BetaIT-Hub is in early access — your feedback helps us improve. Use the chat or email [email protected]

Latest
Suspicious Polyfill login prompts pop up on Toshiba, Muji websitesBleepingComputer · 22m agoFormer cyber executive turned whistleblower accuses IBM of covering up several data breachesTechCrunch Security · 1h agoCISA: Hackers now exploit SolarWinds Serv-U flaw to crash serversBleepingComputer · 3h agoMiasma Malware Hits 32 Red Hat Packages via Compromised GitHub AccountHackRead · 3h agoChinese APT deploys new malware to keep access to hacked networksBleepingComputer · 4h agoIronWorm and New Miasma Worm Variant Hit npm in Supply Chain AttacksThe Hacker News · 4h agoDark web Nemesis Market vendor gets 26 years for selling drugsBleepingComputer · 4h agoAtlas Menu Data Breach Exposes 64,000 GTA V and CS2 Cheat Service UsersHackRead · 5h agoSecuring CI/CD in an agentic world: Claude Code Github action caseMicrosoft Security · 5h agoGoogle and FBI warn of ransomware group that sends fake IT workers to hack victims in personTechCrunch Security · 6h agoAndroid Spyware Asin Targets Arabic Users via Fake News, PDF and War Map AppsThe Hacker News · 7h agoOver 900 US gas station tank gauge systems exposed to attacksBleepingComputer · 7h agoNSA said to be readying Anthropic’s Mythos for use in cyber operationsTechCrunch Security · 7h agoWhat 2026 DBIR Confirms: Attacks Are Living in the BrowserBleepingComputer · 8h agoReaper macOS Infostealer Abuses Script Editor to Steal Crypto and PasswordsHackRead · 9h agoSuspicious Polyfill login prompts pop up on Toshiba, Muji websitesBleepingComputer · 22m agoFormer cyber executive turned whistleblower accuses IBM of covering up several data breachesTechCrunch Security · 1h agoCISA: Hackers now exploit SolarWinds Serv-U flaw to crash serversBleepingComputer · 3h agoMiasma Malware Hits 32 Red Hat Packages via Compromised GitHub AccountHackRead · 3h agoChinese APT deploys new malware to keep access to hacked networksBleepingComputer · 4h agoIronWorm and New Miasma Worm Variant Hit npm in Supply Chain AttacksThe Hacker News · 4h agoDark web Nemesis Market vendor gets 26 years for selling drugsBleepingComputer · 4h agoAtlas Menu Data Breach Exposes 64,000 GTA V and CS2 Cheat Service UsersHackRead · 5h agoSecuring CI/CD in an agentic world: Claude Code Github action caseMicrosoft Security · 5h agoGoogle and FBI warn of ransomware group that sends fake IT workers to hack victims in personTechCrunch Security · 6h agoAndroid Spyware Asin Targets Arabic Users via Fake News, PDF and War Map AppsThe Hacker News · 7h agoOver 900 US gas station tank gauge systems exposed to attacksBleepingComputer · 7h agoNSA said to be readying Anthropic’s Mythos for use in cyber operationsTechCrunch Security · 7h agoWhat 2026 DBIR Confirms: Attacks Are Living in the BrowserBleepingComputer · 8h agoReaper macOS Infostealer Abuses Script Editor to Steal Crypto and PasswordsHackRead · 9h ago

Security & IT News

Live

Real-time news from 13+ trusted sources — BleepingComputer, The Hacker News, Krebs on Security, Dark Reading & more.

448 results in Breach

🔴 BreachThe Hacker News·13h ago
Hackers Exploit Critical Everest Forms Pro WordPress Plugin Flaw to Take Over Sites

Threat actors are actively exploiting a critical security flaw in Everest Forms Pro, a WordPress plugin with about 4,000 active installations, to execute arbitrary code, leading to a complete site compromise. The vulnerability in question is CVE-2026-3300 (CVSS score: 9.8), a remote code execution bug impacting all versions of the plugin up to, and including, 1.9.12. A patch for the flaw was

🔴 BreachTechCrunch Security·1d ago
Defense tech, AI, and fundraising take center stage at StrictlyVC Los Angeles on June 18

With just two weeks to go, StrictlyVC Los Angeles is quickly approaching. On Thursday, June 18, at The Aerospace Corporation Campus in El Segundo, investors, founders, and tech leaders will gather for an evening of conversation exploring some of the most consequential shifts taking place across venture capital, defense technology, artificial intelligence, and advanced industry. Secure your spot here. […]

🔴 BreachSchneier on Security·1d ago
Hacking Meta’s AI Chatbot

Hackers are convincing Meta’s AI support chatbot to let them take over other peoples’ accounts: A video posted on X showed the step-by-step process to hack someone’s Instagram account. The hacker allegedly used a VPN to spoof the targets’ presumed location to avoid triggering Instagram’s automated account protections. Then, the hacker opened a chat with Meta AI Support Assistant and asked the bot to add a new email address to the target’s account. The chatbot can be seen sending a verification code to the email address provided by the hacker; the hacker then shares the verification code with the chatbot, which prompts the chatbot to show a button to “Reset Password.” The hacker enters a new password and takes over the victim’s account. […] On Monday, Instagram spokesperson Andy Stone said in a reply to Wong’s post and others that the issue was now fixed. It’s unclear how many Instagram users had their accounts improperly accessed. It’s not that easy. Probably this particular tactic is now blocked. But there are others, many others, and they cannot be blocked as a class. The real problem is that LLM chatbots are not trustworthy enough for this application. Another news article .

🔴 BreachThe Hacker News·1d ago
Hackers Spied on a Stock Exchange Executive's Outlook Mailbox for Five Months

Unknown attackers spent at least five months inside the Outlook mailbox of a senior executive at a major global stock exchange, copying the inbox out in small, repeated batches and routing it through Dropbox and OneDrive so the traffic blended into normal cloud activity. Symantec and Carbon Black's Threat Hunter Team reported the campaign this week. This points to espionage, not a money grab: