HackMyIP

Cybersecurity News

Latest updates from top security sources

2413 articles, page 10 of 81

2026-07-21The Hacker News
N-day is Becoming N-Hour. Patching Faster Won't Save You.

Every patch is a confession. The moment a vendor ships a security fix, the diff between the old code and the new code tells anyone watching exactly what was broken and where. Turn...

Read More → Use Tool →
2026-07-21The Hacker News
New Bit2Watt Attack Could Let Cloud Tenants Disrupt Power Grids Without an Exploit

A cloud tenant using nothing but ordinary GPU access can push a data center's power draw up and down fast enough to threaten the grid it runs on, with no exploit and no break-in. ...

Read More → Use Tool →
2026-07-21Dark Reading
Choose Wisely: AI-Generated Coding Risk Varies, a Lot

AI-generated code introduces 15 vulnerabilities on average per codebase, but the actual risk depends on framework pairing more than the model used....

Read More → Use Tool →
2026-07-21The Record
Spain fines 23andMe nearly $3 million for cybersecurity failings enabling 2023 hack

The Agencia Española de Protección de Datos (AEPD) announced the fine on Friday, saying in its decision that more than 2,600 Spaniards were impacted by a breach affecting 6.9 milli...

Read More → Use Tool →
2026-07-21The Record
Taiwan to slow mobile data during national resilience drills

The speed of 5G and 4G networks across much of Taiwan will be temporarily reduced to 1 percent of capacity as the island holds annual civilian and military exercises....

Read More → Use Tool →
2026-07-21The Record
Kenya probes hack of president's website after bitcoin ransom demand

The website was hacked on Saturday, when its homepage was replaced with a message displaying a cryptocurrency wallet address and threatening to publish unspecified information abou...

Read More → Use Tool →
2026-07-21The Hacker News
wp2shell: Critical WordPress RCE Flaws Fuel Mass Exploitation

Attackers are actively exploiting two critical vulnerabilities in WordPress—tracked as CVE-2026-63030 and CVE-2026-60137 and collectively codenamed "wp2shell"—to achieve unauthenti...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-07-21The Hacker News
ENCFORGE Ransomware Hits AI Model Files via Langflow RCE Flaw

Researchers at Sysdig have linked a second attack on the same Langflow server to JADEPUFFER, an AI-agent-driven operator first documented earlier this month. The same threat actor ...

RansomwareVulnerabilityAI Security
Read More → Use Tool →
2026-07-21The Hacker News
Critical ServiceNow AI Sandbox Escape Flaw Actively Exploited for RCE

Threat actors are weaponizing a severe sandbox escape vulnerability in the ServiceNow AI Platform, enabling unauthenticated attackers to execute arbitrary code on vulnerable instan...

VulnerabilityAI SecurityCloud Security
Read More → Use Tool →
2026-07-21SecurityWeek
HollowGraph Malware Uses Microsoft 365 Calendar as Dead-Drop C&C Channel

HollowGraph, a newly documented malware toolkit, is leveraging a compromised Microsoft 365 account's calendar as a two-way dead-drop for command-and-control (C&C) communication, ac...

MalwareCloud SecurityThreat Intel
Read More → Use Tool →
2026-07-21SecurityWeek
CISO Conversations: Andreas Gaetje – From Economics to CISO at Körber AG

Gaetje’s story shows that you don’t need to be a ‘deep bit-crawler’ to become a Chief Information Security Officer. The post CISO Conversations: Andreas Gaetje – From Economics to ...

Read More → Use Tool →
2026-07-21SecurityWeek
Estée Lauder Discloses Impact From Oracle EBS Zero-Day Hack

Hackers exfiltrated personal, financial, and health information from the company’s Oracle EBS instance in August 2025. The post Estée Lauder Discloses Impact From Oracle EBS Zero-D...

Read More → Use Tool →
2026-07-21SecurityWeek
Meta Paid $78,000 Bounty for Vulnerability Exposing Customer Support Data

A security researcher discovered a broken access control vulnerability in Meta’s support infrastructure. The post Meta Paid $78,000 Bounty for Vulnerability Exposing Customer Suppo...

Read More → Use Tool →
2026-07-21SecurityWeek
Clover Health Investments Discloses Data Breach

Using social engineering, hackers compromised employee accounts with access to personal and health information. The post Clover Health Investments Discloses Data Breach appeared fi...

Read More → Use Tool →
2026-07-21SecurityWeek
Exploitation of ServiceNow Vulnerability Seen Days After Disclosure

The ServiceNow AI platform vulnerability tracked as CVE-2026-6875 can be exploited for remote code execution. The post Exploitation of ServiceNow Vulnerability Seen Days After Disc...

