Security stories
Security stories on Hacker News range from critical CVE disclosures and supply-chain attacks to privacy policy changes and encryption debates. Practitioners, researchers, and skeptics weigh in with technical depth that mainstream coverage often misses.
This page aggregates the security and privacy discussions worth reading — vulnerability write-ups, incident postmortems, and the community's reaction to new threats and defenses.
454 stories archived · Page 11 of 16
RSS feed for SecurityUK charities count the cost of Beacon CRM cyberattack
theregister.com · 4 points · 0 comments
OpenAI, Anthropic AI Models Breached Systems During UK Safety Tests
bloomberg.com · 10 points · 1 comments
How HN: Argus – open-source security scanner with MCP
github.com · 5 points · 0 comments
OpenAI and Anthropic models 'went rogue' during UK cybersecurity test
theguardian.com · 7 points · 1 comments
The Attack Was Authorized: The Missing Security Boundary for AI Agents
blog.iluxav.com · 3 points · 0 comments
$20M+ in Microsoft bug bounties paid out in last 12 months
theregister.com · 9 points · 0 comments
Bugtraq Is Back
lists.securityfocus.com · 19 points · 32 comments
Is It Possible to Make Smart Glasses That Aren't Creepy?
wired.com · 5 points · 4 comments
Pass the Passkey: A Novel Attack Surface in Passwordless Authentication
unit42.paloaltonetworks.com · 39 points · 52 comments
FIPS 140-3 is not a security guarantee, and auditors know it
808bits.com · 25 points · 27 comments
Hackers steal over $130M by exploiting bug in offline hardware wallets
techcrunch.com · 7 points · 0 comments
Open VSX extensions found harvesting developer info
bleepingcomputer.com · 3 points · 0 comments
Security Incident INC-2026-07-28-01 – UK AI Security Institute [pdf]
cdn.prod.website-files.com · 65 points · 54 comments
Bypassing AI guardrails is so easy a script kiddie can do it
theregister.com · 11 points · 1 comments
Web Security is Too Hard
textslashplain.com · 178 points · 119 comments
Why coding agents belong in remote sandboxes
superconductor.com · 11 points · 0 comments
Privacy risks from medical AI tools are not shared equally
nature.com · 9 points · 0 comments
SIEMatic, a fair-sourced observability and security platform
github.com · 6 points · 7 comments
Hotel Wi-Fi attacks use custom malware to breach Microsoft 365 accounts
bleepingcomputer.com · 6 points · 3 comments
MightyDash – A Free, Privacy-Focused iPhone Dashcam App
mightydash.app · 2 points · 0 comments
Online ad giant Adform was hacked, proving once again why ad blockers are needed
this.weekinsecurity.com · 154 points · 103 comments
Liechtenstein Hunts Hackers as Data on 31,000 Funds Breached
bloomberg.com · 7 points · 0 comments
From One Seed to a Thousand Leaves – Merkle's Authentication Tree
0xkrt26.github.io · 51 points · 4 comments
Guide AI coding agents on how to use libraries securely
github.com · 2 points · 2 comments
Google's synced passkeys can be stolen by malware
bleepingcomputer.com · 5 points · 0 comments
HostBlock – A menu bar app that blocks ads and malware (for my grandma)
hostblock.app · 2 points · 0 comments
Critical CVE issued for hallucinated SQLite vulnerability
research.jfrog.com · 146 points · 372 comments
Coldcard wallet RNG flaw likely linked to $88M Bitcoin theft
bleepingcomputer.com · 20 points · 0 comments
Claude published malicious code to the Internet and attacked 3 real companies
arstechnica.com · 4 points · 1 comments
Coldcard Bitcoin Exploit Balloons to $88M as Attackers Keep Draining Wallets
decrypt.co · 6 points · 1 comments