Hackread – Cybersecurity News, Data Breaches, Tech, AI, Crypto and More
Actively Exploited
North Korean hackers have intensified their 'Contagious Interview' campaign by uploading over 200 malicious npm packages designed to install OtterCookie malware. This targeted attack primarily affects blockchain and Web3 developers, leveraging fake job interviews and coding tests to lure victims.
A man has been sentenced for hacking into a Wi-Fi network on a commercial flight, leading to data theft. This incident highlights the ongoing risks associated with unsecured Wi-Fi networks, particularly in public spaces like airplanes, and underscores the importance of cybersecurity measures for protecting sensitive information.
Three critical zero-day vulnerabilities in PickleScan have been identified, impacting Python and PyTorch. These flaws enable undetected attacks on AI model supply chains, posing significant risks to data integrity and security.
The article discusses the development of the Raptor Framework, an open-source AI tool designed to generate vulnerability exploits and patches using large language models. This innovation highlights the potential for automated security measures but also raises concerns about the implications of easily accessible exploit generation capabilities. Researchers emphasize the dual-use nature of such technology in cybersecurity.
The article reports on a joint investigation revealing a remote IT worker infiltration scheme linked to North Korea's Lazarus Group. This scheme highlights the persistent threat posed by state-sponsored cyber actors, emphasizing the need for heightened awareness and security measures against such infiltration tactics.
North Korean IT recruiters are engaging in a scheme where they entice developers to rent out their identities for illicit fundraising activities. This operation poses a significant cybersecurity threat as it exploits individuals' identities to support North Korea's funding efforts, highlighting the growing intersection of cybercrime and geopolitical issues.
Google has addressed 51 vulnerabilities in Android, including two high-severity flaws (CVE-2025-48633 and CVE-2025-48572) that are potentially under targeted exploitation. Both vulnerabilities impact the Android Framework, which is essential for app development, and could allow malicious applications to access sensitive information.
Coupang, a major South Korean e-commerce platform, has reported a significant data breach affecting approximately 34 million customers over a five-month period. The breach has exposed personal information, raising concerns about customer privacy and security.
The article discusses a critical vulnerability in OpenAI's Codex CLI, identified as CVE-2025-61260, which allows for command execution. This vulnerability poses a significant risk to developers, as it could be exploited to facilitate various attacks. Immediate attention is required to mitigate potential threats stemming from this issue.
The KB5070311 update for Windows 11 addresses critical issues such as File Explorer freezes and search problems, enhancing overall system stability and performance. This update includes 49 changes aimed at improving user experience and resolving known bugs.
The article discusses how a noisy ransomware attack at Russian companies inadvertently revealed a long-term espionage foothold by a stealthier threat actor. This situation highlights the complexities of cybersecurity, where one breach can expose another, potentially more dangerous, vulnerability. The findings emphasize the need for organizations to remain vigilant against both overt and covert threats.
The UK Information Commissioner’s Office (ICO) has initiated an investigation into the mobile gaming sector to ensure compliance with the Children’s Code, which aims to protect children's privacy and data. This investigation highlights the increasing scrutiny of mobile games and their practices regarding children's data protection, signaling potential regulatory actions in the future.
The Kaspersky Security Bulletin for 2025 provides insights into various cyberthreats observed from November 2024 to October 2025, leveraging anonymized data from Kaspersky users. This report highlights trends and statistics that can inform users about the evolving landscape of cybersecurity threats.
Europol has shut down Cryptomixer, a cryptocurrency mixing service used to launder cybercrime proceeds, and seized $29 million in Bitcoin. Since its inception in 2016, Cryptomixer facilitated the mixing of over EUR 1.3 billion in Bitcoin, highlighting the ongoing challenges in combating cryptocurrency-related crimes.
The article discusses a new cyber-espionage campaign by the Russian-speaking group Tomiris, which is targeting government and diplomatic entities in CIS member states and Central Asia. This campaign poses a significant cybersecurity threat, highlighting the ongoing risks to sensitive government communications and operations in the region.