HackMyIP

Cybersecurity News

Latest updates from top security sources

1290 articles, page 1 of 43

2026-06-16The Hacker News
94% of Security Incidents Now Involve Anonymized Infrastructure, Survey Finds

Security teams are drowning in IP data but starving for context, according to a new industry study from Spur Intelligence. The survey of more than 200 security practitioners found ...

Threat IntelPrivacyIncident Response
Read More → Use Tool →
2026-06-16The Hacker News
Attackers Exploit Three Fortinet FortiSandbox Flaws, Including One Patched Last Week

Threat intelligence firm Defused Cyber has reported active in-the-wild exploitation of three critical vulnerabilities in Fortinet FortiSandbox appliances over the past 24 hours. Th...

VulnerabilityThreat IntelAI Threats
Read More → Use Tool →
2026-06-16The Hacker News
China-Linked SprySOCKS Backdoor Targets Windows with Kernel Driver Stealth

Cybersecurity researchers at ESET have uncovered two previously undocumented Windows variants of SprySOCKS, a backdoor long believed to operate exclusively on Linux systems. Intern...

APTMalwareThreat Intel
Read More → Use Tool →
2026-06-16The Hacker News
Fake Microsoft Alerts Used to Deploy North Korean NarwhalRAT Malware

The North Korean state-sponsored hacking group known as ScarCruft (aka APT37) has been observed using spear-phishing messages impersonating Microsoft Account security notifications...

Read More → Use Tool →
2026-06-16The Hacker News
Cisco Releases Security Updates for Actively Exploited SD-WAN Manager Flaw

Cisco has released security updates for a medium-severity security flaw in Catalyst SD-WAN Manager that has come under active exploitation in the wild. The vulnerability, tracked ...

Read More → Use Tool →
2026-06-16The Hacker News
CISA Flags LiteSpeed cPanel Plugin Flaw Exploited for Root Privilege Escalation

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a security flaw impacting LiteSpeed cPanel Plugin to its Known Exploited Vulnerabilities (KEV) catalog, r...

Read More → Use Tool →
2026-06-16BleepingComputer
CISA warns of another cPanel plugin flaw exploited in attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has given U.S. government agencies three days to secure their servers against an actively exploited vulnerability (...

Read More → Use Tool →
2026-06-16BleepingComputer
Ransomware gang abuses Microsoft Teams relays to hide malicious traffic

DragonForce ransomware used a custom malware named 'Backdoor.Turn' to hide command-and-control traffic inside Microsoft Teams relay infrastructure. [...]...

Read More → Use Tool →
2026-06-16BleepingComputer
Critical Fortinet FortiSandbox flaws now exploited in attacks

Attackers are now exploiting several critical vulnerabilities in Fortinet's FortiSandbox cyber threat detection platform, according to threat intelligence company Defused. [...]...

Read More → Use Tool →
2026-06-16BleepingComputer
Windows version of SprySOCKS Linux malware used to attack govt orgs

Windows variants for the SprySOCKS Linux malware have been used in attacks targeting government organizations in at least four countries. [...]...

Read More → Use Tool →
2026-06-16BleepingComputer
iRhythm discloses data breach, says hackers stole patient info

Digital healthcare company iRhythm Holdings has disclosed a data breach after hackers stole patients' personal and health information stored on third-party-hosted business applicat...

Read More → Use Tool →
2026-06-16SecurityWeek
Cal Water Investigating Iranian Hackers’ Claims

California Water Service says there is no indication of operational disruptions to its water and wastewater systems.  The post Cal Water Investigating Iranian Hackers’ Claims...

Read More → Use Tool →
2026-06-16SecurityWeek
White House Issues Memo to Bolster NSS Cybersecurity

NSPM-12 establishes a clear structure for NSS cybersecurity governance and accountability and reestablishes CNSS. The post White House Issues Memo to Bolster NSS Cybersecurity appe...

Read More → Use Tool →
2026-06-16SecurityWeek
Atomic Arch Supply Chain Attack Hits 1,500 AUR Packages

Arch Linux suspended account registrations in response to the wave of malicious packages being uploaded to AUR. The post Atomic Arch Supply Chain Attack Hits 1,500 AUR Packages app...

Read More → Use Tool →
2026-06-16SecurityWeek
Cybersecurity Executives Urge the Trump Administration to Ease Restrictions on Anthropic AI Models

A group of cybersecurity executives and experts is asking the Trump administration to lift its directive preventing the use of Anthropic’s latest artificial intelligence models by ...

Read More → Use Tool →
2026-06-16SecurityWeek
Tech Coalition ‘Athena’ Targets OSS Vulnerabilities Ahead of Disclosure

Over two dozen organizations built a shared platform to triage vulnerabilities, fix them, and secure the software before patches arrive. The post Tech Coalition ‘Athena’...

