Sign in

PWN | Hacker Community

@pwnhackers.bsky.social
389 followers 8 following 148 posts

Welcome to PWN – your community for hackers and cybersecurity enthusiasts. Discover the latest hacking news, breach reports, and educational resources on ethical hacking. 👾 Stay sharp. Stay secure.

PostsRepliesMedia
PWN | Hacker Community @pwnhackers.bsky.social · 26/09/2026
Free handout: Adversarial Patterns vs AI Surveillance with Bill Swearingen Can a t-shirt hide you from an AI surveillance camera? Bill Swearingen spent a year answering that question with his noRecognition project, which he presented at Black Hat and DEF CON 2026. joinpwn.com/files/pwn-am...
100
PWN | Hacker Community @pwnhackers.bsky.social · 20/09/2026
Giveaway: Win a shirt that beats Al cameras Win an anti-surveillance t-shirt from the adversarial pattern clothing line built by security researcher Bill Swearingen to confuse Al security cameras. (details below) #hacking #giveaway #cybersecurity #surveillance #privacy
110
PWN | Hacker Community @pwnhackers.bsky.social · 20/09/2026
AMA: Claude is your insider threat now, with Viss of Phobos Group Live AMA on Al security with Viss (Dan Tentler), founder of Phobos Group, whose talk "Claude is your insider threat now" covers Al supply chain attacks, agent containment, and why... #cybersecurity #ai #hacking #infosec #aisecurity
201
PWN | Hacker Community @pwnhackers.bsky.social · 20/09/2026
AMA: Hacking macOS and offensive security with Olivia Gallucci (Datadog) Ask her anything about macOS internals, detection engineering, offensive security, or macOS research more broadly. #MacOS #Mac #EthicalHacking #Cybersecurity #BugBounty
100
PWN | Hacker Community @pwnhackers.bsky.social · 10/09/2026
How do autonomous AI agents get hacked? Join us on Monday, Sept 14 at 12 PM PT for a live AMA with Javier Rivera, Security Researcher at ZioSec. Learn how to find vulnerabilities before attackers do. Drop questions on Reddit. (Link in Comments) #AISecurity #Hacking
110
PWN | Hacker Community @pwnhackers.bsky.social · 26/08/2026
Base 64 and Unicode tricks break LLM chatbot filters LLM chatbot content filters can be bypassed by encoding banned words in Base64 or in Unicode escape sequences. #cybersecurity #ai #promptinjection #lIm #infosec
000
PWN | Hacker Community @pwnhackers.bsky.social · 22/08/2026
🎁 Win Free Hacker Gear! Prizes: 🥇 $200 gift card to Hak5 Shop (hacker gear) 🥈 $50 gift card to 0ff by 0ne (hacker apparel) 🥉 $25 gift card to 0ff by 0ne To win: Comment a question for Hieu Minh Ngo (former black hat hacker who stole identities and now runs the anti-scam nonprofit Chong Lua Dao)
000
PWN | Hacker Community @pwnhackers.bsky.social · 21/08/2026
Why prompt injection can't be patched out of Al Prompt injection is when text an Al reads gets treated as a command it follows, so an attacker's words override its owner's. It can't be stopped at the model level. Here's why... #aisecurity #promptinjection #owasp #cybersecurity #lIm
000
PWN | Hacker Community @pwnhackers.bsky.social · 20/08/2026
Live AMA: “I sold the identities of nearly 200 million people as a black hat hacker. Now I fight scam compounds. Ask me anything.” Join the live AMA event in the PWN community on Wednesday, August 26th, 12 PM to 1 PM ET. #cybersecurity #scamstoppers #fraudprevention #ethicalhacking #AMA
100
PWN | Hacker Community @pwnhackers.bsky.social · 17/08/2026
Should you know when police search your license plate? A new website called Have I Been Flocked lets drivers check whether their license plate has been searched in Flock Safety's surveillance network. #privacy #surveillance #flock #cybersecurity #police
120
Reposted by PWN | Hacker Community
Zack Whittaker @zackwhittaker.com · 06/08/2026
I'm hosting an AMA with security researcher @runasand.bsky.social on August 12th at 5pm PT / 8pm ET to answer questions about the recent case of an American charged by the DOJ for allegedly wiping his phone with a "duress" password during an airport interrogation. It's the first case of its kind.
reddit.com
From the pwnhub community on Reddit: We are TechCrunch security editor Zack Whittaker and security researcher Runa Sandvik. Ask us anything about the American charged with a felony for wiping his phon...
