HackMyIP

Cybersecurity News

Latest updates from top security sources

1595 articles, page 16 of 54

2026-08-21SecurityWeek
Weekly Cybersecurity Roundup: Ray Flaw, Salt Typhoon Attack, AI Bug

CISA has ordered all U.S. federal civilian agencies to remediate a severe code injection flaw, CVE-2025-62593, in Ray-Project Ray after confirming active exploitation in the wild. ...

VulnerabilityAPTData Breach
Read More → Use Tool →
2026-08-21The Record
Lawmakers Demand GAO Probe CISA Staffing Cuts Impact on Critical Infrastructure

Senior Democratic members of Congress, led by House Homeland Security Committee ranking member Bennie Thompson (D-MS), have formally requested the Government Accountability Office ...

RegulationIncident ResponseThreat Intel
Read More → Use Tool →
2026-08-21The Hacker News
Wazuh AI Analyst Supercharges SOC Detection With Claude and Bedrock

Artificial intelligence is reshaping cybersecurity operations as Security Operations Centers struggle under millions of daily alerts from endpoints, cloud workloads, identity provi...

AI SecurityIncident ResponseCloud Security
Read More → Use Tool →
2026-08-21The Hacker News
Microsoft Defender BTR.sys Driver Can Be Abused to Kill Security at Boot

Check Point Research has disclosed a technique that weaponizes Microsoft Defender's own legitimately signed boot-time remediation driver, BTR.sys, to perform arbitrary kernel-level...

VulnerabilityThreat IntelIncident Response
Read More → Use Tool →
2026-08-21Dark Reading
OWASP Unveils Top 10 AI Security Risks with Universal Skill Format

The Open Worldwide Application Security Project (OWASP) has published its latest Top 10 security risk list, this time tailored specifically for the rapidly evolving AI landscape. T...

AI SecurityAI ThreatsSupply Chain
Read More → Use Tool →
2026-08-21SecurityWeek
Ex-NSA Director Paul Nakasone Launches Boutique Cybersecurity Advisory Firm

Retired U.S. Army General Paul M. Nakasone, who served as the 18th Director of the National Security Agency and commander of U.S. Cyber Command from 2018 until his retirement in Fe...

Threat IntelPrivacy
Read More → Use Tool →
2026-08-21The Record
U.S. Bancorp Says LockBit Breach Claims Stem from Fourth-Party Incident

U.S. Bancorp, the seventh-largest bank in the United States, confirmed this week that recent ransomware claims by the LockBit gang are tied to a fourth-party cyber incident rather ...

RansomwareData BreachSupply Chain
Read More → Use Tool →
2026-08-21The Hacker News
DoFun Head Unit Malware Turns Android Cars Into BADBOX Proxy Bots

Kaspersky researchers have uncovered a first-of-its-kind malware family targeting Android-based automotive head units built on DoFun firmware, exploiting the devices' built-in soft...

MalwareSupply ChainThreat Intel
Read More → Use Tool →
2026-08-21The Hacker News
Cisco Patches 9 Critical Flaws in Crosswork and Secure Workload, 5 Rated CVSS 10.0

Cisco has released a new round of security updates addressing nine vulnerabilities across its Crosswork platforms and Secure Workload software, five of which carry a maximum CVSS s...

VulnerabilityAuthenticationCloud Security
Read More → Use Tool →
2026-08-21Dark Reading
How Cyber Pros Can Volunteer to Defend Underfunded City Halls

Local government agencies across the United States face a mounting cybersecurity crisis, and a growing movement is calling on skilled professionals to step in. From ransomware atta...

Incident ResponseThreat IntelRegulation
Read More → Use Tool →
2026-08-21SecurityWeek
North Korean Sapphire Sleet Hackers Poison Popular Rust Crate in Supply Chain Attack

Cybersecurity firm Wiz has attributed a sophisticated open-source software (OSS) supply chain attack against the Rust ecosystem to the North Korean threat actor tracked as Sapphire...

Supply ChainAPTMalware
Read More → Use Tool →
2026-08-20The Hacker News
Critical Elementor Pro Flaw Enables Unauthenticated Remote Code Execution

Cybersecurity researchers at Patchstack have disclosed a critical vulnerability in the Elementor Pro WordPress plugin that allows unauthenticated attackers to upload PHP files and ...

VulnerabilityBug BountyAuthentication
Read More → Use Tool →
2026-08-20The Hacker News
Manic Android Malware Exfiltrates Data via Wi-Fi Mesh from Offline Devices

A new Android malware strain dubbed Manic has been uncovered by ThreatFabric, blending banking fraud capabilities with mobile spyware features to target Ukrainian banks, government...

MalwarePhishingThreat Intel
Read More → Use Tool →
2026-08-20The Hacker News
40 Malicious Firefox Extensions Steal Crypto Wallets as Web3 Fakes

Security researchers at Socket's Threat Research team have uncovered a sprawling campaign of 40 malicious Mozilla Firefox extensions designed to steal cryptocurrency wallet credent...

MalwarePhishingThreat Intel
Read More → Use Tool →
2026-08-20The Hacker News
Shady AI: The Hidden Security Threat Inside Approved Tools

In early 2026, an internal AI agent at Meta triggered a Sev 1 incident after sensitive company and user data was exposed to employees lacking authorization. The breakdown started w...

