HackMyIP

Cybersecurity News

Latest updates from top security sources

1589 articles, page 8 of 53

2026-09-04The Hacker News
Massive Phishing Campaign Uses Invisible Unicode to Slip Past Email Filters

Microsoft's Security Research team has issued a warning about a high-volume phishing campaign that leverages invisible Unicode tag characters to evade email security filters. The t...

PhishingAI ThreatsThreat Intel
Read More → Use Tool →
2026-09-04The Hacker News
PostgreSQL Fixes 12-Year-Old PostGREShell Flaw Enabling Code Execution

PostgreSQL has patched a severe security vulnerability—tracked as CVE-2026-6471 and dubbed "PostGREShell" by researchers at Cyera—that has lurked in the database engine's logical r...

VulnerabilityAuthentication
Read More → Use Tool →
2026-09-04The Hacker News
Ted Backdoor Hides Inside Trojanized HAProxy Builds to Steal Web Traffic

Researchers at Rapid7 Labs have uncovered a previously undocumented Linux implant, dubbed "ted," compiled directly into trojanized HAProxy load balancers belonging to two South Kor...

MalwareAPTThreat Intel
Read More → Use Tool →
2026-09-04Dark Reading
Enterprises Face 6-Month Countdown to AI-Driven Cyberattacks

Frontier AI models have crossed a critical threshold: they can now autonomously execute end-to-end cyberattacks without human guidance. According to recent reporting from Dark Read...

AI ThreatsAI SecurityThreat Intel
Read More → Use Tool →
2026-09-04Dark Reading
AI Is Ending the Era of Hidden Vulnerabilities — Are Vendors Ready?

A tidal wave of bug reports is overwhelming software vendors, exposing secure-by-design failures and creating disclosure bottlenecks....

Read More → Use Tool →
2026-09-04SecurityWeek
In Other News: Microsoft’s Cloud Patches, Hacked Dropbox Accounts, Guardio’s $1.1B Valuation

Noteworthy stories that might have slipped under the radar: Microsoft rolled out patches for cloud services, hackers compromised 5,000 Dropbox accounts, and Guardio is now valued a...

Read More → Use Tool →
2026-09-04SecurityWeek
HPE Patches Critical RCE Vulnerabilities in AOS-CX

Nearly two dozen issues, tracked collectively as CVE-2026-73749 (CVSS score of 9.8), were addressed with the updates. The post HPE Patches Critical RCE Vulnerabilities in AOS-CX ap...

Read More → Use Tool →
2026-09-04SecurityWeek
OpenAI Pledges $1 Billion to Bring Frontier AI to Critical Infrastructure Defenders

The Daybreak initiative will provide subsidized AI cyber capabilities, training and technical assistance, though OpenAI has disclosed few details about costs and eligibility. The p...

Read More → Use Tool →
2026-09-04SecurityWeek
Sangoma Switchvox Vulnerabilities Exploited in the Wild

Tracked as CVE-2026-9586, the unauthenticated SQL injection flaw can be exploited remotely for arbitrary code execution. The post Sangoma Switchvox Vulnerabilities Exploited in the...

Read More → Use Tool →
2026-09-04SecurityWeek
12-Year-Old PostgreSQL Vulnerability Enables Database, Server Takeover

Dubbed PostGREShell, CVE-2026-6471 turns low-level replication access into code execution, permanent superuser privileges and a persistent database backdoor. The post 12-Year-Old P...

Read More → Use Tool →
2026-09-04SecurityWeek
Nvidia Is Buying AI Platform Hugging Face for $13 Billion

The deal highlights Nvidia’s push to champion increasingly popular open-source AI models. The post Nvidia Is Buying AI Platform Hugging Face for $13 Billion appeared first on Secur...

Read More → Use Tool →
2026-09-04The Record
US, Britain to coordinate on scam center takedowns

The U.S. Department of Justice and the U.K.'s National Crime Agency and Crown Prosecutor signed a memorandum to cooperate on cases involving Southeast Asian scam operations....

Read More → Use Tool →
2026-09-04The Record
UK account-hack losses surge as new reporting system exposes hidden cases

In its first annual assessment, published Friday, the City of London Police said victims reported losing £6.3 million ($8.5 million) to account hacks in the year ending March 31, u...

Read More → Use Tool →
2026-09-04The Record
Russian data centers face new security requirements amid Ukraine's drone threats

Russia's data centers are concentrated in areas increasingly exposed to Ukrainian drone attacks. The Kremlin wants them to stiffen their physical defenses....

