HackMyIP

Cybersecurity News

Latest updates from top security sources

2409 articles, page 1 of 81

2026-07-31The Hacker News
Chinese-Speaking Hackers Hit Central Asia With OctLurk and SilkLurk Backdoors

A Chinese-speaking threat actor has been linked to a sustained cyber espionage campaign targeting government organizations across Central Asia, including entities in Afghanistan, K...

APTMalwareThreat Intel
Read More → Use Tool →
2026-07-31Dark Reading
CISA Updates SBOM Guidance: 24 New Fields Aim to Strengthen Software Supply Chain Visibility

The Cybersecurity and Infrastructure Security Agency (CISA) has released a substantial update to its Software Bill of Materials (SBOM) guidance, introducing approximately two dozen...

Supply ChainRegulationVulnerability
Read More → Use Tool →
2026-07-31Ars Technica
Claude AI Generated Malicious Code That Targeted Three Real Companies

Anthropic's Claude large language model has been documented producing functional malicious code and deploying it against at least three real-world organizations, according to a rep...

AI SecurityAI ThreatsLLM Security
Read More → Use Tool →
2026-07-31The Hacker News
HollowFrame Loader Drops Matryoshka Backdoor in Law Firm Phishing Attack

Cybersecurity researchers at Blackpoint Cyber have disclosed a targeted spear-phishing campaign against an unspecified law firm that weaponized a previously undocumented Go-based l...

MalwarePhishingThreat Intel
Read More → Use Tool →
2026-07-31The Hacker News
Fuyao Botnet Hides in Cheap Android TV Boxes, Steals Bandwidth for Ad Fraud

Bitsight researchers have uncovered a supply-chain operation called "Fuyao" that ships pre-installed on low-cost Android TV boxes, transforming consumer hardware into a dual-purpos...

MalwareSupply ChainAI Threats
Read More → Use Tool →
2026-07-31The Hacker News
Chrome Fixes 1,442 Bugs in Three Releases Amid AI-Driven Vulnerability Surge

Google has fixed an extraordinary 1,442 security vulnerabilities across Chrome versions 149, 150, and 151—more than the combined total of the prior 23 milestones. Chrome 149 and 15...

VulnerabilityAI ThreatsZero-Day
Read More → Use Tool →
2026-07-31The Hacker News
84 Flaws Found in 4G/5G Cores Enable Session Hijacking Attacks

Researchers from Singapore's Nanyang Technological University have uncovered 84 security flaws across 4G and 5G core network implementations, including a critical vulnerability tha...

VulnerabilityAI Security
Read More → Use Tool →
2026-07-31Dark Reading
The Morning After We Pull a Root of Trust, Nobody Owns It

The most valuable move any security team can make is building a certificate and key inventory....

Read More → Use Tool →
2026-07-31Dark Reading
Interpol Leverages Global System to Curtail Fraud Payments

When a fraudulent transaction occurs, law enforcement agencies must work quickly to halt payments before cybercriminals cash out....

Read More → Use Tool →
2026-07-31Dark Reading
DROP Platform Lets Californians Reduce Digital Footprint

The Delete Request and Opt-out Platform (DROP) launches Aug. 1 and hundreds of thousands of California residents already registered. Other states could follow if the process goes s...

Read More → Use Tool →
2026-07-31Dark Reading
USA Fencing Lunges Into the Hidden Identity Challenge in Amateur Sports

The organization behind Team USA's Olympic/Paralympic fencing teams has automated identity verification to handle growing membership, cutting manual review time while ensuring athl...

Read More → Use Tool →
2026-07-31SecurityWeek
In Other News: OpenAI Open Source Tool, AWS Links Hacks to North Korea, Mythos Crypto Research

Noteworthy stories that might have slipped under the radar: parcel delivery company OnTrac hacked, Adobe patches, UK Department for Education loses 607,000 records. The post In Oth...

Read More → Use Tool →
2026-07-31SecurityWeek
Cyberattacks on Minnesota Water Systems Investigated as Officials Warn About Iranian Hackers

Iran has the “geopolitical motivations” and a recent history of targeting water systems, experts pointed out. The post Cyberattacks on Minnesota Water Systems Investigated as Offic...

Read More → Use Tool →
2026-07-31SecurityWeek
Critical Flaw Allowed to Azure Cosmos DB Pwnage

Named CosmosEscape, the vulnerability exposed the primary key for Cosmos DB accounts, granting full read and write access. The post Critical Flaw Allowed to Azure Cosmos DB Pwnage ...

Read More → Use Tool →
2026-07-31The Record
CISA warns of spike in attacks on water systems as Minnesota incidents probed

The Cybersecurity and Infrastructure Security Agency said in a public alert on Thursday that facilities should “remove publicly exposed PLCs and other operational technology (OT) f...

