Deeba Ahmed
1990 posts
Deeba is a veteran cybersecurity reporter at Hackread.com with over a decade of experience covering cybercrime, vulnerabilities, and security events. Her expertise and in-depth analysis make her a key contributor to the platform’s trusted coverage.
Fake Sexual Misconduct Emails Target Universities with Zoho RAT
Cofense details a phishing campaign targeting healthcare-linked universities through Google Drive links that lead recipients to install Zoho RAT.
September 11, 2026
Hackers Use Hundreds of AI Agents to Exploit PaperCut Zero-Days
Blackpoint Cyber and GreyNoise detail attacks exploiting two PaperCut zero-days, with hundreds of AI agents used to compromise servers across 48 countries.
September 10, 2026
F5 BIG-IP APM Linux Malware Hides PHP Web Shell in Apache Memory
Sophos found Linux malware targeting F5 BIG-IP APM that injects a PHP web shell into Apache memory, helping attackers evade file-based detection.
September 10, 2026
AI Workflow Flaw Could Let Attackers Access Sensitive Data by Simply Asking
Noma Labs has identified Workflow Identity Hijacking, an AI workflow flaw that can let attackers abuse privileged access to sensitive internal data without prompt injection.
September 9, 2026
Microsoft Patch Tuesday Fixes 966 Vulnerabilities, Including 2 Exploited 0-Days
Microsoft Patch Tuesday fixes 966 vulnerabilities, including two exploited Windows zero-days, critical RCE flaws, and bugs in Office, networking and Hyper-V.
September 9, 2026
Hackers Stream Real Google Login Pages to Steal Passwords and 2FA Codes
NordVPN researchers found a phishing service relaying live Google sign-in sessions to intercept passwords, 2FA codes, and active authenticated account sessions.
September 8, 2026
F6 Threat Report Tracks 600 Million Records Across 164 Database Leaks
F6 tracked 164 database leaks exposing more than 600 million records across underground forums and Telegram in 2025 and the first half of 2026.
September 7, 2026
Sality Botnet Linked to 11 Million IPs Disrupted After 23 Years
US and European authorities disrupted the long-running Sality botnet, using P2P sinkholing to cut infected Windows systems off from its operator.
September 4, 2026
Hackers Hijack AWS Account to Run Paid AI Models in LLMjacking Attack
FortiGuard Labs details an LLMjacking attack in which hackers used a leaked AWS admin key to subscribe to AI models and generate inference charges.
September 4, 2026
Hackers Accessed 5,000 Dropbox Accounts Through Lenovo ID Flaw
A flaw in Lenovo ID’s email verification process allowed an unauthorized party to access about 5,000 Dropbox accounts…
September 3, 2026