Security Feed Digest (2026-03-18)
Hacker News: Best
- FBI is buying location data to track US citizens, director confirms — Wed, 18 Mar 2026 20:09:52 +0000
- AI coding is gambling — Wed, 18 Mar 2026 17:22:02 +0000
- Snowflake AI Escapes Sandbox and Executes Malware — Wed, 18 Mar 2026 15:30:07 +0000
- Death to Scroll Fade — Wed, 18 Mar 2026 15:23:58 +0000
- Despite Doubts, Federal Cyber Experts Approved Microsoft Cloud Service — Wed, 18 Mar 2026 14:14:02 +0000
- Rob Pike’s Rules of Programming (1989) — Wed, 18 Mar 2026 09:59:54 +0000
- Nightingale – open-source karaoke app that works with any song on your computer — Wed, 18 Mar 2026 08:06:24 +0000
- Have a fucking website — Wed, 18 Mar 2026 03:53:42 +0000
- The pleasures of poor product design — Wed, 18 Mar 2026 01:00:45 +0000
- Mistral AI Releases Forge — Tue, 17 Mar 2026 21:04:26 +0000
- Meta and TikTok let harmful content rise to drove engagement, say whistleblowers — Tue, 17 Mar 2026 20:24:33 +0000
- Get Shit Done: A meta-prompting, context engineering and spec-driven dev system — Tue, 17 Mar 2026 20:23:39 +0000
- Meta Horizon Worlds on Meta Quest is being discontinued — Tue, 17 Mar 2026 19:17:16 +0000
- Java 26 is here — Tue, 17 Mar 2026 18:44:09 +0000
- GPT‑5.4 Mini and Nano — Tue, 17 Mar 2026 17:07:06 +0000
- Unsloth Studio — Tue, 17 Mar 2026 15:26:32 +0000
- Show HN: Sub-millisecond VM sandboxes using CoW memory forking — Tue, 17 Mar 2026 13:43:44 +0000
- Ryugu asteroid samples contain all DNA and RNA building blocks — Tue, 17 Mar 2026 12:01:05 +0000
BleepingComputer
- Aura confirms data breach exposing 900,000 marketing contacts — Wed, 18 Mar 2026 18:56:50 -0400
- CISA orders feds to patch Zimbra XSS flaw exploited in attacks — Wed, 18 Mar 2026 15:57:13 -0400
- ConnectWise patches new flaw allowing ScreenConnect hijacking — Wed, 18 Mar 2026 14:10:35 -0400
- Ransomware gang exploits Cisco flaw in zero-day attacks since January — Wed, 18 Mar 2026 12:53:42 -0400
- Marquis: Ransomware gang stole data of 672K people in cyberattack — Wed, 18 Mar 2026 11:32:39 -0400
- The Refund Fraud Economy: Exploiting Major Retailers and Payment Platforms — Wed, 18 Mar 2026 10:05:15 -0400
- New “Darksword” iOS exploit used in infostealer attack on iPhones — Wed, 18 Mar 2026 10:02:08 -0400
- Nordstrom’s email system abused to send crypto scams to customers — Wed, 18 Mar 2026 09:55:49 -0400
- Apple pushes first Background Security Improvements update to fix WebKit flaw — Tue, 17 Mar 2026 21:06:31 -0400
Darkreading
- C2 Implant ‘SnappyClient’ Targets Crypto Wallets — Wed, 18 Mar 2026 21:49:02 GMT
- DarkSword: iPhone Exploit Kit Serves Spies & Thieves Alike — Wed, 18 Mar 2026 21:15:38 GMT
