cybersecurity

Malicious SIMs can hijack smartphones, steal files, and lock them onto 2G

Malicious SIMs can hijack smartphones, steal files, and lock them onto 2G 2026-08-11 at 15:10 By Sinisa Markovic Researchers have found that compromised or malicious SIM cards can issue commands to some smartphones and cellular-connected devices, allowing attackers to steal information, disrupt communications, downgrade connections to 2G, and in some cases execute code. Tomasz Piotr […]

Malicious SIMs can hijack smartphones, steal files, and lock them onto 2G Read More »

Who will be the Stanislav Petrov in your organization?

Who will be the Stanislav Petrov in your organization? 2026-08-11 at 09:00 By Help Net Security The recent news coverage of “rogue AI” systems hacking innocent companies reminded me of one of the world’s most unsung heroes and genuinely someone who may well have saved the world. In 1983, the USSR’s early warning systems reported

Who will be the Stanislav Petrov in your organization? Read More »

An AI tool found 84 flaws in 5G network software and 23 of them still have no fix

An AI tool found 84 flaws in 5G network software and 23 of them still have no fix 2026-08-11 at 08:30 By Mirko Zorz Researchers at Nanyang Technological University turned a set of AI agents loose on the software that runs 4G and 5G phone networks, and the agents came back with 84 security flaws

An AI tool found 84 flaws in 5G network software and 23 of them still have no fix Read More »

Anthropic to put AI in charge of reviewing Claude Code actions by default

Anthropic to put AI in charge of reviewing Claude Code actions by default 2026-08-10 at 12:13 By Anamarija Pogorelec Anthropic will make auto mode in Claude Code the default for new sessions on Pro, Max, and Team plans starting August 14. Users who previously selected a different default may receive a one-time prompt asking whether

Anthropic to put AI in charge of reviewing Claude Code actions by default Read More »

OpenAI locks down Astra over potential critical cyber capabilities

OpenAI locks down Astra over potential critical cyber capabilities 2026-08-10 at 10:09 By Anamarija Pogorelec OpenAI’s internal evaluation of its upcoming model, Astra, found significant advances in agentic coding and cybersecurity, leading the company to conclude that it cannot rule out the model reaching the critical capability level for cybersecurity under its Preparedness Framework. The

OpenAI locks down Astra over potential critical cyber capabilities Read More »

Product showcase: Enpass Password Manager breaks away from the proprietary cloud model

Product showcase: Enpass Password Manager breaks away from the proprietary cloud model 2026-08-10 at 08:00 By Anamarija Pogorelec Enpass is a password manager that stores passwords, passkeys, payment cards, identities, secure notes, software licenses, and other sensitive information in encrypted vaults. Vaults remain on the device or in a cloud storage service selected by the

Product showcase: Enpass Password Manager breaks away from the proprietary cloud model Read More »

Ransomware Threats in Europe H1 2026: A Deep Dive into Regional Attack Patterns and Dominant Threat Actors

Ransomware Threats in Europe H1 2026: A Deep Dive into Regional Attack Patterns and Dominant Threat Actors 2026-08-07 at 13:58 By Mihir Bagwe Europe faced a ransomware onslaught in the first half of 2026 that sets a troubling precedent for the remainder of the year. According to Cyble Research and Intelligence Labs (CRIL), the region

Ransomware Threats in Europe H1 2026: A Deep Dive into Regional Attack Patterns and Dominant Threat Actors Read More »

Pre-auth RCE in enterprise Java hits Bonita and OFBiz servers

Pre-auth RCE in enterprise Java hits Bonita and OFBiz servers 2026-08-05 at 21:45 By Mirko Zorz An attacker sends a single web request to a Bonita server and lands inside an internal API that assumed nobody could reach it. The request arrives unauthenticated. From there the attacker runs code on the host. Bonita BPM handles

Pre-auth RCE in enterprise Java hits Bonita and OFBiz servers Read More »

INTERPOL flags AI as the new engine of African cybercrime

INTERPOL flags AI as the new engine of African cybercrime 2026-08-05 at 15:24 By Anamarija Pogorelec Africa’s growing digital economy is exposing governments, businesses and internet users to a rising wave of cybercrime. The continent recorded more than 1.1 billion mobile subscriptions and over $1.1 trillion in digital transactions in 2025, while more than 570

INTERPOL flags AI as the new engine of African cybercrime Read More »

Code review used to be the only way to catch these bugs

Code review used to be the only way to catch these bugs 2026-08-05 at 14:30 By Mirko Zorz An automated system called NOVA read the source code of 3,915 open-source projects over two months and came back with 14,090 vulnerabilities, each one confirmed through the system’s validation pipeline. Vulnerability researchers at Palo Alto Networks’ Unit

Code review used to be the only way to catch these bugs Read More »

Cloudflare gives AI agents wallets with built-in spending controls

Cloudflare gives AI agents wallets with built-in spending controls 2026-08-05 at 10:54 By Anamarija Pogorelec Cloudflare’s Wallets will give AI agents running on its platform a human-readable wallet handle for paying APIs and online content within limits set by their creator. Handle reservations have opened, while the service will become available in the coming months.

