HackMyIP

网络安全资讯

来自顶级安全媒体的最新动态

共 2382 篇文章,第 2 / 80 页

2026-07-30SecurityWeek
1 in 5 Data Center Assets Are Within Easy Reach of Attackers

Claroty has analyzed 750,000 cyber-physical systems across some of the world’s largest data center facilities. The post 1 in 5 Data Center Assets Are Within Easy Reach of Attackers...

Read More → Use Tool →
2026-07-30SecurityWeek
US and Allies Update SBOM Guidance

Five years after the initial release, the refresh introduces new elements, removes others, and updates terminology. The post US and Allies Update SBOM Guidance appeared first on Se...

Read More → Use Tool →
2026-07-30SecurityWeek
Chrome 151 Patches 370 Vulnerabilities

The major browser update resolves roughly 80 critical- and high-severity security defects. The post Chrome 151 Patches 370 Vulnerabilities appeared first on SecurityWeek....

Read More → Use Tool →
2026-07-30SecurityWeek
Cisco Secure FMC Zero-Day Exploited in the Wild

The vulnerability tracked as CVE-2026-20316 can be exploited by a remote, unauthenticated attacker to log into affected devices.  The post Cisco Secure FMC Zero-Day Exploited in th...

Read More → Use Tool →
2026-07-30The Hacker News
Cisco FMC Zero-Day Actively Exploited via Static Credentials

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a newly disclosed flaw in Cisco Secure Firewall Management Center (FMC) Software to its Known Exploited V...

Zero-DayVulnerabilityAuthentication
Read More → Use Tool →
2026-07-30Dark Reading
SE Asian Cybercrime Syndicates Rake in $88B, Go Global in 2025

Southeast Asian cybercriminal syndicates have evolved from opportunistic fraud operations into a transnational threat ecosystem, according to reporting from Dark Reading. Once conf...

APTThreat IntelRegulation
Read More → Use Tool →
2026-07-30Dark Reading
Flying Eagle Mobile RAT Drains Bank Accounts in Chinese MaaS Scheme

A sophisticated mobile remote access trojan (RAT) builder dubbed ‘Flying Eagle’ has emerged as a premium offering in China’s bustling malware-as-a-service (MaaS) underground, attra...

MalwareThreat IntelAPT
Read More → Use Tool →
2026-07-29The Hacker News
Critical Rails Vulnerability CVE-2026-66066 Exposes Server Secrets via Image Uploads

Ruby on Rails has shipped emergency patches for a critical Active Storage vulnerability, tracked as CVE-2026-66066 with a CVSS score of 9.5, that enables unauthenticated attackers ...

VulnerabilityCloud SecurityAuthentication
Read More → Use Tool →
2026-07-29Dark Reading
OpenAI Rogue Model Breach Extends to Modal and Other Services

OpenAI has disclosed that its recently uncovered rogue AI model incident affected significantly more services than first reported. While the initial exposure was identified within ...

AI SecurityAI ThreatsSupply Chain
Read More → Use Tool →
2026-07-29Dark Reading
Red Team AI Agents Are Training Blue Defenders in Cybersecurity

The cybersecurity industry has long grappled with an asymmetric advantage: attackers need only find one vulnerability, while defenders must secure every attack surface. With the ri...

AI SecurityAI ThreatsThreat Intel
Read More → Use Tool →
2026-07-29The Record
FTC Sues Hims & Hers Over Patient Data Shared With Meta and Snap

The Federal Trade Commission filed a lawsuit Wednesday against telehealth provider Hims & Hers Health, alleging the San Francisco-based company shared sensitive patient health info...

PrivacyRegulationData Breach
Read More → Use Tool →
2026-07-29The Hacker News
Critical Ruflo Flaw Lets Attackers Hijack AI Systems via Unauthenticated RCE

Cybersecurity researchers at Noma Labs have disclosed a maximum-severity vulnerability in Ruflo, an open-source multi-agent orchestration harness for Anthropic Claude Code and Open...

VulnerabilityAI SecurityLLM Security
Read More → Use Tool →
2026-07-29The Hacker News
Critical VMware Flaws Enable Auth Bypass, Code Execution, and VM Escape

Broadcom has shipped urgent security updates to address five vulnerabilities affecting VMware ESX, vCenter Server, Workstation, and Fusion, three of which carry critical severity r...

VulnerabilityCloud SecurityAuthentication
Read More → Use Tool →
2026-07-29The Hacker News
Minnesota Water Systems Hit by Coordinated Cyberattack — 30+ Plants Affected

More than 30 community water systems across Minnesota were hit by a coordinated cyberattack on July 26 and 27, 2026, targeting operational technology and triggering a statewide eme...

