HackMyIP

Cybersecurity News

Latest updates from top security sources

2415 articles, page 33 of 81

2026-06-23SecurityWeek
Canadian Electricity Provider London Hydro Discloses Data Breach

Hackers stole customers’ names, addresses, email addresses, phone numbers, and account information. The post Canadian Electricity Provider London Hydro Discloses Data Breach appear...

Read More → Use Tool →
2026-06-23SecurityWeek
Trump Signs Executive Order Accelerating Post-Quantum Cryptography Migration

Federal agencies are required to transition high-value assets and high-impact systems to use PQC by the end of 2030 and 2031. The post Trump Signs Executive Order Accelerating Post...

Read More → Use Tool →
2026-06-23SecurityWeek
Xsolis Data Breach Affects 1.4 Million Individuals

Threat actors gained access to personal and protected health information that Xsolis received from its clients. The post Xsolis Data Breach Affects 1.4 Million Individuals appeared...

Read More → Use Tool →
2026-06-23The Hacker News
OpenAI's GPT-5.5-Cyber Aims to Clear the Vulnerability Patching Bottleneck

OpenAI announced on Monday the release of GPT-5.5-Cyber, an upgraded version of its cybersecurity-focused large language model, made available to trusted defenders through the Dayb...

AI SecurityVulnerabilitySupply Chain
Read More → Use Tool →
2026-06-22Dark Reading
He Thought He Was Secure; His Phone Number Was Stolen Anyway

Threat actors can easily steal one-time passwords sent by text when they conduct a SIM swap attack. This can lead to account takeovers, so users must layer up their security measur...

Read More → Use Tool →
2026-06-22Dark Reading
DifyTap Bugs Let Attackers 'Wiretap' AI Chat Histories

Four vulnerabilities allow attackers to exploit Dify, a platform for AI application building and management, to silently access and exfiltrate sensitive data....

Read More → Use Tool →
2026-06-22Dark Reading
He Thought He Was Secure; His Phone Number Got Stolen Anyway

Threat actors can easily steal one-time passwords sent by text when they conduct a SIM swap attack. This can lead to account takeovers, so users must layer up their security measur...

Read More → Use Tool →
2026-06-22The Hacker News
ShapedPlugin WordPress Pro Plugins Backdoored in Supply Chain Attack

Multiple premium WordPress plugins from ShapedPlugin were compromised in a sophisticated supply chain attack after unknown threat actors tampered with the vendor's official release...

Supply ChainMalwareVulnerability
Read More → Use Tool →
2026-06-22BleepingComputer
WhatsApp phishing attack uses fake business docs to hack PCs

An ongoing malware campaign is targeting WhatsApp users in multiple countries with deceptive messages that push VBScript files, leading to remote system access. [...]...

Read More → Use Tool →
2026-06-22BleepingComputer
JaredFromSubway MEV bot hacked in $15 million crypto theft

The JaredFromSubway Ethereum MEV (Maximal Extractable Value) bot suffered a $15 million loss after an attacker manipulated the opportunity-detection logic by creating fake cryptocu...

Read More → Use Tool →
2026-06-22BleepingComputer
FFmpeg fixes PixelSmash flaw in widely used video decoder

A newly disclosed FFmpeg flaw dubbed 'PixelSmash' could be exploited for remote code execution on Jellyfin servers under certain conditions, and can also trigger a denial-of-servic...

Read More → Use Tool →
2026-06-22BleepingComputer
FortiBleed campaign used custom FortiGate sniffer to steal credentials

Security firm SOCRadar says the large-scale FortiBleed campaign targeting Fortinet FortiGate devices used custom sniffers to harvest authentication secrets from compromised firewal...

Read More → Use Tool →
2026-06-22The Hacker News
OXLOADER Malware Uses Google Ads to Spread CastleStealer Infostealer

Elastic Security Labs has uncovered a new campaign, tracked as REF8372, that delivers the CastleStealer information-stealing malware through a previously undocumented loader called...

MalwarePhishingThreat Intel
Read More → Use Tool →
2026-06-22The Hacker News
DifyTap: Critical Flaws in Dify Expose AI Chats Across Tenants

Cybersecurity researchers at Zafran Security have disclosed four vulnerabilities in Dify, the open-source agentic workflow platform boasting more than 146,000 GitHub stars, that co...

VulnerabilityAI SecurityCloud Security
Read More → Use Tool →
2026-06-22The Hacker News
29-Year-Old Squid Proxy Bug 'Squidbleed' Can Leak Cleartext HTTP Requests

A heap over-read in the Squid web proxy can leak another user's cleartext HTTP request, including any credentials or session tokens it carries, to anyone already allowed to send tr...

