HackMyIP

网络安全资讯

来自顶级安全媒体的最新动态

共 1272 篇文章,第 6 / 43 页

2026-06-10SecurityWeek
New Windows Zero-Day Exploit ‘RoguePlanet’ Released

Exploiting a race condition in Microsoft Defender, the exploit leads to local privilege escalation to SYSTEM. The post New Windows Zero-Day Exploit ‘RoguePlanet’ Releas...

Read More → Use Tool →
2026-06-10SecurityWeek
After AI Reaches Production: 12 Ways Security Teams Can Take Control

Security teams need more than visibility into AI applications, they need a repeatable framework for monitoring, investigating, and defending them in production. The post After AI R...

Read More → Use Tool →
2026-06-10SecurityWeek
ServiceNow Patches Vulnerability Exploited Against Some Customers

The company updated hosted customer instances to patch a security issue it reportedly had known about since April 7. The post ServiceNow Patches Vulnerability Exploited Against Som...

Read More → Use Tool →
2026-06-10SecurityWeek
Critical Vulnerabilities Patched in Fortinet, Ivanti Products

Two OS command injection flaws can be exploited remotely, without authentication, for arbitrary code execution. The post Critical Vulnerabilities Patched in Fortinet, Ivanti Produc...

Read More → Use Tool →
2026-06-10SecurityWeek
ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact

In addition, Rockwell Automation announced some enhancements to its SecureOT cybersecurity solution for OT. The post ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider,...

Read More → Use Tool →
2026-06-10SecurityWeek
No Patch Planned for Exploited Arista EOS Vulnerability

Organizations are advised to apply vendor-supplied mitigations or discontinue the vulnerable devices. The post No Patch Planned for Exploited Arista EOS Vulnerability appeared firs...

Read More → Use Tool →
2026-06-10The Hacker News
Proto6 Flaws in protobuf.js Expose Node.js Apps to RCE and DoS Attacks

Cybersecurity researchers at Cyera have disclosed six vulnerabilities in protobuf.js, a widely used JavaScript and TypeScript implementation of Google's Protocol Buffers serializat...

VulnerabilitySupply ChainCloud Security
Read More → Use Tool →
2026-06-10BleepingComputer
Anthropic Rolls Out Claude Fable 5 With New AI Safeguards

Anthropic has begun rolling out Claude Fable 5, a new AI model built on the same foundation as its powerful Mythos class. When Anthropic first unveiled Mythos, the company warned t...

AI SecurityLLM SecurityVulnerability
Read More → Use Tool →
2026-06-09Dark Reading
The Invisible Battlefield: How Cyberwar Is Reshaping Everyday Life

Former National Cyber Director Chris Inglis warns that cyberattacks threaten hospitals, utilities, and essential services....

Read More → Use Tool →
2026-06-09BleepingComputer
Microsoft June 2026 Patch Tuesday fixes 6 zero-days, 200 flaws

Today is Microsoft's June 2026 Patch Tuesday, with security updates for 200 flaws, including five publicly disclosed zero-day vulnerabilities and one actively exploited in attacks....

Read More → Use Tool →
2026-06-09Dark Reading
The Invisible Battlefield: How Cyber War Is Reshaping Everyday Life

Former National Cyber Director Chris Inglis warns that cyber attacks threaten hospitals, utilities and essential services....

Read More → Use Tool →
2026-06-09The Record
UK weakens proposed telecoms defenses against Chinese hackers after industry pushback

Britain has weakened proposed cybersecurity protections for its telecoms networks that were developed in response to the Salt Typhoon espionage campaign, after the companies respon...

Read More → Use Tool →
2026-06-09The Hacker News
Meta Expands Off-Site Data Use to Feeds and AI Personalization

Meta announced on Tuesday that it will broaden its use of cross-site business data to personalize user experiences across Facebook and Instagram feeds, as well as responses generat...

PrivacyAI Security
Read More → Use Tool →
2026-06-09The Hacker News
Critical Veeam Backup RCE Flaw (CVE-2026-44963) Lets Domain Users Execute Code

Veeam has shipped an emergency patch for a critical remote code execution vulnerability in its widely deployed Backup & Replication platform. Tracked as CVE-2026-44963, the flaw ca...

VulnerabilityRansomwareCloud Security
Read More → Use Tool →
2026-06-09BleepingComputer
Microsoft Defender 'RoguePlanet' zero-day grants SYSTEM privileges

[...]...