AI SecurityAI ThreatsData Breach
Read More → Use Tool →
2026-08-20Dark Reading
Grandoreiro Banking Trojan Resurfaces in Mexico with New Evasion Tactics

The Grandoreiro banking Trojan, one of Latin America's most prolific financial malware families, has resurfaced in a fresh campaign targeting Mexican financial institutions. Accord...

MalwareThreat Intel
Read More → Use Tool →
2026-08-20The Hacker News
CDN Tsunami Attack Exploits HTTP/3 Flaw for 350x DoS Amplification

Cybersecurity researchers have disclosed two denial-of-service (DoS) techniques collectively dubbed “CDN Tsunami” that weaponize the protocol translation layer inside major content...

VulnerabilityCloud SecurityThreat Intel
Read More → Use Tool →
2026-08-20Dark Reading
Cyber Policing Falls Behind: Budget Gaps and Training Failures Exposed

Law enforcement agencies worldwide are struggling to keep pace with the relentless growth of cybercrime, hampered primarily by two systemic failures: chronic underfunding and insti...

RegulationIncident ResponseThreat Intel
Read More → Use Tool →
2026-08-20The Hacker News
Zombie Card Attack Revives Expired Visa Cards for Contactless Fraud

Researchers at the University of Massachusetts Amherst have demonstrated a "Zombie Card" attack that revives expired Visa contactless credit cards for real in-store purchases by re...

VulnerabilityAuthentication
Read More → Use Tool →
2026-08-20Dark Reading
Transparent Tribe APT Resumes Attacks on Afghanistan and India With Refreshed Toolkit

Transparent Tribe, a Pakistan-aligned advanced persistent threat (APT) group also tracked as APT36 and SideCopy, has resurfaced with an updated arsenal of espionage malware targeti...

APTThreat IntelMalware
Read More → Use Tool →
2026-08-20The Hacker News
Citrix Patches Critical NetScaler Authentication Bypass Flaw

Citrix has rolled out security updates for two vulnerabilities affecting NetScaler ADC and NetScaler Gateway, including a critical authentication bypass flaw that could give attack...

VulnerabilityAuthenticationCloud Security
Read More → Use Tool →
2026-08-20Dark Reading
Delta Flight Wi-Fi Hack Exposes Airline Network Security Risks

Dark Reading editors recently revisited several cybersecurity stories that slipped through the cracks, including a Delta Air Lines flight disrupted by a Wi-Fi network attack. The i...

VulnerabilityRegulationPrivacy
Read More → Use Tool →
2026-08-20The Hacker News
Zimbra SNMP Vulnerability CVE-2026-73570 Actively Exploited for RCE

A critical command injection vulnerability in Zimbra Collaboration Suite (ZCS) is now being actively exploited in the wild, according to CERT Polska. Tracked as CVE-2026-73570 with...

VulnerabilityThreat Intel
Read More → Use Tool →
2026-08-20Dark Reading
CUSTODY Framework Locks Down Agentic AI After OpenAI-Hugging Face Attacks

Veteran incident responder and SANS instructor Jake Williams has publicly released CUSTODY, an open-source framework designed to constrain agentic AI systems within enterprise netw...

AI SecurityAI ThreatsLLM Security
Read More → Use Tool →
2026-08-20The Hacker News
Mabna Institute Hackers Charged: 17 Iranians Linked to 31TB Academic Data Theft

This week's threat landscape illustrates how attackers exploit the very tools designed to protect systems. Check Point researchers have demonstrated a troubling technique: weapo...

VulnerabilityAPTData Breach
Read More → Use Tool →
2026-08-20SecurityWeek
Operation CameraSwarm: 14,000 Dahua IP Cameras Hacked in Ukraine & Russia

A threat actor has compromised more than 14,000 Dahua IP cameras across Ukraine and Russia in a 35-day campaign dubbed Operation CameraSwarm, according to threat intelligence resea...

VulnerabilityAuthenticationThreat Intel
Read More → Use Tool →
2026-08-20The Record
China-Linked SilkParasite Uses AI-Assisted Malware in Central Asia

Bitdefender has linked a nearly year-long espionage campaign targeting government institutions in Central Asia to China-based threat actors. Known as SilkParasite, the operation us...

APTMalwarePhishing
Read More → Use Tool →
2026-08-20The Hacker News
Critical isolated-vm Flaw Lets Sandboxed JavaScript Escape to Host for RCE

Cybersecurity researchers at Endor Labs have disclosed a critical security flaw in isolated-vm, a popular open-source Node.js library used to run untrusted JavaScript inside V8 Iso...

VulnerabilityZero-DaySupply Chain
Read More → Use Tool →
2026-08-20The Hacker News
Rust Supply Chain Attack Puts Build-Time Malware in 245M-Download Crates

The Rust Project has confirmed a supply chain attack targeting three widely used crates on crates.io, with combined download counts exceeding 245 million. On August 20, 2026, a com...

Supply ChainMalwareIncident Response
Read More → Use Tool →
2026-08-20SecurityWeek
AI-Powered Surveillance: Who's Watching You and How to Fight Back

Surveillance is no longer limited to intelligence agencies and law enforcement — it's now embedded in the commercial products and services millions of people use every day. Organiz...

PrivacyAI SecurityRegulation
Read More → Use Tool →