#compromise


Bitget Says Suspected North Korean Hackers Stole $351.6M After Backend Compromise

Sep 25, 2026 // 13:37

Cryptocurrency exchange Bitget said suspected North Korean threat actors have stolen $351.6 million from its hot and warm wallets. “At 18:31 UTC on September 24, […]

Red Heron Exploits Gitea RCE to Compromise 13 Organizations Across Six Countries

Sep 14, 2026 // 20:01

A Chinese threat actor tracked as Red Heron has been attributed to the rapid exploitation of a recently disclosed security vulnerability in Gitea to compromise […]

PaperCut Attacker Uses Hundreds of AI Agents to Compromise 440+ Instances

Sep 10, 2026 // 14:49

A suspected Russian-speaking cyber actor has been attributed to the use of artificial intelligence (AI) to devise exploits targeting a recently disclosed pair of security […]

Autonomous AI Agents Compromise Thousands of Credentials in Under Six Hours

Sep 8, 2026 // 16:49

Threat actors are continuing to leverage artificial intelligence (AI) to streamline their operations, with one financially motivated hacking group employing an autonomous, multi-agent attack framework […]

39 New Methods That Compromise Passkey Authentication

Sep 4, 2026 // 19:17

Passkeys were introduced with a strong security proposition. Replace passwords with public key cryptography, bind the credential to the legitimate service, keep the private key […]

Hackers compromise 14,500 Dahua web cameras in 35-day campaign

Aug 19, 2026 // 21:17

In a large-scale campaign that researchers dubbed CameraSwarm, hackers compromised more than 14,500 Dahua IP cameras mostly in Ukraine and Russia. The operation ran for at […]

Researchers Show a Single Malicious Webpage Visit Can Compromise Tor Browser

Jul 29, 2026 // 15:01

Nebula Security says a patched Firefox JIT flaw could be triggered by simply visiting a malicious webpage and was also used to compromise Tor Browser. […]

Injective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm Packages

Jul 10, 2026 // 22:29

Unknown threat actors compromised the Injective Labs SDK project’s GitHub repository and leveraged it to publish a malicious package on the npm registry to steal […]

Lessons from the Underground: How to Combat Business Email Compromise

Jun 30, 2026 // 23:40

Business Email Compromise (BEC) is often described in the media as merely an email scam, but in reality, it’s part of an organized broad operation. […]

Webinar: Why business email compromise attacks keep succeeding

Jun 29, 2026 // 15:16

Business email compromise (BEC) remains one of the most costly cyber threats facing organizations, with attackers increasingly relying on convincing impersonation rather than malware to […]

1 2 Next