All topics

Security stories

Security stories on Hacker News range from critical CVE disclosures and supply-chain attacks to privacy policy changes and encryption debates. Practitioners, researchers, and skeptics weigh in with technical depth that mainstream coverage often misses.

This page aggregates the security and privacy discussions worth reading — vulnerability write-ups, incident postmortems, and the community's reaction to new threats and defenses.

454 stories archived · Page 1 of 16

RSS feed for Security

Redthread – autonomous LLM pentesting with proof-of-concept exploits

millenniums.ai · 2 points · 0 comments

Luarocks.org remote code execution exploit

vhyrro.neorg.org · 7 points · 2 comments

Top AI companies probing security incidents

axios.com · 5 points · 0 comments

Understanding the Impact of LLM Watermarking on AI Agent Behavior

lasso.security · 19 points · 71 comments

Uncle's frozen Mac says it's infected after viewing a Google ad. Now what?

arstechnica.com · 5 points · 11 comments

OpenAI Says Its Models Engaged with US Government Websites in New Disclosure

securityweek.com · 6 points · 4 comments

There's a new way to break RSA that's faster than anything we've seen before

arstechnica.com · 5 points · 1 comments

CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2

safateam.com · 3 points · 32 comments

Security headers on 4,688 small-business websites: 49.7% met none of 7 criteria

rackcrunch.com · 5 points · 15 comments

Tech leaders to UN: For sake of humanity, please control the AI tech we created

apnews.com · 5 points · 13 comments

Humans Are Reading Your ChatGPT Chats, Lawsuit Claims

openclassactions.com · 3 points · 13 comments

Jev Is Not a Language Model, but It Breaks Like One

blog.checkpoint.com · 30 points · 6 comments

You'll do anything for your baby. The algorithm knows how to exploit that

19thnews.org · 7 points · 0 comments

Australia says OpenAI agent hacked into government website

channelnewsasia.com · 121 points · 3 comments

Liquid Network Security Incident Assessment

blog.blockstream.com · 9 points · 0 comments

OpenAI agents hacked Australian Medicare system

reuters.com · 27 points · 16 comments

OpenAI breaches Medicare, Albanese reveals

smh.com.au · 100 points · 257 comments

Security auditing in the age of (good enough) AI

blog.trailofbits.com · 4 points · 0 comments

Radicle: Disclosure of Vulnerability in the Network Protocol

radicle.dev · 66 points · 58 comments

ShinyHunters claims FBI hack: 'This is NOT financially motivated'

theregister.com · 15 points · 0 comments

Microsoft disrupts AI-assisted platform that compromised 12,000 accounts

arstechnica.com · 8 points · 0 comments

Irish data protection watchdog fines Google €403M over GDPR breaches

irishtimes.com · 5 points · 4 comments

Moving from cash to credit cards, PayPal, etc. is an ongoing privacy disaster

grapheneos.social · 37 points · 15 comments

WordPress: Unauthenticated path traversal leading to conditional RCE

github.com · 147 points · 132 comments

Meta’s Muse has a serious 0-day

arstechnica.com · 112 points · 49 comments

7 out of 9 Planetary Boundaries are breached

planetaryhealthcheck.org · 20 points · 9 comments

Muse, Meta's extraordinarily privileged AI assistant, has a serious 0-day

arstechnica.com · 7 points · 0 comments

Security auditing in the age of (good enough) AI

blog.trailofbits.com · 15 points · 16 comments

Boomers love making AI images of their grandkids. Millennial parents hate it

businessinsider.com · 19 points · 2 comments

Deshittification as a Service: Reclaiming Privacy and Performance with OpenBSD

fabricati-diem.inform.social · 6 points · 0 comments