The Twitter account of the most reliable cybersecurity news platform brings exclusive dark web, tech, hacking news, and much more. Contact: admin@hackread.com.

United Kingdom
Researchers detail 176 patched vulnerabilities in Samsung phone apps that enabled camera recordings, screen capture, DNS hijacking, and theft of sensitive data. Listen/Read: hackread.com/samsung-patched… #CyberSecurity #Samsung #Android #Vulnerability #0day
2
8
1,745
📢 ⚠️ A fake Zoom installer delivers the new malware called Overlord RAT to macOS and Windows devices while installing the genuine #Zoom app, making the infection appear legitimate to users. Listen/Read: hackread.com/fake-zoom-insta… #CyberSecurity #Overlord #Malware #macOS #Windows
3
12
2,404
⚠️ #XSS2Shell Vulnerability Puts 500 Million WordPress Sites at Risk of RCE. The flaw could turn a failed login into a path for executing malicious code by convincing a logged-in administrator to visit a malicious site. More: hackread.com/xss2shell-vulne… #CyberSecurity #WordPress
8
31
8,429
A New Mexico court ordered #Meta to pay $942 million after finding Facebook and Instagram contributed to youth mental health harms and child sexual exploitation. Listen/Read: hackread.com/meta-fine-faceb… #CyberSecurity #CyberCrime #Instagram #Facebook #ChildSafety
1
7
2,582
Canadian citizen Connor Moucka, aka #Waifu, admits breaching over 165 organizations worldwide, stealing billions of records, and advertising the data on BreachForums, XSS, and Exploit. Listen/Read: hackread.com/canadian-hacker… #CyberSecurity #CyberCrime #Databreach #BreachForums
6
19
3,702
Meet Vanta Stealer, a new Python infostealer that has been targeting browsers, crypto wallets, gaming accounts, and Discord credentials. Listen/Read: hackread.com/vanta-stealer-m… #CyberSecurity #VantaStealer #Python #Malware #InfoStealer
1
6
1,891
2 Scattered Spider members have each been sentenced to 2.6 years in prison for the 2024 cyberattack on Transport for London, which disrupted customer services and cost TfL about £39m. Listen/Read: hackread.com/two-scattered-s… #ScatteredSpider #Cybercrime #Cybersecurity #TfL
4
28
4,084
🚨 A newly identified APT dubbed #ArmoredLikho is targeting government and energy organizations with #BusySnake Stealer, delivered via AI-generated loaders and phishing emails. Listen/Read: hackread.com/armored-likho-g… #CyberSecurity #InfoSec #APT #Malware #Phishing
2
10
1,657
📣🚨 #Vietnam has arrested 7 people accused of running HiAnime, once the world's most-visited illegal anime streaming site. #HiAnime #Piracy #Cybercrime #ACE #Anime #CyberSecurity Listen/Read: hackread.com/7-arrested-top-…
1
5
1,683
📣🚨 #JADEPUFFER, the first documented agentic ransomware operation in which an LLM agent abused a #Langflow flaw, stole credentials, reached production MySQL, and destroyed Nacos config data. Listen/Read: hackread.com/sysdig-jadepuff… #Ransomware #AgenticAI #LLM #Cybersecurity
1
3
11
2,108
⚠️⚽ A fake FIFA World Cup 2026 T-shirt giveaway spreads Voidrift malware through personalized emails using company logos and trusted websites to bypass security filters. Listen/read this news: hackread.com/hackers-fake-fi… #CyberSecurity #FIFAWorldCup #Voidrift #Scam
1
4
