Lazarus campaign plants malicious packages in npm and PyPI ecosystem

Cybersecurity researchers discovered a set of malicious packages across npm and Python Package Index (PyPI) repositories linked to a fake recruitment-themed campaign organized by the North Korean-linked Lazarus Group. This coordinated campaign is codenamed graphalgo, after the first package published on the npm registry. It is rated as being active since May 2025. “Developers are […]

FTC expresses concern over allegations that Apple News suppresses right-wing content

The Federal Trade Commission (FTC) has expressed concern over allegations that Apple is censoring conservative content in the Apple News app. In a letter to Apple CEO Tim Cook, FTC Chairman Andrew Ferguson accused Apple of excluding right-wing news organizations from the top 20 stories in the Apple News Feed, citing a report by the […]

Eclipse backs all-EV market with $31 million funding round

If you want to buy or sell a used EV right now, what do you do first? A startup called Ever wants to be the answer to that question. The company bills itself as the first “AI-native, full-stack auto retail business” for electric vehicles, and already has thousands of customers buying and selling EVs on […]

AI Prompt RCE, Claude 0-Click, RenEngine Loader, Auto 0-Days & 25+ Stories

Ravie LakshmananFeb 12, 2026Cybersecurity / Hacking News Threat activity this week shows one consistent signal — attackers are leaning harder on what already works. Instead of flashy new exploits, many operations are built around quiet misuse of trusted tools, familiar workflows, and overlooked exposures that sit in plain sight. Another shift is how access is […]

Why 84% of security programs are late

hacker newsFebruary 12, 2026Enterprise Security/Breach Prevention A new 2026 market intelligence survey of 128 enterprise security decision makers (available here) reveals a clear chasm forming between organizations. It has nothing to do with budget size or industry and everything to do with deciding on one framework. Organizations that implement Continuous Threat Exposure Management (CTEM) see […]

83% of Ivanti EPMM exploits are linked to a single IP on Bulletproof hosting infrastructure

Ravi LakshmananFebruary 12, 2026Vulnerability/Network Security A significant portion of exploitation attempts targeting newly revealed security flaws in Ivanti Endpoint Manager Mobile (EPMM) can be traced back to a single IP address on the bulletproof hosting infrastructure provided by PROSPERO. Threat intelligence firm GreyNoise announced that it recorded 417 exploit sessions from eight unique source IP […]