Read More → Use Tool →
2026-06-16SecurityWeek
Cisco Patches Another SD-WAN Zero-Day Exploited in Attacks

Cisco recently became aware of the exploitation of CVE-2026-20262, a Catalyst SD-WAN Manager zero-day that allows arbitrary file write. The post Cisco Patches Another SD-WAN Zero-D...

Read More → Use Tool →
2026-06-16The Record
UK to Ban Social Media for Under-16s with Strict Age Verification by 2027

The UK government has announced plans to block anyone under 16 from accessing social media platforms, with Prime Minister Keir Starmer calling the measures the strongest child onli...

RegulationPrivacy
Read More → Use Tool →
2026-06-15The Record
Estonia to quarantine emails sent from Russian .ru domain before they reach government officials

Estonia will require additional security screening for emails sent from Russia’s .ru top-level domain before they reach government officials, according to the country's minister of...

Read More → Use Tool →
2026-06-15The Hacker News
China-Linked Hackers Abuse Google Workspace Rules to Steal Defense Emails

A China-linked espionage group tracked as UNC6508 maintained undetected access to North American medical, academic, and military research networks for over a year, quietly siphonin...

APTCloud SecurityThreat Intel
Read More → Use Tool →
2026-06-15The Hacker News
North Korean APT Weaponizes VS Code in Developer Recruitment Phishing Campaign

Proofpoint researchers Saher Naumaan and Carlos Rubio have documented a new wave of activity from the North Korean state-aligned threat cluster tracked as Contagious Interview (als...

MalwareSupply ChainAPT
Read More → Use Tool →
2026-06-15BleepingComputer
DOJ Seizes CFAKE, SOCFAKE Deepfake Sites Under TAKE IT DOWN Act

The U.S. Department of Justice announced the seizure of CFAKE.com and SOCFAKE.com, two domains accused of hosting nonconsensual AI-generated nude images and videos of women, in wha...

DeepfakeAI ThreatsRegulation
Read More → Use Tool →
2026-06-15BleepingComputer
Critical SimpleHelp Flaw Lets Hackers Create Rogue Admin Accounts

A critical vulnerability in SimpleHelp remote management software, tracked as CVE-2026-48558, enables unauthenticated attackers to create privileged Technician accounts on servers ...

VulnerabilityAuthenticationIncident Response
Read More → Use Tool →
2026-06-15Dark Reading
Copilot SearchLeak Bug Enabled 1-Click Data Theft via Hidden URLs

Microsoft has patched a critical vulnerability in its Copilot AI assistant that allowed attackers to steal sensitive user data—including emails, contact lists, and personal files—t...

AI SecurityAI ThreatsLLM Security
Read More → Use Tool →
2026-06-15Dark Reading
Most CISOs Report Pressure to Bury Bad Security News

Executive leaders may not be saying it aloud, but business objectives and priorities don't always promote timely disclosures....

Read More → Use Tool →
2026-06-15The Record
Maine closes data breach portal to the public after fake reports

Maine is still allowing companies to report breaches, but won’t make the portal easily available to the public until after it completes an audit of its procedures to stop such inci...

Read More → Use Tool →
2026-06-15The Hacker News
Critical LiteLLM Flaw Chain Lets Low-Privilege Users Hijack AI Gateways

Researchers at Obsidian Security have disclosed a three-vulnerability chain in LiteLLM, a widely deployed open-source AI gateway that brokers calls to more than 100 model providers...

VulnerabilityAI SecurityLLM Security
Read More → Use Tool →
2026-06-15The Hacker News
SearchLeak: One-Click Microsoft 365 Copilot Flaw Exposed Emails

Researchers at Varonis Threat Labs have disclosed a critical chain of three vulnerabilities in Microsoft 365 Copilot's Enterprise Search feature that, if exploited, would have allo...

VulnerabilityAI SecurityPhishing
Read More → Use Tool →
2026-06-15The Hacker News
Chrome 0-Day, ShinyHunters Oracle Attack & Arch Linux Supply Chain Hit

Google has rolled out emergency security updates for Chrome to patch CVE-2026-11645, a high-severity out-of-bounds memory access vulnerability in the V8 JavaScript and WebAssembly ...

Zero-DayVulnerabilitySupply Chain
Read More → Use Tool →
2026-06-15The Hacker News
The Onboarding Password Mistake That Creates Unnecessary Risk

Employee onboarding is a busy time for IT teams. New starters need devices, accounts, access permissions, and passwords, all delivered within a tight timeframe. That usually means...

Read More → Use Tool →