HackMyIP

網路安全資訊

來自頂級安全媒體的最新動態

共 1314 篇文章,第 20 / 44 頁

2026-05-27The Record
Iranian intelligence service behind hack of LA transit system, researchers say

The hacking group claimed to be a standalone hacktivist crew but actually has ties to the Ministry of Intelligence of the Islamic Republic of Iran (MOIS), researchers at Gambit Sec...

Read More → Use Tool →
2026-05-27The Hacker News
Gitea Vulnerability Exposes Private Container Images without Authentication

Cybersecurity researchers have disclosed a security flaw in Gitea, an open-source, self-hosted platform for version control, that allows unauthenticated remote attackers to pull pr...

Read More → Use Tool →
2026-05-27The Hacker News
AI Chatbot Recommendations Redirect Users to Cryptojacking Malware Sites

Microsoft has warned of an active cryptojacking campaign that makes use of artificial intelligence (AI) chatbot interactions as a mechanism for surfacing malicious download sites. ...

Read More → Use Tool →
2026-05-27BleepingComputer
FBI warns of in-person data theft attacks from extortion gang

The FBI warned on Tuesday that the Silent Ransom Group (SRG) extortion gang is now targeting U.S.-based law firms in in-person data theft attacks. [...]...

Read More → Use Tool →
2026-05-27BleepingComputer
CISA gives feds 4 days to patch actively exploited cPanel plugin flaw

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has given U.S. federal agencies four days to secure their servers against a critical vulnerability in the LiteSpeed...

Read More → Use Tool →
2026-05-27BleepingComputer
Dutch police arrests suspect linked to Ajax football club hack

The Dutch National Police arrested a 35-year-old man suspected of hacking the professional football club Ajax Amsterdam (AFC Ajax) earlier this year. [...]...

Read More → Use Tool →
2026-05-27BleepingComputer
Windows 11 KB5089573 update released with performance improvements

Microsoft has released the KB5089573 preview cumulative update for Windows 11 versions 25H2 and 24H2, which comes with 30 changes, including performance and reliability improvement...

Read More → Use Tool →
2026-05-27SecurityWeek
RevEng.AI Raises $15 Million to Hunt for Flaws and Backdoors in Software Binaries

Using an AI model called BinNet, RevEng hunts vulnerabilities and backdoors in released software binaries. The post RevEng.AI Raises $15 Million to Hunt for Flaws and Backdoors in ...

Read More → Use Tool →
2026-05-27SecurityWeek
Romanian Hacker Sentenced to Prison in US for Selling Access to State Network

Catalin Dragomir previously pleaded guilty to selling access to an Oregon state government office’s network. The post Romanian Hacker Sentenced to Prison in US for Selling Access t...

Read More → Use Tool →
2026-05-27SecurityWeek
Lastwall Raises $11.5 Million for Quantum-Resilient Identity Platform

The new funding, led by BDC Capital’s StrongNorth Fund, will accelerate Lastwall’s North American expansion. The post Lastwall Raises $11.5 Million for Quantum-Resilient Identity P...

Read More → Use Tool →
2026-05-27SecurityWeek
The Credential Crisis: How Stolen Credentials Defeat Modern Security

As AI accelerates phishing, session hijacking, and credential abuse, security teams are racing to close the gap between attacker speed and defensive response. The post The Credenti...

Read More → Use Tool →
2026-05-27SecurityWeek
‘SymJack’ Attack Turns AI Coding Agents Into Supply Chain Attack Delivery Systems

Malicious repositories and disguised symlinks can trick AI coding agents into silently installing attacker-controlled MCP servers capable of stealing secrets, compromising CI pipel...

Read More → Use Tool →
2026-05-27SecurityWeek
GlassWorm Botnet Disrupted

Security firms took down all four command-and-control (C&C) channels used by the GlassWorm malware. The post GlassWorm Botnet Disrupted appeared first on SecurityWeek....

Read More → Use Tool →
2026-05-27SecurityWeek
LA Metro Cyberattack Linked to Iranian State-Sponsored Hackers

The attack was claimed by a hacktivist group, but evidence showed it used infrastructure linked to Iranian government threat actors. The post LA Metro Cyberattack Linked to Iranian...

Read More → Use Tool →
2026-05-27SecurityWeek
FBI: Hackers Sending Operatives in Person to Insert USB Drives and Steal Data

The FBI has issued an alert warning of Silent Ransom Group attacks targeting law firms. The post FBI: Hackers Sending Operatives in Person to Insert USB Drives and Steal Data appea...

