Recent Advisories

Severity ID Title Vendor Product Date Type
NONE HACKREAD:927BD4...

Kraken Exchange Faces Extortion After Insider Recorded System Footage_HACKREAD:927BD4844BBD08FE8E75FAD174821947

Kraken exchange faces extortion after a staff member misused access to record internal systems, about 2,000 accounts affected, no funds or systems ...

N/A N/A HACKREAD
NONE HACKREAD:580F5D...

Booking.com Confirms Data Breach as Hackers Access Customer Details_HACKREAD:580F5D90C76E64E96EB1E5C08867F63F

Booking.com confirms a data breach exposing customer details to hackers. No payment data accessed, but users face risk of targeted phishing scams now!

N/A N/A HACKREAD
NONE HACKREAD:E4D758...

Ransomware-Linked ViperTunnel Malware Hits UK and US Businesses_HACKREAD:E4D7585EB66DBF89A423F107B00E8044

ViperTunnel is a Python-based backdoor linked to DragonForce ransomware that targets businesses using Windows servers across the US and the UK.

N/A N/A HACKREAD
NONE HACKREAD:862E71...

OpenAI Rotates macOS Certificates Following Axios Supply Chain Breach_HACKREAD:862E712203078291DD6BC712D90323BC

OpenAI rotates macOS certificates after downloading a compromised Axios version, urging users to update apps before revoked certificates are blocke...

N/A N/A HACKREAD
NONE HACKREAD:3E50CF...

BITTER APT Uses Signal, Google, and Zoom Lures to Spread ProSpy Spyware_HACKREAD:3E50CF94D77ADF84DF172B95E4A865E7

BITTER APT spreads ProSpy and ToSpy via Signal, Google, and Zoom lures, targeting journalists through LinkedIn and iMessage spearphishing.

N/A N/A HACKREAD
NONE HACKREAD:A46B32...

OpenSSF Flags Malware Campaign on Slack Posing as Linux Foundation Figures_HACKREAD:A46B3220516544DCA5CD5AE083AAF4A5

OpenSSF warns hackers impersonate Linux Foundation leaders on Slack, tricking developers into installing malware that can compromise entire systems.

N/A N/A HACKREAD
NONE HACKREAD:8B2EAC...

Alleged German DDoS-for-Hire Kingpin Behind Fluxstress Caught in Thailand_HACKREAD:8B2EAC80D6D90DEDC9A4507975303BFE

Alleged German cybercrime figure behind Fluxstress and Neldowner arrested in Thailand after years running global DDoS-for-hire services across coun...

N/A N/A HACKREAD
NONE HACKREAD:656DA5...

Why Your Deprecated Endpoints Are an Attacker’s Best Friend: The Rise of Ghost APIs_HACKREAD:656DA5A90241B0AAED47265D6FBF88AC

Ghost APIs are deprecated endpoints left active, exposing systems to attack. Learn how they differ from shadow APIs and why they create hidden secu...

N/A N/A HACKREAD
NONE HACKREAD:84658A...

Hacker Used Claude Code, GPT-4.1 to Exfiltrate Hundreds of Millions of Mexican Records_HACKREAD:84658AC5A4C1D6D1B8B6C02D250642B1

A lone hacker used Claude Code and GPT-4.1 to exfiltrate hundreds of millions of Mexican citizen records from 9 government agencies.

N/A N/A HACKREAD
NONE HACKREAD:D6B927...

FBI Atlanta and Indonesian National Police Take Down W3LLSTORE Phishing Marketplace_HACKREAD:D6B9273121543DB251C04A6275CC3FEA

FBI Atlanta and Indonesian National Police dismantle W3LLSTORE phishing market linked to $20M fraud, seizing domains and detaining developer.

N/A N/A HACKREAD