BTC$63,099+0.05% LTC$44.26+0.48% XMR$411.25+1.05%
TorPortal TorPortalMarkets, mirrors, dark web news

Tor and dark web news

Stories from trusted sources, picked for people who actually use Tor.

Latest dark web stories

Zoom warns of critical account takeover vulnerability
BleepingComputer · Jul 15, 2026 · 1 min read

Zoom warns of critical account takeover vulnerability

Zoom is warning of a critical vulnerability in its desktop client and software development kit for Windows that could be exploited by an unauthenticated party to hijack accounts.
Trump administration unveils AI-supported clearinghouse for cyber vulnerabilities
The Record · Jul 15, 2026 · 2 min read

Trump administration unveils AI-supported clearinghouse for cyber vulnerabilities

The Gold Eagle program will allowe industry, critical infrastructure operators and the government to use artificial intelligence to rapidly detect, prioritize and patch cybersecurity vulnerabilities, officials said.
Google Gemini CLI abused as a hacking agent, malware botnet operator
BleepingComputer · Jul 15, 2026 · 1 min read

Google Gemini CLI abused as a hacking agent, malware botnet operator

A Russian-speaking threat actor known as "bandcampro" used Google's open-source Gemini CLI AI tool as a hacking agent and to operate a small-scale botnet.
Trump’s DNI pick grilled about election security, voter fraud
The Record · Jul 15, 2026 · 3 min read

Trump’s DNI pick grilled about election security, voter fraud

Senators pressed director of national intelligence nominee Jay Clayton about his stance on the 2020 election and previous statements about voter fraud. Other issues took a back seat.
23andMe reaches $18 million settlement with states for massive breach
The Record · Jul 15, 2026 · 2 min read

23andMe reaches $18 million settlement with states for massive breach

A coalition of 42 state attorneys general reached an $18 million settlement with 23andMe for cybersecurity failings that led to a data breach.
AsyncAPI npm packages infected with credential-stealing malware
BleepingComputer · Jul 15, 2026 · 1 min read

AsyncAPI npm packages infected with credential-stealing malware

Five malicious versions of AsyncAPI packages were published to the Node Package Manager (npm) in a supply-chain attack that delivered a remote access trojan with info-stealing capabilities.
Dutch police dismantle global crypto investment scam, arrest alleged mastermind
The Record · Jul 15, 2026 · 2 min read

Dutch police dismantle global crypto investment scam, arrest alleged mastermind

Authorities said Wednesday that the group operated like a legitimate international business since at least 2021, running about two dozen call centers across several countries and employing more than 700 people who posed as professional…
We built a vulnerability vending machine: AI tokens in, zero-days out
BleepingComputer · Jul 15, 2026 · 1 min read

We built a vulnerability vending machine: AI tokens in, zero-days out

Intruder built an AI-powered "vulnerability vending machine" that combines code slicing with LLMs to automatically discover complex software vulnerabilities. The company explains how the system found and exploited a previously unknown…
LAPD sidelines relationship with license-plate reader company Flock Safety
The Record · Jul 15, 2026 · 2 min read

LAPD sidelines relationship with license-plate reader company Flock Safety

The Los Angeles Police Department is the latest U.S. municipal agency to rethink its relationship to ALPR company Flock Safety.
Microsoft smashes Patch Tuesday record for second successive month
The Record · Jul 15, 2026 · 4 min read

Microsoft smashes Patch Tuesday record for second successive month

Vulnerability counts have been surging this year, and Microsoft's mammoth disclosure this week of 622 bugs is larger than the three previous months combined.
CISA warns admins to patch actively exploited SharePoint flaws
BleepingComputer · Jul 15, 2026 · 1 min read

CISA warns admins to patch actively exploited SharePoint flaws

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned Tuesday that attackers are actively exploiting three vulnerabilities to hack Internet-exposed on-premises SharePoint Server instances.
Microsoft: Some Dell PCs shut down after recent Windows updates
BleepingComputer · Jul 15, 2026 · 1 min read

Microsoft: Some Dell PCs shut down after recent Windows updates

Microsoft is blocking this month's Windows 11 security updates on some Dell devices because they are causing shutdowns and performance issues.
US charges alleged operators of Russian bulletproof hosting service
BleepingComputer · Jul 15, 2026 · 1 min read

US charges alleged operators of Russian bulletproof hosting service

U.S. federal prosecutors have unsealed charges against three Russian nationals, accusing them of providing bulletproof hosting (BPH) services to ransomware gangs that caused over $62 million in damages to victims worldwide.
SonicWall warns of SMA1000 flaws exploited in zero-day attacks, patch now
BleepingComputer · Jul 14, 2026 · 1 min read

SonicWall warns of SMA1000 flaws exploited in zero-day attacks, patch now

SonicWall warns that threat actors have been exploiting two SMA1000 vulnerabilities, tracked as CVE-2026-15409 and CVE-2026-15410, in zero-day attacks and urges customers to install the newly released security updates.
Spanish Police take down €140 million cyber fraud ring, arrest four
BleepingComputer · Jul 14, 2026 · 1 min read

Spanish Police take down €140 million cyber fraud ring, arrest four

The Spanish Police dismantled a cybercrime and money-laundering organization that made €140 million ($160 million) from investment fraud and business email compromise (BEC) attacks.