10
1,818
📣 🔐 WhatsApp is adding usernames so you can start chats without sharing your phone number. Users can reserve a username now, with the full feature expected later this year. Read or listen to this news: hackread.com/whatsapp-userna… #WhatsApp #Privacy #Cybersecurity #TechNews #Meta
2
5
3,654
⚖️Update on Everest ransomware’s Under Armour breach we reported last month. #UnderArmour now faces multiple lawsuits, @HackRead is cited in court docs. #Everest claims it stole 343GB of internal data, employee info, and user records - The stolen database was leaked online. 🔓
1
7
1,190
Watch as Russian police raid and arrest the developers behind the Meduza Stealer malware. The crackdown followed a hack on a Russian government agency. Read: hackread.com/russia-arrests-… #Cybersecurity #Malware #Russia #MeduzaStealer #Infosec
1
2
7
994
China-linked APT group #SaltTyphoon is actively targeting global telecom and energy networks via newly discovered software vulnerabilities, warns Darktrace. Read more: hackread.com/salt-typhoon-ap… #CyberSecurity #APT #ThreatIntel #InfoSec #China
5
1,152
#Envoy Air, a regional carrier of #AmericanAirlines, confirms it was impacted in the latest zero-day exploit of Oracle E-Business Suite by the #CL0P ransomware gang. Read: hackread.com/envoy-air-ameri… #CyberSecurity #DataBreach #OracleEBS #Infosec #Ransomware
2
3
1,047
Fake job offers from brands like KFC and Red Bull are being used to steal #Facebook logins. Do not sign in through job links, check sender addresses, hover links, use official sites, and turn on 2FA. Read: hackread.com/phishing-emails… #Phishing #CyberSecurity #InfoSec #ScamAlert
3
6
1,245
Major global outage at #AWS has now been resolved after hundreds of apps and services got affected across the Americas, UK/EU and Asia-Pacific. What went wrong and how it was fixed. → hackread.com/aws-outage-miti… #AWS #CloudOutage #CyberSecurity #TechNews
3
12
1,590
🚨 Malicious Perplexity Comet Browser Download Ads Push Malware Via Google! Watch out as attackers are exploiting #GoogleAds with fake Comet Browser download links to spread DarkGate malware. Read: hackread.com/perplexity-come… #CyberSecurity #CometBrowser #GoogleAds
1
5
11
2,242
ICYMI 🚨 A 600GB leak allegedly exposing China’s Great Firewall operation has surfaced online. The leak is being linked to #EnlaceHacktivista, the group behind the 2023 Cellebrite breach. More: hackread.com/great-firewall-… #CyberSecurity #Breach #China #GreatFirewall
3
1
11
1,768
🚨 A new #phishing campaign is targeting executives in the crypto industry via fake interview requests. The attackers impersonate journalists affiliated with #CoinMarketCap, using their active profiles on the company’s site to appear legitimate. hackread.com/fake-coinmarket…
2
3
1,361
🚨 #FBI warns hackers are exploiting a 7-year-old flaw in outdated Cisco routers and switches. This April 2018 screenshot shows #Cisco devices in Iran and Russia exploited by this flaw, replacing the IOS image with a US flag. 🔗 hackread.com/russian-state-h… #CyberSecurity #InfoSec
1
7
6
1,700
#XSS.IS, probably the most notorious Russian language cyber crime forum, has been seized after its administrator was arrested in #Ukraine.
