The latest innovation in UK public transport: Schrödinger's trains
Who knows what is going where. Might as well have a lovely beer instead.
Aggregated from vendor advisories, security research, and industry publications.
Who knows what is going where. Might as well have a lovely beer instead.
A new variant of the TrickMo Android banking malware, delivered in campaigns targeting users across Europe, introduces new commands and uses The Open Network (TON) for stealthy com…
Tens of thousands of students studying for final exams around the world have regained access to a key online learning system after a cyberattack had earlier knocked it offline. The…
That’s not a radio. THIS is a radio
Also called Copy Fail 2 and tracked as CVE-2026-43284 and CVE-2026-43500, the exploit was disclosed before a patch was released. The post New ‘Dirty Frag’ Linux Vulnerability Possi…
The office sink is always a horror. Managers worried this one glowed
The second iteration of the German-speaking online crime marketplace had over 22,000 users and more than 100 sellers. The post Resurrected ‘Crimenetwork’ Marketplace Taken Down, Ad…
A malicious Hugging Face repository managed to take a spot in the platform's trending list by impersonating OpenAI's Privacy Filter open-weight model to deliver a Rust-based inform…
Article URL: https://daniel.haxx.se/blog/2026/05/11/mythos-finds-a-curl-vulnerability/ Comments URL: https://news.ycombinator.com/item?id=48091737 Points: 703 # Comments: 282
Which is awkward for European orgs who fear US clouds might leave the continent
Victims span across the aviation, critical infrastructure, energy, logistics, public administration, and technology sectors. The post Over 500 Organizations Hit in Years-Long Phish…
PLUS: Robot becomes Buddhist monk in Korea; TikTok spending $25bn in Thailand; Baidu floating chip biz; and more!
In The Register's Kettle podcast we discuss how Anthropic might be thinking about space to ease computing pain, but Claude Code on your laptop is way more practical
Attackers are abusing Google Ads and legitimate Claude.ai shared chats in an active malvertising campaign. Users searching for "Claude mac download" may come across sponsored searc…
Article URL: https://nesbitt.io/2026/02/03/incident-report-cve-2024-yikes.html Comments URL: https://news.ycombinator.com/item?id=48086082 Points: 712 # Comments: 179
German authorities have shut down a relaunch version of the criminal marketplace 'Crimenetwork' that generated more than 3.6 million euros, and arrested its operator. [...]
Amid the AI-fueled memory crunch, will Compute Express Link finally have its moment to shine?
Furores are fermenting in the forums
Cybersecurity researchers have disclosed a critical security vulnerability in Ollama that, if successfully exploited, could allow a remote, unauthenticated attacker to leak its ent…
It's not much cheaper than an equivalent laptop, so who's this for, exactly?
The website for the popular JDownloader download manager was compromised earlier this week to distribute malicious Windows and Linux installers, with the Windows payload found depl…
Deletion of a longstanding privacy assurance sparks concerns
A malicious Hugging Face repository that reached the platform's trending list impersonated OpenAI's "Privacy Filter" project to deliver information-stealing malware to Windows user…
Apple's old backup boxes only speak AFP and SMB1, but NetBSD under the hood gives them one last shot
Imagine taking a dip 177m above the streets of London’s West End
Home Office probes supplier interest as core police and immigration system heads for support shake-up
cPanel has released updates to address three vulnerabilities in cPanel and Web Host Manager (WHM) that could be exploited to achieve privilege escalation, code execution, and denia…
Good times, bad times
It’s not just gas prices skyrocketing. Frontier-model pricing keeps climbing too
Evidence of them has been found by analyzing DNA in the seawater. As usual, you can also use this squid post to talk about the security stories in the news that I haven’t covered. …