Read More → Use Tool →
2026-05-27SecurityWeek
CISA Urges Immediate Patching of Exploited LiteSpeed cPanel Plugin Zero-Day

Resolved last week, the vulnerability was exploited in the wild as a zero-day to execute scripts with root privileges. The post CISA Urges Immediate Patching of Exploited LiteSpeed...

Read More → Use Tool →
2026-05-27SecurityWeek
Anthropic Releases New Claude Sandbox, Security Guidance Plugin

The AI giant says the new plugin, which helps developers find vulnerabilities as they write code, has been used extensively internally. The post Anthropic Releases New Claude Sandb...

Read More → Use Tool →
2026-05-26Dark Reading
State Cyber Leaders Push Congress for More Funding, Support

A recent congressional hearing highlighted how states are reeling from federal cutbacks to important cybergrants and information-sharing initiatives amid damaging attacks to critic...

Read More → Use Tool →
2026-05-26Dark Reading
Shai-Hulud Hackers TeamPCP: Lucky or Skilled?

TeamPCP, the cybercrime group behind later waves of the Shai-Hulud worm, has done significant damage to the open source ecosystem. But it's not necessarily due to skill alone....

Read More → Use Tool →
2026-05-26Dark Reading
For Enterprises, Security Remains Agentic AI's Biggest Challenge

Every company needs an agentic AI strategy, but the tools to allow agentic AI frameworks to be safely and securely adopted are just starting to appear....

Read More → Use Tool →
2026-05-26Dark Reading
State Cyber Leaders Beg Congress for More Funding, Support

A recent congressional hearing highlighted how states are reeling from federal cutbacks to important cyber grants and information sharing initiatives amid damaging attacks to criti...

Read More → Use Tool →
2026-05-26BleepingComputer
KnowledgeDeliver flaw exploited as a zero-day to install web shells

Hackers exploited a critical zero-day vulnerability in a server running the KnowledgeDeliver learning management system (LMS) to deploy the Godzilla web shell. [...]...

Read More → Use Tool →
2026-05-26BleepingComputer
Charter confirms data breach after ShinyHunters extortion threat

U.S. telecommunications giant Charter Communications has confirmed it suffered a data breach after the ShinyHunters extortion group threatened to leak stolen data unless a ransom i...

Read More → Use Tool →
2026-05-26Dark Reading
Feeding Frenzy: 'Megalodon' Malware Infects Thousands of GitHub Repos

In just six hours, the campaign quietly pushed thousands of malicious commits to more than 5,500 GitHub repositories, stealing credentials, developer secrets, and more....

Read More → Use Tool →
2026-05-26Dark Reading
The Hackers Behind Shai-Hulud: Lucky or Skilled?

TeamPCP, the hackers behind the Shai-Hulud worm, has done significant damage to the open source ecosystem. But it's not necessarily due to skill alone....

Read More → Use Tool →
2026-05-26Dark Reading
Microsoft Issues Out-of-Band SharePoint Patch

SharePoint access often means access to the keys of the kingdom, something attackers and defenders understand all too well....

Read More → Use Tool →
2026-05-26The Hacker News
MuddyWater APT Targets 9 Countries in DLL Side-Loading Espionage Campaign

The Iranian threat actor MuddyWater has been linked to a sophisticated cyber espionage campaign that compromised at least nine organizations across nine countries on four continent...

APTThreat IntelMalware
Read More → Use Tool →
2026-05-26The Hacker News
[THN Webinar] New AI DDoS Attacks Are Smarter. Learn How to Fight Back

Every single day, hackers are finding new ways to crash websites and steal data. But right now, something has changed. Hackers are no longer working alone. They are now using powe...

Read More → Use Tool →
2026-05-26The Hacker News
CERT-In Recommends 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks

The Indian Computer Emergency Response Team (CERT-In) has issued new guidelines requiring organizations to patch critical security vulnerabilities in internet-exposed systems withi...

Read More → Use Tool →
2026-05-26BleepingComputer
How Varonis Atlas integrates Claude Compliance API for AI governance

AI governance requires visibility into how AI tools interact with enterprise data. Varonis explains how its Atlas platform uses Claude Compliance API data to help monitor usage, in...

Read More → Use Tool →