source&pool
A daily wire of long-form journalism, video, and discourse — filed, tagged, and laid out flat.
VOL. I·NO. 01
TUESDAY, SEPTEMBER 22, 2026
Hacker News3916X 主题热门3793CNBC779to5Mac63MacRumors60YahooFinance59aihot48Kotaku42Verge39IGN369to5Google26Gematsu25TechCrunch25NintendoLife23BusinessInsider21Eurogamer19PushSquare16AndroidAuthority15Engadget15Polygon15WarhammerCommunity15NPR14Guardian14NBC13Notebookcheck13USAToday13Wccftech13Fortune12FoxBusiness11AppleInsider10ArsTechnica10CoinDesk10TechPowerUp10ABC9Gizmodo9Mashable9SeekingAlpha9bgr8CBS8CNN8Investor'sBusinessDaily8PureXbox8VideoCardz8Yahoo8MotleyFool7NintendoEverything7PetaPixel7Conversation7CNET6Fox6GSMArena6SamMobile6VideoGamesChronicle6WIRED6BleepingComputer5GameInformer5Pokemon5RockPaperShotgun5TechSpot5AndroidCentral4AndroidPolice4DigitalFoundry4Motor14XBOXWire4NewYorkPost4RPGSite4SlashGear4Variety4WindowsCentral4WSB-TV4Aftermath3AlJazeera3BellofLostSouls3Deadline3GamesIndustry.biz3Hodinkee3HuffPost3MP1st3PlayStationLifeStyle3SouthChinaMorningPost3SeattleTimes3Register3Tom'sGuide3TweakTown3404Media26abcPhiladelphia280Level2ABC7LosAngeles2Benzinga2BleedingCool2CTech2CanonRumors2DCRainmaker2DigitalCameraWorld2DroidLife2DW2EventHubs2FratelloWatches2Futurism2GameRant2GearPatrol2HollywoodReporter2HouseDigest2InsiderGaming2LosAngelesTimes2Lifehacker2Nature2PCMag2PokeBeach2qz2Intercept2TimeExtension224/7WallSt.1BusinessInsiderAfrica1Alternet1AndroidHeadlines1AOL1ArizonaSports1BikeRadar1Billboard1BloodyDisgusting1Boston1Bungie1BusinessTimes1BuzzFeed1CalMatters1CarBuzz1cbn1ChromeUnboxed1Chron1ClaimDepot1ColoradoSun1ChristianScienceMonitor1Currently1CyberSecurityNews1Cyclingnews1DailyDownforce1DailyKos1DaringFireball1DarkHorizons1Decrypt1Defector1Defense1denver71DenverPost1DirtonDirt1Draftsim1DSOGaming1DualShockers1empireonline1erictopol.substack1Euronews1Fangoria1FOX191DetroitFreePress1GameDeveloper1GAMINGbible1GamingOnLinux1AAAGasPrices1GeekWire1GeekyGadgets1Global1Hackaday1Hackster.io1HoustonChronicle1Independent1Invezz1Jalopnik1KITCO1Magic:Gathering1MakeUseOf1Mashed1Maxroll1Mercury1MLive1MonochromeWatches1MorningBrew1MortgageDaily1Motorsport1MyNintendo1Newser1SemiAnalysis1Newsshooter1Newsweek1nrn1CrudeOilPricesToday1OneMileataTime1OregonPublicBroadcasting1OregonLive1PageSix1politico.eu1QuantaMagazine1Road&Track1RoadtoVR1RockstarINTEL1Salon1CultureMapSanAntonio1ScienceAlert1Semafor1SFGATE1YahooSingapore1SimsCommunity1Slate1SlippedDisc1Space1SpaceNews1YahooTech1the5krunner1DailyBeast1DailyMeal1Drive1Hacker1Hindu1NextWeb1Times1TimesofIndia1TimesUnion1TMZ1YahooFinanceUK1UploadVR1VisualCapitalist1WhatHi-Fi?1WindowsLatest1WKYT1WOWT1YourTango1
  1. 001MashableSEP · 22English

    RatHat is a new Android malware that records your screen touches to steal passwords

    Zimperium researchers discovered RatHat, a new Android malware linked to Chinese threat actors that uses generative AI to record screen touches and steal passwords. The malware spreads through fake app downloads, requests accessibility permissions, and leverages Android's Wireless Debugging feature to capture text messages, credentials, and authentication codes.

    By Matt Binder
  2. 002CNETSEP · 20English

    Say Hello to RatHat, a New AI-Powered Malware Invading the Android Ecosystem

    RatHat is AI-powered malware targeting Android devices that tricks users into downloading fake apps mimicking legitimate software like Google Chrome. It exploits accessibility permissions to gain admin-level control, stealing passwords, authentication codes, and financial app data from victims primarily in China. The malware can only be removed via factory reset and is best avoided by verifying official app sources and avoiding suspicious links.

    By Joe Hindy
  3. 003BleepingComputerSEP · 18English

    New RatHat Android malware uses AI to automate device control

    RatHat, a new Android malware linked to Chinese threat actors, uses AI to automate remote device control by serializing the accessibility tree into XML and leveraging an AI assistant for intelligent interface navigation. Distributed via malvertising and phishing, it abuses Accessibility permissions and enables Developer Options to gain shell-level execution, deploying Go-based agents for persistence and credential theft from banking and cryptocurrency apps.

    By Bill Toulas