News
Fake Claude AI Installer Targets Windows Users with Plug X Malware
3+ hour, 25+ min ago (352+ words) Cybersecurity experts from Malwarebytes have found a malicious new campaign where scammers use the popularity of Anthropic's AI tool Claude to spread malware. Reportedly, hackers made a fake website that looks just like the official one from Anthropic and offers…...
Why Your Deprecated Endpoints Are an Attacker's Best Friend: The Rise of Ghost APIs
2+ day, 13+ hour ago (1141+ words) This is not a hypothetical edge case. It is a pattern playing out across cloud infrastructure at scale, and the industry has no reliable answer for it. Consider the 2022 Optus breach: an API endpoint originally built to serve customer data…...
Hacker Used Claude Code, GPT-4. 1 to Exfiltrate Hundreds of Millions of Mexican Records
3+ day, 9+ hour ago (315+ words) A single hacker recently managed to compromise nine different Mexican government agencies by exploiting two popular AI platforms. This'finding comes from the research firm Gambit Security, revealing that Claude Code, an AI-powered coding assistant, and Open AI's GPT-4. 1 were used…...
UNC6783 Hackers Use Fake Okta Pages in Corporate Breach Campaign
5+ day, 12+ hour ago (370+ words) Cybersecurity experts at Google Threat Intelligence Group (GTIG) have issued a warning about a new group of hackers, known as UNC6783, who are trying to steal data from large companies for data theft extortion. Austin Larsen, a lead analyst at GTIG,…...
Mallory Launches AI-Native Threat Intelligence Platform, Turning Global Threat Data Into Prioritized Action
6+ day, 11+ hour ago (438+ words) Austin, Texas, United States, April 9th, 2026, Cyber Newswire Built by a veteran security team and led by a former Google and Mandiant executive, Mallory delivers intelligence that drives action for enterprise security teams. Mallory is launching a AI-native threat intelligence platform,…...
Claude Code Can Be Manipulated via CLAUDE. md to Run SQL Injection Attacks
6+ day, 10+ hour ago (326+ words) Layer X researchers have discovered how to bypass Claude Code's safety rules using the CLAUDE. md file. This exploit allows anyone to automate SQL injection attacks and steal user credentials without writing any code. A recent study by Layer X…...
Storm-1175 Deploys Medusa Ransomware Within 24 Hours of Flaw Disclosure
1+ week, 10+ hour ago (494+ words) A notorious group of hackers is currently causing major disruption globally by deploying the devastating Medusa ransomware. Tracked by Microsoft Threat Intelligence as Storm-1175, these hackers have turned the gap between a security flaw being found and a fix being…...
Grafana Ghost Vulnerability Allows Data Theft via AI Injection
1+ week, 1+ day ago (611+ words) Cybersecurity researchers at the firm Noma Security have identified a serious vulnerability named Grafana Ghost. This flaw affects Grafana, a popular software platform that many companies use as a central hub to monitor their financial metrics, infrastructure health, and private…...
AI Agents and Non-Human Identities Creating Critical Security Gaps, Report
1+ week, 1+ day ago (296+ words) Businesses are rushing to adopt automation, but they are leaving a significant security gap in their infrastructure as new data suggests this technological race is moving much faster than the security needed to protect it. On 7 April 2026, password security firm…...
Cloudflare Targets Word Press With New AI-Powered Em Dash CMS
1+ week, 2+ day ago (728+ words) Deeba is a veteran cybersecurity reporter at Hackread. com with over a decade of experience covering cybercrime, vulnerabilities, and security events. Her expertise and in-depth analysis make her a key contributor to the platform's trusted coverage. Cloudflare Targets Word Press…...