HackMyIP

Cybersecurity News

Latest updates from top security sources

2415 articles, page 27 of 81

2026-06-29Dark Reading
Can Clothes Make You Invisible to Facial Recognition?

Does life feel Orwellian sometimes? One researcher has a solution for you: graphic tees that confuse the neural networks in surveillance cameras....

Read More → Use Tool →
2026-06-29Dark Reading
Iran, Russia, China Target Water Systems for Sabotage

Nation-state attackers breach water systems through weak passwords, exposed PLCs, and poor segmentation — not sophisticated malware....

Read More → Use Tool →
2026-06-29Dark Reading
Amazon Q VS Extension Flaw Leads to Cloud Credential Theft

Adversaries could plant a malicious repository that can execute arbitrary code and steal cloud credentials by exploiting the vulnerability, which showcases growing MCP risk....

Read More → Use Tool →
2026-06-29The Record
Justices rule that cellphone location histories are protected by the Fourth Amendment

Police must get a warrant to request geofence data involving individual cellphones, the U.S. Supreme Court ruled in what represents a victory for privacy advocates....

Read More → Use Tool →
2026-06-29The Hacker News
WhatsApp Rolls Out Usernames to Protect Phone Number Privacy

WhatsApp, the Meta-owned messaging platform used by more than three billion people, officially began global username reservations on Monday. The new optional feature allows users t...

PrivacyAuthentication
Read More → Use Tool →
2026-06-29The Hacker News
Mustang Panda Uses Zoho WorkDrive as Command Channel in Indian Government Attacks

The China-aligned espionage group Mustang Panda is running two campaigns against the Indian government and hydropower targets, deploying new malware and turning a legitim...

Read More → Use Tool →
2026-06-29The Hacker News
⚡ Weekly Recap: Linux Kernel Flaws, AI Malware Tricks, Turla Backdoor, Infostealers and More

This week was a reminder that attackers do not always need big tricks. One small mistake, one old access path, one missed patch, and suddenly the door is open. The noise is not al...

Read More → Use Tool →
2026-06-29The Hacker News
236,000 DCloud Uni-App Sites Used in Crypto Scams, Phishing, and Wallet Drainers

New findings unearthed by Infoblox show that more than 236,000 websites are using investment scam templates built using a legitimate Chinese open-source, cross-platform application...

Read More → Use Tool →
2026-06-29BleepingComputer
WhatsApp rolls out usernames to help users hide their phone number

WhatsApp is finally allowing users to reserve usernames, a privacy feature that lets them hide their phone numbers from people not in their contact list. [...]...

Read More → Use Tool →
2026-06-29BleepingComputer
Microsoft extends Windows Server 2022 hotpatching until October 2027

Microsoft has extended Windows Server 2022 hotpatching until October 2027, one year after the mainstream end date of October 2026. [...]...

Read More → Use Tool →
2026-06-29BleepingComputer
U.S. offers $10 million for hackers targeting WhatsApp, Signal users

The U.S. Department of State is offering up to $10 million for information that helps identify or locate members of the UNC5792 and UNC4221 hacker groups, which are linked to Russi...

Read More → Use Tool →
2026-06-29BleepingComputer
Agentic AI Has an Identity Problem and Attackers Know It

AI agents can access data, trigger workflows, and take action across enterprise systems. Token Security explains why governing these privileged identities is becoming essential for...

Read More → Use Tool →
2026-06-29BleepingComputer
Critical SimpleHelp flaw exploited to deploy new stealer malware

Hackers are exploiting a recently disclosed critical vulnerability (CVE-2026-48558) in SimpleHelp to deploy Djinn Stealer, a previously undocumented cross-platform information stea...

Read More → Use Tool →
2026-06-29BleepingComputer
Hackers now exploit critical Oracle E-Business flaw in attacks

Attackers have begun exploiting a critical vulnerability (CVE-2026-46817) in the Oracle E-Business Suite (EBS) financial application, according to threat intelligence company Defus...

Read More → Use Tool →
2026-06-29BleepingComputer
Webinar: Why business email compromise attacks keep succeeding

Business email compromise attacks increasingly rely on convincing impersonation rather than malware, making them harder for employees and traditional email defenses to detect. This...

Read More → Use Tool →
2026-06-29SecurityWeek
WhatsApp Rolling Out Username Feature to Bolster Phone Number Privacy

An optional ‘username key’ adds another layer by requiring a secondary credential before someone can message users. The post WhatsApp Rolling Out Username Feature to Bolster Phone ...

