HackMyIP

Cybersecurity News

Latest updates from top security sources

2415 articles, page 30 of 81

2026-06-25BleepingComputer
Bluekit phishing kit adopts browser-in-the-middle for login theft

The Bluekit phishing-as-a-service platform continues to evolve with nearly 70 new hostnames identified over the past week and by adding browser-in-the-middle capabilities for impro...

Read More → Use Tool →
2026-06-25BleepingComputer
The Four Elevations of Effective Fraud Prevention

Fraudsters don't attack just one transaction. They target accounts, platforms, and entire ecosystems. IPQS explains the four elevations of fraud prevention and why broader visibili...

Read More → Use Tool →
2026-06-25BleepingComputer
Webinar: Why account takeovers remain one of the hardest threats to stop

Account takeover attacks continue to challenge security teams because attackers often operate through legitimate accounts and trusted services. This webinar explores how behavioral...

Read More → Use Tool →
2026-06-25SecurityWeek
Runlayer Raises $30 Million in Series A Funding

The startup’s platform functions as a secure control layer, aiming to secure AI tools across enterprises. The post Runlayer Raises $30 Million in Series A Funding appeared first on...

Read More → Use Tool →
2026-06-25SecurityWeek
Cal Water Says No OT Systems Breached in Iranian Handala Cyberattack

Mandiant has helped the California water utility investigate the cyberattack launched by Iranian hacker group Handala. The post Cal Water Says No OT Systems Breached in Iranian Han...

Read More → Use Tool →
2026-06-25SecurityWeek
SecurityWeek ICS Cybersecurity Conference Heads to Nashville for Special 25-Year Anniversary Edition

The 2026 Industrial Control Systems (ICS) Cybersecurity Conference takes place October 6-8, 2026, at the W Nashville. The post SecurityWeek ICS Cybersecurity Conference Heads to Na...

Read More → Use Tool →
2026-06-25The Record
Another Russian dairy company reportedly disrupted by cyberattack

A dairy products manufacturer in Russia's republic of Bashkortostan is the latest such company to have its operations snarled by a cyberattack....

Read More → Use Tool →
2026-06-25The Record
Ukraine's state postal operator reports app disruption after cyberattack

Ukraine's state-owned postal operator said it was experiencing disruptions to some of its app services due to a suspected cyberattack, but did not say who was behind it....

Read More → Use Tool →
2026-06-25The Record
Russia used Cellebrite phone-hacking tool to crack down on dissident after firm cut off country

The continued use of the powerful data extraction product soon after the company in March 2021 said it would stop working with Russia suggests the firm has been unable to pull back...

Read More → Use Tool →
2026-06-25The Hacker News
Why NDR Beats Alerts in the Mythos Era: Bejtlich's Case for Network Interdiction

Despite the growing abundance of security telemetry, most SOC teams still struggle with fundamental questions during incident investigation: What actually happened? What evidence s...

Threat IntelIncident ResponseAI Security
Read More → Use Tool →
2026-06-25The Hacker News
Gaslight macOS Malware Uses Prompt Injection to Trick AI Analysts

Security researchers at SentinelOne have uncovered a previously undocumented Rust-based macOS implant dubbed Gaslight, attributed with high confidence to North Korea-aligned threat...

MalwareAPTAI Security
Read More → Use Tool →
2026-06-25The Hacker News
New Mistic Backdoor Linked to KongTuke in ClickFix and ModeloRAT Campaigns

A new, stealthy backdoor named Mistic has been deployed as part of suspected financially motivated attacks aimed at multiple organizations spanning insurance, education, IT, and pr...

Read More → Use Tool →
2026-06-25The Hacker News
Cisco Catalyst SD-WAN Zero-Day CVE-2026-20245 Exploited to Gain Root Access

An unknown threat actor exploited a recently disclosed high-severity security flaw impacting Cisco Catalyst SD-WAN as a zero-day at least two months before it was publicly disclose...

Read More → Use Tool →
2026-06-25Dark Reading
Europe Evolves Into Ransomware's Favorite Region

After a global lull, ransomware gangs are setting sights on a rich new arena: attacking EU organizations and their suppliers....

Read More → Use Tool →
2026-06-25SecurityWeek
Lantronix Serial-to-IP Converter Flaw Exploited in Attacks After OT Threat Warning

The exploited flaw, CVE-2025-67038, is one of the vulnerabilities disclosed in April as part of the BRIDGE:BREAK research project. The post Lantronix Serial-to-IP Converter Flaw Ex...

