Lazarus Exploits Windows 0-Day, SharePoint Exploit PoC, 737 Fraudulent VPN Extensions

THN Daily Updates
Newsletter
cover

Blockchain, Crypto and DeFi: Bridging Finance and Technology ($45.00 Value) FREE for a Limited Time

Unlock the future of finance with Blockchain, Crypto, and DeFi

Download Now Sponsored
LATEST NEWS Aug 13, 2026

WindRelay Android Malware Turns Victims' Phones Into NFC Relays for Payment Fraud

A previously unseen Android near field communication (NFC) relay malware family dubbed WindRelay is being deployed in conjunction with a known remote access trojan (RAT) called SpyNote as part of a contactless payment f...

Read More
Twitter Facebook LinkedIn

North Korean Remote Workers Are Infiltrating Government and Businesses: How to Expose Them Before Hiring

Companies are used to thinking about attackers as outsiders trying to break in. North Korean IT workers flip that model. They apply for jobs, pass interviews, receive legitimate credentials, and can end up inside the s...

Read More
Twitter Facebook LinkedIn

338 Million Attack Simulations Reveal Where Enterprise Defenses Fail in 2026

Get the Blue Report 2026: tools block 69% of attacks, but an attacker already inside is stopped just 37% of the time.

Read More
Twitter Facebook LinkedIn

Attackers Exploit SharePoint Authentication Bypass After Public PoC Release

Threat actors have begun to exploit a newly disclosed Microsoft SharePoint vulnerability following the release of a proof-of-concept (PoC) code. The vulnerability in question is CVE-2026-55040 (CVSS score: 9.1), which ...

Read More
Twitter Facebook LinkedIn

Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor

The North Korean threat actor known as Lazarus Group has been attributed to the zero-day exploitation of a newly patched security flaw impacting Microsoft Windows to deliver a never-before-seen backdoor targeting defens...

Read More
Twitter Facebook LinkedIn

The Blind Spot in Modern Email Security

Phishing links get clicked a median 21 seconds after open, while inbox filters leave campaign infrastructure untouched.

Read More
Twitter Facebook LinkedIn

737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One

A massive set of 737 free VPN and proxy extensions have been found to mainly target Russian-speaking users seeking access to blocked services with an aim to intercept browser traffic and route them through a proxy infra...

Read More
Twitter Facebook LinkedIn

OpenAI, Anthropic, Google API Flaw Let Weaker AI Models Decode Stronger Models' Reasoning

A newly disclosed flaw in the way OpenAI, Anthropic, and Google carried hidden AI reasoning between API calls let researchers recover internal reasoning and secrets from session logs, including API keys and passwords. ...

Read More
Twitter Facebook LinkedIn
cover

Blockchain, Crypto and DeFi: Bridging Finance and Technology ($45.00 Value) FREE for a Limited Time

Unlock the future of finance with Blockchain, Crypto, and DeFi

Download Now Sponsored

This email was sent to sikubaycom.s3cr3tz@blogger.com. You are receiving this newsletter because you opted-in to receive relevant communications from THN. To manage your email newsletter preferences, please click here.

Contact THN: info@thehackernews.com
Unsubscribe

THN | K.P BLock, Pitampura, Delhi