HackMyIP

Cybersecurity News

Latest updates from top security sources

1595 articles, page 10 of 54

2026-09-02The Hacker News
Authorities Turn Sality's P2P Network Against Itself, Cutting Off New Malware Payloads

The U.S. Department of Justice (DoJ) on Tuesday announced the takedown of a long-standing peer-to-peer (P2P) botnet known as Sality as part of a coordinated law enforcement operati...

Read More → Use Tool →
2026-09-02Dark Reading
AI's Vulnerability Surge May Be More Manageable Than First Feared

New research suggests the coming Vulnpocalypse may not be so overwhelming for enterprise security teams — if they have the right strategies....

Read More → Use Tool →
2026-09-02Dark Reading
SonicWall SMA 1000 Zero-Days Enable Unauthenticated RCE

The exploitation activity follows attacks earlier this summer on two other zero-day vulnerabilities in the vendor's edge devices....

Read More → Use Tool →
2026-09-02Dark Reading
AI Gives Cybercriminals a Dangerous Time Advantage

Former cybercriminal Brett Johnson provides a look inside the mind of a threat actor and discusses where AI provides the most value for attackers....

Read More → Use Tool →
2026-09-02Dark Reading
Threat Gang 'Springs' Vishing Attacks on Microsoft Teams Users

The "Spring Ring" operation aims to compromise users of the collaboration suite to remotely access their sessions, spread malware, and even take over infrastructure....

Read More → Use Tool →
2026-09-02Dark Reading
Old, Unpatched Flaws Give Attackers Access to Philippines Nuclear Agency

Threat actors exploited commodity vulnerabilities in ownCloud to gain initial access, resulting in stolen reactor databases, personnel records, and credential stores....

Read More → Use Tool →
2026-09-02The Record
Stripe-WooCommerce Breach Exposes Donor Data from Russian Charities

An unknown threat actor compromised the payment infrastructure of two Russian fundraising projects—Davayte and You Are Not Alone—in mid-August, exposing donor email addresses and p...

Data BreachSupply ChainVulnerability
Read More → Use Tool →
2026-09-02The Hacker News
Malicious .git Configs Trigger RCE in Claude, Codex, Cursor AI Agents

Manifold Security has disclosed eight security vulnerabilities across seven command-line AI coding agents that allow attackers to execute arbitrary code through malicious Git confi...

AI SecurityVulnerabilitySupply Chain
Read More → Use Tool →
2026-09-02SecurityWeek
Rockwell Automation Patches Dozen-Plus Flaws Across ICS Product Line

Rockwell Automation disclosed patches and workarounds on Tuesday for more than a dozen vulnerabilities spanning its industrial automation portfolio, including critical and high-sev...

VulnerabilityThreat Intel
Read More → Use Tool →
2026-09-02The Record
VantaCore Ransomware Group Targets Russian Firms in Pro-Ukraine Campaign

A ransomware operation believed to be linked to pro-Ukrainian hacktivists is targeting Russian organizations with bespoke malware and multimillion-dollar ransom demands. Researcher...

RansomwareMalwareAPT
Read More → Use Tool →
2026-09-02The Hacker News
Google, Anthropic, OpenAI Unveil Cyber AI Models and Safeguards

Major AI labs are doubling down on defensive cybersecurity, with Google, Anthropic, and OpenAI rolling out specialized models, access programs, and safeguards aimed at giving defen...

AI SecurityVulnerabilityThreat Intel
Read More → Use Tool →
2026-09-02SecurityWeek
OpenLeash Adds Human Approval Layer to Curb Risky AI Agent Actions

Autonomous AI agents can execute dangerous actions with little oversight, inheriting broad user permissions without the situational awareness to recognize risk. Max Brin is address...

AI SecurityAI ThreatsLLM Security
Read More → Use Tool →
2026-09-02The Record
Russian Hacker Indicted for Malware Attack Infecting 80,000 Freelancers

Russian national Searzhudin Tamirlanovich Aktulaev appeared in a San Francisco federal court this week to face charges related to a malware campaign that infected approximately 80,...

MalwareData BreachPhishing
Read More → Use Tool →
2026-09-02The Hacker News
Silver Fox APT Uses Fake Software Installers to Kill Windows Defender

An active malware campaign attributed with moderate confidence to the China-linked threat cluster Silver Fox (also tracked as Yinhu) is leveraging spoofed software-download pages t...

MalwareAPTThreat Intel
Read More → Use Tool →
2026-09-02SecurityWeek
UK CSRB Amendments Target High-Risk Suppliers After Energy Attack

The UK's Cyber Security and Resilience Bill (CSRB) is nearing Royal Assent after late-stage amendments were introduced in direct response to an Iran-linked cyberattack that forced ...