Read More → Use Tool →
2026-06-25SecurityWeek
GitLab Patches Code Execution, Information Disclosure Vulnerabilities

The latest GitLab CE/EE updates address 13 vulnerabilities, including three high-severity defects. The post GitLab Patches Code Execution, Information Disclosure Vulnerabilities ap...

Read More → Use Tool →
2026-06-25SecurityWeek
25-Year-Old Vulnerability Patched in Curl

The latest version of the open source data transfer tool resolves 18 medium and low-severity vulnerabilities. The post 25-Year-Old Vulnerability Patched in Curl appeared first on S...

Read More → Use Tool →
2026-06-25SecurityWeek
NIST Opens Updated IoT Security Guidance to Public Review

The guidance aims to establish product cybersecurity requirements for IoT devices integrated into federal agencies’ networks. The post NIST Opens Updated IoT Security Guidance to P...

Read More → Use Tool →
2026-06-25SecurityWeek
Chrome 149 Update Resolves 18 Severe Vulnerabilities

More than half of the bugs are use-after-free defects, which can potentially lead to remote code execution. The post Chrome 149 Update Resolves 18 Severe Vulnerabilities appeared f...

Read More → Use Tool →
2026-06-25SecurityWeek
Cisco SD-WAN Zero-Day Exploited Months Before Patching

CVE-2026-20245, the 7th Cisco SD-WAN vulnerability exploited in 2026, was used for months prior to its disclosure and patching. The post Cisco SD-WAN Zero-Day Exploited Months Befo...

Read More → Use Tool →
2026-06-24The Hacker News
CISA Warns of Active Exploitation of Critical Lantronix EDS5000 Flaw

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued an urgent warning on Tuesday that a critical security flaw in Lantronix EDS5000 Series serial-to-IP converte...

VulnerabilityThreat IntelIncident Response
Read More → Use Tool →
2026-06-24BleepingComputer
Google Splits Activity History: New Privacy Controls for Search Services

Google is rolling out new privacy controls across its Search services and Google Play, giving users more granular control over saved history and personalized recommendations. In an...

Privacy
Read More → Use Tool →
2026-06-24BleepingComputer
DraftKings hacker 'Snoopy' sentenced to 18 months in prison

A 21-year-old using the alias "Snoopy" was sentenced to 18 months in prison for his role in hacking DraftKings accounts in the November 2022 cyberattack. [...]...

Read More → Use Tool →
2026-06-24BleepingComputer
Mandiant reveals how Cisco SD-WAN zero-day attacks gained root access

New details have been revealed on how hackers exploited a Cisco Catalyst SD-WAN vulnerability tracked as CVE-2026-20245 in zero-day attacks to create rogue root accounts on targete...

Read More → Use Tool →
2026-06-24BleepingComputer
Malicious Edge extension abuses Native Messaging as bridge to malware

A malicious Microsoft Edge extension dubbed 'Edgecution' has been used in a ransomware attack to escape the browser sandbox and deploy a Python-based backdoor. [...]...

Read More → Use Tool →
2026-06-24Dark Reading
Attackers Hit Cisco SD-WAN Flaw 2 Months Before Disclosure

Researchers believe rogue peering was used to connect to the victim's SD-WAN devices to gain admin privileges and root-level access....

Read More → Use Tool →
2026-06-24Dark Reading
2026 FIFA World Cup Faces Surge in Cyber Threats

Persistent cybercrime, social engineering, and infrastructure threats continue to plague the FIFA 2026 World Cup across the US, Canada, and Mexico....

Read More → Use Tool →
2026-06-24Dark Reading
Do CISOs Need a Code of Ethics?

Dark Reading Confidential Episode 19: Kickbacks, no-show jobs, "dirty" VCs, and shelf ware — industry expert Robert "RSnake" Hansen explains why he thinks its time for a CISO code ...

Read More → Use Tool →
2026-06-24The Record
Three ‘cybercrime as a service’ operations undercut by Microsoft, law enforcement

Microsoft touted its latest action against malware infrastructure as a new approach aimed at the full cybercrime "supply chain." Europol said more than 300 servers were targeted....

Read More → Use Tool →
2026-06-24The Hacker News
Amadey and StealC Malware Networks Dismantled, 27M Credentials Recovered

A coordinated international law enforcement operation, backed by private-sector partners Bitdefender, Bitsight, ESET, and Microsoft, has disrupted the infrastructure behind the Ama...

MalwareData BreachIncident Response
Read More → Use Tool →