HackMyIP

Cybersecurity News

Latest updates from top security sources

2439 articles, page 51 of 82

2026-06-03BleepingComputer
CISA warns of cyberattacks targeting fuel tank monitoring systems

CISA, the FBI, the NSA, the Department of Energy, and other US government partners are warning that hackers are targeting internet-exposed automatic tank gauge (ATG) systems used t...

Read More → Use Tool →
2026-06-03BleepingComputer
New 'HTTP/2 Bomb' DoS attack crashes web servers in under a minute

A new denial-of-service (DoS) attack dubbed HTTP/2 Bomb can be launched from a single machine to take down web servers within seconds. [...]...

Read More → Use Tool →
2026-06-03Dark Reading
Attackers Use AI to Automate EDR Evasion Testing

Python scripts were used to test malware against endpoint detection and response agents from Sophos, CrowdStrike, and Windows Defender....

Read More → Use Tool →
2026-06-03Dark Reading
Tropical Blend: Cyber & Politics Ramp Up Across Latin America

China-linked espionage groups have attacked at least a dozen nations in the region, gathering information on maritime shipping, oil production, and other geopolitical interests....

Read More → Use Tool →
2026-06-03Dark Reading
Cyber Insurance Rates Are Dropping, but Exclusions Widen

Cyber insurance coverage is slowly changing, and some policies may not provide coverage for social engineering attacks like ClickFix....

Read More → Use Tool →
2026-06-03Dark Reading
Coding Gaffe Exposes Microsoft 365 Accounts to Widespread Takeover

A disabled security setting meant to protect authentication across Android versions of key apps like Word, PowerPoint, and Excel paved the way for attackers to steal logins and dat...

Read More → Use Tool →
2026-06-03The Record
DHS chief signals efforts to reshape CISA

In his first appearance before the panel since being confirmed in March, Mullin said that CISA probably needs “somewhere around” 2,800 employees, despite its ability to hire up to ...

Read More → Use Tool →
2026-06-03The Hacker News
One-Click GitHub.dev Attack Steals Full OAuth Tokens via VS Code

Cybersecurity researchers have disclosed a critical one-click attack chain that abuses Microsoft Visual Studio Code (VS Code) webviews to steal fully scoped GitHub OAuth tokens. Di...

VulnerabilityAuthenticationSupply Chain
Read More → Use Tool →
2026-06-03The Hacker News
IVIP: Closing the Identity Dark Matter Gap in Enterprise IAM

Enterprise identity and access management is approaching a structural breaking point. As organizations scale, identity data fragments across thousands of applications, decentralize...

AuthenticationAI SecurityCloud Security
Read More → Use Tool →
2026-06-03The Hacker News
Beyond the Zero-Day: Map Your Network the Way Attackers Do

Assume the breach. Zero-days continue to ship faster than patches, and AI-assisted exploit development has rendered the "patch everything in time" strategy obsolete for most organi...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-06-03BleepingComputer
CISA Warns of Active Attacks Exploiting Android and Linux Kernel Flaws

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two high-severity vulnerabilities—one in the Android Framework and another in the Linux kernel—to its Kno...

VulnerabilityThreat IntelIncident Response
Read More → Use Tool →
2026-06-03BleepingComputer
What 345 Days of Untested Exposure Looks Like at a Bank

A two-week penetration test can leave roughly 345 days of real-world exposure unvalidated. Sprocket Security explores why continuous testing is becoming critical as attack surfaces...

Read More → Use Tool →
2026-06-03SecurityWeek
Coralogix Raises $200M at $1.6B Valuation to Scale AI Observability Platform

Coralogix offers a full-stack observability platform that unifies logs, metrics, traces, security, and AI observability. The post Coralogix Raises $200M at $1.6B Valuation to Scale...

Read More → Use Tool →
2026-06-03SecurityWeek
Kirki, Burst Statistics WordPress Plugin Flaws in Attackers’ Crosshairs

Threat actors are exploiting vulnerable Kirki and Burst Statistics deployments to elevate privileges and take over websites. The post Kirki, Burst Statistics WordPress Plugin Flaws...

Read More → Use Tool →
2026-06-03SecurityWeek
Security of 100 AI Agents Tested and Ranked – What You Need to Know

The AI Risk Quadrant evaluates AI agents based on three factors: how vulnerable they are to compromise, the potential impact of a breach, and the strength of their security defense...