Cloudflare gives AI agents wallets with built-in spending controls Read More »

What stops attackers wrecking industrial plants is knowing how

What stops attackers wrecking industrial plants is knowing how 2026-08-05 at 07:30 By Mirko Zorz Engineers at an Israeli food producer spent most of a week rebuilding a refrigeration system after an intruder switched the gas cooler and receiver valves to manual and pinned them open. Liquid CO2 flooded the compressors and destroyed them. The

What stops attackers wrecking industrial plants is knowing how Read More »

Your enterprise AI footprint is about three times bigger than your model list

Your enterprise AI footprint is about three times bigger than your model list 2026-08-05 at 07:00 By Anamarija Pogorelec Organizations are building AI systems that combine models, agents and external tools instead of relying on standalone AI, according to Snyk’s latest State of Agentic AI Adoption report. The study analyzed 3,044 enterprise environments and 1.39

Your enterprise AI footprint is about three times bigger than your model list Read More »

Digital executive protection is a strategic imperative for CEOs

Digital executive protection is a strategic imperative for CEOs 2026-08-04 at 09:00 By Mirko Zorz In this interview with Help Net Security, Brian Hill, Field CISO, Client Advisory for BlackCloak, explains how attackers reach companies through the personal lives of executives. He describes a case where a draft report sat in an executive’s personal email

Digital executive protection is a strategic imperative for CEOs Read More »

OWASP’s subtractive security project measures the attack paths you erased

OWASP’s subtractive security project measures the attack paths you erased 2026-08-04 at 08:30 By Mirko Zorz An attacker who talks a user into opening an attachment gets whatever that machine still permits: a service account with rights across the domain, an outbound route to anywhere, a scripting engine sitting there for the taking. Christopher Frenz

OWASP’s subtractive security project measures the attack paths you erased Read More »

Analysts got 19 minutes back every hour in Stellar Cyber’s agentic auto triage trials

Analysts got 19 minutes back every hour in Stellar Cyber’s agentic auto triage trials 2026-08-04 at 08:00 By Mirko Zorz An analyst opening a queue on Monday morning will spend most of it on tickets that amount to nothing. Stellar Cyber’s Agentic Auto Triage closed 8,047 of those tickets on its own during customer trials,

Analysts got 19 minutes back every hour in Stellar Cyber’s agentic auto triage trials Read More »

Elastic Defend now covers 800+ vulnerable drivers, with automated troubleshooting and ARM support

Elastic Defend now covers 800+ vulnerable drivers, with automated troubleshooting and ARM support 2026-08-03 at 11:31 By Mirko Zorz Attackers reaching for kernel access on a Windows machine bring a driver Microsoft already trusts. It is signed, it loads, and it carries a known flaw. That flaw gives them enough room to tamper with memory

Elastic Defend now covers 800+ vulnerable drivers, with automated troubleshooting and ARM support Read More »

Mapping the malware blast radius a single alert won’t show you

Mapping the malware blast radius a single alert won’t show you 2026-08-03 at 09:00 By Mirko Zorz In this interview with Help Net Security, Mike Wiacek, founder and CTO of Stairwell, explains Backstory, an AI agent that takes a single alert and works outward to map how far a malware campaign spread. He walks through

Mapping the malware blast radius a single alert won’t show you Read More »

Buying TikTok followers can expose users to scams and account theft

Buying TikTok followers can expose users to scams and account theft 2026-08-03 at 07:00 By Anamarija Pogorelec Buying TikTok followers, likes, or views could do more than inflate engagement metrics. According to Malwarebytes, many services selling social media growth operate through deceptive practices that can expose customers to scams, stolen accounts, and financial loss. The

Buying TikTok followers can expose users to scams and account theft Read More »

Cybercrime goes subscription: AI, malware and infrastructure on demand

Cybercrime goes subscription: AI, malware and infrastructure on demand 2026-07-31 at 16:55 By Anamarija Pogorelec Cybercrime has become a commercialized ecosystem where criminals can buy or rent nearly every capability needed to launch sophisticated attacks. These services provide anonymity, plausible deniability, and access to short-lived infrastructure that is difficult to detect, attribute, and disrupt, enabling

Cybercrime goes subscription: AI, malware and infrastructure on demand Read More »

Scroll to Top