Critical Check Point Flaw, Plugin4Shell AI Agent Flaw, RatHat Android Malware and More

THN Daily Updates
Newsletter
cover

Advanced Network Forensics: A Cyber-Behavioral Science Approach ($110.00 Value) FREE for a Limited Time

Apply cyber behavioral science methods to network analysis and digital investigations.

Download Now Sponsored
LATEST NEWS Sep 18, 2026

An Abandoned CDN Domain Was Re-Registered. Thousands of Sites Still Call It.

In July 2025, someone registered a domain that used to belong to a content delivery network. The CDN had been wound down years earlier, and the domain it served assets from was allowed to expire. What it had not l...

Read More
Twitter Facebook LinkedIn

Plugin4Shell Lets Repository Owners Swap Pinned Plugin Code Across Four AI Coding Agents

A flaw in four widely used AI coding agents lets someone who controls a plugin's code repository swap the plugin an agent installs for a malicious one, even when the agent locked that plugin to a specific reviewed versi...

Read More
Twitter Facebook LinkedIn

Standing Privilege Is a Security Risk. How Much Do You Still Have?

Take our Zero Standing Privilege (ZSP) maturity assessment to identify standing privilege risks and prioritize your next steps.

Read More
Twitter Facebook LinkedIn

WeaselBiscuit Stealer Spreads via 13 npm Packages to Harvest Chrome Extension Storage

Cybersecurity researchers have discovered a cluster of 13 npm packages that have been found to deliver a previously undocumented JavaScript stealer codenamed WeaselBiscuit. The new malware family, per OpenSourceMalware...

Read More
Twitter Facebook LinkedIn

Claimed Bug Bounty Hunter Likely Used LLM to Build PhantomRaven npm Stealer

A financially motivated threat actor has been linked to the development and distribution of a JavaScript (JS)-based information stealer known as PhantomRaven via the npm package registry. "The developer likely wrote th...

Read More
Twitter Facebook LinkedIn

RatHat Android Malware Abuses ADB to Retain Shell Access After Uninstall

Cybersecurity researchers have flagged a new Android malware called RatHat that's assessed to be operated by China-based threat actors and features an artificial intelligence (AI)-powered system to navigate and control ...

Read More
Twitter Facebook LinkedIn

Critical Check Point Management Flaw Lets Unauthenticated Attackers Run Code as Root

A critical vulnerability in Check Point's Security Management and Log Servers could allow an attacker without login credentials to run code as root on those servers over the network. The Security Management Server is t...

Read More
Twitter Facebook LinkedIn

ThreatsDay: Self-Rewriting Agents, 800+ Flaws Patched, Insider SIM Swaps and 22 More New Stories

Attackers keep finding new keys. The funny part is that defenders keep inventing where to store them. This week, those keys sit in AI tools, exposed services, old bugs, weak logins, and software sold like a monthly sub...

Read More
Twitter Facebook LinkedIn
cover

Advanced Network Forensics: A Cyber-Behavioral Science Approach ($110.00 Value) FREE for a Limited Time

Apply cyber behavioral science methods to network analysis and digital investigations.

Download Now Sponsored

This email was sent to sikubaycom.s3cr3tz@blogger.com. You are receiving this newsletter because you opted-in to receive relevant communications from THN. To manage your email newsletter preferences, please click here.

Contact THN: info@thehackernews.com
Unsubscribe

THN | K.P BLock, Pitampura, Delhi