Deeba Ahmed
1968 posts
Deeba is a veteran cybersecurity reporter at Hackread.com with over a decade of experience covering cybercrime, vulnerabilities, and security events. Her expertise and in-depth analysis make her a key contributor to the platform’s trusted coverage.
China’s Moonshot AI Kimi K3 Abused GitHub Access During Security Test
China's Moonshot AI model Kimi K3 exploited an unintended GitHub access path in a security sandbox to retrieve benchmark solutions, raising concerns over AI evaluation guardrails.
August 12, 2026
DPRK-Linked Hackers Use Ethereum Dead Drops in Malicious npm Packages
DPRK-linked hackers planted malicious code in 6 npm packages that use Ethereum transactions to locate attacker-controlled servers and download malware payloads.
August 12, 2026
Samsung Patched 176 App Flaws, Including Camera Recording and Data Theft Bugs
Oversecured details 176 patched vulnerabilities in Samsung phone apps that enabled camera recordings, screen capture, DNS hijacking, and theft of sensitive data.
August 11, 2026
Fake Zoom Installer Targets Mac and Windows With Overlord RAT
A fake Zoom installer delivers Overlord RAT to macOS and Windows devices while installing the genuine Zoom app to make the infection appear legitimate to users.
August 10, 2026
XSS2Shell Vulnerability Puts 500 Million WordPress Sites at Risk of RCE
The XSS2Shell bug in WordPress could turn a failed login into server code execution after an attacker tricks a logged-in administrator; update to version 7.0.3.
August 10, 2026
Meta Ordered to Pay $942M Over Facebook and Instagram Harm to Children
A New Mexico court ordered Meta to pay $942 million after finding Facebook and Instagram contributed to youth mental health harms and child sexual exploitation.
August 8, 2026
Canadian Hacker “Waifu” Pleads Guilty to Stealing Data from Over 165 Organizations
Connor Riley Moucka, aka Waifu, admits breaching over 165 organizations, stealing billions of records and advertising the data on BreachForums, XSS.is and Exploit.in.
August 7, 2026
New Vanta Stealer Malware Targets Gamers, Crypto Users, and Web Apps
Point Wild researchers uncover Vanta Stealer, a new Python infostealer targeting browsers, crypto wallets, gaming accounts, and Discord credentials.
August 7, 2026
Meta AI Model Breached External Organization During Cybersecurity Test
A Meta AI model gained internet access during a misconfigured security test, exploited a vulnerability in an external organization's systems, prompting an investigation.
August 6, 2026
“I’m Allowed”: Hackers Use Simple Claims to Bypass AI Guardrails
Cisco Talos found hackers using simple authorization claims to bypass AI guardrails, build DDoS attack tools, steal credentials and access live camera services.
August 5, 2026