HackMyIP

Cybersecurity News

Latest updates from top security sources

2415 articles, page 37 of 81

2026-06-17The Record
Hostile states behind three-quarters of attacks on Britain's critical infrastructure, cyber chief warns

NCSC CEO Richard Horne warned that “kinetic targeting in any conflict tomorrow will be based on intelligence gathered today” and that nation-state adversaries were “prepositioning”...

Read More → Use Tool →
2026-06-17The Record
EU grants Ukraine access to cybersecurity reserve for major attacks

As Kyiv takes steps toward formal accession to the EU, the bloc is integrating Ukraine with its pool of pre-approved cybersecurity incident response companies....

Read More → Use Tool →
2026-06-17The Hacker News
Top 10 Attack Surface Exposures of 2026: 60% of Organizations at Risk

A new analysis of 3,000 organizational attack surfaces reveals that unnecessary internet-facing services remain the weakest link in enterprise defense. Intruder's 2026 Attack Surfa...

VulnerabilityThreat IntelAuthentication
Read More → Use Tool →
2026-06-17The Hacker News
15 Malicious JetBrains Plugins Caught Stealing AI API Keys from Developers

Cybersecurity researchers at Aikido Security have uncovered a coordinated malware campaign on the JetBrains Marketplace involving at least 15 malicious plugins designed to steal ar...

Supply ChainAI SecurityMalware
Read More → Use Tool →
2026-06-17The Hacker News
Mastra npm Supply Chain Attack Hits 144 Packages via Hijacked Account

A single compromised npm contributor account ("ehindero") was used to mass-publish more than 144 malicious packages across the @mastra/* scope on June 17, 2026, in an 88-minute aut...

Supply ChainMalwareAI Security
Read More → Use Tool →
2026-06-17The Hacker News
CISA Adds Critical Joomla JCE RCE Flaw to KEV Amid Active Exploitation

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a maximum-severity flaw in Widget Factory's Joomla Content Editor (JCE) to its Known Exploited Vulnerabil...

VulnerabilitySupply Chain
Read More → Use Tool →
2026-06-17BleepingComputer
Microsoft confirms Office apps launch issues after June updates

Microsoft is investigating a new issue preventing third-party applications from launching Microsoft Office applications or opening documents on up-to-date Windows systems. [...]...

Read More → Use Tool →
2026-06-17BleepingComputer
CISA orders feds to patch max severity Joomla plugin flaw by Friday

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch a maximum-severity flaw in the Widget Factory Joomla Content Editor (JCE) plu...

Read More → Use Tool →
2026-06-17BleepingComputer
Microsoft working on Defender patch for RoguePlanet zero-day

Microsoft confirmed that it's working on a security patch for a Defender zero-day vulnerability named "RoguePlanet," disclosed one week ago. [...]...

Read More → Use Tool →
2026-06-17BleepingComputer
Kodak confirms data breach claimed by ShinyHunters extortion gang

Kodak has confirmed that it's working with external cybersecurity experts to investigate a security breach after hackers gained access to some of the company's data. [...]...

Read More → Use Tool →
2026-06-17Dark Reading
UK Social Media Ban for Minors Has Privacy Experts Worried

The UK will ban adolescents under 16 years old from user-to-user social-media platforms, despite age-verification issues and privacy concerns....

Read More → Use Tool →
2026-06-17SecurityWeek
Rockwell Automation Patches Vulnerabilities in ICS Controllers and Software

The industrial automation giant has fixed security holes in Logix, CompactLogix, Flex, RSLinx, and FactoryTalk products. The post Rockwell Automation Patches Vulnerabilities in ICS...

Read More → Use Tool →
2026-06-17SecurityWeek
Microsoft Teams Relay Servers Abused in DragonForce Ransomware Attack

The attackers deployed a new Go-based backdoor that uses Microsoft Teams servers for command-and-control. The post Microsoft Teams Relay Servers Abused in DragonForce Ransomware At...

Read More → Use Tool →
2026-06-17SecurityWeek
Microsoft Working on Patch for ‘RoguePlanet’ Zero-Day

The public PoC code exploits a race condition in Microsoft Defender to spawn a command prompt with System privileges. The post Microsoft Working on Patch for ‘RoguePlanetR...

Read More → Use Tool →
2026-06-17SecurityWeek
Oracle’s Second Monthly Security Updates Deliver 245 Patches

Oracle has released its June 2026 Critical Security Patch Update to fix vulnerabilities in Communications, EBS, Enterprise Manager and other products. The post Oracle’s Secon...