Read More → Use Tool →
2026-07-21SecurityWeek
Zimbra Update Patches Critical Vulnerabilities

The latest Zimbra refresh resolves command injection, XSS, restriction bypass, and SSRF security defects. The post Zimbra Update Patches Critical Vulnerabilities appeared first on ...

Read More → Use Tool →
2026-07-20Dark Reading
25 Years After Code Red: What the Worm Era Can Teach Us About AI Security

Marc Maiffret reflects on Code Red's legacy and the security lessons helping organizations navigate AI risk today....

Read More → Use Tool →
2026-07-20Dark Reading
WP2Shell Flaw Exposes Millions of WordPress Sites to Remote Takeover

Threat actors are actively chaining two newly disclosed vulnerabilities in the WP2Shell management plugin to achieve unauthenticated remote code execution on WordPress sites at sca...

Zero-DayVulnerabilityThreat Intel
Read More → Use Tool →
2026-07-20Dark Reading
Ivanti Taps Frontier LLMs to Automate Vulnerability Remediation: Inside the Push

Ivanti is betting that frontier large language models can take the drudgery out of one of cybersecurity's most persistent challenges: patching known vulnerabilities at scale. Chief...

AI SecurityVulnerabilityLLM Security
Read More → Use Tool →
2026-07-20The Hacker News
FakeGit Malware Hits 7,600 GitHub Repos to Target AI Agents

Cybersecurity researchers at Island have uncovered a sprawling malware distribution operation dubbed FakeGit that has flooded GitHub with nearly 7,600 malicious repositories, more ...

MalwareAI ThreatsSupply Chain
Read More → Use Tool →
2026-07-20Dark Reading
CISOs Feel the Heat Over AI Risk

Job pressures have increased as companies run headlong into AI adoption, causing 26% of top security executives to consider leaving their position....

Read More → Use Tool →
2026-07-20Dark Reading
Attackers Combo Up Evasion Tactics for BEC Phishing

"The TFF Trap" uses fileless techniques and loaders with low detection rates to deploy various RATs and stealers, including Agent Tesla, Remcos, XWorm, and Best Private Logger....

Read More → Use Tool →
2026-07-20The Record
Flock Safety kills acoustic system designed to detect 'human distress'

"Community consultation" is one of the reasons automated license plate reader (ALPR) company Flock Safety cited in its decision to drop voice-oriented tech from a gunshot detection...

Read More → Use Tool →
2026-07-20The Record
India says allegedly leaked nuclear plant files pose no safety risk

Documents that the World Leaks cybercrime group claimed to leak from the Kudankulam Nuclear Power Plant do not contain information pertaining to safety or security, Indian official...

Read More → Use Tool →
2026-07-20The Hacker News
HollowGraph Malware Uses Microsoft 365 Calendar as Espionage Dead Drop

A newly uncovered espionage implant named HollowGraph is abusing Microsoft 365 calendar infrastructure as a covert command-and-control channel, smuggling both operator instructions...

MalwareAPTCloud Security
Read More → Use Tool →
2026-07-20The Hacker News
WordPress RCE Chain and SonicWall Zero-Days Hit This Week

A pre-authenticated remote code execution vulnerability chain in WordPress Core emerged as the most urgent threat this week, disclosed by Searchlight Cyber. The flaw combines CVE-2...

Zero-DayVulnerabilityAI Threats
Read More → Use Tool →
2026-07-20The Hacker News
Exposed Server Reveals AI-Built Phishing Toolkit Behind WebDAV Malware Campaign

A malware operator left its delivery infrastructure wide open, and Rapid7 pulled down the entire operation. The exposed server contained 1,048 files spanning lure templates, filena...

MalwarePhishingAI Threats
Read More → Use Tool →
2026-07-20The Hacker News
Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine

At least one Russian intelligence service is systematically hijacking internet-connected security cameras across Europe and Ukraine, using the feeds to watch military transport rou...

Read More → Use Tool →
2026-07-20The Hacker News
Mythos Didn't Break Your Security Program. Your Exposure Window Could.

The industry spent the initial months after Anthropic's April 7 Mythos reveal focused on volume. How many new CVEs would Mythos add to an already overloaded pipeline? How quickly w...

Read More → Use Tool →
2026-07-20Dark Reading
Cybersecurity Keeps Events 'Uneventful'

From the World Cup to the United States' 250th celebration, this year's event calendar has been packed with high-profile gatherings that drew global audiences, intense scrutiny, an...

Read More → Use Tool →