cybersecurity

Production data in testing is still common, and Tricentis’ CISO wants it gone

Production data in testing is still common, and Tricentis’ CISO wants it gone 2026-08-26 at 08:30 By Mirko Zorz In this Help Net Security interview, Erika Dean, CISO at Tricentis, talks about keeping production data out of test environments and why she thinks the alternatives are good enough now. She explains how her team caught […]

Production data in testing is still common, and Tricentis’ CISO wants it gone Read More »

AI vulnerability discovery scores the highest impact of 20 emerging risks

AI vulnerability discovery scores the highest impact of 20 emerging risks 2026-08-26 at 08:00 By Anamarija Pogorelec Risk managers, auditors and senior executives at 316 companies spent April and May ranking 20 threats they have not yet felt. AI discovery of cyber vulnerabilities came back first, according to Gartner. Three months earlier the same quarterly […]

AI vulnerability discovery scores the highest impact of 20 emerging risks Read More »

Hottest cybersecurity open-source tools of the month: August 2026

Hottest cybersecurity open-source tools of the month: August 2026 2026-08-26 at 07:30 By Anamarija Pogorelec Presented here is a curated selection of noteworthy open-source cybersecurity solutions that have drawn recognition for their ability to enhance security postures across diverse settings. SkillSpector: NVIDIA’s open-source security scanner for AI agent skills SkillSpector is an open-source scanner from […]

Hottest cybersecurity open-source tools of the month: August 2026 Read More »

From ‘High/Medium/Low’ to Dollars: Making Cyber Risk Legible to Your CFO 

From ‘High/Medium/Low’ to Dollars: Making Cyber Risk Legible to Your CFO  2026-08-25 at 16:25 By Ashish Khaitan For years, cybersecurity teams have communicated risk through labels such as “High,” “Medium,” and “Low.” Those ratings can help security teams prioritize vulnerabilities, but they often leave CFOs with a more important question unanswered: What does the risk […]

From ‘High/Medium/Low’ to Dollars: Making Cyber Risk Legible to Your CFO  Read More »

HOL Guard: Open-source antivirus for AI agents

HOL Guard: Open-source antivirus for AI agents 2026-08-25 at 08:30 By Anamarija Pogorelec HOL Guard is a free, open-source tool that sits between an AI assistant and the computer it runs on. When the assistant tries something risky, the tool pauses it and asks you first. It installs in about a minute, runs on your […]

HOL Guard: Open-source antivirus for AI agents Read More »

The cybercrime supply chain has five stages, each with a price

The cybercrime supply chain has five stages, each with a price 2026-08-25 at 08:00 By Help Net Security In this Help Net Security video, Chris Nyhuis, CEO at Vigilant, explains why the picture of a lone ransomware attacker is about 15 years out of date. He walks through the cybercrime supply chain and the five […]

The cybercrime supply chain has five stages, each with a price Read More »

New TCG guidance gives buyers a way to test PQC-ready TPM claims

New TCG guidance gives buyers a way to test PQC-ready TPM claims 2026-08-25 at 07:30 By Help Net Security The Trusted Computing Group has published requirements that spell out what a Trusted Platform Module has to do before anyone calls it quantum-safe. A TPM is the chip that holds a machine’s keys and records measurements […]

New TCG guidance gives buyers a way to test PQC-ready TPM claims Read More »

Cybersecurity job ads demanding AI skills double in a year

Cybersecurity job ads demanding AI skills double in a year 2026-08-24 at 14:53 By Sinisa Markovic Job postings asking for AI skills in cybersecurity have doubled in a single year in G7 countries according to new research from the Cisco-founded AI Workforce Consortium. Analysis from recruitment firms Cornerstone and Indeed covering 24 months, from April […]

Cybersecurity job ads demanding AI skills double in a year Read More »

Ransomware attackers are zeroing in on mid-market companies

Ransomware attackers are zeroing in on mid-market companies 2026-08-24 at 07:30 By Anamarija Pogorelec Mid-sized companies accounted for 73% of publicly disclosed ransomware and data-extortion incidents with known revenue in North America and Europe between January 2023 and June 2026, according to Black Kite. The analysis covered 13,336 incidents with known revenue and defined mid-market […]

Ransomware attackers are zeroing in on mid-market companies Read More »

AWS makes it easier to spot firewall rules that have gone quiet

AWS makes it easier to spot firewall rules that have gone quiet 2026-08-24 at 07:00 By Anamarija Pogorelec AWS Network Firewall’s rule hit count capability gives security teams visibility into which stateful firewall rules are matching traffic, helping them identify unused or redundant rules and validate whether security controls are working as intended. The capability […]

AWS makes it easier to spot firewall rules that have gone quiet Read More »