Read More → Use Tool →
2026-06-17SecurityWeek
Chrome and Firefox Updated to Patch Critical, High-Severity Vulnerabilities

The browser updates address multiple memory safety bugs that could potentially lead to remote code execution. The post Chrome and Firefox Updated to Patch Critical, High-Severity V...

Read More → Use Tool →
2026-06-17SecurityWeek
Joomla, LiteSpeed Vulnerabilities Exploited in Attacks

The flaws allow attackers to execute arbitrary PHP code and gain root privileges on shared hosting servers. The post Joomla, LiteSpeed Vulnerabilities Exploited in Attacks appeared...

Read More → Use Tool →
2026-06-17SecurityWeek
3 Recently Patched Fortinet FortiSandbox Vulnerabilities in Hacker Crosshairs

SOCRadar has detected 30,000 compromised Fortinet firewalls that expose networks to hacking.  The post 3 Recently Patched Fortinet FortiSandbox Vulnerabilities in Hacker Crosshairs...

Read More → Use Tool →
2026-06-17The Record
Warner warns of CISA cuts, staffing gaps in letter to acting chief

Warner on Tuesday also wrote a letter to DHS Secretary Markwayne Mullin, underscoring that DHS must prioritize CISA and pay for the MS-ISAC....

Read More → Use Tool →
2026-06-16The Record
India's Telegram ban draws criticism from Durov as company challenges order in court

To prevent cheating, Indian authorities ordered Telegram to restrict access nationwide ahead of a major medical entrance exam....

Read More → Use Tool →
2026-06-16The Record
GitHub dismissed security reports on flaws now exploited by supply-chain worm, researchers say

GitHub rejected two formal vulnerability reports identifying design flaws that researchers say are enabling variants of the Shai-Hulud supply-chain worm to infect and compromise hu...

Read More → Use Tool →
2026-06-16The Hacker News
Google Vertex AI SDK Bug Let Attackers Hijack AI Model Uploads

A critical vulnerability in Google Cloud's Vertex AI SDK for Python allowed attackers to hijack machine learning model uploads and execute arbitrary code inside Google's serving in...

Cloud SecurityVulnerabilityAI Security
Read More → Use Tool →
2026-06-16The Hacker News
ClickFix Attacks Deploy New Loaders: BabaDeda, Potemkin, and Lorem Ipsum

Cybersecurity researchers from Morphisec, BlueVoyant, and Huntress have independently identified a wave of ClickFix social engineering campaigns distributing three new malware load...

MalwareThreat IntelPhishing
Read More → Use Tool →
2026-06-16BleepingComputer
Malicious JetBrains Plugins Steal AI API Keys in Supply Chain Attack

At least 15 malicious plugins discovered on the JetBrains Marketplace have been stealing AI API keys from developers in a coordinated supply chain campaign that has accumulated clo...

Supply ChainMalwareAI Security
Read More → Use Tool →
2026-06-16BleepingComputer
New Rokarolla Android malware targets 217 banking, crypto apps

A new Android banking trojan named Rokarolla is targeting 217 banking and cryptocurrency applications using an extensive set of 137 commands. [...]...

Read More → Use Tool →
2026-06-16BleepingComputer
Steam Workshop abused to spread malware via Wallpaper Engine app

Threat actors are abusing Steam Workshop, Valve's community hub for downloading game-related content, to push various malware hidden in wallpaper packages. [...]...

Read More → Use Tool →
2026-06-16Dark Reading
Fileless Phantom Stealer Targets Browser Credentials

In addition to executing entirely in memory, the malware's infection chain incorporates other anti-analysis techniques designed to frustrate detection....

Read More → Use Tool →
2026-06-16Dark Reading
Security Community Slams US Ban on Exporting Mythos, Fable

An open letter signed by dozens of security experts asked the government to reverse export restrictions on Anthropic's Claude Fable 5 and Mythos 5 models....

Read More → Use Tool →
2026-06-16Dark Reading
SprySOCKS Windows Variant Abuses Kernel Drivers to Evade Detection

FishMonger, a China-nexus threat group, has deployed an undocumented version of the Linux backdoor against government targets in Honduras, Taiwan, Thailand, and Pakistan....

Read More → Use Tool →
2026-06-16The Hacker News
Rokarolla Android Trojan Targets 217 Banking and Crypto Apps With 137 Commands

Security researchers at Zimperium's zLabs have uncovered a new Android banking trojan dubbed Rokarolla, named after its command-and-control infrastructure. The malware targets 217 ...

MalwareThreat IntelAuthentication
Read More → Use Tool →