Read More → Use Tool →
2026-06-29SecurityWeek
Researchers Demo New Claude Code Attack Using Harmless-Looking Repositories to Hijack Developer Machines

Indirect prompts hidden in a repository can lead to Claude Code spawning a reverse shell on the developer’s machine. The post Researchers Demo New Claude Code Attack Using Harmless...

Read More → Use Tool →
2026-06-29SecurityWeek
Straiker Raises $64 Million for AI Security Platform

The startup’s platform can identify AI agents and provide visibility into their access, behavior, and risks. The post Straiker Raises $64 Million for AI Security Platform appeared ...

Read More → Use Tool →
2026-06-29SecurityWeek
Insurance Regulators Group NAIC Hit in Oracle PeopleSoft Hack

The ShinyHunters extortion group claims to have stolen 3.1 TB of data from the organization. The post Insurance Regulators Group NAIC Hit in Oracle PeopleSoft Hack appeared first o...

Read More → Use Tool →
2026-06-29The Record
US racks up about 400 wins over illegal World Cup streaming sites

The World Cup’s organizing body, FIFA, helped identify hundreds of domains taken down in an action organized by the U.S., along with the help of U.S. broadcaster NBC Universal and...

Read More → Use Tool →
2026-06-29The Record
US posts $10 million reward over Russian cyber campaign targeting Signal, WhatsApp

Russia-linked hacking groups tracked as UNC5792 and UNC4221 have socially engineered their way into the messaging accounts of government officials....

Read More → Use Tool →
2026-06-29The Record
Ukraine to use seized crypto from cybercrime group to buy war bonds

Ukraine's Asset Recovery and Management Agency (ARMA), which manages property seized in criminal proceedings, said more than $8.3 million in cryptocurrency had been transferred to ...

Read More → Use Tool →
2026-06-29The Hacker News
Post-Quantum Cryptography: Why Credentials Are the First Target

The public-key cryptography protecting today's credentials and encrypted data faces an expiration date. While no existing machine can crack RSA or elliptic curve cryptography, quan...

EncryptionAuthenticationRegulation
Read More → Use Tool →
2026-06-29The Hacker News
Gamaredon APT Expands Ukraine Attacks With New Malware Arsenal

The Russian advanced persistent threat group Gamaredon maintained an aggressive focus on Ukrainian governmental and military institutions throughout 2025, mounting 35 distinct spea...

APTMalwareCloud Security
Read More → Use Tool →
2026-06-29The Hacker News
Microsoft Removes 119 Edge Extensions That Hid Malware in Images and Fonts

Microsoft has shut down a long-running malicious extension operation on the Edge Add-ons store that hid its payloads inside ordinary image and font files, then woke up days after i...

Read More → Use Tool →
2026-06-29The Hacker News
Public PoC Released for Critical libssh2 CVE-2026-55200 Client-Side SSH Flaw

A public proof-of-concept is now out for CVE-2026-55200, a critical flaw in libssh2 that lets a malicious or compromised SSH server trigger memory corruption on a connecting client...

Read More → Use Tool →
2026-06-29The Hacker News
Hijacked npm and Go Packages Use VS Code Tasks to Deploy Python Infostealer

Cybersecurity researchers have uncovered two hijacked npm packages and a cluster of Go packages that are designed to deploy a Python-based information stealer on compromised Window...

Read More → Use Tool →
2026-06-29BleepingComputer
US seizes hundreds of FIFA World Cup illegal streaming domains

The U.S. Justice Department's Criminal Division has seized nearly 400 web domains used for illegally streaming matches at the FIFA World Cup. [...]...

Read More → Use Tool →
2026-06-29SecurityWeek
‘DirtyClone’ Linux Kernel Vulnerability Leads to Root Access

A variant of DirtyFrag, the flaw allows unprivileged local users to manipulate the Linux page cache and gain root privileges. The post ‘DirtyClone’ Linux Kernel Vulnera...

Read More → Use Tool →
2026-06-29SecurityWeek
OpenAI and Anthropic Limit New AI Models to Trump-Approved Customers During Cybersecurity Review

ChatGPT maker OpenAI said Friday it is restricting the release of its new artificial intelligence model at the request of President Donald Trump’s administration. The post OpenAI a...

Read More → Use Tool →