Nearly half of enterprises have no one leading PQC migration

Nearly half of enterprises have no one leading PQC migration 2026-08-21 at 07:30 By Anamarija Pogorelec Enterprises believe they are prepared for the security challenges posed by quantum computing, but gaps in ownership, testing and visibility could complicate their transition to post-quantum cryptography (PQC), according to new research from Axiad. Who owns PQC migration? (Source: […]

Nearly half of enterprises have no one leading PQC migration Read More »

AWS limits AI agents’ data access, even when manipulated

AWS limits AI agents’ data access, even when manipulated 2026-08-20 at 14:17 By Anamarija Pogorelec AWS has detailed an approach for propagating user authorization context through AI agents, allowing access controls to be enforced by infrastructure and downstream services rather than relying on the agent itself. Customers using Amazon Bedrock AgentCore can build AI agents […]

AWS limits AI agents’ data access, even when manipulated Read More »

OpenAI previews privacy-focused system for detecting AI misuse

OpenAI previews privacy-focused system for detecting AI misuse 2026-08-20 at 12:09 By Anamarija Pogorelec OpenAI is previewing Private Safety Processing with early customers seeking greater certainty about how their data will be protected as AI systems become more capable. The system identifies patterns across related interactions while restricting OpenAI personnel from accessing the underlying content. […]

OpenAI previews privacy-focused system for detecting AI misuse Read More »

When the Attacker Wears Your Logo: Detecting and Taking Down Impersonation at AI Speed

When the Attacker Wears Your Logo: Detecting and Taking Down Impersonation at AI Speed 2026-08-19 at 17:01 By Ashish Khaitan A company can have strong firewalls, modern endpoint protection, and carefully controlled access—and still find its brand being used as a weapon against customers, employees, and partners.  That is the new reality of digital impersonation. […]

When the Attacker Wears Your Logo: Detecting and Taking Down Impersonation at AI Speed Read More »

OpenAI puts major frontier AI training run on hold over cyber risks

OpenAI puts major frontier AI training run on hold over cyber risks 2026-08-19 at 11:48 By Anamarija Pogorelec OpenAI temporarily paused reinforcement learning (RL) training on its latest models intended for deployment for two weeks while it hardened and red-teamed research environments and expanded monitoring. “Our largest planned frontier RL run remains on hold while […]

OpenAI puts major frontier AI training run on hold over cyber risks Read More »

Banks look for fraud signals in customer behavior

Banks look for fraud signals in customer behavior 2026-08-19 at 07:30 By Anamarija Pogorelec Banks are dealing with more fraud in which customers authorize payments after being manipulated by criminals. ThreatMark’s Fraud Readiness Benchmark 2026 describes a banking environment where social engineering, reimbursement requirements and growing case volumes are changing fraud operations. Social engineering moves […]

Banks look for fraud signals in customer behavior Read More »

Google’s $10,000 refund test shows why AI agents need zero trust

Google’s $10,000 refund test shows why AI agents need zero trust 2026-08-18 at 14:49 By Anamarija Pogorelec Google’s open-source autonomous Customer Support & Returns Agent, built using the Agent Development Kit (ADK) and Gemini, demonstrates how developers can apply zero-trust security principles to AI agents that interact with sensitive systems and take real-world actions. The […]

Google’s $10,000 refund test shows why AI agents need zero trust Read More »

OpenAI tightens defenses after AI agents breach research environment

OpenAI tightens defenses after AI agents breach research environment 2026-08-18 at 12:41 By Anamarija Pogorelec Following the OpenAI-Hugging Face incident, in which an agentic collective autonomously penetrated OpenAI’s research infrastructure and another company’s production infrastructure by chaining together multiple weaknesses, OpenAI began strengthening its safety requirements. The weaknesses included previously unknown vulnerabilities and credentials leaked […]

OpenAI tightens defenses after AI agents breach research environment Read More »

Windows 11’s strongest security defenses can be bypassed without a screwdriver

Windows 11’s strongest security defenses can be bypassed without a screwdriver 2026-08-17 at 08:30 By Sinisa Markovic Researchers from the University of Birmingham and Durham University have found a way to knock down some of the toughest protections in Windows 11 without physically opening or modifying the target machine. The attack assumes the attacker has […]

Windows 11’s strongest security defenses can be bypassed without a screwdriver Read More »

Hazmat: Open-source containment for AI agents

Hazmat: Open-source containment for AI agents 2026-08-17 at 08:00 By Anamarija Pogorelec Hazmat is an open-source tool that runs AI coding agents inside a separate account on your own machine. It wraps the harnesses people use: Claude Code, Codex, OpenCode, Cursor Agent, and several more, plus any script you write yourself. An agent launched the […]

Hazmat: Open-source containment for AI agents Read More »

Scroll to Top