Threat IntelIncident ResponseAPT
Read More → Use Tool →
2026-07-29The Hacker News
9-Year Fraud Campaign Clones Russian Company Sites to Steal Payments

Russian cybersecurity vendor F6 has uncovered a sprawling fraud operation that has been cloning the websites of major Russian companies since 2017 to defraud international business...

PhishingThreat Intel
Read More → Use Tool →
2026-07-29The Hacker News
Mythos AI Compresses Exploit Timelines: The Prioritization Problem You Already Had

Anthropic's frontier model Mythos is forcing a reckoning in offensive security. By collapsing the gap between vulnerability disclosure and active exploitation, AI-driven tooling is...

AI SecurityAI ThreatsVulnerability
Read More → Use Tool →
2026-07-29The Hacker News
Researchers Show a Single Malicious Webpage Visit Can Compromise Tor Browser

Nebula Security says a patched Firefox JIT flaw could be triggered by simply visiting a malicious webpage and was also used to compromise Tor Browser. Tracked as CVE-2026-10702, t...

Read More → Use Tool →
2026-07-29The Hacker News
73% of Organizations Say They Are Not Fully Ready for a Major Cyberattack

Most organizations have incident response plans, security tools, and technical teams in place. Yet new research suggests that many still lack the coordination, visibility, and exec...

Read More → Use Tool →
2026-07-29Dark Reading
Who's Liable When AI Agents Escape? Hugging Face Breach Raises Hard Questions

Dark Reading walks through the many twists and turns in the bizarre story of how OpenAI's agent AI system broke out of its sandbox and decided to target Hugging Face, and what CISO...

Read More → Use Tool →
2026-07-29Dark Reading
Hugging Face Hack Lessons for Cyber Defenders

Dark Reading Confidential Episode 20: Expert Rich Mogull reflects on lessons cyber teams should pull from the OpenAI agent's attack on Hugging Face....

Read More → Use Tool →
2026-07-29Dark Reading
When AppSec Scanners Become a Supply Chain Attack Vector

New research shows how security scanners embedded in the software supply chain can be attacked to serve as a foothold for downstream attacks....

Read More → Use Tool →
2026-07-29Dark Reading
Patch-Resistant 'RufRoot' Flaw Can Unleash Malicious AI Agent Swarms

The vulnerability in the AI hosting platform Ruflo allows an unauthenticated attacker to take over the system and corrupt memory, so bad behavior can persist after patching....

Read More → Use Tool →
2026-07-29SecurityWeek
US Bans Foreign-Made Humanoid Robots, Targeting China Over National Security

The agency said imports of advanced robots pose cybersecurity and other national security risks. The post US Bans Foreign-Made Humanoid Robots, Targeting China Over National Securi...

Read More → Use Tool →
2026-07-29SecurityWeek
Mate Security Raises $35 Million for Agentic SOC

The startup will use the investment to expand its customer support, sales, and R&D teams. The post Mate Security Raises $35 Million for Agentic SOC appeared first on SecurityW...

Read More → Use Tool →
2026-07-29SecurityWeek
ThreatLocker Raises $190 Million in Series F Funding

The company was previously valued at $1.6 billion, and the latest raise has significantly increased that valuation. The post ThreatLocker Raises $190 Million in Series F Funding ap...

Read More → Use Tool →
2026-07-29The Record
OpenAI says rogue agent behind Hugging Face hack broke into additional services

The four additional targeted organizations weren’t named. OpenAI said they were not affected as severely as Hugging Face....

Read More → Use Tool →
2026-07-29The Record
Laundry Bear’s webmail hackers had more in store after February, report says

Researchers say the Russian state-linked hacking group tracked as Laundry Bear recently began exploiting a bug in Microsoft Outlook Web Access....

Read More → Use Tool →
2026-07-29The Record
Russia accuses Telegram founder of aiding terrorism, seeks international arrest

Russia is seeking to place Telegram founder Pavel Durov on an international wanted list, alleging that the app has been used by Ukrainian intelligence to organize terrorist attacks...

Read More → Use Tool →
2026-07-29The Record
Cyberattack hits Angola’s largest telco hours before landmark stock debut

Angola’s largest telecommunications operator, Unitel, was hit by a cyberattack that has left millions of people nationwide without voice services, mobile data, and internet access....

Read More → Use Tool →
2026-07-29The Hacker News
Russia Charges Telegram's Pavel Durov Over Platform's Role in Terrorism

The Federal Security Service (FSB) of Russia has formally charged Telegram founder Pavel Durov with facilitating terrorist activities under Part 1.1 of Article 205.1 of the Russian...

RegulationPhishingThreat Intel
Read More → Use Tool →