026, 09:59 UTC4 viewsread 8 August 2026 TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign
https://thehackernews.com/2026/08/teampcp-linked-to-redis-attacks-dating.html
A new analysis has uncovered that the threat actor tracked as TeamPCP has been active on the cybercrime scene as far back as 2020, indicating the group has been compromising internet-facing infrastructure for years before training their sights on the softwa…
Signed T3C#Z0N3
Showing the 12 most recent of 20 posts we hold for @techzoner. View and reaction counts are the latest single reading for each post, not a live figure, and a recent post is still accumulating both. A view count marked ≈ was rounded by Telegram before we ever saw it — t.me prints views in full below 1,000 and to three significant figures above, so ≈1,200,000 means somewhere between 1,150,000 and 1,249,999. Unmarked counts are exact. Text is reproduced from the public post preview and truncated for length.