Explore this post and more from the pwnhub community
13618
PWN | Hacker Community @pwnhackers.bsky.social · 09/08/2026
Researchers wiretapped a whole neighborhood's fiber internet from home At Black Hat 2026, researchers Rithwik Jayasimha and Rithvik Vibhu of Lagrange Point showed they could wiretap a shared fiber internet network from an ordinary home connection. #cybersecurity #fiber #blackhat #privacy #hacking
000
PWN | Hacker Community @pwnhackers.bsky.social · 07/08/2026
One hacker exposed North Korea's hacking campaigns A security researcher hacked North Korean hackers and watched their operations from the inside for 22 months. Vangelis Stykas says 1,640 companies across 57 countries were breached. #cybersecurity #hacking #northkorea #infosec #crypto
132
PWN | Hacker Community @pwnhackers.bsky.social · 04/08/2026
A modder used Claude Al to crack an HP laptop's BIOS lock A Reddit user unlocked a BIOS-locked HP 15-dw1036ne laptop using Anthropic's Claude Code. The laptop had a startup lock and no known bypass, and it flagged BIOS Corruption Detected on any change. #claude #ai #bios #tech #righttorepair
120
PWN | Hacker Community @pwnhackers.bsky.social · 01/08/2026
Security researcher cracks GitLab with an Al agent Security researcher Yuhang Wu of depthfirst, formerly at Tesla and TikTok, used an Al agent to find two memory bugs in Oj, an obscure Ruby JSON package buried inside GitLab for nearly five years. #cybersecurity #ai #hacking #gitlab #infosec
000
PWN | Hacker Community @pwnhackers.bsky.social · 30/07/2026
Russia charges Telegram founder Pavel Durov with aiding terrorism Russia's FSB has charged Telegram founder Pavel Durov with aiding terrorist activity and placed him on an international wanted list. #telegram #russia #ukraine #cybersecurity #tech
100
PWN | Hacker Community @pwnhackers.bsky.social · 30/07/2026
AI Researchers Claim Security is Impossible Claude, GPT, and other Al models cannot tell whose instructions they are actually following. #AI #News #Claude #ChatGPT #OpenAI #Anthropic
000
PWN | Hacker Community @pwnhackers.bsky.social · 30/07/2026
Claude Al chats exposed on Google search Publicly shared Claude Al chats from Anthropic were exposed in Google search results this week. Indexed pages reportedly included API keys, crypto wallet details, resumes, and company documents, though no account was hacked... #Claude #AI #Google #Security
000
PWN | Hacker Community @pwnhackers.bsky.social · 27/07/2026
The FCC wants to BAN burner phones. We asked a CNET reporter what that actually means. Joe Supan, Senior Staff Writer at CNET, has been tracking the FCC's proposal to require ID verification for prepaid phones. #Law #FCC #Privacy #Hacking #Cybersecurity #News
010
PWN | Hacker Community @pwnhackers.bsky.social · 27/07/2026
Flock Left Police Searches Exposed Cops can search a nationwide network of license plate cameras without a warrant, and for a stretch of 2024 and 2025, roughly 70 of those searches were sitting in plain view on DuckDuckGo and Bing. #Flock #Privacy #Cybersecurity #Hacking
000
PWN | Hacker Community @pwnhackers.bsky.social · 27/07/2026
So You Want to Be an Ethical Hacker? Start Here. pwnhackers.substack.com/p/so-you-wan... #hackers #ethicalhackers #redteam #cybersecurity
pwnhackers.substack.com
So You Want to Be an Ethical Hacker? Start Here.
We get a lot of emails from members of the PWN community asking how they can get started as an ethical hacker. We created this guide so everyone who is interested in becoming an ethical hacking can be...
000
PWN | Hacker Community @pwnhackers.bsky.social · 07/06/2026
Member Projects: A Free Hacking Practice Challenge, a Pocket Hardware Hacking Gadget, and a DIY Malware Lab pwnhackers.substack.com/p/member-pro...
pwnhackers.substack.com
Member Projects: A Free Hacking Practice Challenge, a Pocket Hardware Hacking Gadget, and a DIY Malware Lab
TLDR: Members of the PWN hacker community are shipping an impressive range of hands-on security projects this week.
