
News Feed from The Hacker News
The Hacker News Most trusted, widely-read independent cybersecurity news source for everyone; supported by hackers and IT professionals — Send TIPs to admin@thehackernews.com
- PaperCut Zero-Day Exploited in Attacks, Affecting All NG and MF Versionsby info@thehackernews.com (The Hacker News) on August 28, 2026 at 8:25 AM
PaperCut has alerted customers that bad actors are actively exploiting a vulnerability impacting all versions of its PaperCut NG and PaperCut MF print management software in zero-day attacks.The company has released an emergency patch for v25 and v26 to address the issue. It said it's "aware of confirmed customer incidents and is treating this matter with the highest priority." An
- APT28-Linked HOOKEDGE Backdoor Targets European Government and Diplomatic Organizationsby info@thehackernews.com (The Hacker News) on August 28, 2026 at 8:20 AM
Cybersecurity researchers have flagged a fresh set of campaigns targeting government and diplomatic organizations in Romania, Spain, and Türkiye between late September 2025 and early April 2026.These campaigns, per Recorded Future Insikt Group, have led to the deployment of a previously undocumented backdoor dubbed HOOKEDGE, a lightweight Windows batch script that's distributed via
- OpenAI Says Reward Hacking Drove AI Agents to Exploit Zero-Days and Breach Hugging Faceby info@thehackernews.com (The Hacker News) on August 27, 2026 at 6:36 PM
OpenAI on Wednesday revealed that reward hacking was a key driver behind the artificial intelligence (AI)-powered hack of Hugging Face last month, adding that it found evidence of misaligned behavior as early as late May.The incident, the company said, took place during cybersecurity evaluations of several OpenAI models, and that it was mainly fueled by what it described as a "highly capable
- Next.js Patches Critical AVIF and Windows Flaws Enabling Unauthenticated RCEby info@thehackernews.com (The Hacker News) on August 27, 2026 at 3:13 PM
Credit: Hacktron Vercel has released security patches for two critical-severity vulnerabilities in the Next.js web framework, both of which allow unauthenticated remote code execution, one exploitable via specially crafted AVIF image files and the other through a path traversal flaw affecting servers that use a Windows filesystem.The Windows path traversal, tracked as CVE-2026-75604&
- ThreatsDay: 296K IoT Botnet, 100+ Water Systems Targeted, SharePoint RCE Chain + 27 New Storiesby info@thehackernews.com (The Hacker News) on August 27, 2026 at 3:12 PM
A fake login page. A fake security scan. A fake productivity app. Apparently, pretending to be useful is still one of the easier ways into a machine.The rest of the week gets stranger: botnets borrowing AI, command traffic hiding in public infrastructure, malicious tools waiting before showing their real behavior, exposed systems getting scanned, and exploit windows shrinking again. Different