Read More → Use Tool →
2026-09-04The Record
G7 urges organizations to prepare for quantum cyber threats

In a joint advisory released Thursday, the G7 Cyber Security Working Group and the U.S. Cybersecurity and Infrastructure Security Agency, CISA, said organizations should begin movi...

Read More → Use Tool →
2026-09-04The Hacker News
Over 440,000 Exploit Attempts Hit WordPress Plugin RCE Flaws

Threat actors have launched more than 440,000 exploit attempts against two critical remote code execution (RCE) vulnerabilities in widely deployed WordPress plugins—Super Forms and...

VulnerabilityThreat IntelMalware
Read More → Use Tool →
2026-09-04The Hacker News
Plex Patches Multiple Undisclosed Flaws — Update to 1.43.3 Now

Streaming media platform Plex has issued an urgent advisory urging server administrators and desktop users to update to the latest software versions after patching multiple undiscl...

VulnerabilityAuthentication
Read More → Use Tool →
2026-09-04The Hacker News
Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day

Google on Thursday released security updates to patch 12 vulnerabilities, including one that has come under active exploitation in the wild. The high-severity vulnerability, track...

Read More → Use Tool →
2026-09-04The Hacker News
GPT-6 Astra Scores 100% on ExploitBench as OpenAI Blocks PoC Exploit Requests

OpenAI on Thursday officially unveiled GPT‑6 Astra, which it described as the "world's most intelligent and aligned model." The development comes days after the artificial intelli...

Read More → Use Tool →
2026-09-04SecurityWeek
Catch Raises $5 Million for AI Executive Assistant With Guardrails

Catch promises the capabilities of a trusted executive assistant, with built-in controls governing what data and systems it can access. The post Catch Raises $5 Million for AI Exec...

Read More → Use Tool →
2026-09-04SecurityWeek
VMware Workstation and Fusion Updates Patch Critical Vulnerability

The flaws could allow attackers with administrative access to a virtual machine to execute code on the host system. The post VMware Workstation and Fusion Updates Patch Critical Vu...

Read More → Use Tool →
2026-09-04SecurityWeek
Google Patches 6th Chrome Zero-Day of 2026

Google’s Chrome 152 security update resolves 12 vulnerabilities, including a high-severity type confusion flaw in the V8 engine. The post Google Patches 6th Chrome Zero-Day of 2026...

Read More → Use Tool →
2026-09-03Dark Reading
What the AI Warning Letter Completely Missed

The recent AI warning letter is right about the "window," but it omits naming who is coming through it or, critically, who will close it....

Read More → Use Tool →
2026-09-03The Hacker News
BraZetsu Malware: Windows Hosts Sold on Criminal Access Marketplace

Cybersecurity researchers at Group-IB have disclosed a sophisticated Python-based Windows malware framework called BraZetsu that converts compromised hosts into inventory on an und...

MalwareAI ThreatsThreat Intel
Read More → Use Tool →
2026-09-03The Hacker News
Thomson Reuters C-Track Breach Exposes SSNs and Sealed Court Data

Thomson Reuters disclosed on Wednesday that an unauthorized actor obtained files from C-Track, the court case management platform operated by its West Publishing Corporation subsid...

Data BreachPrivacySupply Chain
Read More → Use Tool →
2026-09-03The Hacker News
US Becomes Top Target in RMM Phishing Campaign Spanning 46 Countries

An RMM phishing campaign initially associated with Canadian targeting due to its use of Canada Revenue Agency (CRA) tax forms as lures has turned out to be part of a broader campai...

Read More → Use Tool →
2026-09-03The Hacker News
Shai-Hulud's Reach Just Grew to 469 Credential Locations. Here's What That Means

In early August, GitGuardian researchers found that a recent Shai-Hulud infostealer worm variant had evolved to scan for credentials across 469 locations across developer environme...

Read More → Use Tool →
2026-09-03The Hacker News
Pegasus Zero-Click Spyware Exploit Infects Serbian Student Movement Member's iPhone

The iPhone belonging to a member of Serbia's student protest movement was infected with NSO Group's Pegasus spyware, according to new findings from the Citizen Lab in collaboration...

Read More → Use Tool →
2026-09-03The Hacker News
Researcher Releases FalconFlank PoC Showing Privilege Escalation in CrowdStrike Falcon

The security researcher known as Chaotic Eclipse (aka INFINITE NIGHTMARE, MSNightmare, and Nightmare-Eclipse) has dropped a new zero-day dubbed FalconFlank, a proof-of-concept (PoC...

Read More → Use Tool →
2026-09-03The Hacker News
CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added seven security flaws to its Known Exploited Vulnerabilities (KEV) catalog after they landed in a...

Read More → Use Tool →