PROBABLYPWNED
Home/Hacking News

Hacking News

Breaking cybersecurity news covering data breaches, vulnerability disclosures, threat actor campaigns, and security incidents worldwide.

881Articles
114Data Breaches
309Vulnerabilities
Conti Ransomware Developer Pleads Guilty, Faces 20 Years
Threat Intelligence4 min read

Conti Ransomware Developer Pleads Guilty, Faces 20 Years

Ukrainian national Oleksii Lytvynenko admits to developing loader malware for the Conti ransomware gang after extradition from Ireland. Sentencing set for September 2026.

Alex KowalskiJun 16, 2026
Novo Nordisk Discloses Breach Exposing Clinical Trial Patient Data
Data Breaches4 min read

Novo Nordisk Discloses Breach Exposing Clinical Trial Patient Data

Pharmaceutical giant Novo Nordisk confirmed attackers copied clinical trial patient data and healthcare professional information from internal systems. The company says affected data was pseudonymized and cannot identify patients by name.

Data Breach DeskJun 14, 2026
Iran-Linked Handala Claims Breach of California Water Utility
Threat Intelligence4 min read

Iran-Linked Handala Claims Breach of California Water Utility

Handala threat group claims to have compromised California Water Service, publishing 5GB of customer data. Security experts assess the group reached billing systems and GPS servers but likely cannot disrupt water operations.

Threat Intel DeskJun 14, 2026
Agentjacking Hijacks AI Coding Agents via Sentry MCP Injection
Vulnerabilities4 min read

Agentjacking Hijacks AI Coding Agents via Sentry MCP Injection

Researchers at Tenet Security discovered Agentjacking, an attack that tricks AI coding assistants like Claude Code and Cursor into executing arbitrary code through malicious Sentry error events.

Vulnerability DeskJun 14, 2026
Qilin Ransomware Claims 15 Victims in 72 Hours
Malware4 min read

Qilin Ransomware Claims 15 Victims in 72 Hours

Qilin's affiliate network hit healthcare, manufacturing, and critical infrastructure across nine countries in early June. The gang maintains 12-month dominance.

Malware DeskJun 13, 2026
Check Point VPN PoC Drops as Exploitation Intensifies
Vulnerabilities4 min read

Check Point VPN PoC Drops as Exploitation Intensifies

WatchTowr Labs published technical details and exploit code for CVE-2026-50751, the auth bypass flaw already used by Qilin ransomware. TCP 443 bypass works too.

Vulnerability DeskJun 13, 2026
Arista Refuses to Patch Exploited Flaw Added to CISA KEV
Vulnerabilities3 min read

Arista Refuses to Patch Exploited Flaw Added to CISA KEV

CVE-2026-7473 lets attackers bypass tunnel security controls on Arista network devices. CISA added it to KEV—but Arista says patching would 'break existing configurations.'

Vulnerability DeskJun 11, 2026
ServiceNow API Flaw Exposed Customer Data Before Patch
Data Breaches3 min read

ServiceNow API Flaw Exposed Customer Data Before Patch

Attackers exploited an unauthenticated API endpoint to query ServiceNow customer instances. The company received a bug report in April but didn't patch until June 5—after exploitation began.

Data Breach DeskJun 11, 2026
ShinyHunters Breaches 100+ Orgs via Oracle PeopleSoft RCE
Vulnerabilities3 min read

ShinyHunters Breaches 100+ Orgs via Oracle PeopleSoft RCE

Oracle issues emergency patch for CVE-2026-35273 (CVSS 9.8) as ShinyHunters claims to have stolen data from 300 PeopleSoft instances. Nottingham University among confirmed victims.

Vulnerability DeskJun 11, 2026
RoguePlanet Zero-Day Bypasses Fully-Patched Windows Defender
Vulnerabilities3 min read

RoguePlanet Zero-Day Bypasses Fully-Patched Windows Defender

Security researcher Nightmare Eclipse releases fourth Microsoft Defender zero-day in months, granting SYSTEM privileges on patched Windows 10 and 11 systems. Here's what defenders need to know.

Vulnerability DeskJun 11, 2026
Microsoft Patches 206 Flaws Including Wormable Kernel RCE
Vulnerabilities4 min read

Microsoft Patches 206 Flaws Including Wormable Kernel RCE

Microsoft's record-breaking June 2026 Patch Tuesday fixes 206 vulnerabilities including CVE-2026-45657, a CVSS 9.8 wormable kernel flaw allowing remote code execution without authentication.

Vulnerability DeskJun 10, 2026

Showing 48 of 881 articles

About Our Hacking News Coverage

ProbablyPwned delivers breaking hacking news and cybersecurity coverage for security professionals. Our team monitors global threat landscapes to bring you timely reporting on data breaches, vulnerability disclosures, and threat actor campaigns.

We cover the full spectrum of cyber threats including ransomware attacks, nation-state hacking operations, critical infrastructure incidents, and enterprise security breaches. Each story includes technical analysis, impact assessment, and actionable guidance.

Subscribe to our newsletter or follow our RSS feed to stay ahead of emerging threats. For in-depth security guidance, explore our Security Guides.

Data Breaches

Track major data breaches and security incidents affecting organizations worldwide.

Ransomware News

Latest ransomware attacks, malware analysis, and threat actor tracking.

Security Guides

Learn about ransomware, malware, phishing, and essential security practices.