1
2
6
1,487
🕵️‍♂️ TheHarvester 📨 Gathers emails, subdomains, and DNS info from public sources. 👌 Perfect for reconnaissance and pen testing prep. 💰 Free
1
2
6
924
👤 Lullar 🔎 Search for social profiles tied to an email or username. Great for quickly mapping online footprints. 💰 Free
1
1
4
266
📸 Hunchly 🖥️ Saves every web page you view - with timestamps, screenshots, and audit trails. 👌 Perfect for investigators. 💰 $19.99/month or $109.99/year
1
1
3
252
🕵️‍♀️ Paliscope 👮‍♂️ Used by law enforcement to collect & visualise OSINT data. Known for anti-trafficking work. 💰 Free–$3,995+/yr
1
1
2
227
🧾 Metagoofil 🛜 Like FOCA but deeper - scrapes metadata from online docs to help with recon and fingerprinting. 💰 Free
1
1
4
235
📱 SkopeNow ⌨️ Gathers intel from social platforms. Includes link analysis, fraud checks, and even traffic cams. 💰 Custom pricing
1
1
2
261
📄 FOCA 📂 Pulls metadata from public docs (PDFs, DOCs, etc.) - usernames, software versions, network paths. 💰 Free
1
1
2
242
🎯 GHunt 🔎 Use a Google account/email to uncover public YouTube, Photos, Calendar, and linked services. 💰 Free
1
1
2
282
📢 Telegago 🔎 Analyse public/private Telegram channels. Track message trends, user activity, and sentiment. 💰 Free
1
1
2
357
💻 BuiltWith 🔎 Breaks down what tech a website is running. Great for competitor intel and attack surface analysis. 💰 $295–$995+ tiers
1
1
3
254
🔎 Mitaka 🖥️ A browser extension for rapid intel lookups - hashes, IPs, domains & more. 💰 Free
1
1
3
287
🕰️ Wayback Machine - #Archive.org 🌐 Access historical versions of websites, useful for finding deleted or changed content. 💰 Free
1
1
2
264
🛠️ Recon-ng 🔎 Modular recon framework with built-in tools for domain, IP, and social media profiling. 💰 Free
1
1
4
296
🧠 SpiderFoot 💡 Automated OSINT engine that pulls data from 100+ sources. 🔎 Scans domains, IPs, emails for risks. 💰 Free
1
1
2
301
📂 OSINT Framework 🚪 Not a tool, but a map of tools, a gateway to dozens of open data sources across categories. 💰 Free
1
1
3
348
🌐 Shodan 🔎 Search engine for Internet of Things. Find exposed devices, databases, servers, cams & more. 💰 Free to $1,099+ depending on usage
1
1
3
332
📧 XposedOrNot 🔎 Check if emails or passwords were leaked in breaches. 🛡️ Includes API and privacy-first password checks. 💰 Free + Business options
1
1
2
319
🤖 VenariX Ransomware Alert Bot 🔎 Tracks ransomware gang claims, IOCs, and dark web chatter. 🚨 Includes a Telegram bot for live alerts. 💰 Free to Enterprise tiers ($0–$69+/month)
1
1
3
357
👮 Arrests 🔎 Search arrest records, mugshots & charges from across the US. 👌 Ideal for background checks in open-source investigations. 💰 Free
1
1
2
339
FBI Watchdog 🔎Tracks domain seizures & DNS record changes in real time. 🚨Sends alerts via Telegram & Discord. 📸 Takes screenshots of seized domains. 💰 Free
2
1
3
423
🔍 2025's top OSINT tools are here! Whether you're tracking domains, digging up metadata, or investigating social networks, this list has the latest free & paid tools. 🧵 Let’s run through some of the best picks for #OSINT pros and cybersecurity analysts:
4
19
46
14,806
🧟‍♂️ WeaXor ransomware (based on Mallox) was also spotted. It encrypts user files and demands $2,000 in BTC or USDT. 📸 Sample ransom note:
1
1
189
Proton66, a known #Bulletproof host, is now tied to: SuperBlack ransomware WeaXor (a Mallox variant) Strela Stealer XWorm Android malware on fake #GooglePlay pages All traced back to ASN 198953.
1
1
235
🚨 A Russian bulletproof hosting provider, #Proton66, is being linked to a rise in ransomware and malware campaigns, including SuperBlack and WeaXor. 🧵 Here’s what the @SpiderLabs found:
1
2
2
919
The spyware-laced app was shared via a fake Telegram channel, promoted as a free PRO version of #AlpineQuest, a legit app used by soldiers for offline mapping. 📸 Left: Russian post / Right: English translation 🖼️ 👇
1
1
90
🚨 A fake version of the Alpine Quest mapping app has been caught spying on Russian military #Android users. Disguised as a “Pro” version, it was loaded with spyware. 🧵 Here’s what we know:
1
2
4
807