Security stories
Security stories on Hacker News range from critical CVE disclosures and supply-chain attacks to privacy policy changes and encryption debates. Practitioners, researchers, and skeptics weigh in with technical depth that mainstream coverage often misses.
This page aggregates the security and privacy discussions worth reading — vulnerability write-ups, incident postmortems, and the community's reaction to new threats and defenses.
454 stories archived · Page 1 of 16
RSS feed for SecurityRedthread – autonomous LLM pentesting with proof-of-concept exploits
millenniums.ai · 2 points · 0 comments
Luarocks.org remote code execution exploit
vhyrro.neorg.org · 7 points · 2 comments
Top AI companies probing security incidents
axios.com · 5 points · 0 comments
Understanding the Impact of LLM Watermarking on AI Agent Behavior
lasso.security · 19 points · 71 comments
Uncle's frozen Mac says it's infected after viewing a Google ad. Now what?
arstechnica.com · 5 points · 11 comments
OpenAI Says Its Models Engaged with US Government Websites in New Disclosure
securityweek.com · 6 points · 4 comments
There's a new way to break RSA that's faster than anything we've seen before
arstechnica.com · 5 points · 1 comments
CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2
safateam.com · 3 points · 32 comments
Security headers on 4,688 small-business websites: 49.7% met none of 7 criteria
rackcrunch.com · 5 points · 15 comments
Tech leaders to UN: For sake of humanity, please control the AI tech we created
apnews.com · 5 points · 13 comments
Humans Are Reading Your ChatGPT Chats, Lawsuit Claims
openclassactions.com · 3 points · 13 comments
Jev Is Not a Language Model, but It Breaks Like One
blog.checkpoint.com · 30 points · 6 comments
You'll do anything for your baby. The algorithm knows how to exploit that
19thnews.org · 7 points · 0 comments
Australia says OpenAI agent hacked into government website
channelnewsasia.com · 121 points · 3 comments
Liquid Network Security Incident Assessment
blog.blockstream.com · 9 points · 0 comments
OpenAI agents hacked Australian Medicare system
reuters.com · 27 points · 16 comments
OpenAI breaches Medicare, Albanese reveals
smh.com.au · 100 points · 257 comments
Security auditing in the age of (good enough) AI
blog.trailofbits.com · 4 points · 0 comments
Radicle: Disclosure of Vulnerability in the Network Protocol
radicle.dev · 66 points · 58 comments
ShinyHunters claims FBI hack: 'This is NOT financially motivated'
theregister.com · 15 points · 0 comments
Microsoft disrupts AI-assisted platform that compromised 12,000 accounts
arstechnica.com · 8 points · 0 comments
Irish data protection watchdog fines Google €403M over GDPR breaches
irishtimes.com · 5 points · 4 comments
Moving from cash to credit cards, PayPal, etc. is an ongoing privacy disaster
grapheneos.social · 37 points · 15 comments
WordPress: Unauthenticated path traversal leading to conditional RCE
github.com · 147 points · 132 comments
Meta’s Muse has a serious 0-day
arstechnica.com · 112 points · 49 comments
7 out of 9 Planetary Boundaries are breached
planetaryhealthcheck.org · 20 points · 9 comments
Muse, Meta's extraordinarily privileged AI assistant, has a serious 0-day
arstechnica.com · 7 points · 0 comments
Security auditing in the age of (good enough) AI
blog.trailofbits.com · 15 points · 16 comments
Boomers love making AI images of their grandkids. Millennial parents hate it
businessinsider.com · 19 points · 2 comments
Deshittification as a Service: Reclaiming Privacy and Performance with OpenBSD
fabricati-diem.inform.social · 6 points · 0 comments