Read More → Use Tool →
2026-06-03SecurityWeek
Hackers Target Global Stock Exchange in Espionage Operation

The attackers had access to a senior executive’s email account for 150 days and exfiltrated data for months. The post Hackers Target Global Stock Exchange in Espionage Operation ap...

Read More → Use Tool →
2026-06-03SecurityWeek
IMA Diligence Services Data Breach Impacts 525,000 People

The affected individuals’ personal information was stolen from a legacy server managed by a third party. The post IMA Diligence Services Data Breach Impacts 525,000 People appeared...

Read More → Use Tool →
2026-06-03The Hacker News
Unpatched Windows Search URI Flaw Lets Attackers Steal NTLMv2 Hashes

Cybersecurity researchers at Huntress have disclosed an unpatched vulnerability in the Windows "search:" URI handler that can be weaponized to leak a user's NTLMv2 hash to a remote...

VulnerabilityAuthenticationThreat Intel
Read More → Use Tool →
2026-06-03The Hacker News
HTTP/2 Bomb: New DoS Flaw Hits NGINX, Apache, IIS, Envoy & Cloudflare

Cybersecurity researchers at Calif have disclosed a new remote denial-of-service vulnerability dubbed "HTTP/2 Bomb" that affects five major web server platforms: NGINX, Apache HTTP...

VulnerabilityZero-DayCloud Security
Read More → Use Tool →
2026-06-03The Hacker News
Weedhack MaaS Targets Minecraft Users via YouTube SEO Poisoning

Cybersecurity researchers at McAfee Labs have uncovered a malware-as-a-service (MaaS) campaign dubbed Weedhack that has been actively targeting Minecraft players since January 2026...

MalwareThreat IntelSupply Chain
Read More → Use Tool →
2026-06-03BleepingComputer
Acer Wave 7 Routers Hit by Two Max-Severity Zero-Day Vulnerabilities

Acer has confirmed it is actively developing patches for two maximum-severity zero-day vulnerabilities impacting its Wave 7 mesh routers. Both flaws were reported by independent se...

Zero-DayVulnerabilityAuthentication
Read More → Use Tool →
2026-06-03BleepingComputer
Police dismantles 9 crime groups in illegal streaming crackdown

European and international law enforcement agencies have dismantled nine organized crime groups and arrested 29 suspects in a major crackdown on illegal streaming operations. [...]...

Read More → Use Tool →
2026-06-03BleepingComputer
Google adds Android protection against AI deepfake scam calls

Google is introducing a new Android security feature that will detect and flag phone calls in which scammers use artificial intelligence to impersonate a user's personal contacts. ...

Read More → Use Tool →
2026-06-03BleepingComputer
VS Code zero-day lets hackers steal GitHub tokens in one click

A security researcher has released exploit code for a Visual Studio Code (VS Code) zero-day vulnerability that allows attackers to steal GitHub authentication tokens by tricking us...

Read More → Use Tool →
2026-06-03Dark Reading
Malicious Notifications Could Trick Google Gemini Users

A prompt injection flaw in Google Gemini's voice assistant let attackers hide malicious commands in notifications, enabling social engineering and more....

Read More → Use Tool →
2026-06-03Dark Reading
Global Stock Exchange Hit by Monthslong Email Campaign

A threat actor got a near-continuous view into an influential finance executive's email inbox, thanks to clever use of legitimate, native Windows tools....

Read More → Use Tool →
2026-06-03SecurityWeek
Organizations Warned of Exploited Linux Kernel Vulnerability

An improper authentication bug allows attackers to escalate their privileges and escape containers. The post Organizations Warned of Exploited Linux Kernel Vulnerability appeared f...

Read More → Use Tool →
2026-06-03SecurityWeek
‘HTTP/2 Bomb’ Exploit Knocks Web Servers Offline in Seconds

The default HTTP/2 configuration of major web servers is vulnerable to an attack chain combining a compression bomb and a Slowloris-style hold. The post ‘HTTP/2 Bomb’ E...

Read More → Use Tool →
2026-06-03SecurityWeek
Microsoft Tries to Calm Legal Threat Fears After Zero-Day Disclosure Backlash

Microsoft responds to backlash over its threats of legal action against researchers who publicly disclose zero-day vulnerabilities. The post Microsoft Tries to Calm Legal Threat Fe...

Read More → Use Tool →
2026-06-03The Record
New cyber force would cost up to $11 billion to start, commission says

The military branch would take 12 to 18 months to get up and running and also include roughly 5,000 members of the National Guard and up to 6,000 civilians, according to the commis...

Read More → Use Tool →