source&pool
A daily wire of long-form journalism, video, and discourse — filed, tagged, and laid out flat.
VOL. I·NO. 01
FRIDAY, SEPTEMBER 18, 2026
Hacker News4011X 主题热门3840CNBC76MacRumors689to5Mac63YahooFinance57Kotaku45IGN38Verge38aihot34NintendoLife319to5Google29BusinessInsider27Gematsu27Eurogamer25TechCrunch24Engadget22Guardian17NBC16Polygon16SeekingAlpha15USAToday15Wccftech15Fortune14NPR14PushSquare14bgr13CNET13Mashable13Gizmodo12FoxBusiness11AndroidAuthority10ArsTechnica10Notebookcheck10ABC9AppleInsider9CBS9Fox9Investor'sBusinessDaily9TechPowerUp9WIRED9GameInformer8WindowsCentral8BleepingComputer7PureXbox7Variety7VideoGamesChronicle7WarhammerCommunity7CNN6CoinDesk6XBOXWire6NewYorkPost6PetaPixel6SamMobile6DigitalFoundry5GSMArena5NintendoEverything5CrudeOilPricesToday5Yahoo5GameRant4Lifehacker4Motor14Pokemon4RPGSite4SeattleTimes4SlashGear4Register4VideoCardz4404Media3AlJazeera3AndroidCentral3AndroidPolice3CTech3ChromeUnboxed3GamesIndustry.biz3Hodinkee3Jalopnik3LosAngelesTimes3Blizzard3RockPaperShotgun3SouthChinaMorningPost3Space3Conversation3TweakTown3UploadVR3WindowsLatest3YourTango380Level2Aftermath2AOL2AwfulAnnouncing2BleedingCool2BloodyDisgusting2BuzzFeed2CanonRumors2CyberSecurityNews2Deadline2DualShockers2DW2EventHubs2MotleyFool2FratelloWatches2GameDeveloper2GearPatrol2Independent2InsiderGaming2MassivelyOverpowered2Maxroll2MP1st2MyNintendo2Nature2Newser2PCWorld2PokémonGOHub2QuantaMagazine2RoadtoVR2SFGATE2Hacker2Intercept2ABC111AboveLaw1BusinessInsiderAfrica1ageofempires1AVClub1Benzinga1BikeRadar1Billboard1Borderlands1Boston1Bungie1Yahoo!FinanceCanada1Chron1CineD1comicbook1CreativeBloq1Currently1Cyclingnews1DailyDownforce1DailyKos1DaringFireball1Defector1Defense1denver71DenverPost1DigitalCameraWorld1Draftsim1DroidLife1CNN1empireonline1Euronews1Fangoria1flatpanelshd1FOX191DetroitFreePress1FrequentMiler1Futurism1GAMINGbible1GamingOnLinux1AAAGasPrices1GeekWire1GeekyGadgets1Hackaday1HollywoodReporter1InterestingEngineering1KITCO1KSL1Lloyd'sList1Macworld1Magic:Gathering1Mediaite1Mercury1MonochromeWatches1MorningBrew1MortgageDaily1SemiAnalysis1Newsshooter1Newsweek1nrn1NYT1OregonLive1PageSix1PaulKrugman1PCMag1PlayStationLifeStyle1politico.eu1PittsburghPost-Gazette1qz1Road&Track1RockstarINTEL1SammyGuru1CultureMapSanAntonio1ScienceAlert1ScientificAmerican1Semafor1YahooSingapore1SportsIllustrated1SimpleFlying1Slate1supercarblondie1YahooTech1TechSpot1Tedium1TelecomTalk1TheGamer1NextWeb1TimeExtension1LongmontTimes-Call1TimesUnion1TmoNews1TwistedVoxel1YahooFinanceUK1UnHerd1VisualCapitalist1WOWT1WRAL1WSB-TV1YGOrganization1ZDNET1
  1. 001BleepingComputerSEP · 18English

    New RatHat Android malware uses AI to automate device control

    RatHat, a new Android malware linked to Chinese threat actors, uses AI to automate remote device control by serializing the accessibility tree into XML and leveraging an AI assistant for intelligent interface navigation. Distributed via malvertising and phishing, it abuses Accessibility permissions and enables Developer Options to gain shell-level execution, deploying Go-based agents for persistence and credential theft from banking and cryptocurrency apps.

    By Bill Toulas
  2. 002BleepingComputerSEP · 15English

    Hackers hijack HBO Max Reddit account to push malware in ClickFix ads

    Hackers compromised HBO Max's verified Reddit account and posted 108 malicious ads using ClickFix social engineering to distribute information-stealing malware to Windows and macOS users. The campaign, linked to a broader operation called PasteSwitch, tricked victims into pasting commands into their terminals to install fake applications, including counterfeit HBO Max apps and cryptocurrency wallets.

    By Lawrence Abrams
  3. 003BleepingComputerSEP · 11English

    New Android malware encrypts files, steals data, and harasses victims

    Mantax Otax is a new Android malware combining ransomware and spyware capabilities that encrypts files on older Android devices, steals sensitive data including credentials and messages, and harasses victims through pop-ups and intimidation tactics. Indonesian operators distribute it via malicious APKs outside Google Play using phishing and social engineering, with the malware abusing Accessibility services to gain extensive device control and communicating with C2 infrastructure hosted on GitHub and Firebase.

    By Bill Toulas