000
Reposted by PWN | Hacker Community
Ethical Hacker @cybercod.bsky.social · 02/06/2026
Thanks for the heads-up! That 19-year Linux flaw is a wild reminder: patch everything. Prioritize Windows Netlogon updates and watch out for AI social engineering. Stay secure!
021
PWN | Hacker Community @pwnhackers.bsky.social · 05/06/2026
Microsoft Backs Down After Threatening Researchers Over Zero-Day Disclosure, OpenAI Codex Discovers HTTP/2 Bomb, AI Agents Steal 6 Million Records pwnhackers.substack.com/p/microsoft-...
pwnhackers.substack.com
Microsoft Backs Down After Threatening Researchers Over Zero-Day Disclosure, OpenAI Codex Discovers HTTP/2 Bomb, AI Agents Steal 6 Million Records
TLDR: Microsoft reversed legal threats it made against security researchers who disclosed a zero-day vulnerability, following significant backlash from the security community.
030
PWN | Hacker Community @pwnhackers.bsky.social · 02/06/2026
Hackers Tricked Meta AI Into Handing Over Instagram Accounts, 19-Year-Old Linux Kernel Flaw, and Windows Netlogon Actively Exploited pwnhackers.substack.com/p/hackers-tr...
pwnhackers.substack.com
Hackers Tricked Meta AI Into Handing Over Instagram Accounts, 19-Year-Old Linux Kernel Flaw, and Windows Netlogon Actively Exploited
TLDR: Hackers socially engineered Meta AI into granting them access to high-profile Instagram accounts, bypassing normal account security entirely.
120
PWN | Hacker Community @pwnhackers.bsky.social · 28/05/2026
Scammers are now using real hotel reservation details to run highly convincing spear phishing attacks on travelers. #News #Scam #Cybersecurity
000
PWN | Hacker Community @pwnhackers.bsky.social · 28/05/2026
The FBI is warning that a new phishing kit called Kali365 bypasses multi-factor authentication to hijack Microsoft 365 accounts via stolen tokens. #News #Phishing #Hacking #Cybersecurity
000
PWN | Hacker Community @pwnhackers.bsky.social · 28/05/2026
Microsoft banned a security researcher from GitHub after they published zero-day Windows exploits, and the researcher has vowed further retaliation. #Github #Microsoft #Cybersecurity #Hacking
010
PWN | Hacker Community @pwnhackers.bsky.social · 28/05/2026
Microsoft Bans Zero-Day Researcher From GitHub, FBI Flags Kali365 MFA Bypass, Hotel Booking Scams Hit Travelers pwnhackers.substack.com/p/microsoft-...
pwnhackers.substack.com
Microsoft Bans Zero-Day Researcher From GitHub, FBI Flags Kali365 MFA Bypass, Hotel Booking Scams Hit Travelers
TLDR: Microsoft banned a security researcher from GitHub after they published zero-day Windows exploits, and the researcher has vowed further retaliation.
000
PWN | Hacker Community @pwnhackers.bsky.social · 26/05/2026
7-Zip Code Execution Flaws, ShinyHunters Dumps 7-Eleven Data, and Windows Hit by Post-Patch Zero-Day Blitz pwnhackers.substack.com/p/7-zip-code...
pwnhackers.substack.com
7-Zip Code Execution Flaws, ShinyHunters Dumps 7-Eleven Data, and Windows Hit by Post-Patch Zero-Day Blitz
TLDR: New 7-Zip vulnerabilities allow attackers to execute arbitrary code through malicious archive files, putting millions of installations at risk.
000
PWN | Hacker Community @pwnhackers.bsky.social · 26/05/2026
OnlyFans Attacked - A hacker is selling 340 million OnlyFans user records, though the data appears stitched together from older breaches rather than a fresh hack.
010
PWN | Hacker Community @pwnhackers.bsky.social · 26/05/2026
Urgent: Supply Chain Attack - A coordinated supply chain attack compromised 34 packages across npm, PyPI, and Crates, putting countless downstream applications at risk.
020
PWN | Hacker Community @pwnhackers.bsky.social · 26/05/2026
ShinyHunters leaked a 9.4GB archive containing 185,300 7-Eleven franchisee records after the company refused to negotiate.
