
News Feed from The Hacker News
The Hacker News Most trusted, widely-read independent cybersecurity news source for everyone; supported by hackers and IT professionals — Send TIPs to admin@thehackernews.com
- U.S. Government Entity Paid Kairos $1 Million in Data-Theft Extortion Caseby info@thehackernews.com (The Hacker News) on July 4, 2026 at 12:47 PM
A U.S. government entity paid about $1 million to keep stolen files from being leaked, according to a new case study by Rakesh Krishnan for Ransom-ISAC, built on a leaked negotiation chat and the blockchain trail the payment left.The odd part: the group that took the money calls itself Kairos, but it may not be a ransomware gang at all. Krishnan found no sign that it ever locked a single
- North Korean Hackers Publish 108 Malicious Packages and Extensions in PolinRider Campaignby info@thehackernews.com (The Hacker News) on July 4, 2026 at 11:17 AM
The North Korean threat actors linked to the Contagious Interview campaign have been observed publishing 108 unique packages and web browser extensions spanning npm, Packagist, Go, and Google Chrome as part of an ongoing activity referred to as PolinRider."The campaign remains active, and new malicious packages are likely to continue appearing as threat actors compromise maintainer accounts,
- Unpatched Flaws Disclosed in Filesystem Bundled Into Millions of Embedded Devicesby info@thehackernews.com (The Hacker News) on July 3, 2026 at 8:19 PM
Security firm runZero has disclosed seven vulnerabilities in FatFs, a small filesystem library that lets a device read and write the FAT and exFAT formats used on USB drives and SD cards.The flaws matter because FatFs is nearly everywhere. It ships inside the firmware that runs security cameras, drones, industrial controllers, hardware crypto wallets, and other devices built on
- New "Bad Epoll" Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits Androidby info@thehackernews.com (The Hacker News) on July 3, 2026 at 7:40 PM
A newly disclosed Linux kernel flaw called Bad Epoll (CVE-2026-46242) lets an ordinary user with no special access take full control of a machine as root. It affects Linux desktops, servers, and Android, and a fix is out.Bad Epoll sits in the same small stretch of kernel code where Anthropic's most powerful AI model, Mythos, recently found a different bug.The AI caught one flaw and missed
- New Avalon Malware Framework Packs CrownX Ransomware Capabilitiesby info@thehackernews.com (The Hacker News) on July 3, 2026 at 6:55 PM
Cybersecurity researchers have discovered a previously undocumented modular malware framework codenamed Avalon that's distributed by means of a multi-stage phishing chain capable of bypassing traditional security controls.Avalon combines credential collection, lateral movement, remote access, recovery disruption, and ransomware execution, bringing together diverse functions under one




