All topics

Security stories

Security stories on Hacker News range from critical CVE disclosures and supply-chain attacks to privacy policy changes and encryption debates. Practitioners, researchers, and skeptics weigh in with technical depth that mainstream coverage often misses.

This page aggregates the security and privacy discussions worth reading — vulnerability write-ups, incident postmortems, and the community's reaction to new threats and defenses.

454 stories archived · Page 11 of 16

RSS feed for Security

UK charities count the cost of Beacon CRM cyberattack

theregister.com · 4 points · 0 comments

OpenAI, Anthropic AI Models Breached Systems During UK Safety Tests

bloomberg.com · 10 points · 1 comments

How HN: Argus – open-source security scanner with MCP

github.com · 5 points · 0 comments

OpenAI and Anthropic models 'went rogue' during UK cybersecurity test

theguardian.com · 7 points · 1 comments

The Attack Was Authorized: The Missing Security Boundary for AI Agents

blog.iluxav.com · 3 points · 0 comments

$20M+ in Microsoft bug bounties paid out in last 12 months

theregister.com · 9 points · 0 comments

Bugtraq Is Back

lists.securityfocus.com · 19 points · 32 comments

Is It Possible to Make Smart Glasses That Aren't Creepy?

wired.com · 5 points · 4 comments

Pass the Passkey: A Novel Attack Surface in Passwordless Authentication

unit42.paloaltonetworks.com · 39 points · 52 comments

FIPS 140-3 is not a security guarantee, and auditors know it

808bits.com · 25 points · 27 comments

Hackers steal over $130M by exploiting bug in offline hardware wallets

techcrunch.com · 7 points · 0 comments

Open VSX extensions found harvesting developer info

bleepingcomputer.com · 3 points · 0 comments

Security Incident INC-2026-07-28-01 – UK AI Security Institute [pdf]

cdn.prod.website-files.com · 65 points · 54 comments

Bypassing AI guardrails is so easy a script kiddie can do it

theregister.com · 11 points · 1 comments

Web Security is Too Hard

textslashplain.com · 178 points · 119 comments

Why coding agents belong in remote sandboxes

superconductor.com · 11 points · 0 comments

Privacy risks from medical AI tools are not shared equally

nature.com · 9 points · 0 comments

SIEMatic, a fair-sourced observability and security platform

github.com · 6 points · 7 comments

Hotel Wi-Fi attacks use custom malware to breach Microsoft 365 accounts

bleepingcomputer.com · 6 points · 3 comments

MightyDash – A Free, Privacy-Focused iPhone Dashcam App

mightydash.app · 2 points · 0 comments

Online ad giant Adform was hacked, proving once again why ad blockers are needed

this.weekinsecurity.com · 154 points · 103 comments

Liechtenstein Hunts Hackers as Data on 31,000 Funds Breached

bloomberg.com · 7 points · 0 comments

From One Seed to a Thousand Leaves – Merkle's Authentication Tree

0xkrt26.github.io · 51 points · 4 comments

Guide AI coding agents on how to use libraries securely

github.com · 2 points · 2 comments

Google's synced passkeys can be stolen by malware

bleepingcomputer.com · 5 points · 0 comments

HostBlock – A menu bar app that blocks ads and malware (for my grandma)

hostblock.app · 2 points · 0 comments

Critical CVE issued for hallucinated SQLite vulnerability

research.jfrog.com · 146 points · 372 comments

Coldcard wallet RNG flaw likely linked to $88M Bitcoin theft

bleepingcomputer.com · 20 points · 0 comments

Claude published malicious code to the Internet and attacked 3 real companies

arstechnica.com · 4 points · 1 comments

Coldcard Bitcoin Exploit Balloons to $88M as Attackers Keep Draining Wallets

decrypt.co · 6 points · 1 comments