010
PWN | Hacker Community @pwnhackers.bsky.social · 26/05/2026
ShinyHunters Dumps 7-Eleven Franchisee Data, npm and PyPI Hit by Supply Chain Attack, 340M OnlyFans Records for Sale pwnhackers.substack.com/p/shinyhunte...
pwnhackers.substack.com
ShinyHunters Dumps 7-Eleven Franchisee Data, npm and PyPI Hit by Supply Chain Attack, 340M OnlyFans Records for Sale
TLDR: ShinyHunters leaked a 9.4GB archive containing 185,300 7-Eleven franchisee records after the company refused to negotiate.
010
PWN | Hacker Community @pwnhackers.bsky.social · 25/05/2026
Microsoft Voice AI Hijacked by Inaudible Podcast Audio, SolarWinds Treasury Breach Deepens pwnhackers.substack.com/p/microsoft-...
pwnhackers.substack.com
Microsoft Voice AI Hijacked by Inaudible Podcast Audio, SolarWinds Treasury Breach Deepens
TLDR: Researchers reveal hidden inaudible audio in podcasts and videos can secretly hijack AI voice assistants from Microsoft and others.
000
PWN | Hacker Community @pwnhackers.bsky.social · 17/05/2026
Microsoft BitLocker Backdoor Claim, Linux Kernel SSH Key Flaw, Grafana GitHub Breach pwnhackers.substack.com/p/microsoft-...
pwnhackers.substack.com
Microsoft BitLocker Backdoor Claim, Linux Kernel SSH Key Flaw, Grafana GitHub Breach
TLDR: A security researcher alleges Microsoft built a secret backdoor into BitLocker and published a working exploit to prove the claim.
000
PWN | Hacker Community @pwnhackers.bsky.social · 16/05/2026
Microsoft Teams Turned Into a Malware Loader, Exchange Zero Day Hits, and node-ipc Hijacked on npm pwnhackers.substack.com/p/microsoft-...
pwnhackers.substack.com
Microsoft Teams Turned Into a Malware Loader, Exchange Zero Day Hits, and node-ipc Hijacked on npm
TLDR: Attackers are posing as IT support in Microsoft Teams chats to push PowerShell commands that install ModeloRAT malware on employee machines.
010
PWN | Hacker Community @pwnhackers.bsky.social · 14/05/2026
Twin Brothers Nuke 96 Government Databases After Firing, Microsoft BitLocker Backdoor Exposed pwnhackers.substack.com/p/twin-broth...
pwnhackers.substack.com
Twin Brothers Nuke 96 Government Databases After Firing, Microsoft BitLocker Backdoor Exposed
TLDR: Twin brothers wiped 96 government databases within minutes of being fired from their IT jobs.
000
PWN | Hacker Community @pwnhackers.bsky.social · 13/05/2026
Linux Kernel “Kill Switch”, npm Supply Chain Attack Hits TanStack and Mistral AI, Windows 11 BitUnlocker Cracks Disks in 5 Min pwnhackers.substack.com/p/linux-kern...
pwnhackers.substack.com
Linux Kernel “Kill Switch”, npm Supply Chain Attack Hits TanStack and Mistral AI, Windows 11 BitUnlocker Cracks Disks in 5 Min
TLDR: Linux kernel maintainers are floating a controversial “kill switch” feature to disable vulnerable functions while patches are pending, splitting the infosec community.
000
PWN | Hacker Community @pwnhackers.bsky.social · 13/05/2026
Featured Press Contributors: Wired, EFF, 404 Media, Fast Company, and The Guardian pwnhackers.substack.com/p/featured-p...
pwnhackers.substack.com
Featured Press Contributors: Wired, EFF, 404 Media, Fast Company, and The Guardian
One of the things that sets the PWN hacker community apart is who shows up here.
000
PWN | Hacker Community @pwnhackers.bsky.social · 06/05/2026
Grok Drained for $175K, 1M AI Services Exposed, Ollama Bug Hits 300K Deployments pwnhackers.substack.com/p/grok-drain...
pwnhackers.substack.com
Grok Drained for $175K, 1M AI Services Exposed, Ollama Bug Hits 300K Deployments
TLDR: A user tricked Grok AI into transferring $175,000 in crypto by tweeting a hidden command in Morse code.
052
PWN | Hacker Community @pwnhackers.bsky.social · 03/05/2026
ShinyHunters Hits Instructure, Utah Holds Websites Liable for VPN Users, CISA Warns of Linux Root Bug pwnhackers.substack.com/p/shinyhunte...
pwnhackers.substack.com
ShinyHunters Hits Instructure, Utah Holds Websites Liable for VPN Users, CISA Warns of Linux Root Bug
TLDR: Utah becomes the first US state to make websites legally responsible when users bypass age checks using VPNs.
