Blogs & insights
Latest Dark Nuvens blogs
AI is changing the game and so are the risks
Artificial Intelligence (AI) is transforming businesses operations, from automating tasks to analysing data faster than any human can. With every...
Close your cybersecurity gaps before attackers find them
We all know that in today’s fast-moving digital world, it’s not a matter of if your systems will be prodded by cybercriminals, it’s when. From...
No business is too small: Why hackers are interested in you
Think your business is too small to be hacked? Think again. In 2024, 70% of organisations globally suffered a significant cyber attack, and small...
Bridging the cyber skills gap: Outsourcing your cybersecurity needs
Cybercrime is rising fast, but skilled professionals who can defend against it are in short supply, especially across Africa. Building a full-time...
Caught in the web: How cyber ‘spiders’ harvest your personal information
Ever heard of cyber spiders? They’re not the creepy kind but are just as dangerous. Cyber spiders are bots used by criminals to scan the internet,...
The Hacker News feed
The Hacker News Most trusted, widely-read independent cybersecurity news source for everyone; supported by hackers and IT professionals — Send TIPs to admin@thehackernews.com
- PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitationby info@thehackernews.com (The Hacker News) on May 30, 2026 at 6:41 am
Palo Alto Networks has warned that a recently disclosed medium-severity security flaw impacting PAN-OS and Prisma Access has come under active exploitation in the wild. The vulnerability, tracked as CVE-2026-0257 (CVSS score: 7.8), refers to a case of authentication bypass that could be exploited by bad actors to set up VPN connections. "Authentication bypass vulnerabilities in the
- ChatGPhish Vulnerability Turns ChatGPT Web Summaries Into a Phishing Surfaceby info@thehackernews.com (The Hacker News) on May 29, 2026 at 6:07 pm
Cybersecurity researchers have disclosed details of a vulnerability in OpenAI ChatGPT that leverages the artificial intelligence (AI) assistant's implicit trust in Markdown links and images to trigger prompt injections and open the door to phishing attacks. The technique has been codenamed ChatGPhish by Permiso Security. "The chatgpt.com response renderer trusts Markdown links and Markdown
- Attackers Use LLM Agent for Post-Exploitation After Marimo CVE-2026-39987 Exploitby info@thehackernews.com (The Hacker News) on May 29, 2026 at 2:39 pm
An unknown threat actor has been observed using a large language model (LLM) agent to conduct post-compromise actions after obtaining initial access following the exploitation of a publicly-accessible Marimo network using a recently disclosed vulnerability. "The attacker compromised an internet-reachable Marimo notebook via CVE-2026-39987, extracted two cloud credentials from the compromised
- New Russia-Linked GREYVIBE Targets Ukraine with AI-Powered Cyberattacksby info@thehackernews.com (The Hacker News) on May 29, 2026 at 11:31 am
A previously undocumented threat actor dubbed GREYVIBE has been attributed to ongoing and persistent attacks targeting Ukraine and Ukraine-related entities since at least August 2025. GREYVIBE, per WithSecure, is assessed to be a Russian-speaking group operating broadly in the Russian time zone, with the activities aligning with Kremlin state interests, specifically when it comes to
- What 2,000 Exposed Vibe-Coded Apps Reveal About the Limits of Most Security Stacksby info@thehackernews.com (The Hacker News) on May 29, 2026 at 10:30 am
Shadow AI used to mean employees pasting things they shouldn't into ChatGPT. It now means something bigger: employees building full applications with AI, wiring them into production systems, and publishing them on the open internet. Without Security or IT in the loop. The artifact moved from a prompt to a product. The risk surface moved with it. In The Shadow Builders report (get it here), a









