News
October 10, 2025 • 1 min read • Hackernews
The AI SOC Stack of 2026 What Sets Top-Tier Platforms Apart
The SOC of 2026 will no longer be a human-only battlefield. As organizations scale and threats evolve in sophistication and velocity, a new generation of AI-powered agents is reshaping how Security Operations Centers (SOCs) detect, respond, and adapt. But not all AI SOC platforms are created equal. From prompt-dependent copilots to autonomous,
October 10, 2025 • 1 min read • Hackernews
175 Malicious npm Packages with 26000 Downloads Used in Credential Phishing Campaign
Cybersecurity researchers have flagged a new set of 175 malicious packages on the npm registry that have been used to facilitate credential harvesting attacks as part of an unusual campaign. The packages have been collectively downloaded 26,000 times, acting as an infrastructure for a widespread phishing campaign codenamed Beamglea targeting more
October 10, 2025 • 2 min read • theVerge
Copilot on Windows can now create Office documents and connect to Gmail
October 10, 2025 • 1 min read • Hackernews
From LFI to RCE Active Exploitation Detected in Gladinet and TrioFox Vulnerability
Cybersecurity company Huntress said it has observed active in-the-wild exploitation of an unpatched security flaw impacting Gladinet CentreStack and TrioFox products. The zero-day vulnerability, tracked as CVE-2025-11371 (CVSS score 6.1), is an unauthenticated local file inclusion bug that allows unintended disclosure of system files. It impacts all versions of the software
October 10, 2025 • 1 min read • Hackernews
CL0P-Linked Hackers Breach Dozens of Organizations Through Oracle Software Flaw
Dozens of organizations may have been impacted following the zero-day exploitation of a security flaw in Oracles E-Business Suite (EBS) software since August 9, 2025, Google Threat Intelligence Group (GTIG) and Mandiant said in a new report released Thursday. Were still assessing the scope of this incident, but we believe it
October 9, 2025 • 3 min read • theVerge
YouTube opens 8216second chance8217 program to creators banned for misinformation
October 9, 2025 • 1 min read • Hackernews
From HealthKick to GOVERSHELL The Evolution of UTA0388s Espionage Malware
A China-aligned threat actor codenamed UTA0388 has been attributed to a series of spear-phishing campaigns targeting North America, Asia, and Europe that are designed to deliver a Go-based implant known as GOVERSHELL. The initially observed campaigns were tailored to the targets, and the messages purported to be sent by senior researchers
October 9, 2025 • 1 min read • Hackernews
New ClayRat Spyware Targets Android Users via Fake WhatsApp and TikTok Apps
A rapidly evolving Android spyware campaign called ClayRat has targeted users in Russia using a mix of Telegram channels and lookalike phishing websites by impersonating popular apps like WhatsApp, Google Photos, TikTok, and YouTube as lures to install them. Once active, the spyware can exfiltrate SMS messages, call logs, notifications, and
October 9, 2025 • 2 min read • theVerge
Leak details Samsungs Android XR headset weeks before expected launch
October 9, 2025 • 2 min read • theVerge
Google fights to prevent search remedies from inhibiting its AI ambitions