HackMyIP

網路安全資訊

來自頂級安全媒體的最新動態

共 1314 篇文章,第 21 / 44 頁

2026-05-26BleepingComputer
Microsoft Defender can now automatically isolate hacked endpoints

Microsoft is testing a new Defender for Endpoint capability that will automatically isolate compromised endpoints to thwart attackers' attempts to move laterally across the network...

Read More → Use Tool →
2026-05-26BleepingComputer
Webinar: Too many tools are slowing network incident response

IT teams often need to jump between monitoring dashboards, infrastructure tools, ticketing systems, and communication platforms during network incidents. This webinar explores how ...

Read More → Use Tool →
2026-05-26SecurityWeek
AppOmni’s Marlin AI Brings Autonomous Investigation to SaaS Security

Marlin AI automatically analyzes SaaS misconfigurations, investigates related activity across enterprise environments, and recommends remediation steps — while stopping short of fu...

Read More → Use Tool →
2026-05-26SecurityWeek
Iranian APT Targets Aviation, Software Companies With Updated Tools

Nimbus Manticore has continued its operations during and after the US military campaign against Iran. The post Iranian APT Targets Aviation, Software Companies With Updated Tools a...

Read More → Use Tool →
2026-05-26The Record
Lithuania investigates theft of 600,000 state registry records by foreign actor

The Lithuanian Prosecutor General’s Office said Friday that attackers gained unauthorized access to more than 600,000 records managed by the Centre of Registers, the state agency r...

Read More → Use Tool →
2026-05-26The Hacker News
Microsoft Patches Critical SharePoint RCE Flaw CVE-2026-45659

Microsoft has released security updates addressing a critical remote code execution vulnerability, tracked as CVE-2026-45659, affecting Microsoft SharePoint Server across multiple ...

Vulnerability
Read More → Use Tool →
2026-05-26The Hacker News
MFA Prompt Bombing: Push-Based 2FA Exploitation Explained

Multi-factor authentication (MFA) was designed to close a critical gap in identity security by requiring a second factor beyond passwords. However, attackers have developed a techn...

AuthenticationPhishingThreat Intel
Read More → Use Tool →
2026-05-26The Hacker News
New AI DDoS Attacks Are Smarter. Learn How to Fight Back in This Webinar

Every single day, hackers are finding new ways to crash websites and steal data. But right now, something has changed. Hackers are no longer working alone. They are now using powe...

Read More → Use Tool →
2026-05-26The Hacker News
CERT-In Mandates 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks

The Indian Computer Emergency Response Team (CERT-In) has issued new guidelines requiring organizations to patch critical security vulnerabilities in internet-exposed systems withi...

Read More → Use Tool →
2026-05-26The Hacker News
Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning

The Iranian state-sponsored threat actor known as Nimbus Manticore (aka Screening Serpens and UNC1549) has been attributed to a fresh campaign using lures impersonating organizatio...

Read More → Use Tool →
2026-05-26BleepingComputer
CISA orders feds to patch actively exploited Drupal vulnerability

CISA has given U.S. government agencies until Wednesday evening to secure their servers against an SQL injection vulnerability in the Drupal content management system (CMS) that it...

Read More → Use Tool →
2026-05-26BleepingComputer
Microsoft: Domain Controller lookup may fail on Windows Server 2016

Microsoft has confirmed a new known issue affecting Windows Server 2016 systems that causes domain controller lookups to fail after installing the KB5087537 May 2026 security updat...

Read More → Use Tool →
2026-05-26BleepingComputer
7-Eleven data breach exposes personal information of 185,000 people

The ShinyHunters extortion gang stole the personal information of over 183,000 people after hacking the systems of convenience store chain giant 7-Eleven in April, according to dat...

Read More → Use Tool →
2026-05-26Dark Reading
Remembering Tim Wilson, Whose Legacy Lives on at Dark Reading

The co-founder and former editor-in-chief passed away five years ago in November. As Dark Reading enters is third decade, we pause to celebrate and honor Wilson's instrumental role...

Read More → Use Tool →
2026-05-26SecurityWeek
185,000 Likely Impacted by 7-Eleven Data Breach

The allegedly stolen information leaked by ShinyHunters contains email addresses, names, addresses, and dates of birth. The post 185,000 Likely Impacted by 7-Eleven Data Breach app...

Read More → Use Tool →
2026-05-26SecurityWeek
Anthropic Expands Claude’s Enterprise Security Governance With 28 New Integrations

Notable integrations include CrowdStrike, Palo Alto Networks, Microsoft, Okta, Zscaler, Netskope, Cloudflare, Fortinet, and Wiz. The post Anthropic Expands Claude’s Enterpris...