Read More → Use Tool →
2026-07-31The Record
Cyber Command plans Silicon Valley office to drive innovation

The outpost will have its own director, though no one has yet been named for the post, and support the command’s nascent Cyber Warfare Innovation Center (CIWC)....

Read More → Use Tool →
2026-07-31The Record
Anthropic says its AI hacked real-world companies in three incidents

Claude maker Anthropic said its AI models escaped test environments and breached networks at three companies on the open internet....

Read More → Use Tool →
2026-07-31The Record
Finland to disconnect fiber-optic link to Russia as lease expires

Finland stopped power transmissions with Russia at the start of the war in Ukraine, and two related telecom connections will stop at the end of this year, authorities said....

Read More → Use Tool →
2026-07-31The Hacker News
Device Code Phishing: Why It's 2026's Fastest-Growing Threat

Device code phishing, the abuse of the OAuth 2.0 device authorization grant to hijack access tokens, has escalated from a niche red-team technique into an industrial-scale threat i...

PhishingAuthenticationThreat Intel
Read More → Use Tool →
2026-07-31The Hacker News
Chinese Hacker Commands DeepSeek via Telegram in Autonomous Attack Wave

Palo Alto Networks' Unit 42 has revealed that a Chinese-speaking threat actor tracked under the aliases knaithe and KnYuan used the DeepSeek reasoning model through the open-source...

AI ThreatsAPTThreat Intel
Read More → Use Tool →
2026-07-31The Hacker News
Anthropic Claude Models Breach Three Organizations During CTF Testing

Anthropic has disclosed that three of its AI models, including Claude Opus 4.7, Mythos 5, and an unnamed research model, unauthorizedly accessed the production infrastructure of th...

AI SecurityAI ThreatsData Breach
Read More → Use Tool →
2026-07-31SecurityWeek
Google AI Uncovers 13-Year-Old Chrome Flaw, Pushes 2026 Patches Past 1,800

Google has confirmed that an aggressive surge in Chrome security patches this year is the direct result of a Gemini-powered vulnerability detection pipeline deployed across the bro...

AI SecurityVulnerabilityBug Bounty
Read More → Use Tool →
2026-07-31SecurityWeek
EU to Crack Down on AI Deepfakes, Illicit Imagery and Hacking With New Team in Brussels

When the AI Act comes into force, AI companies will be required to make clear to consumers with labels or digital watermarks that chatbots or imagery are generated with AI. The pos...

Read More → Use Tool →
2026-07-31SecurityWeek
Prompted by OpenAI Disclosure, Anthropic Finds Its Own Models Hacked 3 Organizations

A security company’s systems were hacked after it installed a malicious Python package deployed by Claude.  The post Prompted by OpenAI Disclosure, Anthropic Finds Its Own Models H...

Read More → Use Tool →
2026-07-31SecurityWeek
Critical Flaw Led to Azure Cosmos DB Pwnage

Named CosmosEscape, the vulnerability exposed the primary key for Cosmos DB accounts, granting full read and write access. The post Critical Flaw Led to Azure Cosmos DB Pwnage appe...

Read More → Use Tool →
2026-07-31SecurityWeek
CareCloud Data Breach Impacts Over 350,000

In March 2026, hackers stole personal, financial, and medical information from the company’s AWS environment. The post CareCloud Data Breach Impacts Over 350,000 appeared first on ...

Read More → Use Tool →
2026-07-31SecurityWeek
Critical Code Execution Vulnerability Patched in TeamCity

Tracked as CVE-2026-63077, the security defect can be exploited without authentication via the agent polling protocol. The post Critical Code Execution Vulnerability Patched in Tea...

Read More → Use Tool →
2026-07-30The Hacker News
DPRK Hackers Use Fake macOS Updates to Steal Crypto via EtherHiding

North Korean-linked threat actors have been tied to a sophisticated macOS malvertising campaign that abuses fake software update screens to deliver cryptocurrency-stealing malware ...

MalwareAPTThreat Intel
Read More → Use Tool →
2026-07-30Dark Reading
Iran-Backed Hackers Target 30+ Minnesota Water Systems in Cyberattack

A suspected Iran-linked advanced persistent threat (APT) group has launched cyberattacks against more than 30 community water utilities across Minnesota, exposing deep vulnerabilit...

APTThreat IntelIncident Response
Read More → Use Tool →
2026-07-30Dark Reading
AI Harness Software Stacks Expose Hidden Exploit Vectors

Modern AI deployments rarely rely on a single model or framework. Instead, they depend on sprawling "AI harness" architectures that combine orchestration engines like LangChain and...

AI SecurityVulnerabilitySupply Chain
Read More → Use Tool →