HackMyIP

網路安全資訊

來自頂級安全媒體的最新動態

共 1290 篇文章,第 11 / 43 頁

2026-06-04BleepingComputer
Brave Origin: Paid Minimalist Browser Strips Out Crypto, AI Features

Brave Software has publicly launched Brave Origin, a $59.99 paid version of its privacy-focused browser that removes cryptocurrency wallets, AI integrations, rewards programs, and ...

PrivacyAI Security
Read More → Use Tool →
2026-06-04BleepingComputer
Hola Browser Hit by Supply Chain Attack Delivering Monero Miner

The Windows version of Hola Browser was compromised in a supply chain attack that pushed an undeclared Monero cryptocurrency miner to a small fraction of users, according to Bleepi...

Supply ChainMalware
Read More → Use Tool →
2026-06-04BleepingComputer
Credit card theft campaign abuses Stripe to host stolen payment info

A new Magecart campaign is using Stripe's API infrastructure to host the credit card-stealing payload and the data exfiltrated from checkout pages. [...]...

Read More → Use Tool →
2026-06-04BleepingComputer
DentaQuest data breach exposed info of 2.6 million accounts

A data breach at the dental benefits administrator DentaQuest has reportedly exposed the sensitive data of 2.6 million accounts.  [...]...

Read More → Use Tool →
2026-06-04Dark Reading
Rust-Written IronWorm Hits NPM Supply Chain

Like Shai-Hulud, the campaign targets developers to steal credentials and reuses them to propagate across the software supply channel....

Read More → Use Tool →
2026-06-04Dark Reading
China's TA4922 Expands Cybercrime Attacks Globally

One of the world's most diverse, least-focused cybercrime groups is enlarging its footprint beyond East Asia....

Read More → Use Tool →
2026-06-04Dark Reading
4 Critical Threats Where Attackers Have the Advantage

Gartner analysts issued a call to action to bolster defenses against several emerging critical threats, such as deepfakes and prompt injections....

Read More → Use Tool →
2026-06-04Dark Reading
Bugcrowd Launches EU Data Residency Option For Evolving Data Sovereignty Needs

Organizations are growing serious about what nation’s rules apply to their data. Experts point to geopolitical tensions as a main contributing factor....

Read More → Use Tool →
2026-06-04The Record
Trump considers Palantir exec to lead CISA

Shyam Sankar, the chief technology officer at Palantir Technologies, has emerged as a lead contender for the long vacant Cybersecurity and Infrastructure Security Agency (CISA) dir...

Read More → Use Tool →
2026-06-04The Record
FTC considers setting aside or modifying $150 million privacy penalty against X

Twitter, renamed X in 2023, filed a petition saying that the settlement terms are unfair because the order was issued against a company that “no longer exists,” the workers respons...

Read More → Use Tool →
2026-06-04The Record
Russia seeks to label two anti-Kremlin hacker groups as ‘extremist’

The groups have previously claimed responsibility for cyberattacks targeting critical infrastructure and government institutions in Russia and Belarus....

Read More → Use Tool →
2026-06-04The Hacker News
Cisco Unified CM SSRF Flaw (CVE-2026-20230): PoC Public, Full Patch Months Away

Cisco has released a patch for a server-side request forgery (SSRF) vulnerability in Unified Communications Manager (Unified CM) and its Session Management Edition that allows an u...

VulnerabilityThreat IntelAuthentication
Read More → Use Tool →
2026-06-04The Hacker News
Claude Code GitHub Action Flaw Let One Malicious Issue Hijack Repositories

A security researcher found a flaw in Anthropic's Claude Code GitHub Action that let an attacker take over vulnerable public repositories running it, with nothing more than a singl...

Read More → Use Tool →
2026-06-04The Hacker News
Agentic AI Is Transforming Defense, But Only Secure IT Infrastructure Will Maximize It

Over the past several weeks, the cybersecurity community has been reminded how quickly frontier and agentic AI in defense networks can challenge our assumptions. When Anthropic's C...

Read More → Use Tool →
2026-06-04The Hacker News
ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New Stories

It got stupid again. The internet still feels held together with tape. Bad plugins, old bugs, fake tools, trusted apps doing shady things. Same mess, new wrapper. And now the weir...