Read More → Use Tool →
2026-05-26SecurityWeek
Hackers Exploited KnowledgeDeliver Zero-Day for Web Shell Deployment

Hardcoded machineKey values in a configuration file enabled ViewState deserialization attacks leading to remote code execution. The post Hackers Exploited KnowledgeDeliver Zero-Day...

Read More → Use Tool →
2026-05-26SecurityWeek
Watch on Demand: Threat Detection & Incident Response Summit – All Sessions Available

Register to enjoy free access and explore the tools, strategies, and frameworks needed to build a resilient security program for a world where every minute counts. The post Watch o...

Read More → Use Tool →
2026-05-26SecurityWeek
Open Source DockSec Uses AI to Cut Through Vulnerability Noise in Docker Images

DockSec, an OWASP incubator project, correlates findings from multiple container security scanners and uses AI to generate plain-English remediation guidance and exact Dockerfile f...

Read More → Use Tool →
2026-05-26SecurityWeek
Lithuania Suspects Foreign Involvement in Data Leak of Over 600,000 National Register Entries

Lithuanian authorities are on high alert after a massive data leak involving more than 600,000 entries from national data registers. The post Lithuania Suspects Foreign Involvement...

Read More → Use Tool →
2026-05-26SecurityWeek
Admins of Bulletproof Hosting Service Used by Russian Hackers Arrested in Netherlands

The two own Dutch companies that allegedly provided bulletproof hosting services to Russia-aligned threat actors. The post Admins of Bulletproof Hosting Service Used by Russian Hac...

Read More → Use Tool →
2026-05-26The Hacker News
KnowledgeDeliver LMS Zero-Day Used to Deploy Godzilla & Cobalt Strike

A critical high-severity vulnerability (CVE-2026-5426, CVSS 7.5) in Digital Knowledge KnowledgeDeliver, a Learning Management System (LMS) widely used in Japan, was actively exploi...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-05-25The Record
Dutch authorities arrest men suspected of providing infrastructure for Russian cyber operations

Investigators seized more than 800 servers as they arrested two men suspected of violating European sanctions and assisting pro-Russian cyberattacks and disinformation campaigns....

Read More → Use Tool →
2026-05-25The Record
Kremlin appoints cyber executive with alleged GRU ties to Security Council role

Andrei Kozlov, the former head of a cybersecurity center within Russia’s state-owned defense conglomerate Rostec, was named an aide to Security Council Secretary Sergei Shoigu on F...

Read More → Use Tool →
2026-05-25The Hacker News
GitHub Breach Exposes 3,800 Repos: Supply Chain Attacks Intensify

GitHub has officially confirmed that a sophisticated supply chain attack compromised its internal repositories, resulting in the exfiltration of approximately 3,800 repositories by...

Supply ChainData BreachRansomware
Read More → Use Tool →
2026-05-25The Hacker News
Ghost CMS CVE-2026-26980 Exploited: 700+ Sites Hit in ClickFix Attacks

Threat actors are actively exploiting a critical SQL injection vulnerability in Ghost CMS (CVE-2026-26980, CVSS 9.4) to compromise over 700 websites across multiple sectors includi...

VulnerabilityMalwareThreat Intel
Read More → Use Tool →
2026-05-25The Hacker News
Agentic AI Transforms Network Detection & Response

Network Detection and Response (NDR) has long carried a reputation for being noisy and overwhelming security operations center (SOC) teams with alert fatigue. However, the emergenc...

AI SecurityThreat IntelIncident Response
Read More → Use Tool →
2026-05-25BleepingComputer
Anthropic’s restricted Claude Mythos model may be coming to Claude Code

Anthropic appears to be preparing for the public rollout of the Mythos model, which was announced in April as a restricted model that poses major security risks to private and publ...

Read More → Use Tool →
2026-05-25BleepingComputer
FBI warns of Kali365 phishing service targeting Microsoft 365 accounts

The FBI is warning about the Kali365 phishing-as-a-service platform (PhaaS) that is used to hijack Microsoft 365 accounts by abusing OAuth device code authentication to steal sessi...

Read More → Use Tool →
2026-05-25KrebsOnSecurity
Netherlands Seizes 800 Servers, Arrests 2 for Aiding Cyberattacks

Authorities in the Netherlands have arrested the co-owners of two related Internet hosting companies for operating IT infrastructure used by Russia to carry out cyberattacks, influ...

Read More → Use Tool →