Skip to content

organization · 7 records

Hunt.io

  • Photo: The Hacker News
    Tech & Cyber

    3BB Attacker Used MeshCentral Backdoor for Root Access

    An attacker compromised 3BB's network, using MeshCentral as a backdoor to target subscriber credentials and internal systems.

    1 outlet Cyber read
  • Photo: The Hacker News
    Tech & Cyber

    JADEPUFFER group targets AI infrastructure using new ENCFORGE ransomware strain

    A threat actor known as JADEPUFFER deployed a new Go-based ransomware strain called ENCFORGE targeting AI model files and infrastructure after exploiting a remote code execution vulnerability in Langflow.

    2 outlets Cyber read
  • Photo: The Hacker News
    Tech & Cyber

    Russian hackers exploit Zimbra vulnerability to steal email data

    A Russian state-supported espionage group exploited a zero-day vulnerability in Zimbra's webmail client to steal email data and authentication codes from Western government and commercial organizations between July 2025 and early 2026.

    1 outlet Cyber read
  • Photo: The Hacker News
    Tech & Cyber

    ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body

    A Chinese-speaking threat actor exploited a critical ownCloud vulnerability to steal files from a Philippine nuclear research organization.

    1 outlet Cyber read
  • Photo: The Hacker News
    Tech & Cyber

    Malicious Apache Modules Hijack Brazilian Government Site Traffic to Push Betting Pages

    A Chinese-speaking threat actor is installing malicious Apache modules on Brazilian government servers to redirect traffic to gambling and betting websites.

    1 outlet Markets read
  • Photo: The Hacker News
    Tech & Cyber

    Hacker uses unattended Hermes AI agent at Thai Ministry of Finance

    A hacker used an unattended Hermes AI agent to conduct post-exploitation activities at Thailand's Ministry of Finance, detecting logs on a web server that revealed internal network scans and default configuration exploits.

    3 outlets Cyber read
  • Photo: The Hacker News
    Tech & Cyber

    Flying Eagle Android malware source code spreads through telegram channels

    Source code for the Flying Eagle Android remote access trojan framework is circulating through criminal Telegram channels, with researchers tracing infrastructure to 170 servers and linking it to a fake public security application in China.

    1 outlet
  • Hunt.io — every record | Prism