Read More → Use Tool →
2026-06-22The Hacker News
Google Sets Sept. 30 Deadline for Android Developer Verification in Four Countries

Google has set September 30, 2026, as the day it begins enforcing Android developer verification in the first four countries, and the major device-maker app stores are in...

Read More → Use Tool →
2026-06-22The Hacker News
Stop Your Legacy Infrastructure from Hijacking Your AI Agents

Earlier this month, I spoke at the Gartner Security & Risk Management Summit about a blind spot most security programs are still not accounting for - how attackers are circumventin...

Read More → Use Tool →
2026-06-22The Hacker News
⚡ Weekly Recap: Browser Bugs, EDR Killers, TV Botnet, OpenBSD Flaw, Android Trojan, and More

It’s Monday again. This week’s threat list looks painfully familiar: abused integrations, fake tools, poisoned websites, ransomware crews trying to shut down security tools, and m...

Read More → Use Tool →
2026-06-22BleepingComputer
Microsoft says Windows 11 26H2 is coming soon, details upgrade process

Microsoft has confirmed that Windows 11 version 26H2 will be the next feature update and that devices running Windows 11 24H2 and 25H2 will be able to upgrade using a small enablem...

Read More → Use Tool →
2026-06-22BleepingComputer
Microsoft fixes AutoGen Studio flaw that enabled code execution

A vulnerability chain dubbed AutoJack in Microsoft's AutoGen Studio interface for prototyping AI agents could let attackers manipulate an agent into executing arbitrary commands on...

Read More → Use Tool →
2026-06-22BleepingComputer
A Glimpse into the “Search Your Target” Market for Stolen Credentials

Attackers no longer need to sift through massive credential dumps. They can pay others to do it for them. Flare explores how an emerging underground market searches stolen credenti...

Read More → Use Tool →
2026-06-22Dark Reading
Crypto Heist Fueled by Elaborate Fake Reputation-Boosting Campaign

Attackers are using multiple online channels — including GitHub, YouTube, and VirusTotal — to build an illusion of trust to spread a cross-platform clipboard hijacker....

Read More → Use Tool →
2026-06-22SecurityWeek
Decades-Old Squid Proxy Flaw ‘Squidbleed’ Can Expose User Data

Squidbleed, discovered with the aid of Claude Mythos Preview, has been described as a Heartbleed-style vulnerability.  The post Decades-Old Squid Proxy Flaw ‘Squidbleed’...

Read More → Use Tool →
2026-06-22The Record
Suspected cyberattack triggers false emergency alerts across parts of Brazil

The incident occurred early Saturday when at least a dozen unauthorized alerts were sent through Brazil's Civil Defense Alert system, a platform designed to warn residents about im...

Read More → Use Tool →
2026-06-22The Hacker News
CSIS Uses First Threat-Reduction Warrant to Clean Canadian Botnet Devices

Canada's Security Intelligence Service (CSIS) executed a first-of-its-kind threat reduction warrant to neutralize two foreign-run botnets operating from infected servers, SOHO rout...

MalwareRegulationAPT
Read More → Use Tool →
2026-06-22The Hacker News
AryStinger Malware Infects 4,300 Legacy Routers to Build Reconnaissance Proxy Network

A new malware family is turning forgotten home routers into a distributed reconnaissance and proxy network, not the DDoS botnet these devices usually end up in. QiAnXin's XLab...

Read More → Use Tool →
2026-06-22The Hacker News
INTERPOL Warns Phishing, Ransomware, and AI Scams Are Rising Across Asia-Pacific

A new report from INTERPOL has revealed a "dramatic increase" in cybercrime in Asia and the South Pacific, fueled by rapid digitalization, internet penetration, new technologies, o...

Read More → Use Tool →
2026-06-22SecurityWeek
Attackers Exploit Gravity SMTP Plugin Flaw to Harvest Valuable WordPress Data

Vulnerable WordPress plugin iterations leak API keys, secrets, tokens, server information, and other data. The post Attackers Exploit Gravity SMTP Plugin Flaw to Harvest Valuable W...

Read More → Use Tool →
2026-06-22SecurityWeek
North Korean Hackers Blamed for Mastra NPM Supply Chain Attack

A malicious dependency the attackers added to over 140 Mastra packages fetches a payload targeting cryptocurrency extensions. The post North Korean Hackers Blamed for Mastra NPM Su...

Read More → Use Tool →
2026-06-22SecurityWeek
What the Latest ShinyHunters Breaches Reveal About Modern Cyberattacks

Groups like ShinyHunters are demonstrating that attackers do not necessarily need malware or zero-day exploits to cause massive damage. The post What the Latest ShinyHunters Breach...

Read More → Use Tool →