- ‘Claudy Day’ Trio of Flaws Exposes Claude Users to Data Theft — Wed, 18 Mar 2026 15:05:58 GMT
- SideWinder Espionage Campaign Expands Across Southeast Asia — Wed, 18 Mar 2026 13:00:00 GMT
- Researchers: Meta, TikTok Steal Personal & Financial Info When Users Click Ads — Wed, 18 Mar 2026 13:00:00 GMT
- Clear Communication: The Missing Link in Cybersecurity Success — Tue, 17 Mar 2026 21:42:46 GMT
The Hacker News
- OFAC Sanctions DPRK IT Worker Network Funding WMD Programs Through Fake Remote Jobs — Wed, 18 Mar 2026 22:56:00 +0530
- Interlock Ransomware Exploits Cisco FMC Zero-Day CVE-2026-20131 for Root Access — Wed, 18 Mar 2026 21:30:00 +0530
- Critical Unpatched Telnetd Flaw (CVE-2026-32746) Enables Unauthenticated Root RCE — Wed, 18 Mar 2026 18:00:00 +0530
- Claude Code Security and Magecart: Getting the Threat Model Right — Wed, 18 Mar 2026 17:28:00 +0530
- 9 Critical IP KVM Flaws Enable Unauthenticated Root Access Across Four Vendors — Wed, 18 Mar 2026 17:12:00 +0530
- Product Walkthrough: How Mesh CSMA Reveals and Breaks Attack Paths to Crown Jewels — Wed, 18 Mar 2026 16:00:00 +0530
- Ubuntu CVE-2026-3888 Bug Lets Attackers Gain Root via systemd Cleanup Timing Exploit — Wed, 18 Mar 2026 13:38:00 +0530
- Apple Fixes WebKit Vulnerability Enabling Same-Origin Policy Bypass on iOS and macOS — Wed, 18 Mar 2026 12:01:00 +0530
데일리시큐 - 최근인기기사
- 북한 해킹그룹 ‘코니’, 북한인권 미끼로 침투한 뒤 카카오톡까지 악용…다단계 APT 공격 포착 — 2026-03-18 00:22:27
- 과기정통부, 추경 투입해 지역·중소기업 보안 사각지대 해소…2,242개사 점검·9만여 건 취약점 조치 — 2026-03-18 00:04:58
- 국내 최대 사이버위협 인텔리전스 컨퍼런스 ‘K-CTI 2026’ 4월 7일 코엑스 개최…보안담당자 800명 규모…사전등록 진행중 — 2026-03-18 13:08:33
- 금융보안원, 2026년 금융권 침해사고 대응훈련 본격화…AI 기반 공격 대응 강화 — 2026-03-18 11:09:31
- KISA, ‘5G 특화망 보안 안내서’ 공개…산업 현장 보안 기준 제시 — 2026-03-18 10:41:59
- 리눅스 재단, ‘AI 버그 리포트 홍수’ 대응 착수…오픈소스 유지관리자 보호에 1,250만 달러 투입 — 2026-03-18 14:42:22
- 티오리, NDSS 2026서 리눅스 커널 공격기법 ‘더티프리’ 연구 성과 공개 — 2026-03-18 10:49:17
- 나루씨큐리티, AI·위협대응 ‘실전형 인재’ 전면 배치…차세대 사이버 위협 관리 시장 정조준 — 2026-03-18 10:38:02
- 포티넷코리아, 보안 실무자 세미나 및 네트워킹 행사 ‘보안잡담’ 제2회 개최 — 2026-03-18 13:47:49
- 카스퍼스키, 타깃공격 방어 솔루션 ‘KATA 8.0’ 출시 — 2026-03-18 13:09:54
보안뉴스 > SECURITY
- 英, 이스라엘식 ‘사이버 플라이휠’ 가동…보안 스타트업 지원 — Wed, 18 Mar 2026 17:55:00 +0900
- 국민 중심의 디지털 행정서비스 안정성 강화 정책 열린다 — Wed, 18 Mar 2026 15:47:00 +0900
- 소프트캠프 “실드게이트, N2SF 환경서도 안전한 AI 활용” — Wed, 18 Mar 2026 14:48:00 +0900
- ‘AI와 공존하는 세상, 신뢰 초석 놓는다’… SECON & eGISEC 2026 개막 — Wed, 18 Mar 2026 14:41:00 +0900
- [카드뉴스] “셀카 한 장에 뚫리는 보안?” 3D 안면 복제 기술이 부른 생체 보안의 종말 — Wed, 18 Mar 2026 13:24:00 +0900
- 그룹아이비, 인터폴 사이버범죄 대응 작전 ‘시너지아 Ⅲ’ 지원 — Wed, 18 Mar 2026 09:58:00 +0900
- [배종찬의 보안 빅데이터] 중동 뒤덮는 미국·이란 드론전쟁과 사이버 보안 — Wed, 18 Mar 2026 09:16:00 +0900