Read More → Use Tool →
2026-06-09BleepingComputer
ServiceNow Data Breach Exposes Customer Instances via API Flaw

ServiceNow disclosed a security incident on June 9, 2026, revealing that attackers exploited an unauthenticated access flaw in a REST API endpoint to query data from hosted custome...

Data BreachVulnerabilityCloud Security
Read More → Use Tool →
2026-06-09BleepingComputer
OpenClaw AI agent found falling for phishing attacks, spills user data

Phishing simulation on an OpenClaw email agent with various configuration profiles showed that it was susceptible to tactics commonly used to compromise human users. [...]...

Read More → Use Tool →
2026-06-09BleepingComputer
SAP fixes critical flaws in NetWeaver and Commerce Cloud

SAP has released fixes for 15 vulnerabilities as part of its June 2026 Security Patch package, including four critical-severity flaws affecting SAP NetWeaver and SAP Commerce Cloud...

Read More → Use Tool →
2026-06-09BleepingComputer
Microsoft releases Windows 10 KB5094127 extended security update

Microsoft has released the Windows 10 KB5094127 extended security update, which fixes the June 2026 Patch Tuesday vulnerabilities and adds new functionality to monitor the rollout ...

Read More → Use Tool →
2026-06-09KrebsOnSecurity
A Record-Breaking Patch Tuesday for June 2026

Microsoft today released software updates to plug nearly 200 security holes across its Windows operating systems and supported software, a record number of fixes for the company's ...

Read More → Use Tool →
2026-06-09Dark Reading
Blame AI: Patch Tuesday Hits Record 206 CVEs

Voluminous patch updates could soon be the norm, as artificial intelligence accelerates the speed and scale of vulnerability discovery....

Read More → Use Tool →
2026-06-09Dark Reading
Microsoft Exchange Flaw Lets Attackers Spoof Any Email Address

"Ghost-Sender" uses Exchange Online or on-premises in hybrid mode with a third-party mail server or spam filter to achieve this level of spoofing....

Read More → Use Tool →
2026-06-09Dark Reading
Miasma Supply Chain Worm Burrows Into 73 Microsoft Repositories

The attacks stemmed from a GitHub account that was also compromised in a previous Miasmi attack on Microsoft last month....

Read More → Use Tool →
2026-06-09SecurityWeek
Microsoft Patches 200 Vulnerabilities

Three of the vulnerabilities fixed with the latest Patch Tuesday updates were publicly disclosed before Microsoft addressed them. The post Microsoft Patches 200 Vulnerabilities app...

Read More → Use Tool →
2026-06-09SecurityWeek
Adobe Patches 123 Vulnerabilities

Nearly half of the security holes, most allowing arbitrary code execution, have been fixed in Adobe’s Experience Manager product. The post Adobe Patches 123 Vulnerabilities appeare...

Read More → Use Tool →
2026-06-09The Record
CISA to transform how it assesses cyber vulnerabilities and risks, Andersen says

A binding operational directive being released Wednesday will direct federal agencies to change the way they address vulnerabilities by elevating some while putting others to the s...

Read More → Use Tool →
2026-06-09The Hacker News
Russia-Linked APTs Still Exploiting Patched WinRAR Flaw to Target Ukraine

Two Russia-aligned cyber-espionage campaigns have continued weaponizing CVE-2025-8088, a path-traversal vulnerability in WinRAR patched in July 2025, to compromise Ukrainian organi...

APTVulnerabilityThreat Intel
Read More → Use Tool →
2026-06-09The Hacker News
AI Worm Uses Local LLMs to Spread Across Networks Without APIs

Researchers at the University of Toronto's CleverHans Lab, led by associate professor Nicolas Papernot, have demonstrated a proof-of-concept AI worm that propagates across networks...

AI ThreatsLLM SecurityMalware
Read More → Use Tool →
2026-06-09The Hacker News
Microsoft Restores Some GitHub Repos, Keeps Others Offline as Miasma Probe Continues

Microsoft on Monday confirmed that it temporarily removed some GitHub repositories in response to a recent security incident that led to 73 of its open-source projects being compro...

Read More → Use Tool →
2026-06-09The Hacker News
Chrome V8 Zero-Day CVE-2026-11645 Exploited in the Wild - Patch Now

Google has released security updates to address 74 vulnerabilities, including one that has come under active exploitation in the wild. The high-severity vulnerability, tracked as ...

Read More → Use Tool →