<?xml version="1.0" encoding="utf-8" ?> 
      <rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
		   <channel>
			  <title>HLNCC News</title>
			  <link>http://www.hlncc.com/rss/news</link>
			  <description>Top Security News</description>
			  <language>en-us</language>
			  <pubDate>Thu, 11 Jun 2026 21:46:44 EDT</pubDate>
			  <lastBuildDate>Thu, 11 Jun 2026 21:46:44 EDT</lastBuildDate>
			  <atom:link href="http://www.hlncc.com/rss/news" rel="self" type="application/rss+xml" />
            
<item>
						 <title>Cyber Insurance Rates Are Dropping, but Exclusions Widen #cybersecurity #insurance #risk #socialengineering  #attacks #coverage</title>
							<link>https://www.darkreading.com/cyber-risk/cyber-insurance-rates-drop-exclusions-widen</link>
							<description>Some policies may not provide coverage for social engineering attacks like ClickFix....</description>
							<guid isPermaLink="false">hlncc.com.04762</guid>
						  </item>
<item>
						 <title>Coding Gaffe Exposes Microsoft 365 Accounts to Widespread Takeover #microsoft #authentication #compromise</title>
							<link>https://www.darkreading.com/application-security/coding-gaffe-exposes-microsoft-365-accounts-takeover</link>
							<description>A disabled security setting meant to protect authentication paved the way for attackers to steal logins and data...</description>
							<guid isPermaLink="false">hlncc.com.04761</guid>
						  </item>
<item>
						 <title>One-Click GitHub Dev Attack Lets Attackers Steal Full GitHub OAuth Tokens #github #vscode #token #theft</title>
							<link>https://thehackernews.com/2026/06/one-click-github-dev-attack-lets.html</link>
							<description>Researchers disclosed a one-click attack via Microsoft VS Code that makes it possible to steal a user's GitHub token....</description>
							<guid isPermaLink="false">hlncc.com.04760</guid>
						  </item>
<item>
						 <title>The Intersection of Encryption and AI #cryptography #encryption #ai</title>
							<link>https://www.schneier.com/blog/archives/2026/06/the-intersection-of-encryption-and-ai.html</link>
							<description>Bruce Schneier contributed a column on June 20, 2010, warning about cryptography’s inability to secure modern networks...</description>
							<guid isPermaLink="false">hlncc.com.04759</guid>
						  </item>
<item>
						 <title>AI Agents at Work 2026: Securing the agentic enterprise #ai #cybersecurity #strategy #risk #ciso #cio #cio</title>
							<link>https://www.okta.com/newsroom/articles/ai-agents-at-work-2026-agentic-enterprise-security/</link>
							<description>stark divide between exec confidence in AI agents and how employees actually use them creating a concerning security gap...</description>
							<guid isPermaLink="false">hlncc.com.04758</guid>
						  </item>
<item>
						 <title>PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation #paloalto #globalprotect #panos @prisma #exploit #cisa #cvss</title>
							<link>https://thehackernews.com/2026/05/pan-os-globalprotect-authentication.html</link>
							<description>recently disclosed medium-severity security flaw impacting PAN-OS and Prisma Access has come under active exploitation...</description>
							<guid isPermaLink="false">hlncc.com.04757</guid>
						  </item>
<item>
						 <title>OpenAI Codex Authentication Tokens Stolen in codexui-android npm Supply Chain Attack #openai #ai #exploitation #chatgpt #token #api</title>
							<link>https://thehackernews.com/2026/06/openai-codex-authentication-tokens.html</link>
							<description>new malicious supply chain campaign targeting developers using OpenAI Codex through a legitimate-looking remote web UI...</description>
							<guid isPermaLink="false">hlncc.com.04756</guid>
						  </item>
<item>
						 <title>145 AI laws passed in 2025 and privacy teams aren’t catching a break #ai #risk #cybersecurity #gdpr #policy #privacy #audit #regulation #riskmanagement</title>
							<link>https://www.helpnetsecurity.com/2026/06/01/datagrail-ai-privacy-risks-report/</link>
							<description>AI risk management requires visibility into how AI is used and what data it processes....</description>
							<guid isPermaLink="false">hlncc.com.04755</guid>
						  </item>
<item>
						 <title>Why IAM Matters: Benefits, Challenges, and Common Pitfall #IAM #MFA #SSO #RBAC #PAM</title>
							<link>https://www.scworld.com/analysis/why-iam-matters-benefits-challenges-and-common-pitfalls</link>
							<description>Organizations choosing comprehensive IAM reduce security incident response time and improve audit readiness....</description>
							<guid isPermaLink="false">hlncc.com.04754</guid>
						  </item>
<item>
						 <title>Outlook has an image problem #microsoft #outlook #bug</title>
							<link>https://www.theregister.com/on-prem/2026/05/22/outlook-has-an-image-problem/5244844</link>
							<description>Microsoft says classic client may lose embedded pictures thanks to wrapping bug...</description>
							<guid isPermaLink="false">hlncc.com.04753</guid>
						  </item>
<item>
						 <title>AI-generated reporting: Lessons learned from Cisco Talos Incident Response #cisco #ai #ml #incidentresponse</title>
							<link>https://blogs.cisco.com/security/ai-generated-reporting-lessons-learned-from-talos-incident-response</link>
							<description>Talos IR identified four ways this probabilistic nature manifests itself during report content generation...</description>
							<guid isPermaLink="false">hlncc.com.04752</guid>
						  </item>
<item>
						 <title>Cisco used AI to write security incident reports, with mixed results #cisco #ai #ml #incidentresponse</title>
							<link>https://www.theregister.com/security/2026/05/22/cisco-used-ai-to-write-security-incident-reports-with-mixed-results/5244692</link>
							<description>You’ll need a lot of detailed prompts to get solid output - and even then it may have errors and typos...</description>
							<guid isPermaLink="false">hlncc.com.04751</guid>
						  </item>
<item>
						 <title>Microsoft 365 users targeted by new phishing threat that bypasses MFA #Kali365 #microsoft #phishing #OAuth #MFA</title>
							<link>https://www.helpnetsecurity.com/2026/05/22/kali365-microsoft-365-phishing-fbi-warning/</link>
							<description>Microsoft 365 access tokens are being targeted by an emerging Phishing-as-a-Service (PhaaS) platform called Kali365...</description>
							<guid isPermaLink="false">hlncc.com.04750</guid>
						  </item>
<item>
						 <title>FBI warns Kali365 phishing kit is stealing Microsoft OAuth tokens at scale #Kali365 #microsoft #phishing #OAuth #MFA</title>
							<link>https://www.theregister.com/cyber-crime/2026/05/22/fbi-warns-of-kali365-as-device-code-phishing-soars/5245024</link>
							<description>MFA? No problem, says crimeware that tricks users into handing attackers the keys to M365...</description>
							<guid isPermaLink="false">hlncc.com.04749</guid>
						  </item>
<item>
						 <title>Cisco Patches CVSS 10.0 Secure Workload REST API Flaw Enabling Data Access #cisco #sdwan #vulnerabilities #cve #authentication</title>
							<link>https://thehackernews.com/2026/05/cisco-patches-cvss-100-secure-workload.html</link>
							<description>Vuln CVE-2026-20223, CVSS 10, arises from insufficient validation and authentication when accessing REST API endpoints...</description>
							<guid isPermaLink="false">hlncc.com.04748</guid>
						  </item></channel>
</rss>