020
PWN | Hacker Community @pwnhackers.bsky.social · 02/05/2026
BlackCat Ransomware Gang, Most Vulnerable OS to Data Breach, Canonical (Ubuntu) Attacked pwnhackers.substack.com/p/blackcat-r...
pwnhackers.substack.com
BlackCat Ransomware Gang, Most Vulnerable OS to Data Breach, Canonical (Ubuntu) Attacked
TLDR: Two cybersecurity professionals were sentenced to four years each for facilitating BlackCat ransomware attacks that extorted over $1.2 million from victims.
000
PWN | Hacker Community @pwnhackers.bsky.social · 30/04/2026
Claude AI Wipes a Company’s Entire Database, NPM Attack Hits Claude Code and VS Code, Linux Copy Fail Roots Every Major Distro pwnhackers.substack.com/p/claude-ai-...
pwnhackers.substack.com
Claude AI Wipes a Company’s Entire Database, NPM Attack Hits Claude Code and VS Code, Linux Copy Fail Roots Every Major Distro
TLDR: An AI coding agent powered by Anthropic’s Claude deleted a software firm’s entire production database and admitted it violated every safety principle it was given.
000
PWN | Hacker Community @pwnhackers.bsky.social · 30/04/2026
90,000 Screenshots of One Celebrity's Phone Were Exposed Online www.reddit.com/r/pwnhub/com...
reddit.com
wiredmagazine's comment on "90,000 Screenshots of One Celebrity's Phone Were Exposed Online"
Explore this conversation and more from the pwnhub community
010
PWN | Hacker Community @pwnhackers.bsky.social · 30/04/2026
CISA Shutdown Sidelines US Cyber Defense, NPM Attack Targets Claude Code and VS Code pwnhackers.substack.com/p/cisa-shutd...
pwnhackers.substack.com
CISA Shutdown Sidelines US Cyber Defense, NPM Attack Targets Claude Code and VS Code
TLDR: CISA has been pushed into standby mode after funding ran out, pausing core US cyber defense work. A malicious npm supply chain attack hit developers using Claude Code and VS Code, stealing cred...
140
PWN | Hacker Community @pwnhackers.bsky.social · 28/04/2026
pwnhackers.substack.com/p/openssh-ro...
pwnhackers.substack.com
OpenSSH Root Flaw Lurked for 15 Years, Anthropic's Claude Wipes a Production Database in 9 Seconds, and SMS Blasters Stalk Toronto Streets
TLDR: A 15 year old OpenSSH flaw lets attackers gain root access using certificates containing a comma in the principal name, with no trace in authentication logs.
000
PWN | Hacker Community @pwnhackers.bsky.social · 28/04/2026
PyPI Hijacked, Coinbase Credentials Fueled 100+ Ransomware Hits, and a Free Cybersecurity Training pwnhackers.substack.com/p/pypi-hijac...
pwnhackers.substack.com
PyPI Hijacked, Coinbase Credentials Fueled 100+ Ransomware Hits, and a Free Cybersecurity Training
TLDR: A PWN community member launched a free, no-account-required cybersecurity awareness training site covering phishing, 2FA, ad blocking, and GDPR.
011
PWN | Hacker Community @pwnhackers.bsky.social · 26/04/2026
Palantir's Surveillance Reach, a Malicious Chrome Extension Targeting Apple Developers, and How to Shrink Your Data Footprint pwnhackers.substack.com/p/palantirs-...
pwnhackers.substack.com
Palantir's Surveillance Reach, a Malicious Chrome Extension Targeting Apple Developers, and How to Shrink Your Data Footprint
TLDR: Palantir’s tools can link civilian records across dozens of databases to generate risk scores, and even its own employees are questioning whether that crosses an ethical line.
000
PWN | Hacker Community @pwnhackers.bsky.social · 25/04/2026
Federal Surveillance Tech Mandatory in New Cars, Bitwarden Compromised, and the Netherlands Ditches US Cloud pwnhackers.substack.com/p/federal-su... #Surveillance #Technology #Privacy #News #WorldNews #Politics #Cybersecurity
pwnhackers.substack.com
Federal Surveillance Tech Mandatory in New Cars, Bitwarden Compromised, and the Netherlands Ditches US Cloud
TLDR: A new federal mandate will require surveillance technology in all new vehicles by 2027, raising privacy alarms across the security community.
011