Read More → Use Tool →
2026-06-04The Hacker News
China-Linked TA4922 Expands Phishing Attacks to U.K., Germany, Italy, and South Africa

A new China-linked cybercrime group known as TA4922 has expanded its targeting focus to target European organizations in the U.K., Germany, Italy, and South Africa. These efforts ...

Read More → Use Tool →
2026-06-04The Hacker News
FlutterShell Backdoor Spreads to macOS via Malicious Google and YouTube Ads

Cybersecurity researchers have shed light on a macOS malvertising campaign codenamed Operation FlutterBridge that spreads a new backdoor called FlutterShell. According to Palo Alt...

Read More → Use Tool →
2026-06-04BleepingComputer
UN food agency discloses breach affecting 600,000 Gaza households

The United Nations' World Food Programme (WFP), the world's largest humanitarian organization, revealed over the weekend that its self-registration application (SRA) for Palestine ...

Read More → Use Tool →
2026-06-04BleepingComputer
New IronWorm malware hits 36 packages in npm supply-chain attack

A new supply-chain attack has infected 36 packages on the Node Package Manager (npm) index with infostealer malware called IronWorm. [...]...

Read More → Use Tool →
2026-06-04BleepingComputer
Hackers Are After the Gaps in Your Vulnerability Program: Here's Their Playbook

Threat actors are actively teaching newcomers how to find, exploit, and profit from vulnerable systems. Flare explores what a popular underground hacking tutorial reveals about mod...

Read More → Use Tool →
2026-06-04BleepingComputer
Microsoft blames unexpected Windows driver updates on caching issue

On Wednesday, Microsoft fixed an issue that caused some Windows devices to install driver updates without notice despite policies configured to prevent auto-updates. [...]...

Read More → Use Tool →
2026-06-04BleepingComputer
Police dismantles fake ID marketplace used by migrant smugglers

French and Spanish authorities took down an online marketplace selling fake identity documents to migrant smuggling rings operating within the European Union. [...]...

Read More → Use Tool →
2026-06-04SecurityWeek
Offroad Emerges From Stealth With $7 Million to Tackle Enterprise Identity Risk

As AI agents, machine identities, and third-party applications multiply across enterprises, Offroad is betting autonomous security agents can restore control over an increasingly u...

Read More → Use Tool →
2026-06-04SecurityWeek
Webinar Today: Third-Party Risk in Practice – Where Programs Break Down and How to Respond

Join this live webinar as we examine the gap between how organizations think their third-party risk programs are performing and what’s actually happening in practice. The post Web...

Read More → Use Tool →
2026-06-04SecurityWeek
Willow Raises $7 Million for Securing Autonomous AI Agents

Willow (formerly Webrix) emerged from stealth mode with an access platform designed to secure enterprise AI agents. The post Willow Raises $7 Million for Securing Autonomous AI Age...

Read More → Use Tool →
2026-06-04SecurityWeek
Gemini Voice Assistant Hijacked via Messaging Notifications

Attackers could have triggered dangerous actions, including controlling smart home devices via Google Home and starting Zoom video calls. The post Gemini Voice Assistant Hijacked v...

Read More → Use Tool →
2026-06-04SecurityWeek
Mirasvit Vulnerability Exploited to Execute Code on Magento Servers

A flaw in the Full Page Cache Warmer extension can be exploited without authentication via serialized PHP object payloads. The post Mirasvit Vulnerability Exploited to Execute Code...

Read More → Use Tool →
2026-06-04The Record
Supreme Court rules FCC fines punishing telecom giants for sharing location data were legal

The Trump administration had backed the FCC’s position and, apart from Justice Clarence Thomas, the high court agreed....

Read More → Use Tool →
2026-06-04The Record
UN food agency investigates breach exposing data of Gaza aid recipients

In a message sent to aid recipients via Telegram over the weekend, the World Food Programme (WFP) said that "unauthorized parties" had accessed data stored in its self-registration...

Read More → Use Tool →
2026-06-04The Record
Researcher publishes GitHub token-stealing exploit, blames Microsoft’s disclosure process

The security researcher, Ammar Askar, released the new proof-of-concept exploit on his personal blog — alongside the public tracker for issues in VS Code — giving a GitHub security...

Read More → Use Tool →