The Hacker News Most trusted, widely-read independent cybersecurity news source for everyone; supported by hackers and IT professionals — Send TIPs to [email protected]
- Google Ties Suspected Russian Actor to CANFAIL Malware Attacks on Ukrainian Orgsby [email protected] (The Hacker News) on 13 February 2026 at 5:27 pm
A previously undocumented threat actor has been attributed to attacks targeting Ukrainian organizations with malware known as CANFAIL. Google Threat Intelligence Group (GTIG) described the hacking group as possibly affiliated with Russian intelligence services. The threat actor is assessed to have targeted defense, military, government, and energy organizations within the Ukrainian regional and
- Google Links China, Iran, Russia, North Korea to Coordinated Defense Sector Cyber Operationsby [email protected] (The Hacker News) on 13 February 2026 at 4:23 pm
Several state-sponsored actors, hacktivist entities, and criminal groups from China, Iran, North Korea, and Russia have trained their sights on the defense industrial base (DIB) sector, according to findings from Google Threat Intelligence Group (GTIG). The tech giant's threat intelligence division said the adversarial targeting of the sector is centered around four key themes: striking defense
- UAT-9921 Deploys VoidLink Malware to Target Technology and Financial Sectorsby [email protected] (The Hacker News) on 13 February 2026 at 3:23 pm
A previously unknown threat actor tracked as UAT-9921 has been observed leveraging a new modular framework called VoidLink in its campaigns targeting the technology and financial services sectors, according to findings from Cisco Talos. "This threat actor seems to have been active since 2019, although they have not necessarily used VoidLink over the duration of their activity," researchers Nick
- Malicious Chrome Extensions Caught Stealing Business Data, Emails, and Browsing Historyby [email protected] (The Hacker News) on 13 February 2026 at 11:25 am
Cybersecurity researchers have discovered a malicious Google Chrome extension that's designed to steal data associated with Meta Business Suite and Facebook Business Manager. The extension, named CL Suite by @CLMasters (ID: jkphinfhmfkckkcnifhjiplhfoiefffl), is marketed as a way to scrape Meta Business Suite data, remove verification pop-ups, and generate two-factor authentication (2FA) codes.
- npm’s Update to Harden Their Supply Chain, and Points to Considerby [email protected] (The Hacker News) on 13 February 2026 at 10:45 am
In December 2025, in response to the Sha1-Hulud incident, npm completed a major authentication overhaul intended to reduce supply-chain attacks. While the overhaul is a solid step forward, the changes don’t make npm projects immune from supply-chain attacks. npm is still susceptible to malware attacks – here’s what you need to know for a safer Node community. Let’s start with the original