RegulationSupply ChainAPT
Read More → Use Tool →
2026-09-02The Record
Aesto Breach Exposes 9.5M Healthcare Records in AWS Attack

Healthcare data migration firm Aesto disclosed to federal regulators this week that more than 9.5 million individuals had sensitive personal and medical information stolen during a...

Data BreachCloud SecurityPrivacy
Read More → Use Tool →
2026-09-02The Hacker News
SonicWall SMA 1000 Zero-Days Exploited in Active Attack Chain

SonicWall has released emergency patches for two critical vulnerabilities in its Secure Mobile Access (SMA) 1000 series VPN appliances that are being actively exploited as a chaine...

Zero-DayVulnerabilityThreat Intel
Read More → Use Tool →
2026-09-02SecurityWeek
Anthropic Patches Claude Sandbox Breaches, Launches Enterprise Safeguards

Anthropic has disclosed a series of security incidents involving its Claude AI models, including unauthorized access to live systems and harmful autonomous actions taken against re...

AI SecurityIncident ResponseAI Threats
Read More → Use Tool →
2026-09-02SecurityWeek
SonicWall SMA1000 Zero-Days Exploited in the Wild: Patch Now

SonicWall is urging customers to immediately patch two zero-day vulnerabilities in its SMA1000 secure remote access gateway that the company confirmed are being actively exploited ...

Zero-DayVulnerability
Read More → Use Tool →
2026-09-01The Hacker News
Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems

Brazilian financial services, retail, and e-commerce organizations have become the target of a financially motivated threat actor dubbed Breeze Comet (formerly UNC5669) since 2024....

Read More → Use Tool →
2026-09-01The Hacker News
Russia-Aligned UAC-0099 Plants Nuclear Weapon Prompt in Malware to Disrupt AI Analysis

Cybersecurity researchers have disclosed a new technique dubbed GuardBreaker that's been put to use by a Russia-aligned threat actor known as UAC-0099 against a target in Ukraine w...

Read More → Use Tool →
2026-09-01The Hacker News
Attackers Exploit Critical Langflow and Rails Flaws in Credential-Probing and C2 Activity

Threat actors are exploiting two critical flaws impacting Langflow and Ruby on Rails, according to new findings from VulnCheck. The vulnerabilities in question are listed below - ...

Read More → Use Tool →
2026-09-01KrebsOnSecurity
FBI Probes Service Selling 153M+ Drivers Licenses

A new identity theft service launched on the dark web this week is selling digital scans of more than 153 million drivers licenses from people in the United States and Canada. Base...

Read More → Use Tool →
2026-09-01Dark Reading
Attackers Pounce on Critical Artifactory Bug Following Disclosure

CVE-2026-82329 is an authentication bypass flaw in JFrog's repository manager that enables bad actors to gain admin-level access on affected systems....

Read More → Use Tool →
2026-09-01Dark Reading
Stronger Security Drives Ransomware Groups to Recruit From Within

Some security researchers have observed an uptick in insider-assisted ransomware attacks, but malicious insiders pose other threats that cost companies millions....

Read More → Use Tool →
2026-09-01Dark Reading
Critical Langflow Vulnerability Exploited as Attacks on AI Platform Rise

The attacks targeting CVE-2026-0768 are the latest threat against the low-code AI development platform, which is receiving more attention from adversaries this year....

Read More → Use Tool →
2026-09-01Dark Reading
AI Model Evaluator METR Hit by Credential Theft, Probing

In one attack, threat actors stole an API key that ultimately led to the consumption of $600,000 in public AI model credits for the security nonprofit....

Read More → Use Tool →
2026-09-01Dark Reading
ClickFix Campaign Compromises 31 Orgs, Abuses Polygon Blockchain

The campaign uses EtherHiding to dynamically update its command-and-control server, abusing the blockchain as an attacker-controlled address book....

Read More → Use Tool →
2026-09-01The Record
FSB Warns: Frontier AI Cyber Risks Top Threat to Global Finance

The Financial Stability Board has identified cyber risks stemming from frontier artificial intelligence as the most immediate concern facing the global financial system, according ...

AI SecurityAI ThreatsRegulation
Read More → Use Tool →
2026-09-01The Record
Iran's Mirage Kitten APT Targets Developers with NodeRabbit, PollCat Malware

Iran-linked APT group Mirage Kitten is running a targeted cyberespionage campaign against software developers in the aviation, aerospace, and financial technology sectors, accordin...

APTMalwareThreat Intel
Read More → Use Tool →