The Hacker News Most trusted, widely-read independent cybersecurity news source for everyone; supported by hackers and IT professionals — Send TIPs to admin@thehackernews.com
-
GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosureby info@thehackernews.com (The Hacker News) on September 11, 2026 at 4:30 pm
GitLab has released patches to address multiple flaws, including a maximum-severity security vulnerability that has witnessed in-the-wild probes within hours of public disclosure. The vulnerability in question is CVE-2026-85706 (CVSS score: 10.0), a path traversal issue in the repository commits API that could allow an unauthenticated user to read arbitrary files from the GitLab server under
-
Anthropic Says Seven China-Based AI Labs Ran Industrial-Scale Claude Distillation Attacksby info@thehackernews.com (The Hacker News) on September 11, 2026 at 4:15 pm
Anthropic on Thursday said it identified and disrupted industrial-scale illicit distillation attacks against Claude from seven labs based in China, including Alibaba, Moonshot, DeepSeek, Z.ai (aka Zhipu), and MiniMax. Knowledge distillation by itself is a legitimate training method. It refers to a machine learning technique where a large, powerful AI model assumes the role of a "teacher" to
-
Claude Used to Automate Exploitation and Data Theft Across Multiple Victimsby info@thehackernews.com (The Hacker News) on September 11, 2026 at 2:29 pm
Anthropic has warned that cybercriminals and state-sponsored hackers alike are using its Claude models for cyber attacks, weapons design, propaganda, and mass surveillance between December 2025 and August 2026. The threat actors, which the artificial intelligence (AI) company has branded Generative Threat Groups (GTGs), span state-sponsored groups, financially motivated criminals, commercial
-
Russian State-Sponsored Hackers Use Claude to Rebuild Malware After Detectionby info@thehackernews.com (The Hacker News) on September 11, 2026 at 2:10 pm
Anthropic on Thursday revealed it disrupted a campaign mounted by a Russian state-sponsored threat actor that abused Claude for developing an AI-assisted workflow to get ahead of the detection curve. The operation has been attributed to a cyber espionage group it calls GTG-20006 (where "GTG" stands for Generative Threat Group), which aligns with broader reporting linking the cluster to Midnight
-
Your Critical Vulnerabilities Might Not Be Your Biggest Riskby info@thehackernews.com (The Hacker News) on September 11, 2026 at 11:30 am
Security teams have become exceptionally talented at finding vulnerabilities. Now, it’s time to turn our attention to optimizing the process for determining which of those vulnerabilities actually create a path to compromise. A critical vulnerability may look alarming on a scanner report, but if it sits behind strong segmentation, identity controls, and other defenses that prevent an attacker
-
Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoorsby info@thehackernews.com (The Hacker News) on September 11, 2026 at 7:31 am
Attackers have chained two flaws in JFrog Artifactory, the repository that software build pipelines pull from, to take administrator control of self-hosted servers and plant backdoors, cloud security company Wiz said in a report. Wiz saw the attacks between August 15 and September 8. JFrog had fixed both flaws before then, so only servers that had not been updated were open to them.
-
China-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT Backdoorby info@thehackernews.com (The Hacker News) on September 11, 2026 at 7:14 am
A China-linked hacking group exploited a flaw in Sogou Input Method, one of the most widely used tools for typing Chinese characters on Windows, to install a backdoor on victims' computers, security company Gen Digital said in research published Thursday. The attack started with a crafted link and ended with the attacker able to do anything the logged-in user could do. Tencent, which owns
-
PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flawsby info@thehackernews.com (The Hacker News) on September 11, 2026 at 6:46 am
PaperCut on Thursday released a new security maintenance release that replaces all previously published emergency patches that were pushed to address two security flaws that have come under active exploitation. The software development company said PaperCut NG/MF versions 26.0.5, 25.0.13 and 24.1.10 are now available for customers to download. "These are Regular Maintenance Releases (MR) that